Ejemplo
hono 4.13.7: getCookie
Muestra verificada para npm hono 4.13.7: getCookie. El contrato se ejecutó en node 22 · linux debian/x64 · docker y pasó: hono exports getCookie from…
sha256:a784f00483e966d4888d682348c1eee828f4a02b920e62609857819cbfe4256e
Esta red ofrece una sola cosa: una muestra que compila. La ejecutó en un sandbox y guardó el recibo firmado. No califica ni garantiza nada: si el mismo código compila donde estás no es algo que haya medido.
Cuántas claves de firma distintas presentaron un recibo de contrato aprobado. Una es solo el autor; más de una significa que alguien más también lo compiló. Una clave se genera sola y no tiene identidad registrada detrás, así que cuenta claves, no personas.
MIT-0
Evidencia de ejecución
El entorno declarado y las ejecuciones firmadas se muestran por separado, para que veas exactamente qué ejecutó esta muestra y dónde.
- Base de evidencia
- Contrato firmado aprobado
- Recibos de verificación
- 1
- Claves de firma que lo compilaron
- 1
Entorno declarado
node 22.23 linux 24 · ubuntu · glibc 2.39 x64 node 22.23 javascript npm 10
Entornos de las ejecuciones de verificación
| Entorno | Contrato | Etapas | Ejecución |
|---|---|---|---|
| node 22 · linux debian/x64 · docker ed25519:c1973797be207ac4 | PASS | compile:SKIPPED · contract:PASS · load:PASS · resolve:PASS CONTAINER_RUN · node-typescript@1node:22@sha256:8a34c4ab3ea2… |
2026-09-06 |
Caso
HOW- Objetivo
- verify getCookie in pkg:npm/hono@4.13.7
- Paquetes
- Símbolos
-
- getCookie
- Entorno
- node 22.23.2
- Creado
- 2026-09-06T04:15:23Z
Contrato
- hono exports getCookie from hono/cookie entrypoint and version is 4.13.7
- getCookie reads specific cookie value decoded from request Cookie header
- getCookie without name returns all parsed cookies as a key-value record
- getCookie returns undefined for missing cookie names or empty Cookie header
- getCookie supports prefix option looking up __Host- or __Secure- prefixed cookies
Archivos
- PROMPT.md
- csx.json
- package-lock.json
- package.json
- spec.json
- test/contract.mjs
Código fuente
Clean-room public code sample — generation instructions
Write a brand-new, minimal, self-contained code sample in this clean-room directory.
Do not copy, paraphrase, or reference any existing project source. Work only from this spec.
A csx.json manifest scaffold already exists. Do not recreate it from memory. Preserve its case.goal, packages and symbols; fill its empty case.contract with exact assertions and correct its environment, commands and verifierAdapter for the files you generate.
Goal: verify getCookie in pkg:npm/hono@4.13.7
Kind: HOW
Use EXACTLY these public packages and versions:
- pkg:npm/hono@4.13.7
Demonstrate these symbols/APIs:
- getCookie
Rules:
- One focused purpose; the smallest project that proves the goal.
- Include a contract test (test/contract.*) that runs OFFLINE and exits 0 exactly when the goal behavior works.
- Pin every dependency with a lockfile so resolution is reproducible.
- No secrets, credentials, or tokens. No real URLs (only example.com or localhost). No absolute paths.
- No personal names, emails, company names, or project identifiers of any kind.
- No binaries and no generated output (node_modules, dist, target, venv, .git, .env).
- Keep it under 200 files and 256KB packed.
{"case":{"caseId":"case:sha256:56e41127930a8244420a95d274c0a92a9cc3390f865281a56ba21ef269a41928","contract":["hono exports getCookie from hono/cookie entrypoint and version is 4.13.7","getCookie reads specific cookie value decoded from request Cookie header","getCookie without name returns all parsed cookies as a key-value record","getCookie returns undefined for missing cookie names or empty Cookie header","getCookie supports prefix option looking up __Host- or __Secure- prefixed cookies"],"goal":"verify getCookie in pkg:npm/hono@4.13.7","kind":"HOW","packages":["pkg:npm/hono@4.13.7"],"schemaVersion":1,"symbols":["getCookie"]},"contractCommand":["node","test/contract.mjs"],"environment":{"arch":"x64","distro":"ubuntu","ecosystem":"npm","executionContext":"node","language":"javascript","libc":"glibc","libcVersion":"2.39","moduleSystem":"esm","os":"linux","osVersionBucket":"24","packageManager":"npm","packageManagerVersion":"10.9.8","runtime":"node","runtimeVersion":"22.23.2","schemaVersion":1},"license":"MIT-0","packages":["pkg:npm/hono@4.13.7"],"schemaVersion":1,"subject":"pkg:npm/hono@4.13.7","symbols":["getCookie"],"verifierAdapter":"node-typescript@1"}
{
"name": "sample-hono-getcookie",
"version": "1.0.0",
"lockfileVersion": 3,
"requires": true,
"packages": {
"": {
"name": "sample-hono-getcookie",
"version": "1.0.0",
"license": "MIT-0",
"dependencies": {
"hono": "4.13.7"
}
},
"node_modules/hono": {
"version": "4.13.7",
"resolved": "https://registry.npmjs.org/hono/-/hono-4.13.7.tgz",
"integrity": "sha512-c8/gF9ac8Y78/agExVocyLevgR+JlpNB444Py0FSX8pJoPdYUfUzRcXtYEYGwt6l19qIlVZPN5Mfsw9jFShmQQ==",
"license": "MIT",
"engines": {
"node": ">=16.9.0"
}
}
}
}
{
"name": "sample-hono-getcookie",
"version": "1.0.0",
"type": "module",
"private": true,
"license": "MIT-0",
"dependencies": {
"hono": "4.13.7"
}
}
{
"schemaVersion": 1,
"goal": "verify getCookie in pkg:npm/hono@4.13.7",
"kind": "HOW",
"packages": [
"pkg:npm/hono@4.13.7"
],
"symbols": [
"getCookie"
]
}
import assert from 'node:assert/strict';
import fs from 'node:fs';
import { fileURLToPath } from 'node:url';
import { Hono } from 'hono';
import { getCookie } from 'hono/cookie';
// Contract 1: hono exports getCookie from hono/cookie entrypoint and version is 4.13.7
{
const honoEntryUrl = import.meta.resolve('hono');
const pkgJsonPath = fileURLToPath(new URL('../package.json', honoEntryUrl));
assert.ok(fs.existsSync(pkgJsonPath));
const pkgJson = JSON.parse(fs.readFileSync(pkgJsonPath, 'utf8'));
assert.strictEqual(pkgJson.name, 'hono');
assert.strictEqual(pkgJson.version, '4.13.7');
assert.ok(pkgJson.exports['./cookie']);
assert.strictEqual(typeof getCookie, 'function');
}
// Contract 2: getCookie reads specific cookie value decoded from request Cookie header
{
const app = new Hono();
app.get('/cookie', (c) => {
const session = getCookie(c, 'session');
const user = getCookie(c, 'user');
const greeting = getCookie(c, 'greeting');
return c.json({ session, user, greeting });
});
const res = await app.request('http://localhost/cookie', {
headers: {
Cookie: 'session=xyz789; user=guest-user; greeting=hello%20world',
},
});
assert.strictEqual(res.status, 200);
const data = await res.json();
assert.strictEqual(data.session, 'xyz789');
assert.strictEqual(data.user, 'guest-user');
assert.strictEqual(data.greeting, 'hello world');
}
// Contract 3: getCookie without name returns all parsed cookies as a key-value record
{
const app = new Hono();
app.get('/all-cookies', (c) => {
const all = getCookie(c);
return c.json(all);
});
const res = await app.request('http://localhost/all-cookies', {
headers: {
Cookie: 'a=1; b=2; theme=dark',
},
});
assert.strictEqual(res.status, 200);
const data = await res.json();
assert.deepStrictEqual(data, {
a: '1',
b: '2',
theme: 'dark',
});
}
// Contract 4: getCookie returns undefined for missing cookie names or empty Cookie header
{
const app = new Hono();
app.get('/missing', (c) => {
const nonExistent = getCookie(c, 'non_existent');
const all = getCookie(c);
return c.json({ nonExistent: nonExistent === undefined ? null : nonExistent, all });
});
const res = await app.request('http://localhost/missing');
assert.strictEqual(res.status, 200);
const data = await res.json();
assert.strictEqual(data.nonExistent, null);
assert.deepStrictEqual(data.all, {});
}
// Contract 5: getCookie supports prefix option looking up __Host- or __Secure- prefixed cookies
{
const app = new Hono();
app.get('/prefixed', (c) => {
const hostCookie = getCookie(c, 'token', 'host');
const secureCookie = getCookie(c, 'auth', 'secure');
const missingPrefixed = getCookie(c, 'token', 'secure');
return c.json({
hostCookie,
secureCookie,
missingPrefixed: missingPrefixed === undefined ? null : missingPrefixed,
});
});
const res = await app.request('http://localhost/prefixed', {
headers: {
Cookie: '__Host-token=host-secret-123; __Secure-auth=secure-session-456',
},
});
assert.strictEqual(res.status, 200);
const data = await res.json();
assert.strictEqual(data.hostCookie, 'host-secret-123');
assert.strictEqual(data.secureCookie, 'secure-session-456');
assert.strictEqual(data.missingPrefixed, null);
}
console.log('All hono getCookie contract tests passed.');
Seeder de origen
anónimo