← Files VeraARCHIVED FILE
modules/report-builder/scripts/validate_review_integrity.py
3.53 KB · Oct 2, 2026 · 00:29 UTC
"""Replay Report Builder review integrity from the MCP server."""
from __future__ import annotations
import sys as _bootstrap_sys # isort: skip
_bootstrap_sys.dont_write_bytecode = True
_bootstrap_sys.pycache_prefix = (
r"Z:\__report_builder_no_bytecode__"
if _bootstrap_sys.platform == "win32"
else "/dev/null/report-builder"
)
import os as _bootstrap_os # isort: skip
_BOOTSTRAP_PATH = _bootstrap_os.path.join(
_bootstrap_os.path.dirname(_bootstrap_os.path.abspath(__file__)),
"implementation_bootstrap.py",
)
_BOOTSTRAP_ENTRY = _bootstrap_os.lstat(_BOOTSTRAP_PATH)
if _BOOTSTRAP_ENTRY.st_mode & 0o170000 != 0o100000 or _BOOTSTRAP_ENTRY.st_nlink != 1:
raise RuntimeError("Report Builder implementation bootstrap is not a real file.")
with open(_BOOTSTRAP_PATH, "rb") as _bootstrap_handle:
_BOOTSTRAP_BEFORE = _bootstrap_os.fstat(_bootstrap_handle.fileno())
_BOOTSTRAP_BYTES = _bootstrap_handle.read()
_BOOTSTRAP_AFTER = _bootstrap_os.fstat(_bootstrap_handle.fileno())
_BOOTSTRAP_IDENTITY = (
_BOOTSTRAP_ENTRY.st_dev,
_BOOTSTRAP_ENTRY.st_ino,
_BOOTSTRAP_ENTRY.st_size,
_BOOTSTRAP_ENTRY.st_mtime_ns,
)
if (
_BOOTSTRAP_IDENTITY
!= (
_BOOTSTRAP_BEFORE.st_dev,
_BOOTSTRAP_BEFORE.st_ino,
_BOOTSTRAP_BEFORE.st_size,
_BOOTSTRAP_BEFORE.st_mtime_ns,
)
or _BOOTSTRAP_IDENTITY
!= (
_BOOTSTRAP_AFTER.st_dev,
_BOOTSTRAP_AFTER.st_ino,
_BOOTSTRAP_AFTER.st_size,
_BOOTSTRAP_AFTER.st_mtime_ns,
)
or len(_BOOTSTRAP_BYTES) != _BOOTSTRAP_AFTER.st_size
):
raise RuntimeError("Report Builder implementation bootstrap changed while read.")
_BOOTSTRAP_NAMESPACE = {
"__file__": _BOOTSTRAP_PATH,
"__name__": "_report_builder_implementation_bootstrap",
}
# The exact stable single-link bootstrap source is verified above.
exec( # nosec B102
compile(_BOOTSTRAP_BYTES, _BOOTSTRAP_PATH, "exec"), _BOOTSTRAP_NAMESPACE
)
_BOOTSTRAP_NAMESPACE["activate_implementation_boundary"]()
_SCRIPTS_DIR = _bootstrap_os.path.dirname(_bootstrap_os.path.abspath(__file__))
if _SCRIPTS_DIR not in _bootstrap_sys.path:
_bootstrap_sys.path.insert(0, _SCRIPTS_DIR)
import argparse
import json
import sys
from pathlib import Path
from typing import Any
from report_builder_integrity import validate_review_integrity
__all__ = ["main"]
def _stdin_object() -> dict[str, Any]:
text = sys.stdin.read()
if not text.strip():
return {}
payload = json.loads(text)
if not isinstance(payload, dict):
raise ValueError("Review-integrity input must be a JSON object")
return payload
def main() -> int:
parser = argparse.ArgumentParser(
description="Replay persisted Report Builder source and handoff receipts."
)
parser.add_argument("--output-dir", type=Path, required=True)
parser.add_argument("--expected-predecessor-checkpoint")
args = parser.parse_args()
supplied = _stdin_object()
result = validate_review_integrity(
args.output_dir,
supplied_review_payload=supplied.get("review_payload"),
supplied_run_intake=supplied.get("run_intake"),
supplied_final_artifacts=supplied.get("final_artifacts"),
expected_predecessor_checkpoint=args.expected_predecessor_checkpoint,
)
sys.stdout.write(
json.dumps(
{
"ok": True,
"run_id": result["run_id"],
"content_sha256": result["content_sha256"],
}
)
+ "\n"
)
return 0
if __name__ == "__main__":
raise SystemExit(main())
SHA-256: c4632f361e2fda6be0e66e3242a8093a5e43696730a9cc51ea1c41d0eea60c39