elizaos--eliza
426e9eeabd
Voice Workbench / headless workbench (mocked backends) (push) Has been cancelled
Voice Workbench / real acoustic lane (nightly, provisioned only) (push) Has been cancelled
ci / test (push) Has been cancelled
ci / lint-and-format (push) Has been cancelled
ci / build (push) Has been cancelled
ci / dev-startup (push) Has been cancelled
gitleaks / gitleaks (push) Has been cancelled
Markdown Links / Relative Markdown Links (push) Has been cancelled
Quality (Extended) / Homepage Build (PR smoke) (push) Has been cancelled
Quality (Extended) / Comment-only diff guard (push) Has been cancelled
Quality (Extended) / Format + Type Safety Ratchet (push) Has been cancelled
Quality (Extended) / Develop Gate (secret scan + UI determinism) (push) Has been cancelled
Quality (Extended) / Develop Gate (lint) (push) Has been cancelled
Chat shell gestures / Chat shell gesture + parity e2e (push) Has been cancelled
Cloud Gateway Discord / Test (push) Has been cancelled
Benchmark Bridge Tests / benchmark (bunx @biomejs/biome check packages/lifeops-bench/src, benchmark-lint) (push) Has been cancelled
Benchmark Bridge Tests / benchmark (bunx vitest run --config packages/lifeops-bench/vitest.config.ts --root packages/lifeops-bench --passWithNoTests, benchmark-tests) (push) Has been cancelled
Build Agent Image / build-and-push (push) Has been cancelled
Dev Smoke / bun run dev onboarding chat (push) Has been cancelled
Dev Smoke / Vite HMR dependency-level smoke (push) Has been cancelled
Electrobun Submodule Guard / electrobun gitlink is fetchable (push) Has been cancelled
Publish @elizaos/example-code / check_npm (push) Has been cancelled
Publish @elizaos/example-code / publish_npm (push) Has been cancelled
Publish @elizaos/plugin-elizacloud / verify_version (push) Has been cancelled
Publish @elizaos/plugin-elizacloud / publish_npm (push) Has been cancelled
Sandbox Live Smoke / Sandbox live smoke (push) Has been cancelled
Snap Build & Test / Build Snap (amd64) (push) Has been cancelled
Snap Build & Test / Build Snap (arm64) (push) Has been cancelled
Test Packaging / elizaos CLI global-install smoke (node + bun) (push) Has been cancelled
Cloud Gateway Webhook / Test (push) Has been cancelled
Cloud Tests / lint-and-types (push) Has been cancelled
Cloud Tests / unit-tests (push) Has been cancelled
Cloud Tests / integration-tests (push) Has been cancelled
Cloud Tests / e2e-tests (push) Has been cancelled
CodeQL Advanced / Analyze (javascript-typescript) (push) Has been cancelled
Deploy Apps Worker (Product 2) / Determine environment (push) Has been cancelled
Deploy Apps Worker (Product 2) / Deploy apps worker to apps-control host (${{ needs.determine-env.outputs.environment }}) (push) Has been cancelled
Deploy Eliza Provisioning Worker / Determine environment (push) Has been cancelled
Deploy Eliza Provisioning Worker / Deploy worker to Hetzner host (${{ needs.determine-env.outputs.environment }} @ ${{ needs.determine-env.outputs.deployment_sha }}) (push) Has been cancelled
Dev Smoke / Classify changed paths (push) Has been cancelled
supply-chain / sbom (push) Has been cancelled
supply-chain / vulnerability-scan (push) Has been cancelled
Build, Push & Deploy to Phala Cloud / build-and-push (push) Has been cancelled
Test Packaging / Validate Packaging Configs (push) Has been cancelled
Test Packaging / Build & Test PyPI Package (push) Has been cancelled
Test Packaging / PyPI on Python ${{ matrix.python }} (push) Has been cancelled
Test Packaging / Pack & Test JS Tarballs (push) Has been cancelled
UI Fixture E2E / ui-fixture-e2e (push) Has been cancelled
UI Fixture E2E / fixture-e2e (push) Has been cancelled
UI Story Gate / story-gate (push) Has been cancelled
vault-ci / test (macos-latest) (push) Has been cancelled
vault-ci / test (ubuntu-latest) (push) Has been cancelled
vault-ci / test (windows-latest) (push) Has been cancelled
vault-ci / app-core wiring tests (push) Has been cancelled
verify-patches / verify patches/CHECKSUMS.sha256 (push) Has been cancelled
Voice Benchmark Smoke / voice-emotion fixture smoke (push) Has been cancelled
Voice Benchmark Smoke / voiceagentbench fixture smoke (push) Has been cancelled
Voice Benchmark Smoke / voicebench-quality unit smoke (push) Has been cancelled
Voice Benchmark Smoke / voicebench TypeScript unit (no audio) (push) Has been cancelled
Voice Benchmark Smoke / voice bench smoke summary (push) Has been cancelled
Windows CI / windows ([bun run --cwd packages/app-core test bun run --cwd packages/elizaos test bun run --cwd packages/cloud/shared test], app-and-cli) (push) Has been cancelled
Windows CI / windows ([bun run --cwd packages/scenario-runner test bun run --cwd packages/vault test bun run --cwd packages/security test bun run --cwd plugins/plugin-coding-tools test], framework-packages) (push) Has been cancelled
Windows CI / windows ([bun run --cwd plugins/plugin-elizacloud test bun run --cwd plugins/plugin-discord test bun run --cwd plugins/plugin-anthropic test bun run --cwd plugins/plugin-openai test bun run --cwd plugins/plugin-app-control test bun run --cwd plugins/pl… (push) Has been cancelled
Windows CI / windows ([node packages/scripts/run-turbo.mjs run build --filter=@elizaos/core --filter=@elizaos/shared --filter=@elizaos/agent --concurrency=4 node packages/scripts/run-bash-linux-only.mjs scripts/verify-riscv64-buildpaths.sh node packages/scripts/run… (push) Has been cancelled
Windows CI / windows ([node packages/scripts/run-turbo.mjs run typecheck --filter=@elizaos/core --filter=@elizaos/shared --filter=@elizaos/cloud-shared --concurrency=4 bun run --cwd packages/core test bun run --cwd packages/shared test], core-runtime, 75) (push) Has been cancelled
280 行
10 KiB
Swift
280 行
10 KiB
Swift
import FamilyControls
|
|
import DeviceActivity
|
|
import Foundation
|
|
import Security
|
|
|
|
enum ScreenTimeSupport {
|
|
private static let familyControlsEntitlement = "com.apple.developer.family-controls"
|
|
private static let requiredFrameworks = ["FamilyControls", "DeviceActivity"]
|
|
private static let deviceActivityMonitorExtensionPoint = "com.apple.deviceactivity.monitor-extension"
|
|
private static let deviceActivityReportExtensionPoint = "com.apple.deviceactivityui.report-extension"
|
|
|
|
private struct ExtensionInspection {
|
|
let monitor: Bool
|
|
let report: Bool
|
|
let inspected: String
|
|
let bundles: [[String: Any]]
|
|
|
|
var complete: Bool {
|
|
monitor && report
|
|
}
|
|
}
|
|
|
|
private struct EntitlementInspection {
|
|
let familyControls: Bool
|
|
let inspected: String
|
|
let reason: String?
|
|
|
|
var satisfied: Bool {
|
|
familyControls
|
|
}
|
|
|
|
var canAttemptAuthorization: Bool {
|
|
inspected == "not-inspectable" || familyControls
|
|
}
|
|
}
|
|
|
|
static func buildStatus(reasonOverride: String? = nil) -> [String: Any] {
|
|
let entitlementInspection = inspectEntitlements()
|
|
let extensionInspection = inspectBundledExtensions()
|
|
let familyControlsEnabled = entitlementInspection.familyControls
|
|
let authorizationEntitlementAvailable = entitlementInspection.canAttemptAuthorization
|
|
let authorizationStatus = authorizationStatusString()
|
|
let provisioningSatisfied = entitlementInspection.satisfied
|
|
|
|
let reason = reasonOverride ?? derivedReason(
|
|
familyControlsEnabled: authorizationEntitlementAvailable,
|
|
authorizationStatus: authorizationStatus,
|
|
extensionInspection: extensionInspection
|
|
)
|
|
let provisioningReason: Any = provisioningSatisfied
|
|
? NSNull()
|
|
: (entitlementInspection.reason ?? reason)
|
|
let reportAvailable = extensionInspection.report && authorizationStatus == "approved"
|
|
let thresholdEventsAvailable = extensionInspection.monitor && authorizationStatus == "approved"
|
|
|
|
return [
|
|
"supported": provisioningSatisfied || entitlementInspection.inspected == "not-inspectable",
|
|
"requirements": [
|
|
"entitlements": [
|
|
"familyControls": familyControlsEntitlement,
|
|
],
|
|
"frameworks": requiredFrameworks,
|
|
"deviceActivityReportExtension": true,
|
|
"deviceActivityMonitorExtension": true,
|
|
"deviceActivityReportExtensionPoint": deviceActivityReportExtensionPoint,
|
|
"deviceActivityMonitorExtensionPoint": deviceActivityMonitorExtensionPoint,
|
|
],
|
|
"entitlements": [
|
|
"familyControls": familyControlsEnabled,
|
|
],
|
|
"provisioning": [
|
|
"satisfied": provisioningSatisfied,
|
|
"inspected": entitlementInspection.inspected,
|
|
"reason": provisioningReason,
|
|
],
|
|
"authorization": [
|
|
"status": authorizationStatus,
|
|
"canRequest": canRequestAuthorization(
|
|
familyControlsEnabled: authorizationEntitlementAvailable,
|
|
authorizationStatus: authorizationStatus
|
|
),
|
|
],
|
|
"extensions": [
|
|
"deviceActivityReportExtension": extensionInspection.report,
|
|
"deviceActivityMonitorExtension": extensionInspection.monitor,
|
|
"inspected": extensionInspection.inspected,
|
|
"bundles": extensionInspection.bundles,
|
|
],
|
|
"reportAvailable": reportAvailable,
|
|
"coarseSummaryAvailable": reportAvailable,
|
|
"thresholdEventsAvailable": thresholdEventsAvailable,
|
|
"rawUsageExportAvailable": false,
|
|
"reason": reason,
|
|
]
|
|
}
|
|
|
|
static func requestAuthorizationIfAvailable(
|
|
completion: @escaping (String?) -> Void
|
|
) {
|
|
let entitlementInspection = inspectEntitlements()
|
|
let authorizationStatus = authorizationStatusString()
|
|
guard canRequestAuthorization(
|
|
familyControlsEnabled: entitlementInspection.canAttemptAuthorization,
|
|
authorizationStatus: authorizationStatus
|
|
) else {
|
|
DispatchQueue.main.async {
|
|
completion(nil)
|
|
}
|
|
return
|
|
}
|
|
|
|
if #available(iOS 16.0, *) {
|
|
Task { @MainActor in
|
|
do {
|
|
try await AuthorizationCenter.shared.requestAuthorization(for: .individual)
|
|
completion(nil)
|
|
} catch {
|
|
completion("Screen Time authorization request failed: \(error.localizedDescription)")
|
|
}
|
|
}
|
|
return
|
|
}
|
|
|
|
DispatchQueue.main.async {
|
|
AuthorizationCenter.shared.requestAuthorization { result in
|
|
DispatchQueue.main.async {
|
|
switch result {
|
|
case .success:
|
|
completion(nil)
|
|
case .failure(let error):
|
|
completion("Screen Time authorization request failed: \(error.localizedDescription)")
|
|
}
|
|
}
|
|
}
|
|
}
|
|
}
|
|
|
|
private static func authorizationStatusString() -> String {
|
|
runOnMain {
|
|
switch AuthorizationCenter.shared.authorizationStatus {
|
|
case .approved:
|
|
return "approved"
|
|
#if compiler(>=6.2)
|
|
// .approvedWithDataAccess shipped in iOS 26 (Xcode 26 / Swift 6.2).
|
|
// Older Xcode/SDK combinations don't know the case at all, so it
|
|
// has to be guarded at compile time, not via #available.
|
|
case .approvedWithDataAccess:
|
|
return "approved"
|
|
#endif
|
|
case .denied:
|
|
return "denied"
|
|
case .notDetermined:
|
|
return "not-determined"
|
|
@unknown default:
|
|
return "unavailable"
|
|
}
|
|
}
|
|
}
|
|
|
|
private static func canRequestAuthorization(
|
|
familyControlsEnabled: Bool,
|
|
authorizationStatus: String
|
|
) -> Bool {
|
|
familyControlsEnabled && authorizationStatus == "not-determined"
|
|
}
|
|
|
|
private static func derivedReason(
|
|
familyControlsEnabled: Bool,
|
|
authorizationStatus: String,
|
|
extensionInspection: ExtensionInspection
|
|
) -> String {
|
|
if !familyControlsEnabled {
|
|
return "Family Controls entitlement is missing from the app bundle."
|
|
}
|
|
if !extensionInspection.complete {
|
|
if !extensionInspection.report && !extensionInspection.monitor {
|
|
return "DeviceActivity report and monitor extensions are not bundled with the app."
|
|
}
|
|
if !extensionInspection.report {
|
|
return "DeviceActivity report extension is not bundled with the app."
|
|
}
|
|
return "DeviceActivity monitor extension is not bundled with the app."
|
|
}
|
|
if authorizationStatus == "not-determined" {
|
|
return "Screen Time authorization has not been granted yet."
|
|
}
|
|
if authorizationStatus == "denied" {
|
|
return "Screen Time authorization was denied on this device."
|
|
}
|
|
return "Screen Time DeviceActivity support is available."
|
|
}
|
|
|
|
private static func inspectBundledExtensions() -> ExtensionInspection {
|
|
guard let plugInsURL = Bundle.main.builtInPlugInsURL else {
|
|
return ExtensionInspection(
|
|
monitor: false,
|
|
report: false,
|
|
inspected: "bundle-plug-ins",
|
|
bundles: []
|
|
)
|
|
}
|
|
|
|
let extensionURLs = (
|
|
try? FileManager.default.contentsOfDirectory(
|
|
at: plugInsURL,
|
|
includingPropertiesForKeys: nil,
|
|
options: [.skipsHiddenFiles]
|
|
)
|
|
) ?? []
|
|
|
|
var monitor = false
|
|
var report = false
|
|
var bundles: [[String: Any]] = []
|
|
|
|
for extensionURL in extensionURLs where extensionURL.pathExtension == "appex" {
|
|
guard let bundle = Bundle(url: extensionURL) else {
|
|
continue
|
|
}
|
|
let extensionInfo = bundle.object(forInfoDictionaryKey: "NSExtension") as? [String: Any]
|
|
let extensionPoint = extensionInfo?["NSExtensionPointIdentifier"] as? String
|
|
if extensionPoint == deviceActivityMonitorExtensionPoint {
|
|
monitor = true
|
|
}
|
|
if extensionPoint == deviceActivityReportExtensionPoint {
|
|
report = true
|
|
}
|
|
bundles.append([
|
|
"bundleIdentifier": bundle.bundleIdentifier ?? extensionURL.deletingPathExtension().lastPathComponent,
|
|
"extensionPoint": extensionPoint ?? NSNull(),
|
|
"path": extensionURL.lastPathComponent,
|
|
])
|
|
}
|
|
|
|
return ExtensionInspection(
|
|
monitor: monitor,
|
|
report: report,
|
|
inspected: "bundle-plug-ins",
|
|
bundles: bundles
|
|
)
|
|
}
|
|
|
|
private static func inspectEntitlements() -> EntitlementInspection {
|
|
#if os(macOS)
|
|
return EntitlementInspection(
|
|
familyControls: entitlementIsEnabled(familyControlsEntitlement),
|
|
inspected: "code-signature",
|
|
reason: nil
|
|
)
|
|
#else
|
|
return EntitlementInspection(
|
|
familyControls: false,
|
|
inspected: "not-inspectable",
|
|
reason: "iOS entitlement inspection is handled by build validation and provisioning profile checks."
|
|
)
|
|
#endif
|
|
}
|
|
|
|
#if os(macOS)
|
|
private static func entitlementIsEnabled(_ key: String) -> Bool {
|
|
guard let task = SecTaskCreateFromSelf(nil) else {
|
|
return false
|
|
}
|
|
guard let value = SecTaskCopyValueForEntitlement(task, key as CFString, nil) else {
|
|
return false
|
|
}
|
|
if let boolean = value as? Bool {
|
|
return boolean
|
|
}
|
|
return false
|
|
}
|
|
#endif
|
|
|
|
private static func runOnMain<T>(_ work: () -> T) -> T {
|
|
if Thread.isMainThread {
|
|
return work()
|
|
}
|
|
return DispatchQueue.main.sync(execute: work)
|
|
}
|
|
}
|