mirror of
https://github.com/openclaw/openclaw.git
synced 2026-05-30 12:01:07 +00:00
* refactor: share talk event metric extraction * refactor: reuse shared coercion helpers * refactor: reuse shared primitive guards * refactor: reuse shared record guard * refactor: reuse shared primitive helpers * refactor: reuse shared string guards * refactor: reuse shared non-empty string guard * refactor: share plugin primitive coercion helpers * refactor: reuse plugin coercion helpers * refactor: reuse plugin coercion helpers in more plugins * refactor: reuse channel coercion helpers * refactor: reuse monitor coercion helpers * refactor: reuse provider coercion helpers * refactor: reuse core coercion helpers * refactor: reuse runtime coercion helpers * refactor: reuse helper coercion in codex paths * refactor: reuse helper coercion in runtime paths * refactor: reuse codex app-server coercion helpers * refactor: reuse codex record helpers * refactor: reuse migration and qa record helpers * refactor: reuse feishu and core helper guards * refactor: reuse browser and policy coercion helpers * refactor: reuse memory wiki record helper * refactor: share boolean coercion helpers * refactor: reuse finite number coercion * refactor: reuse trimmed string list helpers * refactor: reuse string list normalization * refactor: reuse remaining string list helpers * refactor: reuse string entry normalizer * refactor: share sorted string helpers * refactor: share string list normalization * test: preserve command registry browser imports * refactor: reuse trimmed list helpers * refactor: reuse string dedupe helpers * refactor: reuse local dedupe helpers * refactor: reuse more string dedupe helpers * refactor: reuse command string dedupe helpers * refactor: dedupe memory path lists with helper * refactor: expose string dedupe helpers to plugins * refactor: reuse core string dedupe helpers * refactor: reuse shared unique value helpers * refactor: reuse unique helpers in agent utilities * refactor: reuse unique helpers in config plumbing * refactor: reuse unique helpers in extensions * refactor: reuse unique helpers in core utilities * refactor: reuse unique helpers in qa plugins * refactor: reuse unique helpers in memory plugins * refactor: reuse unique helpers in channel plugins * refactor: reuse unique helpers in core tails * refactor: reuse unique helper in comfy workflow * refactor: reuse unique helpers in test utilities * refactor: expose unique value helper to plugins * refactor: reuse unique helpers for numeric lists * refactor: replace index dedupe filters * refactor: reuse string entry normalization * refactor: reuse string normalization in plugin helpers * refactor: reuse string normalization in extension helpers * refactor: reuse string normalization in channel parsers * refactor: reuse string normalization in memory search * refactor: reuse string normalization in provider parsers * refactor: reuse string normalization in qa helpers * refactor: reuse string normalization in infra parsers * refactor: reuse string normalization in messaging parsers * refactor: reuse string normalization in core parsers * refactor: reuse string normalization in extension parsers * refactor: reuse string normalization in remaining parsers * refactor: reuse string normalization in final parser spots * refactor: reuse string normalization in qa media helpers * refactor: reuse normalization in provider and media lists * refactor: reuse normalization for remaining set filters * refactor: reuse normalization in policy allowlists * refactor: reuse normalization in session and owner lists * refactor: centralize primitive string lists * refactor: reuse lowercase entry helpers * refactor: reuse sorted string helpers * refactor: reuse unique trimmed helpers * refactor: reuse string normalization helpers * refactor: reuse catalog string helpers * refactor: reuse remaining string helpers * refactor: simplify remaining list normalization * refactor: reuse codex auth order normalization * chore: refresh plugin sdk api baseline * fix: make shared string sorting deterministic * chore: refresh plugin sdk api baseline * fix: align host env security ordering
93 lines
2.9 KiB
TypeScript
93 lines
2.9 KiB
TypeScript
import {
|
|
firstDefined,
|
|
isSenderIdAllowed,
|
|
mergeDmAllowFromSources,
|
|
} from "openclaw/plugin-sdk/allow-from";
|
|
import type {
|
|
DmPolicy,
|
|
TelegramDirectConfig,
|
|
TelegramGroupConfig,
|
|
} from "openclaw/plugin-sdk/config-contracts";
|
|
import { createSubsystemLogger } from "openclaw/plugin-sdk/runtime-env";
|
|
import { normalizeOptionalString, uniqueStrings } from "openclaw/plugin-sdk/string-coerce-runtime";
|
|
|
|
export type NormalizedAllowFrom = {
|
|
entries: string[];
|
|
hasWildcard: boolean;
|
|
hasEntries: boolean;
|
|
invalidEntries: string[];
|
|
};
|
|
|
|
const warnedInvalidEntries = new Set<string>();
|
|
const log = createSubsystemLogger("telegram/bot-access");
|
|
|
|
function warnInvalidAllowFromEntries(entries: string[]) {
|
|
if (process.env.VITEST || process.env.NODE_ENV === "test") {
|
|
return;
|
|
}
|
|
for (const entry of entries) {
|
|
if (warnedInvalidEntries.has(entry)) {
|
|
continue;
|
|
}
|
|
warnedInvalidEntries.add(entry);
|
|
log.warn(
|
|
[
|
|
"Invalid allowFrom entry:",
|
|
JSON.stringify(entry),
|
|
"- allowFrom/groupAllowFrom authorization expects numeric Telegram sender user IDs only.",
|
|
'To allow a Telegram group or supergroup, add its negative chat ID under "channels.telegram.groups" instead.',
|
|
'If you had "@username" entries, re-run setup (it resolves @username to IDs) or replace them manually.',
|
|
].join(" "),
|
|
);
|
|
}
|
|
}
|
|
|
|
export const normalizeAllowFrom = (list?: Array<string | number>): NormalizedAllowFrom => {
|
|
const entries = (list ?? [])
|
|
.map((value) => normalizeOptionalString(String(value)) ?? "")
|
|
.filter(Boolean);
|
|
const hasWildcard = entries.includes("*");
|
|
const normalized = entries
|
|
.filter((value) => value !== "*")
|
|
.map((value) => value.replace(/^(telegram|tg):/i, ""));
|
|
const invalidEntries = normalized.filter((value) => !/^\d+$/.test(value));
|
|
if (invalidEntries.length > 0) {
|
|
warnInvalidAllowFromEntries(uniqueStrings(invalidEntries));
|
|
}
|
|
const ids = normalized.filter((value) => /^\d+$/.test(value));
|
|
return {
|
|
entries: ids,
|
|
hasWildcard,
|
|
hasEntries: entries.length > 0,
|
|
invalidEntries,
|
|
};
|
|
};
|
|
|
|
export const normalizeDmAllowFromWithStore = (params: {
|
|
allowFrom?: Array<string | number>;
|
|
storeAllowFrom?: string[];
|
|
dmPolicy?: string;
|
|
}): NormalizedAllowFrom => normalizeAllowFrom(mergeDmAllowFromSources(params));
|
|
|
|
export function resolveTelegramEffectiveDmPolicy(params: {
|
|
isGroup: boolean;
|
|
groupConfig?: TelegramDirectConfig | TelegramGroupConfig;
|
|
dmPolicy?: DmPolicy;
|
|
}): DmPolicy {
|
|
if (!params.isGroup && params.groupConfig && "dmPolicy" in params.groupConfig) {
|
|
return params.groupConfig.dmPolicy ?? params.dmPolicy ?? "pairing";
|
|
}
|
|
return params.dmPolicy ?? "pairing";
|
|
}
|
|
|
|
export const isSenderAllowed = (params: {
|
|
allow: NormalizedAllowFrom;
|
|
senderId?: string;
|
|
senderUsername?: string;
|
|
}) => {
|
|
const { allow, senderId } = params;
|
|
return isSenderIdAllowed(allow, senderId, true);
|
|
};
|
|
|
|
export { firstDefined };
|