- Validate decoded Model Target request values before processing them.
- Type target-manager request defaults as database dictionaries instead of arbitrary mappings.
- Type parsed Target Manager request bodies using recursive JSON values.
- Accept integer
response_delay_secondsvalues when mockingrequestscalls.
- The URL of a reco counts report now has the shape of the presigned cloud storage URL which real Vuforia returns.
The report file is named
{date}-{hour}.csvfor the current month and{month}.csvfor the previous month, so two requests for the same month in the same hour name the same file and serve the report which the first request generated. The URL carries the query parameters of a presigned URL, and the mock honorsX-Amz-DateandX-Amz-Expiresas real Vuforia's storage does, so a URL which is out of date or which has no query parameters gives the403XML error document which Amazon S3 gives. A report which is not yet generated gives the404NoSuchKeyXML error document which Amazon S3 gives, as real Vuforia has now been observed to do, rather than an empty body.
- The response delay and client timeout simulation is now provided by the
mock-response-delaypackage. - The mock now returns NGINX's
400 Request Header Or Cookie Too Largeresponse for any request header line longer than 8190 bytes, as real Vuforia does. - Match real Vuforia's request rate limiting, which was checked against it on 2026-09-08.
DOCUMENTED_REQUEST_RATE_LIMITSnow allows twoGET /targetsrequests per minute rather than one, a rate-limited request gets Envoy's empty-bodied429response rather than a JSONTooManyRequestsbody, and the limits are applied before the request's signature is checked.
Add
MockVWS.set_target_recognition_countsand a matching target manager endpoint for the Flask and Docker mock, for setting the recognition counts which the target summary report and the reco counts report show for a target. A reco counts report now has a row for each target with recognitions in the requested month, and the recognition counts and recognition threshold of a cloud database are kept when the database is created in the Flask and Docker mock.Order Query API and
GET /duplicates/{target_id}results by match score, with the best match first, as the real Query API does. Matches with equal scores keep the existing upload date and then target ID order.Image matchers now return a score, or
Nonefor no match, rather than abool.StructuralSimilarityMatcherreturns the images' SSIM score, andExactMatchergives every match the same score. A customquery_match_checkerorduplicate_match_checkerwhich returns aboolnow raises aTypeError; return a score, such as1.0, for a match andNonefor no match instead. The mock's ranking is its matcher's opinion, not Vuforia's proprietary one, so the mock's order still need not agree with the real Query API's order.Respond, rather than failing to respond, to a request body which is not UTF-8 and to a query request whose
multipart/form-databody ends before its closing boundary.Return a
400response which names the offending field and the accepted values, rather than a500response, when the target manager container is given an invalid cloud database or VuMark database to create. Return a404response, rather than a500response, when the target manager container is asked to add a target to a database which does not exist.Say which claims about the real Vuforia Web Services the mock has not had checked against them. :doc:`unverified-behavior` lists each such claim and what would verify it, and
differences-to-vwsmarks the unverified assumptions among its deliberate differences.Return a
BadImageresponse, rather than failing to respond, when an image given to the Target API is truncated before the end of its image data.MockVWSnow interceptshttpx2requests, synchronous and asynchronous, alongsiderequestsandhttpx. Thehttpx2path uses nativehttpx2requests and responses, and does not needhttpx2.alias_httpx().Fix nested
MockVWSinstances on thehttpxbackend: an inner mock is now the only one which answers while it is running, matching therequestsandhttpx2backends. Previously the outer mock kept answering and requests to the inner mock's URL were refused.Return a response, rather than raising an uncaught
JSONDecodeError, when an empty body is given to a VWS endpoint which takes a JSON body. As real Vuforia does,POST /targetsandPUT /targets/<target_id>now return a 500Failresponse, the reco counts report endpoint returns a 400Failresponse, and the VuMark instance generation endpoint returns a 400BadRequestresponse.
- Add configurable Model Target HTTP failure responses for selected dataset request phases.
- Guard the state which the Docker containers share between requests with a lock. The containers serve requests on threads, so concurrent requests, such as those made by a test suite which runs in parallel, could previously race with each other: listing databases while a target was added could return a 500 response, and a target which was being updated or deleted could briefly be missing from a database.
- Give each call of a function decorated with a
MockVWSinstance its own databases and targets. Previously, every use of an instance shared one set of databases and targets, so decorating two test functions with one instance made them affect each other. A database can still be inspected during a call, and its targets are what they were before the call again once it returns. Using an instance as a context manager is unchanged: awithblock still shares its state with every other use of the same instance. - Add configurable Model Target
TRAINING_ALLOWANCE_EXCEEDEDresponses to the in-process and Flask/Docker mocks.
- Add configurable Model Target
- Give
CloudDatabaseadatabase_id, and reject a reco counts report request whose path names a database which the request's server keys do not belong to, as real Vuforia does. - Return a response, rather than raising an uncaught
PIL.Image.DecompressionBombError, when an image with a small file size but a huge number of pixels is given toPOST /targetsorPOST /v1/query. As real Vuforia does,POST /targetsnow returns theImageTooLargeresult code for an image with more than 37748736 pixels, and the Query API applies no pixel count limit. - Return targets in a deterministic order from the Query API,
GET /targetsandGET /duplicates/{target_id}. Targets are ordered by upload date and then by target ID, so repeated runs agree with each other. This order is not Vuforia's match score order. - Document the Docker containers' configuration with the environment variable names and values which the applications actually read, starting with
TARGET_MANAGER_BASE_URL. - Build the Docker images from a committed
uv.lockwith a.dockerignore, so that image contents are reproducible from a commit, source edits no longer invalidate the dependency layer, and repository files such as tests and documentation are no longer copied into the images. - Store Model Target datasets in the target manager service rather than in the VWS application. In the Docker deployment, datasets now survive a restart of the VWS container, matching how cloud databases and their targets are stored. The VWS application also no longer imports the target manager module's state: it constructs its own request rate limiter and reco counts report store.
- Report the Docker containers as unhealthy without a traceback in the health check probe output while nothing is yet listening on the port.
- Support
cadDataBlobandcadDataFormatin Model Target dataset creation requests, and require exactly one ofcadDataUrlandcadDataBlobfor each model. - Reject Model Target Web API and OAuth2 token requests with a
Content-Lengthheader which is not an integer, matching the load balancer in front of real Vuforia. - Reject Model Target dataset creation requests with wrongly typed
name,targetSdkormodelsentry values. - Treat standard and advanced Model Target datasets as separate resources: status, download and delete requests made through the other dataset type's routes now return the unknown-dataset error rather than acting on the dataset.
- Reject Model Target dataset creation requests with values outside the documented enumerations for the
automaticColoring,motionHint,optimizeTrackingFor,realisticAppearance,simplifyandtrackingModemodel fields. - Report the
failedtraining status when downloading a Model Target dataset whose generation failed, rather than thenot-startedstatus which a still-processing dataset reports. - Add configurable failed Model Target dataset status responses.
- Add configurable Model Target dataset generation warning responses.
- Reject Model Target dataset creation requests with
guideViewPositionobjects which are missingrotationortranslation, or which haverotationortranslationvalues that are not JSON arrays. - Reject Model Target dataset creation requests with
guideViewPositionrotationortranslationarrays which contain values that are not JSON numbers. - Reject Model Target bearer tokens whose JWT payload is not a JSON object.
- Reject Model Target bearer tokens with empty or malformed JWT signatures.
- Reject Model Target dataset creation requests with models which are missing
name, or which have wrongly typedcadDataUrl,nameorviewsvalues. - Reject Model Target dataset creation requests with a body which is valid JSON but not a JSON object, rather than raising an error in the mock.
- Accept State-Based Model Target configuration and validate per-view state selections against its declared states.
- Reject Model Target dataset creation requests with
viewsentries which are not JSON objects, which are missingguideViewPositionorname, or which have wrongly typedguideViewPositionornamevalues. - Model VWS request rate limits per endpoint with the new
CloudDatabase.request_rate_limitssetting, including the limits which Vuforia documents asmock_vws.request_rate_limits.DOCUMENTED_REQUEST_RATE_LIMITS. No request rate limit is applied by default. - Change the
ProjectHasNoAPIAccessresult code toProjectHasNoApiAccess, matching Vuforia's result codes table. - Add the reco counts report endpoint, and a download URL for the generated CSV report.
- Preserve the recognition count fields, the reco rating and the reco threshold when dumping a
CloudDatabaseor anImageTargetto a dictionary and loading it back. - Rate an image of a single color as
0rather than raising an uncaughtZeroDivisionError. - Return a 404 response from the Flask and Docker mock for a request to a path which it does not serve, and for a request to a served path with a method which that path does not serve, as real Vuforia does, rather than raising an error.
- Reject VuMark instance generation requests whose
instance_idis not a string with aBadRequestresult, as real Vuforia does, and move theinstance_idchecks into validators shared by both mock backends. - Reject Model Target dataset creation requests with a body which cannot be decoded as UTF-8, rather than raising an error in the mock, and decode OAuth2 token request bodies leniently.
- Replace the PyTorch image-quality stack with OpenCV and a lightweight BRISQUE implementation. This reduces dependency download and installation sizes and removes the need to configure PyTorch's CPU-only package index.
- Allow VuMark generation requests to be configured to return
QuotaExceeded,LicenseCheckFailed, orAuthorizationFailedresponses. - Cloud databases with
request_quota=0now return aRequestQuotaReachedresponse from VWS endpoints. - Add a mock implementation of the Model Target Web API, including OAuth2 token creation, standard and advanced dataset creation, status polling, dataset download, and deletion.
- Improve Model Target Web API mock authentication failure responses, including malformed and unsecured JSON Web Token headers.
- Match real Vuforia Model Target dataset creation validation error shape, including per-request UUID, details list, and status codes (415 for unsupported media type, 400 with
BAD_REQUESTvalidation details). - Match real Vuforia Model Target unknown-dataset response shape (
NOT_FOUNDcode,Could not find a model-view database with uuid <uuid>message,userId:target). Keep each Model Target dataset status response internally consistent when processing completes while the response is being generated. - Make synthetic Model Target dataset zip downloads byte-for-byte reproducible.
- Match real Vuforia Model Target Web API error responses for invalid request bodies, invalid dataset creation payloads, unknown datasets, and downloads of still-processing datasets.
- Add configurable
TargetQuotaReached,ProjectSuspended, andProjectHasNoAPIAccessresponses from VWS endpoints. - Add configurable
TooManyRequestsresponses from VWS endpoints using theCloudDatabase.requests_per_second_limitsetting. - Add
CloudQueryFailureResponseand theMockVWS.cloud_query_failure_responseparameter for returning configurable Cloud Query failure status codes, headers, and raw bodies through therequestsandhttpxbackends.
MockVWSnow intercepts bothrequests(viaresponses) andhttpx(viarespx) simultaneously.MockVWSForHttpxhas been removed:MockVWShandles both HTTP libraries.
- Add
VuMarkTargetclass for VuMark template targets, alongside the renamedImageTargetclass (previouslyTarget).ImageTargetis for image-based targets andVuMarkTargetis for VuMark template targets. Both can be stored in aVuforiaDatabase.
- Add
sleep_fnparameter toMockVWSfor injecting a custom delay strategy, enabling deterministic and fast tests without monkey-patching.
- Add
response_delay_secondsparameter toMockVWSfor simulating slow server responses and testing timeout handling. - Add
response_delay_secondssetting to the Flask mock (VWSSettingsandVWQSettings) for simulating slow server responses.
- Support passing data as strings.
- Fix installation on Windows now that
numpy2.0.0 has been released.
- Add a structural similarity image matcher.
- Distribute type information.
- Initial release