2026-01-15 01:13:44 +00:00
|
|
|
<?php
|
|
|
|
|
|
refactor: settings redesign, Spanish translations, language system, strict_types
Settings pages:
- Redesign layout to match Sendkit (max-w-4xl, space-y-12, Separator sections)
- Merge Members page into Workspace settings with Table, invite Dialog, ConfirmDeleteModal
- Add workspace logo upload/delete routes and controller methods
- Translate all hardcoded strings in Workspace.vue modals
Language system:
- Drop languages table, replace language_id FK with locale string column on users
- Create config/languages.php for available languages and default locale
- Add Spanish (es) translations (13 files)
- Simplify HandleInertiaRequests, ProfileController, RegisteredUserController
Code quality:
- Add declare(strict_types=1) to all PHP files
- Fix MastodonPublisher using wrong attribute (filename -> original_filename)
- Fix HasMediaTest for new has_photo/photo_url accessors
- Fix PublishToSocialPlatformTest type error revealed by strict_types
- Remove orphaned Language model from AppServiceProvider morph map
- Update User TypeScript interface (has_photo, photo_url, locale)
- Eager load media relation on workspaces to prevent N+1
- Add 8 new tests for workspace logo upload/delete
- Update workspace settings test to assert members/invitations props
All 710 tests passing.
2026-03-30 03:20:43 +00:00
|
|
|
declare(strict_types=1);
|
|
|
|
|
|
2026-01-15 01:13:44 +00:00
|
|
|
use App\Models\User;
|
|
|
|
|
use Illuminate\Support\Facades\RateLimiter;
|
2026-01-20 19:53:54 +00:00
|
|
|
use Illuminate\Support\Str;
|
2026-01-15 01:13:44 +00:00
|
|
|
|
|
|
|
|
test('login screen can be rendered', function () {
|
|
|
|
|
$response = $this->get(route('login'));
|
|
|
|
|
|
|
|
|
|
$response->assertOk();
|
|
|
|
|
});
|
|
|
|
|
|
|
|
|
|
test('users can authenticate using the login screen', function () {
|
|
|
|
|
$user = User::factory()->create();
|
|
|
|
|
|
|
|
|
|
$response = $this->post(route('login.store'), [
|
|
|
|
|
'email' => $user->email,
|
|
|
|
|
'password' => 'password',
|
|
|
|
|
]);
|
|
|
|
|
|
|
|
|
|
$this->assertAuthenticated();
|
2026-03-29 22:24:28 +00:00
|
|
|
$response->assertRedirect(route('app.calendar', absolute: false));
|
2026-01-15 01:13:44 +00:00
|
|
|
});
|
|
|
|
|
|
|
|
|
|
test('users can not authenticate with invalid password', function () {
|
|
|
|
|
$user = User::factory()->create();
|
|
|
|
|
|
|
|
|
|
$this->post(route('login.store'), [
|
|
|
|
|
'email' => $user->email,
|
|
|
|
|
'password' => 'wrong-password',
|
|
|
|
|
]);
|
|
|
|
|
|
|
|
|
|
$this->assertGuest();
|
|
|
|
|
});
|
|
|
|
|
|
|
|
|
|
test('users can logout', function () {
|
|
|
|
|
$user = User::factory()->create();
|
|
|
|
|
|
|
|
|
|
$response = $this->actingAs($user)->post(route('logout'));
|
|
|
|
|
|
|
|
|
|
$this->assertGuest();
|
2026-01-20 19:53:54 +00:00
|
|
|
$response->assertRedirect('/');
|
2026-01-15 01:13:44 +00:00
|
|
|
});
|
|
|
|
|
|
|
|
|
|
test('users are rate limited', function () {
|
|
|
|
|
$user = User::factory()->create();
|
|
|
|
|
|
2026-01-20 19:53:54 +00:00
|
|
|
$throttleKey = Str::transliterate(Str::lower($user->email).'|127.0.0.1');
|
|
|
|
|
|
|
|
|
|
RateLimiter::hit($throttleKey, 60);
|
|
|
|
|
RateLimiter::hit($throttleKey, 60);
|
|
|
|
|
RateLimiter::hit($throttleKey, 60);
|
|
|
|
|
RateLimiter::hit($throttleKey, 60);
|
|
|
|
|
RateLimiter::hit($throttleKey, 60);
|
2026-01-15 01:13:44 +00:00
|
|
|
|
|
|
|
|
$response = $this->post(route('login.store'), [
|
|
|
|
|
'email' => $user->email,
|
|
|
|
|
'password' => 'wrong-password',
|
|
|
|
|
]);
|
|
|
|
|
|
2026-01-20 19:53:54 +00:00
|
|
|
$response->assertSessionHasErrors('email');
|
2026-01-17 15:36:49 +00:00
|
|
|
});
|