Catch database migration rollback failures before they reach production
Project description
pytest-mrt
A pytest plugin that catches database migration rollback failures before they reach production.
alembic downgrade -1 ran clean. No errors. Your monitoring went green.
But the users' phone numbers are gone. The column came back. The data didn't.
What it does
Most tools verify that migrations run without errors.
pytest-mrt verifies that your data survives a rollback.
It seeds real rows before each migration, rolls back, and checks nothing was lost. It also statically scans migration files for 44 known dangerous patterns across both Alembic and Django migrations.
Install
pip install pytest-mrt
Setup (2 minutes)
1. Create conftest.py in your project root:
# conftest.py
import os
from pytest_mrt import MRTConfig
def pytest_configure(config):
config._mrt_config = MRTConfig(
alembic_ini="alembic.ini", # path to your alembic.ini
db_url=os.environ.get("TEST_DATABASE_URL", "sqlite:///test.db"), # test database
)
2. Write a test:
# tests/test_migrations.py
def test_migrations_are_safe(mrt):
mrt.assert_all_reversible()
3. Run:
pytest tests/test_migrations.py -s
mrtis a pytest fixture — just add it as a parameter and it works. No import needed in test files.
Static analysis (no database needed)
mrt check migrations/versions/
╭──────────┬──────────────────────────┬─────────┬──────┬─────────┬────────────────────────────────────╮
│ Revision │ Pattern │ Sev │ Line │ Code │ Message │
├──────────┼──────────────────────────┼─────────┼──────┼─────────┼────────────────────────────────────┤
│ 004 │ DROP COLUMN in upgrade │ error │ 12 │ MRT103 │ Data permanently lost on rollback │
│ 005 │ No-op downgrade │ error │ 8 │ MRT102 │ downgrade() does nothing │
│ 006 │ INDEX without CONCURR. │ warning │ 19 │ MRT207 │ Locks table during index build │
╰──────────┴──────────────────────────┴─────────┴──────┴─────────┴────────────────────────────────────╯
2 error(s), 1 warning(s)
What gets caught
Errors (will cause data loss or a broken rollback):
op.drop_column()in upgrade — data is gone even if downgrade re-adds the columnop.drop_table()in upgrade — all rows permanently lostTRUNCATEin migrationdef downgrade(): pass— rollback silently does nothing- No
downgrade()function rename_table/rename_columnwithout reverseDROP VIEWwithout recreating in downgradeALTER TYPE ... ADD VALUE(PostgreSQL ENUM) — can't roll back once rows use the new value- Add column + migrate data + drop original in one migration
Warnings (review before deploying):
NOT NULLwithoutserver_default- Column type change
- Raw
op.execute()/context.execute()without reverse op.execute(sa.text(...))— SQL insidesa.text()wrapper now fully analyzedop.bulk_insert()without correspondingDELETEin downgrade- Bulk
UPDATEwithout a reverseUPDATEin downgrade ON DELETE CASCADEaddedCREATE INDEXwithoutCONCURRENTLY(PostgreSQL)ADD COLUMNwithDEFAULTon large tablesCREATE UNIQUE CONSTRAINTon existing dataDROP INDEXwithout recreatingDROP CONSTRAINTwithout recreatingALTER SEQUENCE/setvalNOT NULLvia raw SQL without reverseNOT NULLwithout restoringnullablein downgrade
Databases
| Static analysis | Dynamic verification | |
|---|---|---|
| PostgreSQL | Yes | Yes |
| SQLite | Yes | Yes |
| MySQL / MariaDB | Yes | Yes |
| Oracle | Yes | Yes |
| SQL Server | Yes | Yes |
pip install pytest-mrt[mysql] # PyMySQL
pip install pytest-mrt[oracle] # python-oracledb
pip install pytest-mrt[mssql] # pymssql
Auto-fix missing reverse operations
mrt fix generates missing reverse operations for both Alembic and Django migrations.
Alembic — generates a missing or stub downgrade():
mrt fix migrations/versions/0042_drop_phone.py --apply
Django — adds reverse_sql, reverse_code, and full backup/restore scaffolding for data-loss operations (RemoveField, DeleteModel):
mrt fix myapp/migrations/0042_remove_user_phone.py --apply
For RemoveField and DeleteModel, the generated code backs up data to a _mrt_backups table before the migration runs, and restores it on rollback. After deployment is confirmed stable, clean up the backup rows:
mrt clean-backups --db $DATABASE_URL
mrt clean-backups --db $DATABASE_URL --label 0042_remove_user_phone --yes
pre-commit integration
Add to .pre-commit-config.yaml to run mrt check automatically before every push:
# Alembic
- repo: https://github.com/croc100/pytest-mrt
rev: v1.3.1
hooks:
- id: mrt-check
args: [alembic/versions/]
# Django
- repo: https://github.com/croc100/pytest-mrt
rev: v1.3.1
hooks:
- id: mrt-check
args: [myapp/migrations/]
Update rev to the latest release tag. Run pre-commit autoupdate to keep it current.
Incremental CI — --since
Check only migrations added since a given revision. Keeps CI fast on large codebases:
# Alembic — pass a revision ID
mrt check migrations/versions/ --since a1b2c3d4
# Django — pass app_label.migration_name
mrt check myapp/migrations/ --since myapp.0010_add_email
CI/CD integration
Drop mrt check into any pipeline as a pre-deploy gate:
# GitHub Actions — blocks merge if unsafe migrations are detected
- name: Migration safety check
run: mrt check alembic/versions/ --strict
Full examples for GitHub Actions, GitLab CI, Jenkins, and pre-commit hooks are in examples/ci-integration/.
Docker
Run tests locally against PostgreSQL or MySQL without installing anything:
docker compose run test-postgres
docker compose run test-mysql
See docker-compose.yml for the full configuration.
Performance
| 10 migrations | 50 migrations | 100 migrations | |
|---|---|---|---|
mrt check (static, no DB) |
22 ms | 108 ms | 216 ms |
mrt fixture (SQLite) |
0.33 s | 4.3 s | 15.6 s |
Safe to run mrt check on every commit. Dynamic suite fits comfortably for projects up to ~200 migrations.
For larger codebases, use MRTConfig(skip={...}) to exclude already-reviewed revisions.
See benchmarks for methodology and PostgreSQL/MySQL numbers.
Built-in default tests (v1.1.0)
pytest-mrt automatically injects 6 safety tests into your suite when the mrt fixture is configured — no test files needed:
| Test | What it checks |
|---|---|
test_mrt_single_head |
Migration history has exactly one head |
test_mrt_upgrade |
alembic upgrade head completes without error |
test_mrt_downgrade_base |
alembic downgrade base then re-upgrade completes cleanly |
test_mrt_up_down_consistency |
Every migration is safely reversible (per-revision rollback) |
test_mrt_static_no_errors |
Zero static analysis errors in all migration files |
test_mrt_schema_matches_models |
Database schema matches ORM models after upgrade (requires target_metadata) |
To opt out of specific tests, use MRTConfig(skip_default_tests={...}).
Suppress known risks (v1.2.0)
Use # noqa: MRTxxx on any line to suppress a specific warning — the same convention as ruff and flake8:
def upgrade():
op.drop_column("users", "phone") # noqa: MRT103
To suppress all MRT warnings on a line:
op.drop_column("users", "legacy_col") # noqa
Legacy syntax # mrt: ignore is still supported for backward compatibility.
What's new in v1.2.0
- MRT rule codes (MRT101-MRT902) on all 44 patterns
# noqa: MRTxxxsuppression — ruff/flake8-compatible per-line suppression syntax- CLI refactored into
commands/subpackage mrt check --since <revision>— incremental scan; only checks migrations added since a given revision- pre-commit hook — add to
.pre-commit-config.yamlandmrt checkruns automatically before every push
Changelog
See CHANGELOG.md for the full release history.
Documentation
Full docs at croc100.github.io/pytest-mrt
- Getting started (step-by-step)
- All 44 patterns explained
- CLI & fixture reference
- Detection accuracy report — what each pattern catches and doesn't catch
- API reference — stable public API
- FAQ — timeouts, large codebases, Django, error handling
Sponsorship
pytest-mrt is MIT-licensed and free to use. If it saves you from a production incident, consider sponsoring development:
Sponsorship directly funds:
- New pattern development (Oracle, SQL Server, more Django patterns)
- Maintained compatibility with new Alembic and SQLAlchemy releases
License
MIT
Project details
Release history Release notifications | RSS feed
Download files
Download the file for your platform. If you're not sure which to choose, learn more about installing packages.
Source Distribution
Built Distribution
Filter files by name, interpreter, ABI, and platform.
If you're not sure about the file name format, learn more about wheel file names.
Copy a direct link to the current filters
File details
Details for the file pytest_mrt-1.3.1.tar.gz.
File metadata
- Download URL: pytest_mrt-1.3.1.tar.gz
- Upload date:
- Size: 155.7 kB
- Tags: Source
- Uploaded using Trusted Publishing? Yes
- Uploaded via: twine/6.1.0 CPython/3.13.13
File hashes
| Algorithm | Hash digest | |
|---|---|---|
| SHA256 |
d95e0147360c629f2632f280bfd38b2deb7f2bacf77715362841e6ff5cf5b4f5
|
|
| MD5 |
77bca8ed08cb97c3e602d21a2e88d4ec
|
|
| BLAKE2b-256 |
2aab71f8c63e4a4ce9ae8ba33f0bc6757eca430be8f1ab8cd896c650cbbcd0db
|
Provenance
The following attestation bundles were made for pytest_mrt-1.3.1.tar.gz:
Publisher:
publish.yml on croc100/pytest-mrt
-
Statement:
-
Statement type:
https://in-toto.io/Statement/v1 -
Predicate type:
https://docs.pypi.org/attestations/publish/v1 -
Subject name:
pytest_mrt-1.3.1.tar.gz -
Subject digest:
d95e0147360c629f2632f280bfd38b2deb7f2bacf77715362841e6ff5cf5b4f5 - Sigstore transparency entry: 1755585403
- Sigstore integration time:
-
Permalink:
croc100/pytest-mrt@6f05e8dedc55cb4de3c3f77a580e721d13fa394f -
Branch / Tag:
refs/heads/main - Owner: https://github.com/croc100
-
Access:
public
-
Token Issuer:
https://token.actions.githubusercontent.com -
Runner Environment:
github-hosted -
Publication workflow:
publish.yml@6f05e8dedc55cb4de3c3f77a580e721d13fa394f -
Trigger Event:
workflow_dispatch
-
Statement type:
File details
Details for the file pytest_mrt-1.3.1-py3-none-any.whl.
File metadata
- Download URL: pytest_mrt-1.3.1-py3-none-any.whl
- Upload date:
- Size: 70.6 kB
- Tags: Python 3
- Uploaded using Trusted Publishing? Yes
- Uploaded via: twine/6.1.0 CPython/3.13.13
File hashes
| Algorithm | Hash digest | |
|---|---|---|
| SHA256 |
6ee8cfc88b6460435c97def394b4853fe2c59b3a4757d0e971111d88cd3d580c
|
|
| MD5 |
4ebb24f7a0b2e3682897dfe1507e5db4
|
|
| BLAKE2b-256 |
b9eff07f8064edec6ed0f1279479257d3aa7182ac07dfb9b49dd36c326dc9d94
|
Provenance
The following attestation bundles were made for pytest_mrt-1.3.1-py3-none-any.whl:
Publisher:
publish.yml on croc100/pytest-mrt
-
Statement:
-
Statement type:
https://in-toto.io/Statement/v1 -
Predicate type:
https://docs.pypi.org/attestations/publish/v1 -
Subject name:
pytest_mrt-1.3.1-py3-none-any.whl -
Subject digest:
6ee8cfc88b6460435c97def394b4853fe2c59b3a4757d0e971111d88cd3d580c - Sigstore transparency entry: 1755585445
- Sigstore integration time:
-
Permalink:
croc100/pytest-mrt@6f05e8dedc55cb4de3c3f77a580e721d13fa394f -
Branch / Tag:
refs/heads/main - Owner: https://github.com/croc100
-
Access:
public
-
Token Issuer:
https://token.actions.githubusercontent.com -
Runner Environment:
github-hosted -
Publication workflow:
publish.yml@6f05e8dedc55cb4de3c3f77a580e721d13fa394f -
Trigger Event:
workflow_dispatch
-
Statement type: