You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
{{ message }}
Repository navigation
[Coverage Report] Test Coverage Report — 2026-10-08
#9733
Security-critical files are well covered:host-iptables.ts, squid-config.ts, and docker-manager.ts are at 100% across statements, branches, and functions.
Branch gap in cli.ts (50%) is the main security-critical weakness. Statements are 85.71%, so the untested branches are likely error or option-handling paths.
domain-patterns.ts branch coverage is 89.47%: the function audit reports 2 untested if branches and 1 untested switch branch.
Lowest-coverage files are outside the security-critical list:nvx/cleanup-registry.ts (42.8% stmts) and bounded-execution/finite-cardinality.ts (46.03% stmts) are the biggest gaps. bounded-execution/finite-disclosure.ts has only 11.42% branch coverage.
Recent churn in mount/storage code: the change list shows new storage-propagation and mount-topology functions (e.g. planNvxLiveMounts, assertPrivateStorageMount, validateMountTopology) that currently sit in low-coverage nvx code.
🎯 Recommendations
High: Add tests for src/nvx/cleanup-registry.ts and src/bounded-execution/finite-cardinality.ts. Both are below 50% statement coverage. Prioritize the cleanup and cardinality-limit branches.
Medium: Add branch tests for src/cli.ts (50% branch) and the 2 uncovered if and 1 uncovered switch branches in src/domain-patterns.ts. Focus on error and invalid-input paths.
Low: Raise branch coverage in src/bounded-execution/finite-disclosure.ts (11.42%) and src/microvm/network-reservation.ts (54.86%) as part of routine work on those modules.
Generated by test-coverage-reporter workflow. Trigger: push
reacted with thumbs up emoji reacted with thumbs down emoji reacted with laugh emoji reacted with hooray emoji reacted with confused emoji reacted with heart emoji reacted with rocket emoji reacted with eyes emoji
Uh oh!
There was an error while loading. Please reload this page.
📊 Test Coverage Report — 2026-10-08
Overall Coverage
🛡️ Security-Critical Path Status
📋 Coverage Table
🔧 Function Audit
📅 Recent Source Changes (last 7 days)
🔎 Notable Findings
host-iptables.ts,squid-config.ts, anddocker-manager.tsare at 100% across statements, branches, and functions.cli.ts(50%) is the main security-critical weakness. Statements are 85.71%, so the untested branches are likely error or option-handling paths.domain-patterns.tsbranch coverage is 89.47%: the function audit reports 2 untestedifbranches and 1 untestedswitchbranch.nvx/cleanup-registry.ts(42.8% stmts) andbounded-execution/finite-cardinality.ts(46.03% stmts) are the biggest gaps.bounded-execution/finite-disclosure.tshas only 11.42% branch coverage.planNvxLiveMounts,assertPrivateStorageMount,validateMountTopology) that currently sit in low-coveragenvxcode.🎯 Recommendations
src/nvx/cleanup-registry.tsandsrc/bounded-execution/finite-cardinality.ts. Both are below 50% statement coverage. Prioritize the cleanup and cardinality-limit branches.src/cli.ts(50% branch) and the 2 uncoveredifand 1 uncoveredswitchbranches insrc/domain-patterns.ts. Focus on error and invalid-input paths.src/bounded-execution/finite-disclosure.ts(11.42%) andsrc/microvm/network-reservation.ts(54.86%) as part of routine work on those modules.Generated by test-coverage-reporter workflow. Trigger:
pushAll reactions