| 123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158 |
- // Copyright 2022 The Gitea Authors. All rights reserved.
- // SPDX-License-Identifier: MIT
-
- package integration
-
- import (
- "fmt"
- "net/http"
- "testing"
-
- auth_model "code.gitea.io/gitea/models/auth"
- "code.gitea.io/gitea/models/unittest"
- user_model "code.gitea.io/gitea/models/user"
- "code.gitea.io/gitea/modules/setting"
- api "code.gitea.io/gitea/modules/structs"
- "code.gitea.io/gitea/modules/test"
- "code.gitea.io/gitea/tests"
-
- "github.com/stretchr/testify/assert"
- )
-
- func TestAPIStar(t *testing.T) {
- defer tests.PrepareTestEnv(t)()
-
- user := "user1"
- repo := "user2/repo1"
-
- session := loginUser(t, user)
- token := getTokenForLoggedInUser(t, session, auth_model.AccessTokenScopeReadUser)
- tokenWithUserScope := getTokenForLoggedInUser(t, session, auth_model.AccessTokenScopeWriteUser, auth_model.AccessTokenScopeWriteRepository)
-
- t.Run("Star", func(t *testing.T) {
- defer tests.PrintCurrentTest(t)()
-
- req := NewRequest(t, "PUT", "/api/v1/user/starred/"+repo).
- AddTokenAuth(tokenWithUserScope)
- MakeRequest(t, req, http.StatusNoContent)
-
- // blocked user can't star a repo
- user34 := unittest.AssertExistsAndLoadBean(t, &user_model.User{ID: 34})
- req = NewRequest(t, "PUT", "/api/v1/user/starred/"+repo).
- AddTokenAuth(getUserToken(t, user34.Name, auth_model.AccessTokenScopeWriteRepository))
- MakeRequest(t, req, http.StatusForbidden)
- })
-
- t.Run("GetStarredRepos", func(t *testing.T) {
- defer tests.PrintCurrentTest(t)()
-
- req := NewRequest(t, "GET", fmt.Sprintf("/api/v1/users/%s/starred", user)).
- AddTokenAuth(token)
- resp := MakeRequest(t, req, http.StatusOK)
-
- assert.Equal(t, "1", resp.Header().Get("X-Total-Count"))
-
- var repos []api.Repository
- DecodeJSON(t, resp, &repos)
- assert.Len(t, repos, 1)
- assert.Equal(t, repo, repos[0].FullName)
- })
-
- t.Run("GetMyStarredRepos", func(t *testing.T) {
- defer tests.PrintCurrentTest(t)()
-
- req := NewRequest(t, "GET", "/api/v1/user/starred").
- AddTokenAuth(tokenWithUserScope)
- resp := MakeRequest(t, req, http.StatusOK)
-
- assert.Equal(t, "1", resp.Header().Get("X-Total-Count"))
-
- var repos []api.Repository
- DecodeJSON(t, resp, &repos)
- assert.Len(t, repos, 1)
- assert.Equal(t, repo, repos[0].FullName)
- })
-
- t.Run("IsStarring", func(t *testing.T) {
- defer tests.PrintCurrentTest(t)()
-
- req := NewRequest(t, "GET", "/api/v1/user/starred/"+repo).
- AddTokenAuth(tokenWithUserScope)
- MakeRequest(t, req, http.StatusNoContent)
-
- req = NewRequest(t, "GET", "/api/v1/user/starred/"+repo+"notexisting").
- AddTokenAuth(tokenWithUserScope)
- MakeRequest(t, req, http.StatusNotFound)
- })
-
- t.Run("Unstar", func(t *testing.T) {
- defer tests.PrintCurrentTest(t)()
-
- req := NewRequest(t, "DELETE", "/api/v1/user/starred/"+repo).
- AddTokenAuth(tokenWithUserScope)
- MakeRequest(t, req, http.StatusNoContent)
- })
- }
-
- func TestAPIStarDisabled(t *testing.T) {
- defer tests.PrepareTestEnv(t)()
-
- user := "user1"
- repo := "user2/repo1"
-
- session := loginUser(t, user)
- token := getTokenForLoggedInUser(t, session, auth_model.AccessTokenScopeReadUser)
- tokenWithUserScope := getTokenForLoggedInUser(t, session, auth_model.AccessTokenScopeWriteUser, auth_model.AccessTokenScopeWriteRepository)
-
- defer test.MockVariableValue(&setting.Repository.DisableStars, true)()
-
- t.Run("Star", func(t *testing.T) {
- defer tests.PrintCurrentTest(t)()
-
- req := NewRequest(t, "PUT", "/api/v1/user/starred/"+repo).
- AddTokenAuth(tokenWithUserScope)
- MakeRequest(t, req, http.StatusForbidden)
-
- user34 := unittest.AssertExistsAndLoadBean(t, &user_model.User{ID: 34})
- req = NewRequest(t, "PUT", "/api/v1/user/starred/"+repo).
- AddTokenAuth(getUserToken(t, user34.Name, auth_model.AccessTokenScopeWriteRepository))
- MakeRequest(t, req, http.StatusForbidden)
- })
-
- t.Run("GetStarredRepos", func(t *testing.T) {
- defer tests.PrintCurrentTest(t)()
-
- req := NewRequest(t, "GET", fmt.Sprintf("/api/v1/users/%s/starred", user)).
- AddTokenAuth(token)
- MakeRequest(t, req, http.StatusForbidden)
- })
-
- t.Run("GetMyStarredRepos", func(t *testing.T) {
- defer tests.PrintCurrentTest(t)()
-
- req := NewRequest(t, "GET", "/api/v1/user/starred").
- AddTokenAuth(tokenWithUserScope)
- MakeRequest(t, req, http.StatusForbidden)
- })
-
- t.Run("IsStarring", func(t *testing.T) {
- defer tests.PrintCurrentTest(t)()
-
- req := NewRequest(t, "GET", "/api/v1/user/starred/"+repo).
- AddTokenAuth(tokenWithUserScope)
- MakeRequest(t, req, http.StatusForbidden)
-
- req = NewRequest(t, "GET", "/api/v1/user/starred/"+repo+"notexisting").
- AddTokenAuth(tokenWithUserScope)
- MakeRequest(t, req, http.StatusForbidden)
- })
-
- t.Run("Unstar", func(t *testing.T) {
- defer tests.PrintCurrentTest(t)()
-
- req := NewRequest(t, "DELETE", "/api/v1/user/starred/"+repo).
- AddTokenAuth(tokenWithUserScope)
- MakeRequest(t, req, http.StatusForbidden)
- })
- }
|