Files
sure/test/controllers/settings/profiles_controller_test.rb
Juan José Mata 705b5a8b26 First cut of a simplified "intro" UI layout (#265)
* First cut of a simplified "intro" UI layout

* Linter

* Add guest role and intro-only access

* Fix guest role UI defaults (#940)

Use enum predicate to avoid missing role helper.

* Remove legacy user role mapping (#941)

Drop the unused user role references in role normalization
and SSO role mapping forms to avoid implying a role that
never existed.

Refs: #0

* Remove role normalization (#942)

Remove role normalization

Roles are now stored directly without legacy mappings.

* Revert role mapping logic

* Remove `normalize_role_settings`

* Remove unnecessary migration

* Make `member` the default

* Broken `.erb`

---------

Signed-off-by: Juan José Mata <juanjo.mata@gmail.com>
2026-02-09 11:09:25 +01:00

82 lines
2.6 KiB
Ruby

require "test_helper"
class Settings::ProfilesControllerTest < ActionDispatch::IntegrationTest
setup do
@admin = users(:family_admin)
@member = users(:family_member)
@intro_user = users(:intro_user)
end
test "should get show" do
sign_in @admin
get settings_profile_path
assert_response :success
end
test "intro user sees profile without settings navigation" do
sign_in @intro_user
get settings_profile_path
assert_response :success
assert_select "#mobile-settings-nav", count: 0
assert_select "h2", text: I18n.t("settings.profiles.show.household_title"), count: 0
assert_select "[data-action='app-layout#openMobileSidebar']", count: 0
assert_select "[data-action='app-layout#closeMobileSidebar']", count: 0
assert_select "[data-action='app-layout#toggleLeftSidebar']", count: 0
assert_select "[data-action='app-layout#toggleRightSidebar']", count: 0
end
test "admin can remove a family member" do
sign_in @admin
assert_difference("User.count", -1) do
delete settings_profile_path(user_id: @member)
end
assert_redirected_to settings_profile_path
assert_equal "Member removed successfully.", flash[:notice]
assert_raises(ActiveRecord::RecordNotFound) { User.find(@member.id) }
end
test "admin cannot remove themselves" do
sign_in @admin
assert_no_difference("User.count") do
delete settings_profile_path(user_id: @admin)
end
assert_redirected_to settings_profile_path
assert_equal I18n.t("settings.profiles.destroy.cannot_remove_self"), flash[:alert]
assert User.find(@admin.id)
end
test "non-admin cannot remove members" do
sign_in @member
assert_no_difference("User.count") do
delete settings_profile_path(user_id: @admin)
end
assert_redirected_to settings_profile_path
assert_equal I18n.t("settings.profiles.destroy.not_authorized"), flash[:alert]
assert User.find(@admin.id)
end
test "admin removing a family member also destroys their invitation" do
# Create an invitation for the member
invitation = @admin.family.invitations.create!(
email: @member.email,
role: "member",
inviter: @admin
)
sign_in @admin
assert_difference [ "User.count", "Invitation.count" ], -1 do
delete settings_profile_path(user_id: @member)
end
assert_redirected_to settings_profile_path
assert_equal "Member removed successfully.", flash[:notice]
assert_raises(ActiveRecord::RecordNotFound) { User.find(@member.id) }
assert_raises(ActiveRecord::RecordNotFound) { Invitation.find(invitation.id) }
end
end