Skip to content

🌱 e2e/fuzz: Account for Scorecard API repo migration - #5253

Merged
justaugustus merged 1 commit into
ossf:mainfrom
justaugustus:fix/e2e-fuzzing-webapp-info-count
Sep 28, 2026
Merged

justaugustus merged 1 commit into
ossf:mainfrom
justaugustus:fix/e2e-fuzzing-webapp-info-count

Conversation

@justaugustus

Copy link
Copy Markdown
Member

What kind of change does this PR introduce?

test fix

What is the current behavior?

The e2e Fuzzing check test against ossf/scorecard-webapp expects 3 info
messages (1 for OSS-Fuzz integration, 2 for native Go fuzz functions). The
native fuzz functions (FuzzVerifyWorkflow, FuzzExtractCertInfo) have since
moved to ossf/scorecard-infra, so the check now correctly returns only 1
info message, and the e2e test fails (e.g. #5231's integration-trusted job).

What is the new behavior (if this is a feature change)?

The expected info count is corrected to 1, similar to the fix in #5159.

  • Tests for the changes have been added (for bug fixes/features)

Which issue(s) this PR fixes

NONE

Special notes for your reviewer

OSS-Fuzz's status.json still tracks ossf/scorecard-webapp as the
main_repo for its scorecard-web project, so the OSS-Fuzz integration
signal (1) is still accurate today. There's an open, unmerged
google/oss-fuzz#16140 that
repoints that project to ossf/scorecard-infra; once it merges, this
expectation will likely need a follow-up change.

Does this PR introduce a user-facing change?

For user-facing changes, please add a concise, human-readable release note to
the release-note

(In particular, describe what changes users might need to make in their
application as a result of this pull request.)

NONE

The e2e Fuzzing check test against ossf/scorecard-webapp expected 3
info messages (1 for OSS-Fuzz integration, 2 for native Go fuzz
functions). The native fuzz functions (FuzzVerifyWorkflow,
FuzzExtractCertInfo) have since moved to ossf/scorecard-infra, so the
check now correctly reports only the OSS-Fuzz integration signal.

Note: OSS-Fuzz's status.json does not yet track ossf/scorecard-infra
as a project (see google/oss-fuzz#16140, unmerged), so this expected
value may need to change again once that lands.

Assisted-by: LLM
Signed-off-by: Stephen Augustus <foo@auggie.dev>
@codecov

codecov Bot commented Sep 28, 2026 •

Copy link
Copy Markdown

Codecov Report

✅ All modified and coverable lines are covered by tests.
✅ Project coverage is 75.52%. Comparing base (353ed60) to head (49a08b7).
⚠️ Report is 375 commits behind head on main.

Additional details and impacted files
@@            Coverage Diff             @@
##             main    #5253      +/-   ##
==========================================
+ Coverage   66.80%   75.52%   +8.72%     
==========================================
  Files         230      252      +22     
  Lines       16602    13967    -2635     
==========================================
- Hits        11091    10549     -542     
+ Misses       4808     3417    -1391     
+ Partials      703        1     -702     
🚀 New features to boost your workflow:
  • ❄️ Test Analytics: Detect flaky tests, report on failures, and find test suite problems.
  • 📦 JS Bundle Analysis: Save yourself from yourself by tracking and limiting bundle sizes in JS merges.

@justaugustus justaugustus changed the title 🌱 update e2e test to account for scorecard-webapp fuzz signal 🌱 e2e/fuzz: Account for Scorecard API repo migration Sep 28, 2026
@justaugustus
justaugustus marked this pull request as ready for review September 28, 2026 02:15
@justaugustus
justaugustus requested a review from a team as a code owner September 28, 2026 02:15
@justaugustus
justaugustus requested review from spencerschrock and removed request for a team September 28, 2026 02:15
@justaugustus
justaugustus enabled auto-merge (squash) September 28, 2026 02:15
@justaugustus
justaugustus merged commit 8788fc2 into ossf:main Sep 28, 2026
40 checks passed

This branch was successfully deployed

2 active deployments
integration-test — 49a08b70 Deployed Sep 28, 2026 by justaugustus via integration-trusted #12622
gitlab — 49a08b70 Deployed Sep 28, 2026 by justaugustus via gitlab-integration-trusted #5253
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

Status: Done

Development

Successfully merging this pull request may close these issues.

2 participants