* Add a trait for single_resource_admins to users factory * Add single_resource_admin authrization for Growth view * Expand GrowthController test coverage * Add single resource admin workaround to models * Add single resource admin to additional views
57 lines
1.3 KiB
Ruby
57 lines
1.3 KiB
Ruby
require "rails_helper"
|
|
|
|
RSpec.describe "/internal/tools", type: :request do
|
|
context "when the user is not an admin" do
|
|
let(:user) { create(:user) }
|
|
|
|
before do
|
|
sign_in user
|
|
end
|
|
|
|
it "blocks the request" do
|
|
expect do
|
|
get "/internal/tools"
|
|
end.to raise_error(Pundit::NotAuthorizedError)
|
|
end
|
|
end
|
|
|
|
context "when the user is a super admin" do
|
|
let(:super_admin) { create(:user, :super_admin) }
|
|
|
|
before do
|
|
sign_in super_admin
|
|
get "/internal/tools"
|
|
end
|
|
|
|
it "allows the request" do
|
|
expect(response).to have_http_status(:ok)
|
|
end
|
|
end
|
|
|
|
context "when the user is a single resource admin" do
|
|
let(:single_resource_admin) { create(:user, :single_resource_admin, resource: Tool) }
|
|
|
|
before do
|
|
sign_in single_resource_admin
|
|
get "/internal/tools"
|
|
end
|
|
|
|
it "allows the request" do
|
|
expect(response).to have_http_status(:ok)
|
|
end
|
|
end
|
|
|
|
context "when the user is the wrong single resource admin" do
|
|
let(:single_resource_admin) { create(:user, :single_resource_admin, resource: Article) }
|
|
|
|
before do
|
|
sign_in single_resource_admin
|
|
end
|
|
|
|
it "blocks the request" do
|
|
expect do
|
|
get "/internal/tools"
|
|
end.to raise_error(Pundit::NotAuthorizedError)
|
|
end
|
|
end
|
|
end
|