mirror of
https://github.com/go-gitea/gitea
synced 2024-11-21 17:01:00 +01:00
099372d76c
* moved avatar to profile page * combined password change, email and account deletion into account settings page * combined totp, access tokens, linked accounts and openid into security settings page * move access tokens to applications settings page * small change to restart drone build * fix change avatar url on profile page * redirect old settings urls to new ones * enforce only one autofocus attribute on settings pages * set correct redirect status code * fmt fix
70 lines
2.1 KiB
Go
70 lines
2.1 KiB
Go
// Copyright 2017 The Gitea Authors. All rights reserved.
|
|
// Use of this source code is governed by a MIT-style
|
|
// license that can be found in the LICENSE file.
|
|
|
|
package integrations
|
|
|
|
import (
|
|
"fmt"
|
|
"net/http"
|
|
"testing"
|
|
|
|
"code.gitea.io/gitea/models"
|
|
)
|
|
|
|
func assertUserDeleted(t *testing.T, userID int64) {
|
|
models.AssertNotExistsBean(t, &models.User{ID: userID})
|
|
models.AssertNotExistsBean(t, &models.Follow{UserID: userID})
|
|
models.AssertNotExistsBean(t, &models.Follow{FollowID: userID})
|
|
models.AssertNotExistsBean(t, &models.Repository{OwnerID: userID})
|
|
models.AssertNotExistsBean(t, &models.Access{UserID: userID})
|
|
models.AssertNotExistsBean(t, &models.OrgUser{UID: userID})
|
|
models.AssertNotExistsBean(t, &models.IssueUser{UID: userID})
|
|
models.AssertNotExistsBean(t, &models.TeamUser{UID: userID})
|
|
models.AssertNotExistsBean(t, &models.Star{UID: userID})
|
|
}
|
|
|
|
func TestAdminDeleteUser(t *testing.T) {
|
|
prepareTestEnv(t)
|
|
|
|
session := loginUser(t, "user1")
|
|
|
|
csrf := GetCSRF(t, session, "/admin/users/8")
|
|
req := NewRequestWithValues(t, "POST", "/admin/users/8/delete", map[string]string{
|
|
"_csrf": csrf,
|
|
})
|
|
session.MakeRequest(t, req, http.StatusOK)
|
|
|
|
assertUserDeleted(t, 8)
|
|
models.CheckConsistencyFor(t, &models.User{})
|
|
}
|
|
|
|
func TestUserDeleteAccount(t *testing.T) {
|
|
prepareTestEnv(t)
|
|
|
|
session := loginUser(t, "user8")
|
|
csrf := GetCSRF(t, session, "/user/settings/account")
|
|
urlStr := fmt.Sprintf("/user/settings/account/delete?password=%s", userPassword)
|
|
req := NewRequestWithValues(t, "POST", urlStr, map[string]string{
|
|
"_csrf": csrf,
|
|
})
|
|
session.MakeRequest(t, req, http.StatusFound)
|
|
|
|
assertUserDeleted(t, 8)
|
|
models.CheckConsistencyFor(t, &models.User{})
|
|
}
|
|
|
|
func TestUserDeleteAccountStillOwnRepos(t *testing.T) {
|
|
prepareTestEnv(t)
|
|
|
|
session := loginUser(t, "user2")
|
|
csrf := GetCSRF(t, session, "/user/settings/account")
|
|
urlStr := fmt.Sprintf("/user/settings/account/delete?password=%s", userPassword)
|
|
req := NewRequestWithValues(t, "POST", urlStr, map[string]string{
|
|
"_csrf": csrf,
|
|
})
|
|
session.MakeRequest(t, req, http.StatusFound)
|
|
|
|
// user should not have been deleted, because the user still owns repos
|
|
models.AssertExistsAndLoadBean(t, &models.User{ID: 2})
|
|
}
|