#!/usr/bin/env python3
"""Verify published aggregate rows for desk log NMD-CSF-20260822.

This script checks the first-party CSV only. It does not reconstruct the
second-warehouse-versus-authorize run, and it is not a third-party reproduction.
"""

from __future__ import annotations

import csv
import pathlib
import sys

EXPECTED = [
    {
        "retrieval_state": "second_warehouse_ticket",
        "select_only_role_issued": "0",
        "certified_view_note_bound": "0",
        "sql_inspectable": "0",
    },
    {
        "retrieval_state": "authorize_in_place_note",
        "select_only_role_issued": "1",
        "certified_view_note_bound": "1",
        "sql_inspectable": "1",
    },
]


def main() -> int:
    csv_path = pathlib.Path(__file__).with_name(
        "aggregate-NMD-CSF-20260822.csv"
    )
    with csv_path.open(newline="", encoding="utf-8") as handle:
        rows = list(csv.DictReader(handle))
    if rows != EXPECTED:
        print("FAIL: published aggregate rows do not match the desk log.", file=sys.stderr)
        return 1
    print("OK: published aggregate rows match desk log NMD-CSF-20260822.")
    return 0


if __name__ == "__main__":
    raise SystemExit(main())
