From f0c0c986c4cbca01ff3550126ecdee5a6b5a7e13 Mon Sep 17 00:00:00 2001 From: Teknium <127238744+teknium1@users.noreply.github.com> Date: Tue, 25 Aug 2026 23:23:00 -0700 Subject: [PATCH] test: pin overlay policy off in embedded-daemon socket/ack contract test MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit The embedded spawn now consults the overlay policy (capability probe via subprocess.run) when _cua_no_overlay() is true — which it is on headless CI since the Linux X11 default flip. The fixed two-entry run side_effect in this test didn't budget for the probe call; pin the policy off since this test pins the socket/ack contract, not overlay behavior. --- tests/tools/test_computer_use_cua_0_10_permissions.py | 6 ++++++ 1 file changed, 6 insertions(+) diff --git a/tests/tools/test_computer_use_cua_0_10_permissions.py b/tests/tools/test_computer_use_cua_0_10_permissions.py index 7b813d1c1d..06d1671623 100644 --- a/tests/tools/test_computer_use_cua_0_10_permissions.py +++ b/tests/tools/test_computer_use_cua_0_10_permissions.py @@ -178,6 +178,12 @@ def test_unrestricted_embedded_daemon_uses_private_socket_and_two_part_ack(): cua_backend, "_resolve_mcp_invocation", return_value=("/opt/cua-driver", ["mcp"]), + ), patch.object( + # This test pins the socket/ack contract, not overlay policy. Pin the + # policy off so the environment-dependent auto-detect (headless CI vs + # Wayland dev box) can't add a `--help` capability-probe subprocess.run + # call that the fixed two-entry side_effect below doesn't budget for. + cua_backend, "_cua_no_overlay", return_value=False, ), patch.object(cua_backend.subprocess, "Popen", return_value=process) as popen, patch.object( cua_backend.subprocess, "run", side_effect=[status, stopped] ):