feat: 监控面板 / 登录鉴权 / 多平台切换 / MySQL
Deploy VitePress site to Pages / build (push) Canceled after 0s
Deploy VitePress site to Pages / Deploy (push) Canceled after 0s

在上游 MediaCrawler 之上新增一层:

- 监控层 api/monitor/ —— 多博主/多笔记的定时采集、指标快照差分、报表、
  企业微信通知。每轮采集写入独立目录,差分才成立。
- WebUI 登录鉴权 api/auth.py —— PBKDF2 口令 + 服务端会话,/api 全接口防护。
  WebSocket 单独加依赖:BaseHTTPMiddleware 对 ws 作用域直接放行,覆盖不到。
- 全局平台切换 + 能力矩阵 —— 如实区分「爬虫模块支持」与「监控层已接线」,
  未接通的平台直接拒绝建任务,而不是静默跑空。
- 监控库改用 MySQL 5.7(可回退 SQLite 供测试):逐表强制 utf8mb4
  (服务端与库默认都是 latin1),启动校验所连 schema 以防写错库,
  连接池 recycle + pre_ping 应对 MySQL 的 8 小时空闲断连。

修复上游缺陷:

- xhs/core.py: 主页抓取失败会跳掉整个博主,导致一条作品都抓不到,
  而那份资料只喂给一个空函数。改为尽力而为,失败不中断。
- xhs/login.py: cookie 登录只注入 web_session,冷启动签名会失败。
  新增 INJECT_ALL_COOKIES 开关(默认关闭,原有行为不变)。
- requirements.txt: 补上 websockets。它在上游 pyproject.toml 里有声明、
  这里漏了,导致 uvicorn 没有 WebSocket 能力,实时日志流从未工作。

改动过的上游文件清单及合并方式见 UPSTREAM.md。

测试:492 passed(另有 1 个既有的 Windows/gbk 上游测试失败,与本改动无关)
This commit is contained in:
2026-10-07 09:58:40 +08:00
parent 5d547f4586
commit 4e60524f37
88 changed files with 13224 additions and 436 deletions
+29
View File
@@ -96,3 +96,32 @@ def sample_xhs_creator():
"interaction": 50000,
"tag_list": '{"profession": "Designer", "interest": "Photography"}'
}
@pytest.fixture(autouse=True)
def _bypass_auth_for_non_auth_suites(request):
"""Skip API authentication for suites that are not about authentication.
Adding auth to every /api route breaks any test that speaks HTTP, so those
suites override the dependency here. This uses FastAPI's own
``dependency_overrides`` mechanism rather than a production-visible
"test mode" switch, which could be shipped enabled by accident.
``tests/test_auth.py`` is deliberately excluded: it must exercise the real
enforcement path, including the route-enumeration guard that asserts every
other /api route really does return 401.
"""
if request.node.fspath.basename == "test_auth.py":
yield
return
from api.auth import require_auth, require_ws_auth
from api.main import app
app.dependency_overrides[require_auth] = lambda: None
app.dependency_overrides[require_ws_auth] = lambda: None
try:
yield
finally:
app.dependency_overrides.pop(require_auth, None)
app.dependency_overrides.pop(require_ws_auth, None)