summaryrefslogtreecommitdiff
path: root/spec/services/todos/destroy/confidential_issue_service_spec.rb
blob: 9f7e656f7d33e05e2afaf03231be9da78b15035b (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
# frozen_string_literal: true

require 'spec_helper'

describe Todos::Destroy::ConfidentialIssueService do
  let(:project)        { create(:project, :public) }
  let(:user)           { create(:user) }
  let(:author)         { create(:user) }
  let(:assignee)       { create(:user) }
  let(:guest)          { create(:user) }
  let(:project_member) { create(:user) }
  let(:issue_1)        { create(:issue, :confidential, project: project, author: author, assignees: [assignee]) }

  describe '#execute' do
    before do
      project.add_developer(project_member)
      project.add_guest(guest)

      # todos not to be deleted
      create(:todo, user: project_member, target: issue_1, project: project)
      create(:todo, user: author, target: issue_1, project: project)
      create(:todo, user: assignee, target: issue_1, project: project)
      create(:todo, user: user, project: project)
      # Todos to be deleted
      create(:todo, user: guest, target: issue_1, project: project)
      create(:todo, user: user, target: issue_1, project: project)
    end

    subject { described_class.new(issue_id: issue_1.id).execute }

    context 'when issue_id parameter is present' do
      context 'when provided issue is confidential' do
        it 'removes issue todos for users who can not access the confidential issue' do
          expect { subject }.to change { Todo.count }.from(6).to(4)
        end
      end

      context 'when provided issue is not confidential' do
        it 'does not remove any todos' do
          issue_1.update(confidential: false)

          expect { subject }.not_to change { Todo.count }
        end
      end
    end

    context 'when project_id parameter is present' do
      subject { described_class.new(issue_id: nil, project_id: project.id).execute }

      it 'removes issues todos for users that cannot access confidential issues' do
        issue_2 = create(:issue, :confidential, project: project)
        issue_3 = create(:issue, :confidential, project: project, author: author, assignees: [assignee])
        issue_4 = create(:issue, project: project)
        # Todos not to be deleted
        create(:todo, user: guest, target: issue_1, project: project)
        create(:todo, user: assignee, target: issue_1, project: project)
        create(:todo, user: project_member, target: issue_2, project: project)
        create(:todo, user: author, target: issue_3, project: project)
        create(:todo, user: user, target: issue_4, project: project)
        create(:todo, user: user, project: project)
        # Todos to be deleted
        create(:todo, user: user, target: issue_1, project: project)
        create(:todo, user: guest, target: issue_2, project: project)

        expect { subject }.to change { Todo.count }.from(14).to(10)
      end
    end
  end
end