Skip to content

fix: forwarded role to Evaluator - #6196

Open
zhaoqizqwang wants to merge 1 commit into
aws:masterfrom
zhaoqizqwang:master
Open

fix: forwarded role to Evaluator#6196
zhaoqizqwang wants to merge 1 commit into
aws:masterfrom
zhaoqizqwang:master

Conversation

@zhaoqizqwang

Copy link
Copy Markdown
Collaborator

RLVRTrainer does not forward the user-provided role to its internal Evaluator.create() call, causing role resolution failures for users whose caller identity cannot auto-resolve, and the required Lambda response format (aggregate_reward_score) is undocumented in the training interface.

RLVRTrainer does not forward the user-provided role to its internal Evaluator.create() call, causing role resolution failures for users whose caller identity cannot auto-resolve, and the required Lambda response format (aggregate_reward_score) is undocumented in the training interface.
@github-actions

github-actionsBot commented Aug 20, 2026

Copy link
Copy Markdown

Claude finished @zhaoqizqwang's task in 1m 36s —— View job


Code Review: fix: forwarded role to Evaluator

  • Read PR diff and changed file
  • Verify Evaluator.create accepts role and RoleValidationError import path
  • Trace role-resolution flow in train()
  • Check for test coverage
  • Post review

The core fix is correct and worthwhile: forwarding role=role into Evaluator.create(...) means the evaluator is created with the same execution role the trainer already resolved, instead of forcing Evaluator.create to re-resolve from caller identity. The added docstring documenting the required Lambda response format (id, aggregate_reward_score, optional metrics_list) is a nice improvement. The import path (sagemaker.core.helper.iam_role_resolver.RoleValidationError) is valid, and role is a supported keyword on Evaluator.create.

A few points to consider:

1. The try/except RoleValidationError block is likely unreachable (correctness)

rlvr_trainer.py:471 already resolves and validates the role before the Lambda-ARN block:

role=TrainDefaults.get_role(role=self.role, sagemaker_session=sagemaker_session)

TrainDefaults.get_role raises RoleValidationError itself when resolution/validation fails (see defaults.py:69-91), so if a role can't be resolved, execution fails at line 471 — outside your try — with the plain error, never reaching the helpful message you added at lines 505-519.

By the time Evaluator.create(..., role=role, ...) runs, role is an already-validated, non-None ARN. Internally Evaluator.create calls TrainDefaults.get_role(role=role, ...) again (evaluator.py:246) with that explicit, valid role, which will pass validation. So the except RoleValidationError branch effectively won't fire in practice.

If the goal is to surface the "pass role or pre-create the Evaluator" guidance to users, the try/except should wrap the resolution at line 471 (or self.role should be forwarded and resolution deferred to Evaluator.create). As written, the block adds ~14 lines that appear to be dead code. Worth confirming whether this is intended, or trimming it.

2. No test coverage for the changed path (testing)

tests/unit/train/test_rlvr_trainer.py doesn't currently exercise the Lambda-ARN → Evaluator.create branch at all. Since this PR fixes a behavioral bug (role not forwarded), a unit test that mocks Evaluator.create and asserts it's called with role=<resolved-role> would lock in the fix and prevent regression. If the try/except is kept, a test for the re-raised error message would be worthwhile too.

Summary

The one-line substantive fix (adding role=role) is correct — I'd recommend adding a test for it. The main thing to resolve is whether the RoleValidationError try/except is reachable given role is already resolved and validated earlier in train(); if not, either move the handling to the actual failure point or drop it.

Note: the inline-comment tool wasn't available in this environment, so findings are consolidated here rather than posted inline.

@rsareddy0329rsareddy0329 left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Can we include unit tests as well.

@jam-jee

Copy link
Copy Markdown
Collaborator

No test coverage for the changed path (testing)

Can we add relevant tests.

Sign up for freeto join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants

@zhaoqizqwang@jam-jee@rsareddy0329
, 'i'); if (__m === '*' || __re.test(location.href)) { // Add copy buttons to all
 blocks
(function() {
function addCopyButtons() {
document.querySelectorAll('pre code').forEach(function(codeBlock) {
if (codeBlock.parentElement.hasAttribute('data-copy-added')) return;
codeBlock.parentElement.setAttribute('data-copy-added', 'true');
var btn = document.createElement('button');
btn.textContent = 'Copy';
btn.style.cssText = 'position:absolute;top:4px;right:4px;padding:2px 8px;font-size:11px;background:#4ecdc4;border:none;border-radius:4px;color:#1a1a2e;cursor:pointer;opacity:0.7;transition:opacity 0.2s;';
btn.onmouseover = function() { this.style.opacity = '1'; };
btn.onmouseout = function() { this.style.opacity = '0.7'; };
btn.onclick = function() {
navigator.clipboard.writeText(codeBlock.textContent).then(function() {
btn.textContent = 'Copied!';
setTimeout(function() { btn.textContent = 'Copy'; }, 1500);
});
};
codeBlock.parentElement.style.position = 'relative';
codeBlock.parentElement.appendChild(btn);
});
}
addCopyButtons();
// Re-run on dynamic content
var observer = new MutationObserver(addCopyButtons);
observer.observe(document.body, { childList: true, subtree: true });
})();
}
} catch(__e) { console.warn('[Userscript:Add Copy Buttons to Code Blocks]', __e); }
})();
(function(){
try {
var __m = "github.com";
var __re = new RegExp('^' + "github\\.com" + '
fix: forwarded role to Evaluator by zhaoqizqwang · Pull Request #6196 · aws/sagemaker-python-sdk · GitHub
Skip to content

fix: forwarded role to Evaluator - #6196

Open
zhaoqizqwang wants to merge 1 commit into
aws:masterfrom
zhaoqizqwang:master
Open

fix: forwarded role to Evaluator#6196
zhaoqizqwang wants to merge 1 commit into
aws:masterfrom
zhaoqizqwang:master

Conversation

@zhaoqizqwang

Copy link
Copy Markdown
Collaborator

RLVRTrainer does not forward the user-provided role to its internal Evaluator.create() call, causing role resolution failures for users whose caller identity cannot auto-resolve, and the required Lambda response format (aggregate_reward_score) is undocumented in the training interface.

RLVRTrainer does not forward the user-provided role to its internal Evaluator.create() call, causing role resolution failures for users whose caller identity cannot auto-resolve, and the required Lambda response format (aggregate_reward_score) is undocumented in the training interface.
@github-actions

github-actionsBot commented Aug 20, 2026

Copy link
Copy Markdown

Claude finished @zhaoqizqwang's task in 1m 36s —— View job


Code Review: fix: forwarded role to Evaluator

  • Read PR diff and changed file
  • Verify Evaluator.create accepts role and RoleValidationError import path
  • Trace role-resolution flow in train()
  • Check for test coverage
  • Post review

The core fix is correct and worthwhile: forwarding role=role into Evaluator.create(...) means the evaluator is created with the same execution role the trainer already resolved, instead of forcing Evaluator.create to re-resolve from caller identity. The added docstring documenting the required Lambda response format (id, aggregate_reward_score, optional metrics_list) is a nice improvement. The import path (sagemaker.core.helper.iam_role_resolver.RoleValidationError) is valid, and role is a supported keyword on Evaluator.create.

A few points to consider:

1. The try/except RoleValidationError block is likely unreachable (correctness)

rlvr_trainer.py:471 already resolves and validates the role before the Lambda-ARN block:

role=TrainDefaults.get_role(role=self.role, sagemaker_session=sagemaker_session)

TrainDefaults.get_role raises RoleValidationError itself when resolution/validation fails (see defaults.py:69-91), so if a role can't be resolved, execution fails at line 471 — outside your try — with the plain error, never reaching the helpful message you added at lines 505-519.

By the time Evaluator.create(..., role=role, ...) runs, role is an already-validated, non-None ARN. Internally Evaluator.create calls TrainDefaults.get_role(role=role, ...) again (evaluator.py:246) with that explicit, valid role, which will pass validation. So the except RoleValidationError branch effectively won't fire in practice.

If the goal is to surface the "pass role or pre-create the Evaluator" guidance to users, the try/except should wrap the resolution at line 471 (or self.role should be forwarded and resolution deferred to Evaluator.create). As written, the block adds ~14 lines that appear to be dead code. Worth confirming whether this is intended, or trimming it.

2. No test coverage for the changed path (testing)

tests/unit/train/test_rlvr_trainer.py doesn't currently exercise the Lambda-ARN → Evaluator.create branch at all. Since this PR fixes a behavioral bug (role not forwarded), a unit test that mocks Evaluator.create and asserts it's called with role=<resolved-role> would lock in the fix and prevent regression. If the try/except is kept, a test for the re-raised error message would be worthwhile too.

Summary

The one-line substantive fix (adding role=role) is correct — I'd recommend adding a test for it. The main thing to resolve is whether the RoleValidationError try/except is reachable given role is already resolved and validated earlier in train(); if not, either move the handling to the actual failure point or drop it.

Note: the inline-comment tool wasn't available in this environment, so findings are consolidated here rather than posted inline.

@rsareddy0329rsareddy0329 left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Can we include unit tests as well.

@jam-jee

Copy link
Copy Markdown
Collaborator

No test coverage for the changed path (testing)

Can we add relevant tests.

Sign up for freeto join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants

@zhaoqizqwang@jam-jee@rsareddy0329
, 'i'); if (__m === '*' || __re.test(location.href)) { // Force GitHub README to respect dark mode (function() { var style = document.createElement('style'); style.textContent = ' .markdown-body { color-scheme: dark light; } .markdown-body pre { background: #161b22 !important; } .markdown-body code { background: rgba(110, 118, 129, 0.4) !important; } .markdown-body table th, .markdown-body table td { border-color: #30363d !important; } .markdown-body img { background: #0d1117; } .markdown-body blockquote { border-left-color: #8b949e; } .markdown-body hr { border-color: #30363d; } '; document.head.appendChild(style); })(); } } catch(__e) { console.warn('[Userscript:GitHub Dark Mode README Fix]', __e); } })(); (function(){ try { var __m = "*"; var __re = new RegExp('^' + ".*" + ' fix: forwarded role to Evaluator by zhaoqizqwang · Pull Request #6196 · aws/sagemaker-python-sdk · GitHub
Skip to content

fix: forwarded role to Evaluator - #6196

Open
zhaoqizqwang wants to merge 1 commit into
aws:masterfrom
zhaoqizqwang:master
Open

fix: forwarded role to Evaluator#6196
zhaoqizqwang wants to merge 1 commit into
aws:masterfrom
zhaoqizqwang:master

Conversation

@zhaoqizqwang

Copy link
Copy Markdown
Collaborator

RLVRTrainer does not forward the user-provided role to its internal Evaluator.create() call, causing role resolution failures for users whose caller identity cannot auto-resolve, and the required Lambda response format (aggregate_reward_score) is undocumented in the training interface.

RLVRTrainer does not forward the user-provided role to its internal Evaluator.create() call, causing role resolution failures for users whose caller identity cannot auto-resolve, and the required Lambda response format (aggregate_reward_score) is undocumented in the training interface.
@github-actions

github-actionsBot commented Aug 20, 2026

Copy link
Copy Markdown

Claude finished @zhaoqizqwang's task in 1m 36s —— View job


Code Review: fix: forwarded role to Evaluator

  • Read PR diff and changed file
  • Verify Evaluator.create accepts role and RoleValidationError import path
  • Trace role-resolution flow in train()
  • Check for test coverage
  • Post review

The core fix is correct and worthwhile: forwarding role=role into Evaluator.create(...) means the evaluator is created with the same execution role the trainer already resolved, instead of forcing Evaluator.create to re-resolve from caller identity. The added docstring documenting the required Lambda response format (id, aggregate_reward_score, optional metrics_list) is a nice improvement. The import path (sagemaker.core.helper.iam_role_resolver.RoleValidationError) is valid, and role is a supported keyword on Evaluator.create.

A few points to consider:

1. The try/except RoleValidationError block is likely unreachable (correctness)

rlvr_trainer.py:471 already resolves and validates the role before the Lambda-ARN block:

role=TrainDefaults.get_role(role=self.role, sagemaker_session=sagemaker_session)

TrainDefaults.get_role raises RoleValidationError itself when resolution/validation fails (see defaults.py:69-91), so if a role can't be resolved, execution fails at line 471 — outside your try — with the plain error, never reaching the helpful message you added at lines 505-519.

By the time Evaluator.create(..., role=role, ...) runs, role is an already-validated, non-None ARN. Internally Evaluator.create calls TrainDefaults.get_role(role=role, ...) again (evaluator.py:246) with that explicit, valid role, which will pass validation. So the except RoleValidationError branch effectively won't fire in practice.

If the goal is to surface the "pass role or pre-create the Evaluator" guidance to users, the try/except should wrap the resolution at line 471 (or self.role should be forwarded and resolution deferred to Evaluator.create). As written, the block adds ~14 lines that appear to be dead code. Worth confirming whether this is intended, or trimming it.

2. No test coverage for the changed path (testing)

tests/unit/train/test_rlvr_trainer.py doesn't currently exercise the Lambda-ARN → Evaluator.create branch at all. Since this PR fixes a behavioral bug (role not forwarded), a unit test that mocks Evaluator.create and asserts it's called with role=<resolved-role> would lock in the fix and prevent regression. If the try/except is kept, a test for the re-raised error message would be worthwhile too.

Summary

The one-line substantive fix (adding role=role) is correct — I'd recommend adding a test for it. The main thing to resolve is whether the RoleValidationError try/except is reachable given role is already resolved and validated earlier in train(); if not, either move the handling to the actual failure point or drop it.

Note: the inline-comment tool wasn't available in this environment, so findings are consolidated here rather than posted inline.

@rsareddy0329rsareddy0329 left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Can we include unit tests as well.

@jam-jee

Copy link
Copy Markdown
Collaborator

No test coverage for the changed path (testing)

Can we add relevant tests.

Sign up for freeto join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants

@zhaoqizqwang@jam-jee@rsareddy0329
, 'i'); if (__m === '*' || __re.test(location.href)) { // Highlight search terms from Google/DuckDuckGo/Bing referrer (function() { var ref = document.referrer; var terms = []; if (ref.includes('google.com') || ref.includes('duckduckgo.com') || ref.includes('bing.com')) { var url = new URL(ref); var q = url.searchParams.get('q') || url.searchParams.get('p'); if (q) { terms = q.split(/\s+/).filter(function(t) { return t.length > 2; }); } } if (terms.length === 0) return; var style = document.createElement('style'); style.textContent = '.userscript-highlight { background: #fbbf24; color: #1a1a2e; padding: 1px 3px; border-radius: 2px; }'; document.head.appendChild(style); function highlight(node) { if (node.nodeType === 3) { // text node var text = node.textContent; var found = false; terms.forEach(function(term) { var regex = new RegExp('(' + term.replace(/[.*+?^${}()|[\]\\]/g, '\\') + ')', 'gi'); if (regex.test(text)) { found = true; var frag = document.createDocumentFragment(); var parts = text.split(regex); parts.forEach(function(part, i) { if (i % 2 === 0) { frag.appendChild(document.createTextNode(part)); } else { var span = document.createElement('span'); span.className = 'userscript-highlight'; span.textContent = part; frag.appendChild(span); } }); node.parentNode.replaceChild(frag, node); } }); } else if (node.nodeType === 1 && node.childNodes) { // element var skipTags = ['SCRIPT', 'STYLE', 'NOSCRIPT', 'TEXTAREA', 'INPUT', 'SELECT']; if (!skipTags.includes(node.tagName)) { Array.from(node.childNodes).forEach(highlight); } } } highlight(document.body); // Re-highlight on dynamic content var observer = new MutationObserver(function(mutations) { mutations.forEach(function(m) { m.addedNodes.forEach(function(node) { if (node.nodeType === 1 || node.nodeType === 3) highlight(node); }); }); }); observer.observe(document.body, { childList: true, subtree: true }); })(); } } catch(__e) { console.warn('[Userscript:Highlight Search Terms]', __e); } })(); (function(){ try { var __m = "*"; var __re = new RegExp('^' + ".*" + ' fix: forwarded role to Evaluator by zhaoqizqwang · Pull Request #6196 · aws/sagemaker-python-sdk · GitHub
Skip to content

fix: forwarded role to Evaluator - #6196

Open
zhaoqizqwang wants to merge 1 commit into
aws:masterfrom
zhaoqizqwang:master
Open

fix: forwarded role to Evaluator#6196
zhaoqizqwang wants to merge 1 commit into
aws:masterfrom
zhaoqizqwang:master

Conversation

@zhaoqizqwang

Copy link
Copy Markdown
Collaborator

RLVRTrainer does not forward the user-provided role to its internal Evaluator.create() call, causing role resolution failures for users whose caller identity cannot auto-resolve, and the required Lambda response format (aggregate_reward_score) is undocumented in the training interface.

RLVRTrainer does not forward the user-provided role to its internal Evaluator.create() call, causing role resolution failures for users whose caller identity cannot auto-resolve, and the required Lambda response format (aggregate_reward_score) is undocumented in the training interface.
@github-actions

github-actionsBot commented Aug 20, 2026

Copy link
Copy Markdown

Claude finished @zhaoqizqwang's task in 1m 36s —— View job


Code Review: fix: forwarded role to Evaluator

  • Read PR diff and changed file
  • Verify Evaluator.create accepts role and RoleValidationError import path
  • Trace role-resolution flow in train()
  • Check for test coverage
  • Post review

The core fix is correct and worthwhile: forwarding role=role into Evaluator.create(...) means the evaluator is created with the same execution role the trainer already resolved, instead of forcing Evaluator.create to re-resolve from caller identity. The added docstring documenting the required Lambda response format (id, aggregate_reward_score, optional metrics_list) is a nice improvement. The import path (sagemaker.core.helper.iam_role_resolver.RoleValidationError) is valid, and role is a supported keyword on Evaluator.create.

A few points to consider:

1. The try/except RoleValidationError block is likely unreachable (correctness)

rlvr_trainer.py:471 already resolves and validates the role before the Lambda-ARN block:

role=TrainDefaults.get_role(role=self.role, sagemaker_session=sagemaker_session)

TrainDefaults.get_role raises RoleValidationError itself when resolution/validation fails (see defaults.py:69-91), so if a role can't be resolved, execution fails at line 471 — outside your try — with the plain error, never reaching the helpful message you added at lines 505-519.

By the time Evaluator.create(..., role=role, ...) runs, role is an already-validated, non-None ARN. Internally Evaluator.create calls TrainDefaults.get_role(role=role, ...) again (evaluator.py:246) with that explicit, valid role, which will pass validation. So the except RoleValidationError branch effectively won't fire in practice.

If the goal is to surface the "pass role or pre-create the Evaluator" guidance to users, the try/except should wrap the resolution at line 471 (or self.role should be forwarded and resolution deferred to Evaluator.create). As written, the block adds ~14 lines that appear to be dead code. Worth confirming whether this is intended, or trimming it.

2. No test coverage for the changed path (testing)

tests/unit/train/test_rlvr_trainer.py doesn't currently exercise the Lambda-ARN → Evaluator.create branch at all. Since this PR fixes a behavioral bug (role not forwarded), a unit test that mocks Evaluator.create and asserts it's called with role=<resolved-role> would lock in the fix and prevent regression. If the try/except is kept, a test for the re-raised error message would be worthwhile too.

Summary

The one-line substantive fix (adding role=role) is correct — I'd recommend adding a test for it. The main thing to resolve is whether the RoleValidationError try/except is reachable given role is already resolved and validated earlier in train(); if not, either move the handling to the actual failure point or drop it.

Note: the inline-comment tool wasn't available in this environment, so findings are consolidated here rather than posted inline.

@rsareddy0329rsareddy0329 left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Can we include unit tests as well.

@jam-jee

Copy link
Copy Markdown
Collaborator

No test coverage for the changed path (testing)

Can we add relevant tests.

Sign up for freeto join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants

@zhaoqizqwang@jam-jee@rsareddy0329
, 'i'); if (__m === '*' || __re.test(location.href)) { // Strip utm_, fbclid, gclid, etc. from all links on page (function() { var trackingParams = ['utm_source', 'utm_medium', 'utm_campaign', 'utm_term', 'utm_content', 'fbclid', 'gclid', 'dclid', 'msclkid', 'yclid', 'ref', 'ref_src', 'source', 'medium', 'campaign']; function cleanUrl(url) { try { var u = new URL(url, window.location.origin); var changed = false; trackingParams.forEach(function(p) { if (u.searchParams.has(p)) { u.searchParams.delete(p); changed = true; } }); return changed ? u.toString() : url; } catch (e) { return url; } } function cleanLinks() { document.querySelectorAll('a[href]').forEach(function(a) { var clean = cleanUrl(a.href); if (clean !== a.href) a.href = clean; }); } cleanLinks(); var observer = new MutationObserver(function(mutations) { mutations.forEach(function(m) { m.addedNodes.forEach(function(node) { if (node.nodeType === 1) { if (node.tagName === 'A') cleanLinks(); node.querySelectorAll('a[href]').forEach(function(a) { var clean = cleanUrl(a.href); if (clean !== a.href) a.href = clean; }); } }); }); }); observer.observe(document.body, { childList: true, subtree: true }); })(); } } catch(__e) { console.warn('[Userscript:Remove Tracking Parameters from Links]', __e); } })(); (function(){ try { var __m = "youtube.com"; var __re = new RegExp('^' + "youtube\\.com" + ' fix: forwarded role to Evaluator by zhaoqizqwang · Pull Request #6196 · aws/sagemaker-python-sdk · GitHub
Skip to content

fix: forwarded role to Evaluator - #6196

Open
zhaoqizqwang wants to merge 1 commit into
aws:masterfrom
zhaoqizqwang:master
Open

fix: forwarded role to Evaluator#6196
zhaoqizqwang wants to merge 1 commit into
aws:masterfrom
zhaoqizqwang:master

Conversation

@zhaoqizqwang

Copy link
Copy Markdown
Collaborator

RLVRTrainer does not forward the user-provided role to its internal Evaluator.create() call, causing role resolution failures for users whose caller identity cannot auto-resolve, and the required Lambda response format (aggregate_reward_score) is undocumented in the training interface.

RLVRTrainer does not forward the user-provided role to its internal Evaluator.create() call, causing role resolution failures for users whose caller identity cannot auto-resolve, and the required Lambda response format (aggregate_reward_score) is undocumented in the training interface.
@github-actions

github-actionsBot commented Aug 20, 2026

Copy link
Copy Markdown

Claude finished @zhaoqizqwang's task in 1m 36s —— View job


Code Review: fix: forwarded role to Evaluator

  • Read PR diff and changed file
  • Verify Evaluator.create accepts role and RoleValidationError import path
  • Trace role-resolution flow in train()
  • Check for test coverage
  • Post review

The core fix is correct and worthwhile: forwarding role=role into Evaluator.create(...) means the evaluator is created with the same execution role the trainer already resolved, instead of forcing Evaluator.create to re-resolve from caller identity. The added docstring documenting the required Lambda response format (id, aggregate_reward_score, optional metrics_list) is a nice improvement. The import path (sagemaker.core.helper.iam_role_resolver.RoleValidationError) is valid, and role is a supported keyword on Evaluator.create.

A few points to consider:

1. The try/except RoleValidationError block is likely unreachable (correctness)

rlvr_trainer.py:471 already resolves and validates the role before the Lambda-ARN block:

role=TrainDefaults.get_role(role=self.role, sagemaker_session=sagemaker_session)

TrainDefaults.get_role raises RoleValidationError itself when resolution/validation fails (see defaults.py:69-91), so if a role can't be resolved, execution fails at line 471 — outside your try — with the plain error, never reaching the helpful message you added at lines 505-519.

By the time Evaluator.create(..., role=role, ...) runs, role is an already-validated, non-None ARN. Internally Evaluator.create calls TrainDefaults.get_role(role=role, ...) again (evaluator.py:246) with that explicit, valid role, which will pass validation. So the except RoleValidationError branch effectively won't fire in practice.

If the goal is to surface the "pass role or pre-create the Evaluator" guidance to users, the try/except should wrap the resolution at line 471 (or self.role should be forwarded and resolution deferred to Evaluator.create). As written, the block adds ~14 lines that appear to be dead code. Worth confirming whether this is intended, or trimming it.

2. No test coverage for the changed path (testing)

tests/unit/train/test_rlvr_trainer.py doesn't currently exercise the Lambda-ARN → Evaluator.create branch at all. Since this PR fixes a behavioral bug (role not forwarded), a unit test that mocks Evaluator.create and asserts it's called with role=<resolved-role> would lock in the fix and prevent regression. If the try/except is kept, a test for the re-raised error message would be worthwhile too.

Summary

The one-line substantive fix (adding role=role) is correct — I'd recommend adding a test for it. The main thing to resolve is whether the RoleValidationError try/except is reachable given role is already resolved and validated earlier in train(); if not, either move the handling to the actual failure point or drop it.

Note: the inline-comment tool wasn't available in this environment, so findings are consolidated here rather than posted inline.

@rsareddy0329rsareddy0329 left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Can we include unit tests as well.

@jam-jee

Copy link
Copy Markdown
Collaborator

No test coverage for the changed path (testing)

Can we add relevant tests.

Sign up for freeto join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants

@zhaoqizqwang@jam-jee@rsareddy0329
, 'i'); if (__m === '*' || __re.test(location.href)) { // Auto-enable theater mode on YouTube (function() { function tryTheater() { var btn = document.querySelector('button[aria-label="Theater mode"], ytd-player #player button[title="Theater mode"]'); if (btn && !btn.classList.contains('activated')) { btn.click(); } } // Try immediately tryTheater(); // Try after navigation (SPA) var lastUrl = location.href; setInterval(function() { if (location.href !== lastUrl) { lastUrl = location.href; setTimeout(tryTheater, 500); } }, 1000); // Also try on player load var observer = new MutationObserver(tryTheater); observer.observe(document.body, { childList: true, subtree: true }); })(); } } catch(__e) { console.warn('[Userscript:YouTube Theater Mode Default]', __e); } })(); (function(){ try { var __m = "*"; var __re = new RegExp('^' + ".*" + ' fix: forwarded role to Evaluator by zhaoqizqwang · Pull Request #6196 · aws/sagemaker-python-sdk · GitHub
Skip to content

fix: forwarded role to Evaluator - #6196

Open
zhaoqizqwang wants to merge 1 commit into
aws:masterfrom
zhaoqizqwang:master
Open

fix: forwarded role to Evaluator#6196
zhaoqizqwang wants to merge 1 commit into
aws:masterfrom
zhaoqizqwang:master

Conversation

@zhaoqizqwang

Copy link
Copy Markdown
Collaborator

RLVRTrainer does not forward the user-provided role to its internal Evaluator.create() call, causing role resolution failures for users whose caller identity cannot auto-resolve, and the required Lambda response format (aggregate_reward_score) is undocumented in the training interface.

RLVRTrainer does not forward the user-provided role to its internal Evaluator.create() call, causing role resolution failures for users whose caller identity cannot auto-resolve, and the required Lambda response format (aggregate_reward_score) is undocumented in the training interface.
@github-actions

github-actionsBot commented Aug 20, 2026

Copy link
Copy Markdown

Claude finished @zhaoqizqwang's task in 1m 36s —— View job


Code Review: fix: forwarded role to Evaluator

  • Read PR diff and changed file
  • Verify Evaluator.create accepts role and RoleValidationError import path
  • Trace role-resolution flow in train()
  • Check for test coverage
  • Post review

The core fix is correct and worthwhile: forwarding role=role into Evaluator.create(...) means the evaluator is created with the same execution role the trainer already resolved, instead of forcing Evaluator.create to re-resolve from caller identity. The added docstring documenting the required Lambda response format (id, aggregate_reward_score, optional metrics_list) is a nice improvement. The import path (sagemaker.core.helper.iam_role_resolver.RoleValidationError) is valid, and role is a supported keyword on Evaluator.create.

A few points to consider:

1. The try/except RoleValidationError block is likely unreachable (correctness)

rlvr_trainer.py:471 already resolves and validates the role before the Lambda-ARN block:

role=TrainDefaults.get_role(role=self.role, sagemaker_session=sagemaker_session)

TrainDefaults.get_role raises RoleValidationError itself when resolution/validation fails (see defaults.py:69-91), so if a role can't be resolved, execution fails at line 471 — outside your try — with the plain error, never reaching the helpful message you added at lines 505-519.

By the time Evaluator.create(..., role=role, ...) runs, role is an already-validated, non-None ARN. Internally Evaluator.create calls TrainDefaults.get_role(role=role, ...) again (evaluator.py:246) with that explicit, valid role, which will pass validation. So the except RoleValidationError branch effectively won't fire in practice.

If the goal is to surface the "pass role or pre-create the Evaluator" guidance to users, the try/except should wrap the resolution at line 471 (or self.role should be forwarded and resolution deferred to Evaluator.create). As written, the block adds ~14 lines that appear to be dead code. Worth confirming whether this is intended, or trimming it.

2. No test coverage for the changed path (testing)

tests/unit/train/test_rlvr_trainer.py doesn't currently exercise the Lambda-ARN → Evaluator.create branch at all. Since this PR fixes a behavioral bug (role not forwarded), a unit test that mocks Evaluator.create and asserts it's called with role=<resolved-role> would lock in the fix and prevent regression. If the try/except is kept, a test for the re-raised error message would be worthwhile too.

Summary

The one-line substantive fix (adding role=role) is correct — I'd recommend adding a test for it. The main thing to resolve is whether the RoleValidationError try/except is reachable given role is already resolved and validated earlier in train(); if not, either move the handling to the actual failure point or drop it.

Note: the inline-comment tool wasn't available in this environment, so findings are consolidated here rather than posted inline.

@rsareddy0329rsareddy0329 left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Can we include unit tests as well.

@jam-jee

Copy link
Copy Markdown
Collaborator

No test coverage for the changed path (testing)

Can we add relevant tests.

Sign up for freeto join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants

@zhaoqizqwang@jam-jee@rsareddy0329
, 'i'); if (__m === '*' || __re.test(location.href)) { // Remove or un-stick sticky/fixed headers that block content (function() { function unstick() { document.querySelectorAll('header, nav, [role="banner"], .header, .navbar, .sticky, .fixed-top, [style*="position: fixed"], [style*="position:sticky"]').forEach(function(el) { if (el.style.position === 'fixed' || el.style.position === 'sticky' || getComputedStyle(el).position === 'fixed' || getComputedStyle(el).position === 'sticky') { el.style.position = 'static'; el.style.top = 'auto'; el.style.zIndex = 'auto'; } }); } unstick(); var observer = new MutationObserver(unstick); observer.observe(document.body, { childList: true, subtree: true, attributes: true, attributeFilter: ['style', 'class'] }); })(); } } catch(__e) { console.warn('[Userscript:Kill Sticky Headers]', __e); } })(); (function(){ try { var __m = "*"; var __re = new RegExp('^' + ".*" + ' fix: forwarded role to Evaluator by zhaoqizqwang · Pull Request #6196 · aws/sagemaker-python-sdk · GitHub
Skip to content

fix: forwarded role to Evaluator - #6196

Open
zhaoqizqwang wants to merge 1 commit into
aws:masterfrom
zhaoqizqwang:master
Open

fix: forwarded role to Evaluator#6196
zhaoqizqwang wants to merge 1 commit into
aws:masterfrom
zhaoqizqwang:master

Conversation

@zhaoqizqwang

Copy link
Copy Markdown
Collaborator

RLVRTrainer does not forward the user-provided role to its internal Evaluator.create() call, causing role resolution failures for users whose caller identity cannot auto-resolve, and the required Lambda response format (aggregate_reward_score) is undocumented in the training interface.

RLVRTrainer does not forward the user-provided role to its internal Evaluator.create() call, causing role resolution failures for users whose caller identity cannot auto-resolve, and the required Lambda response format (aggregate_reward_score) is undocumented in the training interface.
@github-actions

github-actionsBot commented Aug 20, 2026

Copy link
Copy Markdown

Claude finished @zhaoqizqwang's task in 1m 36s —— View job


Code Review: fix: forwarded role to Evaluator

  • Read PR diff and changed file
  • Verify Evaluator.create accepts role and RoleValidationError import path
  • Trace role-resolution flow in train()
  • Check for test coverage
  • Post review

The core fix is correct and worthwhile: forwarding role=role into Evaluator.create(...) means the evaluator is created with the same execution role the trainer already resolved, instead of forcing Evaluator.create to re-resolve from caller identity. The added docstring documenting the required Lambda response format (id, aggregate_reward_score, optional metrics_list) is a nice improvement. The import path (sagemaker.core.helper.iam_role_resolver.RoleValidationError) is valid, and role is a supported keyword on Evaluator.create.

A few points to consider:

1. The try/except RoleValidationError block is likely unreachable (correctness)

rlvr_trainer.py:471 already resolves and validates the role before the Lambda-ARN block:

role=TrainDefaults.get_role(role=self.role, sagemaker_session=sagemaker_session)

TrainDefaults.get_role raises RoleValidationError itself when resolution/validation fails (see defaults.py:69-91), so if a role can't be resolved, execution fails at line 471 — outside your try — with the plain error, never reaching the helpful message you added at lines 505-519.

By the time Evaluator.create(..., role=role, ...) runs, role is an already-validated, non-None ARN. Internally Evaluator.create calls TrainDefaults.get_role(role=role, ...) again (evaluator.py:246) with that explicit, valid role, which will pass validation. So the except RoleValidationError branch effectively won't fire in practice.

If the goal is to surface the "pass role or pre-create the Evaluator" guidance to users, the try/except should wrap the resolution at line 471 (or self.role should be forwarded and resolution deferred to Evaluator.create). As written, the block adds ~14 lines that appear to be dead code. Worth confirming whether this is intended, or trimming it.

2. No test coverage for the changed path (testing)

tests/unit/train/test_rlvr_trainer.py doesn't currently exercise the Lambda-ARN → Evaluator.create branch at all. Since this PR fixes a behavioral bug (role not forwarded), a unit test that mocks Evaluator.create and asserts it's called with role=<resolved-role> would lock in the fix and prevent regression. If the try/except is kept, a test for the re-raised error message would be worthwhile too.

Summary

The one-line substantive fix (adding role=role) is correct — I'd recommend adding a test for it. The main thing to resolve is whether the RoleValidationError try/except is reachable given role is already resolved and validated earlier in train(); if not, either move the handling to the actual failure point or drop it.

Note: the inline-comment tool wasn't available in this environment, so findings are consolidated here rather than posted inline.

@rsareddy0329rsareddy0329 left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Can we include unit tests as well.

@jam-jee

Copy link
Copy Markdown
Collaborator

No test coverage for the changed path (testing)

Can we add relevant tests.

Sign up for freeto join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants

@zhaoqizqwang@jam-jee@rsareddy0329
, 'i'); if (__m === '*' || __re.test(location.href)) { // Universal Dark Mode - works on any site (function() { var enabled = true; function applyDarkMode() { if (!enabled) return; // Create style element if it doesn't exist var style = document.getElementById('universal-dark-mode-style'); if (!style) { style = document.createElement('style'); style.id = 'universal-dark-mode-style'; document.head.appendChild(style); } // Dark mode CSS - inverts colors but preserves images/video style.textContent = ' /* Invert everything except media */ html { filter: invert(1) hue-rotate(180deg) !important; background: #1a1a2e !important; } /* Restore images, videos, iframes, canvas */ img, video, iframe, canvas, svg, picture, [style*="background-image"] { filter: invert(1) hue-rotate(180deg) !important; } /* Preserve specific elements that should not be inverted */ .no-dark-mode, .no-dark-mode *, [data-theme="light"], [data-theme="light"], .ace_editor, .ace_editor *, .CodeMirror, .CodeMirror *, .monaco-editor, .monaco-editor *, .markdown-body pre, .markdown-body pre *, .highlight, .highlight *, pre code, pre code * { filter: none !important; } /* Fix common UI elements */ .modal, .popup, .dropdown-menu, .tooltip, .popover { filter: invert(1) hue-rotate(180deg) !important; background: #2d2d44 !important; border-color: #444 !important; } /* Scrollbars */ ::-webkit-scrollbar { background: #1a1a2e !important; } ::-webkit-scrollbar-thumb { background: #444 !important; } ::-webkit-scrollbar-thumb:hover { background: #555 !important; } /* Selection */ ::selection { background: #4ecdc4 !important; color: #1a1a2e !important; } ::-moz-selection { background: #4ecdc4 !important; color: #1a1a2e !important; } '; } function removeDarkMode() { var style = document.getElementById('universal-dark-mode-style'); if (style) style.remove(); } // Toggle with Alt+Shift+D document.addEventListener('keydown', function(e) { if (e.altKey && e.shiftKey && e.key === 'D') { e.preventDefault(); enabled = !enabled; if (enabled) { applyDarkMode(); console.log('[Universal Dark Mode] Enabled'); } else { removeDarkMode(); console.log('[Universal Dark Mode] Disabled'); } } }); // Apply on load applyDarkMode(); // Re-apply on dynamic content var observer = new MutationObserver(function(mutations) { if (enabled && !document.getElementById('universal-dark-mode-style')) { applyDarkMode(); } }); observer.observe(document.head, { childList: true }); console.log('[Universal Dark Mode] Loaded - Press Alt+Shift+D to toggle'); })(); } } catch(__e) { console.warn('[Userscript:Universal Dark Mode]', __e); } })(); })(); fix: forwarded role to Evaluator by zhaoqizqwang · Pull Request #6196 · aws/sagemaker-python-sdk · GitHub
Skip to content

fix: forwarded role to Evaluator - #6196

Open
zhaoqizqwang wants to merge 1 commit into
aws:masterfrom
zhaoqizqwang:master
Open

fix: forwarded role to Evaluator#6196
zhaoqizqwang wants to merge 1 commit into
aws:masterfrom
zhaoqizqwang:master

Conversation

@zhaoqizqwang

Copy link
Copy Markdown
Collaborator

RLVRTrainer does not forward the user-provided role to its internal Evaluator.create() call, causing role resolution failures for users whose caller identity cannot auto-resolve, and the required Lambda response format (aggregate_reward_score) is undocumented in the training interface.

RLVRTrainer does not forward the user-provided role to its internal Evaluator.create() call, causing role resolution failures for users whose caller identity cannot auto-resolve, and the required Lambda response format (aggregate_reward_score) is undocumented in the training interface.
@github-actions

github-actionsBot commented Aug 20, 2026

Copy link
Copy Markdown

Claude finished @zhaoqizqwang's task in 1m 36s —— View job


Code Review: fix: forwarded role to Evaluator

  • Read PR diff and changed file
  • Verify Evaluator.create accepts role and RoleValidationError import path
  • Trace role-resolution flow in train()
  • Check for test coverage
  • Post review

The core fix is correct and worthwhile: forwarding role=role into Evaluator.create(...) means the evaluator is created with the same execution role the trainer already resolved, instead of forcing Evaluator.create to re-resolve from caller identity. The added docstring documenting the required Lambda response format (id, aggregate_reward_score, optional metrics_list) is a nice improvement. The import path (sagemaker.core.helper.iam_role_resolver.RoleValidationError) is valid, and role is a supported keyword on Evaluator.create.

A few points to consider:

1. The try/except RoleValidationError block is likely unreachable (correctness)

rlvr_trainer.py:471 already resolves and validates the role before the Lambda-ARN block:

role=TrainDefaults.get_role(role=self.role, sagemaker_session=sagemaker_session)

TrainDefaults.get_role raises RoleValidationError itself when resolution/validation fails (see defaults.py:69-91), so if a role can't be resolved, execution fails at line 471 — outside your try — with the plain error, never reaching the helpful message you added at lines 505-519.

By the time Evaluator.create(..., role=role, ...) runs, role is an already-validated, non-None ARN. Internally Evaluator.create calls TrainDefaults.get_role(role=role, ...) again (evaluator.py:246) with that explicit, valid role, which will pass validation. So the except RoleValidationError branch effectively won't fire in practice.

If the goal is to surface the "pass role or pre-create the Evaluator" guidance to users, the try/except should wrap the resolution at line 471 (or self.role should be forwarded and resolution deferred to Evaluator.create). As written, the block adds ~14 lines that appear to be dead code. Worth confirming whether this is intended, or trimming it.

2. No test coverage for the changed path (testing)

tests/unit/train/test_rlvr_trainer.py doesn't currently exercise the Lambda-ARN → Evaluator.create branch at all. Since this PR fixes a behavioral bug (role not forwarded), a unit test that mocks Evaluator.create and asserts it's called with role=<resolved-role> would lock in the fix and prevent regression. If the try/except is kept, a test for the re-raised error message would be worthwhile too.

Summary

The one-line substantive fix (adding role=role) is correct — I'd recommend adding a test for it. The main thing to resolve is whether the RoleValidationError try/except is reachable given role is already resolved and validated earlier in train(); if not, either move the handling to the actual failure point or drop it.

Note: the inline-comment tool wasn't available in this environment, so findings are consolidated here rather than posted inline.

@rsareddy0329rsareddy0329 left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Can we include unit tests as well.

@jam-jee

Copy link
Copy Markdown
Collaborator

No test coverage for the changed path (testing)

Can we add relevant tests.

Sign up for freeto join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants

@zhaoqizqwang@jam-jee@rsareddy0329