Skip to main content

stapel-reviews

CI coverage pypi downloads python license llms.txt

Target-generic reviews and ratings: an author rates and reviews an opaque host-defined target (target_type + target_key), driven by a per-target-type policy registry (who may review, pre/post moderation, one-review-per-author, owner responses) whose authority questions are answered by host comm callbacks. The module owns the per-target aggregate (avg/count over published reviews) and emits a generic visibility-change fact carrying it, so a host catalog maintains its own rating projection without calling back.

Part of the Stapel framework — composable Django apps that deploy as a monolith or as microservices without changing module code.

Install

pip install stapel-reviews

At a glance

Fact Value
Version 0.2.2
Python >=3.11 (3.11, 3.12, 3.13, 3.14)
HTTP operations 5
Config axes 2
Usage surface 15
Extension points 9
Error codes 51
Fleet dependencies stapel-auth (optional) · stapel-core

Documentation

OpenAPI · capabilities.json · llms.txt (for agents)

What this is

A generic review core — Review (author + rating + body about an opaque target) and Response (the target owner's reply) — driven entirely by a per-target-type policy registry. The module ships knowing nothing about what gets reviewed: a host registers its target types (a seller, a listing, a driver, a course), each with a policy, and answers the domain questions — "may this author review?", "who owns this target?" — through comm Function callbacks, so the module never imports a host model.

Quick start

INSTALLED_APPS = [
    # ...
    "stapel_reviews",
]

# urls.py
path("reviews/", include("stapel_reviews.urls"))

Concepts

  • Target — opaque: target_type (a key the host registered) + target_key (an opaque host string — a UUID, a slug, a composite). No FK to any host model; the module is domain-blind.
  • Policy — per target type: who may review (can_review comm callback), pre/post moderation, one-review-per-author, whether owner responses are allowed (allow_response), who may moderate/respond (can_moderate comm callback).
  • Aggregate — the module owns avg/count over published reviews per target, and emits a generic fact carrying it on every visibility change, so a host catalog maintains its own rating projection (§10) without calling back.
STAPEL_REVIEWS = {
    "TARGET_TYPES": {
        "seller": {
            "can_review": "marketplace.buyer_of_seller",   # host comm Function
            "can_moderate": "marketplace.is_seller_owner",
            "moderation": "post",
            "one_per_author": True,
            "allow_response": True,
        },
        "listing": {"moderation": "pre"},
    },
}
from stapel_reviews import services

review = services.create_review(
    target_type="seller", target_key="s-42", author=user, rating=5, body="great",
)
services.moderate_review(review, actor=owner, action="hide", reason="spam")
services.respond(review, author=owner, body="thanks for the feedback")
agg = services.aggregate("seller", "s-42")   # Aggregate(avg=..., count=...)

Settings

All configuration lives in the STAPEL_REVIEWS namespace (dict setting, flat setting, or env var — resolved lazily):

Key Default Meaning
TARGET_TYPES {} The target-type registry {type: policy}, merged over the (empty) built-ins; None removes a type
MODERATION_DEFAULT "post" Default moderation mode (post/pre) for types that don't override it
RESPONSES True Whether owner responses are allowed by default
RATING_MIN 1 Inclusive minimum rating
RATING_MAX 5 Inclusive maximum rating
MODERATION_TARGET_TYPE "review" The target_type on an incoming moderation.completed verdict that means "this is about a review"

comm surface

Kind Name Contract
Emit reviews.review.published A review became visible — carries {aggregate: {avg, count}} for the host projection
Emit reviews.review.hidden A review left the visible set — carries the updated aggregate
Function reviews.aggregate {target_type, target_key} -> {avg, count}
Function reviews.aggregates_by_keys {keys, target_type?} -> {key: {avg, count}} — a Projection's live_query
Function reviews.aggregates_export {cursor?, limit?} -> {rows, cursor, total} — a Projection's source_of_truth
Function reviews.moderation_content {review_id} -> {text, title, language, media, author_id, url, …}
Consume moderation.completed {target_type, target_key, decision, …} — a platform verdict, applied to the review as the system actor
Callback (host) policy can_review {author_id, target_type, target_key} -> bool — the host answers
Callback (host) policy can_moderate {actor_id, target_type, target_key} -> bool — the host answers

Host rating projection

The two batch Functions are the halves a host Projection over reviews is declared against — one keyed read for live traffic, one snapshot for rebuild:

class ListingReviewSummaryProjection(Projection):
    consumes = ("reviews.review.published", "reviews.review.hidden")
    source_key = "target_key"
    live_query = "reviews.aggregates_by_keys"      # local mode reads through it
    source_of_truth = "reviews.aggregates_export"  # rebuild() / drift_check()

Moderation verdicts

An external moderation module owns the decision; this module owns applying it. When a case about a review resolves, moderation.completed arrives and the review is hidden (rejected) or published (approved) — needs_review and dismissed deliberately move nothing. The verdict is applied as services.SYSTEM_ACTOR, the one actor that gets past the fail-closed can_moderate gate: authorization already happened where the verdict was made, and asking a target type with no can_moderate callback would deny the platform its own decision. Redelivery is a no-op — idempotency is by state, and no table of processed event ids is kept.

Extension points

See MODULE.md — the agent-facing map of every fork-free seam (the TARGET_TYPES registry and its policy callbacks, the projection emits, the aggregate Function, serializer seams, settings).

Development

pip install -e . && pip install pytest pytest-django ruff
./setup-hooks.sh
pytest tests/

License

MIT — see LICENSE.


This page is assembled by stapel-readme from docs/readme.md plus the contract artifacts in docs/. Edit the prose in docs/readme.md; the badges, facts and links above and below it are generated — do not hand-edit README.md.

Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

stapel_reviews-0.2.2.tar.gz (60.6 kB view details)

Uploaded Source

Built Distribution

If you're not sure about the file name format, learn more about wheel file names.

stapel_reviews-0.2.2-py3-none-any.whl (60.5 kB view details)

Uploaded Python 3

File details

Details for the file stapel_reviews-0.2.2.tar.gz.

File metadata

  • Download URL: stapel_reviews-0.2.2.tar.gz
  • Upload date:
  • Size: 60.6 kB
  • Tags: Source
  • Uploaded using Trusted Publishing? Yes
  • Uploaded via: twine/7.0.0 CPython/3.13.14

File hashes

Hashes for stapel_reviews-0.2.2.tar.gz
Algorithm Hash digest
SHA256 a414594f520f0c63722ca4419b39dcbe6494841808807a7df3585bb28e260137
MD5 876b25a7852442a22efd230612fe8623
BLAKE2b-256 09a1c7c7c526e7e19324c289efebef34ed7974f97e77aaf7133f56d055e1bc1b

See more details on using hashes here.

Provenance

The following attestation bundles were made for stapel_reviews-0.2.2.tar.gz:

Publisher: publish.yml on usestapel/stapel-reviews

Attestations: Values shown here reflect the state when the release was signed and may no longer be current.

File details

Details for the file stapel_reviews-0.2.2-py3-none-any.whl.

File metadata

  • Download URL: stapel_reviews-0.2.2-py3-none-any.whl
  • Upload date:
  • Size: 60.5 kB
  • Tags: Python 3
  • Uploaded using Trusted Publishing? Yes
  • Uploaded via: twine/7.0.0 CPython/3.13.14

File hashes

Hashes for stapel_reviews-0.2.2-py3-none-any.whl
Algorithm Hash digest
SHA256 546a1fdf1104b05b4d1e0c4d9416e474b64c00e41b4221cae76cf5ac39186811
MD5 1c8680be0d415b6aa7125132ac498a08
BLAKE2b-256 473051163e0d7803ddf0037945cc41d0306bc4c45c8881d807aec8559b086f91

See more details on using hashes here.

Provenance

The following attestation bundles were made for stapel_reviews-0.2.2-py3-none-any.whl:

Publisher: publish.yml on usestapel/stapel-reviews

Attestations: Values shown here reflect the state when the release was signed and may no longer be current.

Release history Release notifications | RSS feed

0.7.0

2 files

0.6.1

2 files

0.6.0

2 files

0.5.0

2 files

0.4.0

2 files

0.3.1

2 files

0.3.0

2 files

This release

0.2.2 This release

2 files

0.2.1

2 files

0.2.0

2 files

0.1.9

2 files

0.1.8

2 files

0.1.7

2 files

0.1.6

2 files

0.1.3

2 files

0.1.2

2 files

0.1.1

2 files

0.1.0

2 files

Anthropic, PBC Visionary sponsor Bloomberg Visionary sponsor Hudson River Trading Visionary sponsor Meta Visionary sponsor NVIDIA Visionary sponsor Microsoft Sustainability sponsor Depot Continuous Integration AWS Cloud computing and Security Sponsor Datadog Monitoring Fastly CDN Google Download Analytics Sentry Error logging StatusPage Status page