2025-12-18 21:48:41 +01:00
|
|
|
import pytest
|
2025-12-18 22:08:31 +01:00
|
|
|
import uuid
|
2025-12-18 21:48:41 +01:00
|
|
|
|
2025-12-18 22:24:46 +01:00
|
|
|
from auth import COOKIE_NAME
|
|
|
|
|
|
2025-12-18 21:48:41 +01:00
|
|
|
|
2025-12-18 22:08:31 +01:00
|
|
|
def unique_email(prefix: str = "counter") -> str:
|
|
|
|
|
"""Generate a unique email for tests sharing the same database."""
|
|
|
|
|
return f"{prefix}-{uuid.uuid4().hex[:8]}@example.com"
|
2025-12-18 21:48:41 +01:00
|
|
|
|
|
|
|
|
|
2025-12-18 22:08:31 +01:00
|
|
|
# Protected endpoint tests - without auth
|
|
|
|
|
@pytest.mark.asyncio
|
|
|
|
|
async def test_get_counter_requires_auth(client):
|
|
|
|
|
response = await client.get("/api/counter")
|
2025-12-18 22:24:46 +01:00
|
|
|
assert response.status_code == 401
|
2025-12-18 21:48:41 +01:00
|
|
|
|
|
|
|
|
|
2025-12-18 22:08:31 +01:00
|
|
|
@pytest.mark.asyncio
|
|
|
|
|
async def test_increment_counter_requires_auth(client):
|
|
|
|
|
response = await client.post("/api/counter/increment")
|
2025-12-18 22:24:46 +01:00
|
|
|
assert response.status_code == 401
|
2025-12-18 22:08:31 +01:00
|
|
|
|
2025-12-18 21:48:41 +01:00
|
|
|
|
2025-12-18 22:08:31 +01:00
|
|
|
@pytest.mark.asyncio
|
2025-12-18 22:24:46 +01:00
|
|
|
async def test_get_counter_invalid_cookie(client_factory):
|
|
|
|
|
async with client_factory.create(cookies={COOKIE_NAME: "invalidtoken"}) as authed:
|
|
|
|
|
response = await authed.get("/api/counter")
|
2025-12-18 22:08:31 +01:00
|
|
|
assert response.status_code == 401
|
2025-12-18 21:48:41 +01:00
|
|
|
|
|
|
|
|
|
|
|
|
|
@pytest.mark.asyncio
|
2025-12-18 22:24:46 +01:00
|
|
|
async def test_increment_counter_invalid_cookie(client_factory):
|
|
|
|
|
async with client_factory.create(cookies={COOKIE_NAME: "invalidtoken"}) as authed:
|
|
|
|
|
response = await authed.post("/api/counter/increment")
|
2025-12-18 22:08:31 +01:00
|
|
|
assert response.status_code == 401
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
# Authenticated counter tests
|
|
|
|
|
@pytest.mark.asyncio
|
2025-12-18 22:24:46 +01:00
|
|
|
async def test_get_counter_authenticated(client_factory):
|
|
|
|
|
reg = await client_factory.post(
|
|
|
|
|
"/api/auth/register",
|
|
|
|
|
json={"email": unique_email(), "password": "testpass123"},
|
|
|
|
|
)
|
|
|
|
|
cookies = dict(reg.cookies)
|
|
|
|
|
|
|
|
|
|
async with client_factory.create(cookies=cookies) as authed:
|
|
|
|
|
response = await authed.get("/api/counter")
|
|
|
|
|
|
2025-12-18 21:48:41 +01:00
|
|
|
assert response.status_code == 200
|
2025-12-18 22:08:31 +01:00
|
|
|
assert "value" in response.json()
|
2025-12-18 21:48:41 +01:00
|
|
|
|
|
|
|
|
|
|
|
|
|
@pytest.mark.asyncio
|
2025-12-18 22:24:46 +01:00
|
|
|
async def test_increment_counter(client_factory):
|
|
|
|
|
reg = await client_factory.post(
|
|
|
|
|
"/api/auth/register",
|
|
|
|
|
json={"email": unique_email(), "password": "testpass123"},
|
|
|
|
|
)
|
|
|
|
|
cookies = dict(reg.cookies)
|
2025-12-18 22:08:31 +01:00
|
|
|
|
2025-12-18 22:24:46 +01:00
|
|
|
async with client_factory.create(cookies=cookies) as authed:
|
|
|
|
|
# Get current value
|
|
|
|
|
before = await authed.get("/api/counter")
|
|
|
|
|
before_value = before.json()["value"]
|
|
|
|
|
|
|
|
|
|
# Increment
|
|
|
|
|
response = await authed.post("/api/counter/increment")
|
|
|
|
|
assert response.status_code == 200
|
|
|
|
|
assert response.json()["value"] == before_value + 1
|
2025-12-18 21:48:41 +01:00
|
|
|
|
|
|
|
|
|
|
|
|
|
@pytest.mark.asyncio
|
2025-12-18 22:24:46 +01:00
|
|
|
async def test_increment_counter_multiple(client_factory):
|
|
|
|
|
reg = await client_factory.post(
|
|
|
|
|
"/api/auth/register",
|
|
|
|
|
json={"email": unique_email(), "password": "testpass123"},
|
|
|
|
|
)
|
|
|
|
|
cookies = dict(reg.cookies)
|
2025-12-18 22:08:31 +01:00
|
|
|
|
2025-12-18 22:24:46 +01:00
|
|
|
async with client_factory.create(cookies=cookies) as authed:
|
|
|
|
|
# Get starting value
|
|
|
|
|
before = await authed.get("/api/counter")
|
|
|
|
|
start = before.json()["value"]
|
|
|
|
|
|
|
|
|
|
# Increment 3 times
|
|
|
|
|
await authed.post("/api/counter/increment")
|
|
|
|
|
await authed.post("/api/counter/increment")
|
|
|
|
|
response = await authed.post("/api/counter/increment")
|
|
|
|
|
|
|
|
|
|
assert response.json()["value"] == start + 3
|
2025-12-18 21:48:41 +01:00
|
|
|
|
|
|
|
|
|
|
|
|
|
@pytest.mark.asyncio
|
2025-12-18 22:24:46 +01:00
|
|
|
async def test_get_counter_after_increment(client_factory):
|
|
|
|
|
reg = await client_factory.post(
|
|
|
|
|
"/api/auth/register",
|
|
|
|
|
json={"email": unique_email(), "password": "testpass123"},
|
|
|
|
|
)
|
|
|
|
|
cookies = dict(reg.cookies)
|
2025-12-18 22:08:31 +01:00
|
|
|
|
2025-12-18 22:24:46 +01:00
|
|
|
async with client_factory.create(cookies=cookies) as authed:
|
|
|
|
|
before = await authed.get("/api/counter")
|
|
|
|
|
start = before.json()["value"]
|
|
|
|
|
|
|
|
|
|
await authed.post("/api/counter/increment")
|
|
|
|
|
await authed.post("/api/counter/increment")
|
|
|
|
|
|
|
|
|
|
response = await authed.get("/api/counter")
|
|
|
|
|
assert response.json()["value"] == start + 2
|
2025-12-18 22:08:31 +01:00
|
|
|
|
|
|
|
|
|
|
|
|
|
# Counter is shared between users
|
|
|
|
|
@pytest.mark.asyncio
|
2025-12-18 22:24:46 +01:00
|
|
|
async def test_counter_shared_between_users(client_factory):
|
|
|
|
|
# Create first user
|
|
|
|
|
reg1 = await client_factory.post(
|
|
|
|
|
"/api/auth/register",
|
|
|
|
|
json={"email": unique_email("share1"), "password": "testpass123"},
|
|
|
|
|
)
|
|
|
|
|
cookies1 = dict(reg1.cookies)
|
2025-12-18 22:08:31 +01:00
|
|
|
|
2025-12-18 22:24:46 +01:00
|
|
|
async with client_factory.create(cookies=cookies1) as user1:
|
|
|
|
|
# Get starting value
|
|
|
|
|
before = await user1.get("/api/counter")
|
|
|
|
|
start = before.json()["value"]
|
|
|
|
|
|
|
|
|
|
await user1.post("/api/counter/increment")
|
|
|
|
|
await user1.post("/api/counter/increment")
|
2025-12-18 22:08:31 +01:00
|
|
|
|
2025-12-18 22:24:46 +01:00
|
|
|
# Create second user - should see the increments
|
|
|
|
|
reg2 = await client_factory.post(
|
|
|
|
|
"/api/auth/register",
|
|
|
|
|
json={"email": unique_email("share2"), "password": "testpass123"},
|
|
|
|
|
)
|
|
|
|
|
cookies2 = dict(reg2.cookies)
|
2025-12-18 22:08:31 +01:00
|
|
|
|
2025-12-18 22:24:46 +01:00
|
|
|
async with client_factory.create(cookies=cookies2) as user2:
|
|
|
|
|
response = await user2.get("/api/counter")
|
|
|
|
|
assert response.json()["value"] == start + 2
|
|
|
|
|
|
|
|
|
|
# Second user increments
|
|
|
|
|
await user2.post("/api/counter/increment")
|
2025-12-18 22:08:31 +01:00
|
|
|
|
|
|
|
|
# First user sees the increment
|
2025-12-18 22:24:46 +01:00
|
|
|
async with client_factory.create(cookies=cookies1) as user1:
|
|
|
|
|
response = await user1.get("/api/counter")
|
|
|
|
|
assert response.json()["value"] == start + 3
|