diff options
Diffstat (limited to 'spec/features/users')
-rw-r--r-- | spec/features/users/signup_spec.rb | 1 | ||||
-rw-r--r-- | spec/features/users/zuora_csp_spec.rb | 20 |
2 files changed, 21 insertions, 0 deletions
diff --git a/spec/features/users/signup_spec.rb b/spec/features/users/signup_spec.rb index 3eae4955167..30441dac7b6 100644 --- a/spec/features/users/signup_spec.rb +++ b/spec/features/users/signup_spec.rb @@ -341,6 +341,7 @@ RSpec.describe 'Signup' do end it 'redirects to step 2 of the signup process, sets the role and redirects back' do + stub_feature_flags(about_your_company_registration_flow: false) visit new_user_registration_path fill_in_signup_form diff --git a/spec/features/users/zuora_csp_spec.rb b/spec/features/users/zuora_csp_spec.rb new file mode 100644 index 00000000000..f3fd27d6495 --- /dev/null +++ b/spec/features/users/zuora_csp_spec.rb @@ -0,0 +1,20 @@ +# frozen_string_literal: true + +require 'spec_helper' + +RSpec.describe 'Zuora content security policy' do + let(:user) { create(:user) } + let(:project) { create(:project) } + let(:pipeline) { create(:ci_pipeline, project: project) } + + before do + project.add_developer(user) + sign_in(user) + end + + it 'has proper Content Security Policy headers' do + visit pipeline_path(pipeline) + + expect(response_headers['Content-Security-Policy']).to include('https://*.zuora.com') + end +end |