style: apply ruff auto-fix

- Auto-formatted code with ruff format
- Applied ruff linting fixes with --fix

Co-authored-by: github-actions[bot] <github-actions[bot]@users.noreply.github.com>
This commit is contained in:
github-actions[bot]
2026-02-22 14:24:27 +00:00
parent ca6a3beb3f
commit bdf0afd9bf
3 changed files with 9 additions and 26 deletions
+1 -4
View File
@@ -126,10 +126,7 @@ async def oauth_callback(request: Request):
request.session["user"] = user_data request.session["user"] = user_data
# Log the successful authentication # Log the successful authentication
logger.info( logger.info(f"[SECURITY] OAUTH_LOGIN_SUCCESS user={user_data.get('email', 'unknown')} admin={is_admin}")
f"[SECURITY] OAUTH_LOGIN_SUCCESS user={user_data.get('email', 'unknown')} "
f"admin={is_admin}"
)
# Redirect to original destination or default # Redirect to original destination or default
redirect_url = request.session.pop("redirect_after_login", "/upload") redirect_url = request.session.pop("redirect_after_login", "/upload")
+7 -20
View File
@@ -161,10 +161,7 @@ class AuditLogMiddleware(BaseHTTPMiddleware):
self.include_ip = config.audit_log_include_client_ip self.include_ip = config.audit_log_include_client_ip
if self.enabled: if self.enabled:
logger.info( logger.info(f"Audit logging middleware enabled (include_client_ip={self.include_ip})")
"Audit logging middleware enabled "
f"(include_client_ip={self.include_ip})"
)
else: else:
logger.info("Audit logging middleware disabled") logger.info("Audit logging middleware disabled")
@@ -217,9 +214,7 @@ class AuditLogMiddleware(BaseHTTPMiddleware):
ip_part = f" - {get_client_ip(request)}" if self.include_ip else "" ip_part = f" - {get_client_ip(request)}" if self.include_ip else ""
# Core request log line (always INFO). # Core request log line (always INFO).
logger.info( logger.info(f"[AUDIT] {method} {path} {status_code} {duration_ms}ms{ip_part} - {username}")
f"[AUDIT] {method} {path} {status_code} {duration_ms}ms{ip_part} - {username}"
)
# Security-event log lines for noteworthy conditions. # Security-event log lines for noteworthy conditions.
self._log_security_event(method, path, status_code, username, ip_part) self._log_security_event(method, path, status_code, username, ip_part)
@@ -242,22 +237,14 @@ class AuditLogMiddleware(BaseHTTPMiddleware):
username: Authenticated username or ``"anonymous"``. username: Authenticated username or ``"anonymous"``.
ip_part: Pre-formatted IP string (may be empty string). ip_part: Pre-formatted IP string (may be empty string).
""" """
base_path = path.split("?")[0] base_path = path.split("?", maxsplit=1)[0]
if status_code == 401: if status_code == 401:
logger.warning( logger.warning(f"[SECURITY] AUTH_FAILURE {method} {path} 401{ip_part} - {username}")
f"[SECURITY] AUTH_FAILURE {method} {path} 401{ip_part} - {username}"
)
elif status_code == 403: elif status_code == 403:
logger.warning( logger.warning(f"[SECURITY] ACCESS_DENIED {method} {path} 403{ip_part} - {username}")
f"[SECURITY] ACCESS_DENIED {method} {path} 403{ip_part} - {username}"
)
elif base_path in _AUTH_PATHS and method == "POST": elif base_path in _AUTH_PATHS and method == "POST":
# Login attempts (successful or not) are always noted. # Login attempts (successful or not) are always noted.
logger.info( logger.info(f"[SECURITY] AUTH_ATTEMPT {method} {path} {status_code}{ip_part} - {username}")
f"[SECURITY] AUTH_ATTEMPT {method} {path} {status_code}{ip_part} - {username}"
)
elif status_code >= 500: elif status_code >= 500:
logger.error( logger.error(f"[SECURITY] SERVER_ERROR {method} {path} {status_code}{ip_part} - {username}")
f"[SECURITY] SERVER_ERROR {method} {path} {status_code}{ip_part} - {username}"
)
+1 -2
View File
@@ -13,9 +13,9 @@ Validates:
and for authentication-endpoint POST requests and for authentication-endpoint POST requests
""" """
import pytest
from unittest.mock import AsyncMock, MagicMock, patch from unittest.mock import AsyncMock, MagicMock, patch
import pytest
from fastapi import Response from fastapi import Response
from app.middleware.audit_log import ( from app.middleware.audit_log import (
@@ -25,7 +25,6 @@ from app.middleware.audit_log import (
mask_query_string, mask_query_string,
) )
# --------------------------------------------------------------------------- # ---------------------------------------------------------------------------
# mask_query_string # mask_query_string
# --------------------------------------------------------------------------- # ---------------------------------------------------------------------------