You cannot select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.
nodebb/test/groups.js

1408 lines
48 KiB
JavaScript

'use strict';
const assert = require('assert');
const async = require('async');
const fs = require('fs');
const path = require('path');
const nconf = require('nconf');
11 years ago
const db = require('./mocks/databasemock');
const helpers = require('./helpers');
const Groups = require('../src/groups');
const User = require('../src/user');
const utils = require('../src/utils');
const socketGroups = require('../src/socket.io/groups');
const apiGroups = require('../src/api/groups');
const meta = require('../src/meta');
const navigation = require('../src/navigation/admin');
11 years ago
describe('Groups', () => {
let adminUid;
let testUid;
before(async () => {
const navData = require('../install/data/navigation.json');
await navigation.save(navData);
await Groups.create({
name: 'Test',
description: 'Foobar!',
});
await Groups.create({
name: 'PrivateNoJoin',
description: 'Private group',
private: 1,
disableJoinRequests: 1,
});
await Groups.create({
name: 'PrivateCanJoin',
description: 'Private group',
private: 1,
disableJoinRequests: 0,
});
await Groups.create({
name: 'PrivateNoLeave',
description: 'Private group',
private: 1,
disableLeave: 1,
});
await Groups.create({
name: 'Global Moderators',
userTitle: 'Global Moderator',
description: 'Forum wide moderators',
hidden: 0,
private: 1,
disableJoinRequests: 1,
});
// Also create a hidden group
await Groups.join('Hidden', 'Test');
// create another group that starts with test for search/sort
await Groups.create({ name: 'Test2', description: 'Foobar!' });
testUid = await User.create({
username: 'testuser',
email: '[email protected]',
});
adminUid = await User.create({
username: 'admin',
email: '[email protected]',
password: '123456',
});
await Groups.join('administrators', adminUid);
11 years ago
});
describe('.list()', () => {
it('should list the groups present', (done) => {
Groups.getGroupsFromSet('groups:visible:createtime', 0, -1, (err, groups) => {
assert.ifError(err);
assert.equal(groups.length, 5);
11 years ago
done();
});
});
});
describe('.get()', () => {
before((done) => {
Groups.join('Test', testUid, done);
11 years ago
});
it('with no options, should show group information', (done) => {
Groups.get('Test', {}, (err, groupObj) => {
assert.ifError(err);
11 years ago
assert.equal(typeof groupObj, 'object');
assert(Array.isArray(groupObj.members));
assert.strictEqual(groupObj.name, 'Test');
assert.strictEqual(groupObj.description, 'Foobar!');
assert.strictEqual(groupObj.memberCount, 1);
assert.equal(typeof groupObj.members[0], 'object');
done();
});
});
8 years ago
it('should return null if group does not exist', (done) => {
Groups.get('doesnotexist', {}, (err, groupObj) => {
8 years ago
assert.ifError(err);
assert.strictEqual(groupObj, null);
done();
});
});
11 years ago
});
describe('.search()', () => {
const socketGroups = require('../src/socket.io/groups');
it('should return empty array if query is falsy', (done) => {
Groups.search(null, {}, (err, groups) => {
assert.ifError(err);
assert.equal(0, groups.length);
done();
});
});
it('should return the groups when search query is empty', (done) => {
socketGroups.search({ uid: adminUid }, { query: '' }, (err, groups) => {
assert.ifError(err);
assert.equal(5, groups.length);
done();
});
});
it('should return the "Test" group when searched for', (done) => {
socketGroups.search({ uid: adminUid }, { query: 'test' }, (err, groups) => {
assert.ifError(err);
assert.equal(2, groups.length);
assert.strictEqual('Test', groups[0].name);
done();
});
});
it('should return the "Test" group when searched for and sort by member count', (done) => {
Groups.search('test', { filterHidden: true, sort: 'count' }, (err, groups) => {
assert.ifError(err);
assert.equal(2, groups.length);
assert.strictEqual('Test', groups[0].name);
done();
});
});
it('should return the "Test" group when searched for and sort by creation time', (done) => {
Groups.search('test', { filterHidden: true, sort: 'date' }, (err, groups) => {
assert.ifError(err);
assert.equal(2, groups.length);
assert.strictEqual('Test', groups[1].name);
done();
});
});
it('should return all users if no query', (done) => {
function createAndJoinGroup(username, email, callback) {
async.waterfall([
function (next) {
User.create({ username: username, email: email }, next);
},
function (uid, next) {
Groups.join('Test', uid, next);
},
], callback);
}
async.series([
function (next) {
createAndJoinGroup('newuser', '[email protected]', next);
},
function (next) {
createAndJoinGroup('bob', '[email protected]', next);
},
], (err) => {
assert.ifError(err);
socketGroups.searchMembers({ uid: adminUid }, { groupName: 'Test', query: '' }, (err, data) => {
assert.ifError(err);
assert.equal(data.users.length, 3);
done();
});
});
});
it('should search group members', (done) => {
socketGroups.searchMembers({ uid: adminUid }, { groupName: 'Test', query: 'test' }, (err, data) => {
assert.ifError(err);
assert.strictEqual('testuser', data.users[0].username);
done();
});
});
it('should not return hidden groups', async () => {
await Groups.create({
name: 'hiddenGroup',
hidden: '1',
});
const result = await socketGroups.search({ uid: testUid }, { query: 'hiddenGroup' });
assert.equal(result.length, 0);
});
});
describe('.isMember()', () => {
it('should return boolean true when a user is in a group', (done) => {
Groups.isMember(1, 'Test', (err, isMember) => {
assert.ifError(err);
11 years ago
assert.strictEqual(isMember, true);
done();
});
});
it('should return boolean false when a user is not in a group', (done) => {
Groups.isMember(2, 'Test', (err, isMember) => {
assert.ifError(err);
11 years ago
assert.strictEqual(isMember, false);
done();
});
});
6 years ago
it('should return true for uid 0 and guests group', (done) => {
Groups.isMembers([1, 0], 'guests', (err, isMembers) => {
6 years ago
assert.ifError(err);
assert.deepStrictEqual(isMembers, [false, true]);
done();
});
});
it('should return true for uid 0 and guests group', (done) => {
Groups.isMemberOfGroups(0, ['guests', 'registered-users'], (err, isMembers) => {
6 years ago
assert.ifError(err);
assert.deepStrictEqual(isMembers, [true, false]);
done();
});
});
11 years ago
});
describe('.isMemberOfGroupList', () => {
it('should report that a user is part of a groupList, if they are', (done) => {
Groups.isMemberOfGroupList(1, 'Hidden', (err, isMember) => {
assert.ifError(err);
11 years ago
assert.strictEqual(isMember, true);
done();
});
});
it('should report that a user is not part of a groupList, if they are not', (done) => {
Groups.isMemberOfGroupList(2, 'Hidden', (err, isMember) => {
assert.ifError(err);
11 years ago
assert.strictEqual(isMember, false);
done();
});
});
});
describe('.exists()', () => {
it('should verify that the test group exists', (done) => {
Groups.exists('Test', (err, exists) => {
assert.ifError(err);
11 years ago
assert.strictEqual(exists, true);
done();
});
});
it('should verify that a fake group does not exist', (done) => {
Groups.exists('Derp', (err, exists) => {
assert.ifError(err);
11 years ago
assert.strictEqual(exists, false);
done();
});
});
it('should check if group exists using an array', (done) => {
Groups.exists(['Test', 'Derp'], (err, groupsExists) => {
assert.ifError(err);
assert.strictEqual(groupsExists[0], true);
assert.strictEqual(groupsExists[1], false);
done();
});
});
11 years ago
});
describe('.create()', () => {
it('should create another group', (done) => {
Groups.create({
name: 'foo',
description: 'bar',
}, (err) => {
assert.ifError(err);
11 years ago
Groups.get('foo', {}, done);
});
});
it('should create a hidden group if hidden is 1', (done) => {
Groups.create({
name: 'hidden group',
hidden: '1',
}, (err) => {
assert.ifError(err);
db.isSortedSetMember('groups:visible:memberCount', 'visible group', (err, isMember) => {
assert.ifError(err);
assert(!isMember);
done();
});
});
});
it('should create a visible group if hidden is 0', (done) => {
Groups.create({
name: 'visible group',
hidden: '0',
}, (err) => {
assert.ifError(err);
db.isSortedSetMember('groups:visible:memberCount', 'visible group', (err, isMember) => {
assert.ifError(err);
assert(isMember);
done();
});
});
});
it('should create a visible group if hidden is not passed in', (done) => {
Groups.create({
name: 'visible group 2',
}, (err) => {
assert.ifError(err);
db.isSortedSetMember('groups:visible:memberCount', 'visible group 2', (err, isMember) => {
assert.ifError(err);
assert(isMember);
done();
});
});
});
it('should fail to create group with duplicate group name', (done) => {
Groups.create({ name: 'foo' }, (err) => {
assert(err);
assert.equal(err.message, '[[error:group-already-exists]]');
done();
});
});
8 years ago
it('should fail to create group if slug is empty', (done) => {
Groups.create({ name: '>>>>' }, (err) => {
8 years ago
assert.equal(err.message, '[[error:invalid-group-name]]');
done();
});
});
it('should fail if group name is invalid', (done) => {
Groups.create({ name: 'not/valid' }, (err) => {
8 years ago
assert.equal(err.message, '[[error:invalid-group-name]]');
done();
});
});
8 years ago
it('should fail if group name is invalid', (done) => {
Groups.create({ name: ['array/'] }, (err) => {
assert.equal(err.message, '[[error:invalid-group-name]]');
done();
});
});
it('should fail if group name is invalid', async () => {
try {
await apiGroups.create({ uid: adminUid }, { name: ['test', 'administrators'] });
} catch (err) {
return assert.equal(err.message, '[[error:invalid-group-name]]');
}
assert(false);
});
it('should not create a system group', async () => {
await apiGroups.create({ uid: adminUid }, { name: 'mysystemgroup', system: true });
const data = await Groups.getGroupData('mysystemgroup');
assert.strictEqual(data.system, 0);
});
it('should fail if group name is invalid', (done) => {
Groups.create({ name: 'not:valid' }, (err) => {
8 years ago
assert.equal(err.message, '[[error:invalid-group-name]]');
done();
});
});
6 years ago
it('should return falsy for userTitleEnabled', (done) => {
Groups.create({ name: 'userTitleEnabledGroup' }, (err) => {
6 years ago
assert.ifError(err);
Groups.setGroupField('userTitleEnabledGroup', 'userTitleEnabled', 0, (err) => {
6 years ago
assert.ifError(err);
Groups.getGroupData('userTitleEnabledGroup', (err, data) => {
6 years ago
assert.ifError(err);
assert.strictEqual(data.userTitleEnabled, 0);
done();
});
});
});
});
11 years ago
});
describe('.hide()', () => {
it('should mark the group as hidden', (done) => {
Groups.hide('foo', (err) => {
assert.ifError(err);
11 years ago
Groups.get('foo', {}, (err, groupObj) => {
assert.ifError(err);
6 years ago
assert.strictEqual(1, groupObj.hidden);
11 years ago
done();
});
});
});
});
describe('.update()', () => {
before((done) => {
10 years ago
Groups.create({
name: 'updateTestGroup',
description: 'bar',
system: 0,
hidden: 0,
10 years ago
}, done);
});
10 years ago
it('should change an aspect of a group', (done) => {
10 years ago
Groups.update('updateTestGroup', {
description: 'baz',
}, (err) => {
assert.ifError(err);
11 years ago
Groups.get('updateTestGroup', {}, (err, groupObj) => {
assert.ifError(err);
11 years ago
assert.strictEqual('baz', groupObj.description);
done();
});
});
});
it('should rename a group and not break navigation routes', async () => {
await Groups.update('updateTestGroup', {
name: 'updateTestGroup?',
});
const groupObj = await Groups.get('updateTestGroup?', {});
assert.strictEqual('updateTestGroup?', groupObj.name);
assert.strictEqual('updatetestgroup', groupObj.slug);
const navItems = await navigation.get();
assert.strictEqual(navItems[0].route, '/categories');
});
it('should fail if system groups is being renamed', (done) => {
Groups.update('administrators', {
name: 'administrators_fail',
}, (err) => {
assert.equal(err.message, '[[error:not-allowed-to-rename-system-group]]');
done();
});
});
it('should fail to rename if group name is invalid', async () => {
try {
await apiGroups.update({ uid: adminUid }, { slug: ['updateTestGroup?'], values: {} });
} catch (err) {
return assert.strictEqual(err.message, '[[error:invalid-group-name]]');
}
assert(false);
});
it('should fail to rename if group name is too short', async () => {
try {
const slug = await Groups.getGroupField('updateTestGroup?', 'slug');
await apiGroups.update({ uid: adminUid }, { slug: slug, name: '' });
} catch (err) {
return assert.strictEqual(err.message, '[[error:group-name-too-short]]');
}
assert(false);
});
it('should fail to rename if group name is invalid', async () => {
try {
const slug = await Groups.getGroupField('updateTestGroup?', 'slug');
await apiGroups.update({ uid: adminUid }, { slug: slug, name: ['invalid'] });
} catch (err) {
return assert.strictEqual(err.message, '[[error:invalid-group-name]]');
}
assert(false);
});
it('should fail to rename if group name is invalid', async () => {
try {
const slug = await Groups.getGroupField('updateTestGroup?', 'slug');
await apiGroups.update({ uid: adminUid }, { slug: slug, name: 'cid:0:privileges:ban' });
} catch (err) {
return assert.strictEqual(err.message, '[[error:invalid-group-name]]');
}
assert(false);
});
it('should fail to rename if group name is too long', async () => {
try {
const slug = await Groups.getGroupField('updateTestGroup?', 'slug');
await apiGroups.update({ uid: adminUid }, { slug: slug, name: 'verylongstringverylongstringverylongstringverylongstringverylongstringverylongstringverylongstringverylongstringverylongstringverylongstringverylongstringverylongstringverylongstringverylongstringverylongstringverylongstringverylongstringverylongstringverylongstringverylongstring' });
} catch (err) {
return assert.strictEqual(err.message, '[[error:group-name-too-long]]');
}
assert(false);
});
it('should fail to rename if group name is invalid', async () => {
const slug = await Groups.getGroupField('updateTestGroup?', 'slug');
const invalidNames = ['test:test', 'another/test', '---'];
for (const name of invalidNames) {
try {
// eslint-disable-next-line no-await-in-loop
await apiGroups.update({ uid: adminUid }, { slug: slug, name: name });
assert(false);
} catch (err) {
assert.strictEqual(err.message, '[[error:invalid-group-name]]');
}
}
});
it('should fail to rename group to an existing group', (done) => {
Groups.create({
name: 'group2',
system: 0,
hidden: 0,
}, (err) => {
assert.ifError(err);
Groups.update('group2', {
name: 'updateTestGroup?',
}, (err) => {
assert.equal(err.message, '[[error:group-already-exists]]');
done();
});
});
});
11 years ago
});
describe('.destroy()', () => {
before((done) => {
Groups.join('foobar?', 1, done);
});
it('should destroy a group', (done) => {
Groups.destroy('foobar?', (err) => {
assert.ifError(err);
11 years ago
Groups.get('foobar?', {}, (err, groupObj) => {
8 years ago
assert.ifError(err);
assert.strictEqual(groupObj, null);
11 years ago
done();
});
});
});
it('should also remove the members set', (done) => {
db.exists('group:foo:members', (err, exists) => {
assert.ifError(err);
assert.strictEqual(false, exists);
done();
});
});
6 years ago
it('should remove group from privilege groups', (done) => {
6 years ago
const privileges = require('../src/privileges');
const cid = 1;
const groupName = '1';
const uid = 1;
async.waterfall([
function (next) {
Groups.create({ name: groupName }, next);
},
function (groupData, next) {
privileges.categories.give(['groups:topics:create'], cid, groupName, next);
6 years ago
},
function (next) {
Groups.isMember(groupName, 'cid:1:privileges:groups:topics:create', next);
},
function (isMember, next) {
assert(isMember);
Groups.destroy(groupName, next);
},
function (next) {
Groups.isMember(groupName, 'cid:1:privileges:groups:topics:create', next);
},
function (isMember, next) {
assert(!isMember);
Groups.isMember(uid, 'registered-users', next);
},
function (isMember, next) {
assert(isMember);
next();
},
], done);
});
11 years ago
});
describe('.join()', () => {
before((done) => {
Groups.leave('Test', testUid, done);
11 years ago
});
it('should add a user to a group', (done) => {
Groups.join('Test', testUid, (err) => {
assert.ifError(err);
11 years ago
Groups.isMember(testUid, 'Test', (err, isMember) => {
assert.ifError(err);
11 years ago
assert.strictEqual(true, isMember);
done();
});
});
});
8 years ago
it('should fail to add user to admin group', async () => {
const oldValue = meta.config.allowPrivateGroups;
try {
meta.config.allowPrivateGroups = false;
const newUid = await User.create({ username: 'newadmin' });
await apiGroups.join({ uid: newUid }, { slug: ['test', 'administrators'], uid: newUid }, 1);
const isMember = await Groups.isMember(newUid, 'administrators');
assert(!isMember);
} catch (err) {
assert.strictEqual(err.message, '[[error:no-group]]');
}
meta.config.allowPrivateGroups = oldValue;
});
it('should fail to add user to group if group name is invalid', (done) => {
Groups.join(0, 1, (err) => {
8 years ago
assert.equal(err.message, '[[error:invalid-data]]');
Groups.join(null, 1, (err) => {
8 years ago
assert.equal(err.message, '[[error:invalid-data]]');
Groups.join(undefined, 1, (err) => {
8 years ago
assert.equal(err.message, '[[error:invalid-data]]');
done();
});
});
});
});
it('should fail to add user to group if uid is invalid', (done) => {
Groups.join('Test', 0, (err) => {
8 years ago
assert.equal(err.message, '[[error:invalid-uid]]');
Groups.join('Test', null, (err) => {
8 years ago
assert.equal(err.message, '[[error:invalid-uid]]');
Groups.join('Test', undefined, (err) => {
8 years ago
assert.equal(err.message, '[[error:invalid-uid]]');
done();
});
});
});
});
it('should add user to Global Moderators group', async () => {
const uid = await User.create({ username: 'glomod' });
const slug = await Groups.getGroupField('Global Moderators', 'slug');
await apiGroups.join({ uid: adminUid }, { slug: slug, uid: uid });
const isGlobalMod = await User.isGlobalModerator(uid);
assert.strictEqual(isGlobalMod, true);
});
it('should add user to multiple groups', (done) => {
const groupNames = ['test-hidden1', 'Test', 'test-hidden2', 'empty group'];
Groups.create({ name: 'empty group' }, (err) => {
assert.ifError(err);
Groups.join(groupNames, testUid, (err) => {
assert.ifError(err);
Groups.isMemberOfGroups(testUid, groupNames, (err, isMembers) => {
assert.ifError(err);
assert(isMembers.every(Boolean));
db.sortedSetScores('groups:visible:memberCount', groupNames, (err, memberCounts) => {
assert.ifError(err);
// hidden groups are not in "groups:visible:memberCount" so they are null
assert.deepEqual(memberCounts, [null, 3, null, 1]);
done();
});
});
});
});
});
it('should set group title when user joins the group', (done) => {
const groupName = 'this will be title';
User.create({ username: 'needstitle' }, (err, uid) => {
assert.ifError(err);
Groups.create({ name: groupName }, (err) => {
assert.ifError(err);
Groups.join([groupName], uid, (err) => {
assert.ifError(err);
User.getUserData(uid, (err, data) => {
assert.ifError(err);
assert.equal(data.groupTitle, `["${groupName}"]`);
assert.deepEqual(data.groupTitleArray, [groupName]);
done();
});
});
});
});
});
it('should fail to add user to system group', async () => {
const uid = await User.create({ username: 'eviluser' });
const oldValue = meta.config.allowPrivateGroups;
meta.config.allowPrivateGroups = 0;
async function test(groupName) {
let err;
try {
const slug = await Groups.getGroupField(groupName, 'slug');
await apiGroups.join({ uid: uid }, { slug: slug, uid: uid });
const isMember = await Groups.isMember(uid, groupName);
assert.strictEqual(isMember, false);
} catch (_err) {
err = _err;
}
assert.strictEqual(err.message, '[[error:not-allowed]]');
}
const groups = ['Global Moderators', 'verified-users', 'unverified-users'];
for (const g of groups) {
// eslint-disable-next-line no-await-in-loop
await test(g);
}
meta.config.allowPrivateGroups = oldValue;
});
it('should fail to add user to group if calling uid is non-self and non-admin', async () => {
const uid1 = await User.create({ username: utils.generateUUID().slice(0, 8) });
const uid2 = await User.create({ username: utils.generateUUID().slice(0, 8) });
await assert.rejects(
apiGroups.join({ uid: uid1 }, { slug: 'test', uid: uid2 }),
{ message: '[[error:not-allowed]]' }
);
});
it('should allow admins to join private groups', async () => {
await apiGroups.join({ uid: adminUid }, { uid: adminUid, slug: 'global-moderators' });
assert(await Groups.isMember(adminUid, 'Global Moderators'));
});
11 years ago
});
describe('.leave()', () => {
it('should remove a user from a group', (done) => {
Groups.leave('Test', testUid, (err) => {
assert.ifError(err);
Groups.isMember(testUid, 'Test', (err, isMember) => {
assert.ifError(err);
assert.strictEqual(false, isMember);
done();
});
});
});
});
describe('.leaveAllGroups()', () => {
it('should remove a user from all groups', (done) => {
Groups.leaveAllGroups(testUid, (err) => {
assert.ifError(err);
const groups = ['Test', 'Hidden'];
async.every(groups, (group, next) => {
Groups.isMember(testUid, group, (err, isMember) => {
next(err, !isMember);
});
}, (err, result) => {
assert.ifError(err);
assert(result);
done();
});
});
});
});
describe('.show()', () => {
it('should make a group visible', (done) => {
Groups.show('Test', function (err) {
assert.ifError(err);
assert.equal(arguments.length, 1);
db.isSortedSetMember('groups:visible:createtime', 'Test', (err, isMember) => {
assert.ifError(err);
assert.strictEqual(isMember, true);
done();
});
});
});
});
describe('.hide()', () => {
it('should make a group hidden', (done) => {
Groups.hide('Test', function (err) {
assert.ifError(err);
assert.equal(arguments.length, 1);
db.isSortedSetMember('groups:visible:createtime', 'Test', (err, isMember) => {
assert.ifError(err);
assert.strictEqual(isMember, false);
done();
});
});
});
});
describe('socket methods', () => {
it('should error if data is null', (done) => {
socketGroups.before({ uid: 0 }, 'groups.join', null, (err) => {
assert.equal(err.message, '[[error:invalid-data]]');
done();
});
});
it('should not error if data is valid', (done) => {
socketGroups.before({ uid: 0 }, 'groups.join', {}, (err) => {
8 years ago
assert.ifError(err);
done();
});
});
it('should return error if not logged in', async () => {
try {
await apiGroups.join({ uid: 0 }, {});
assert(false);
} catch (err) {
assert.equal(err.message, '[[error:invalid-uid]]');
}
});
it('should return error if group name is special', async () => {
try {
await apiGroups.join({ uid: testUid }, { slug: 'administrators', uid: testUid });
assert(false);
} catch (err) {
assert.equal(err.message, '[[error:not-allowed]]');
}
});
it('should error if group does not exist', async () => {
try {
await apiGroups.join({ uid: adminUid }, { slug: 'doesnotexist', uid: adminUid });
assert(false);
} catch (err) {
assert.equal(err.message, '[[error:no-group]]');
}
});
it('should join test group', async () => {
meta.config.allowPrivateGroups = 0;
await apiGroups.join({ uid: adminUid }, { slug: 'test', uid: adminUid });
const isMember = await Groups.isMember(adminUid, 'Test');
assert(isMember);
});
it('should error if not logged in', async () => {
try {
await apiGroups.leave({ uid: 0 }, {});
assert(false);
} catch (err) {
assert.equal(err.message, '[[error:invalid-uid]]');
}
});
it('should return error if group name is special', async () => {
try {
await apiGroups.leave({ uid: adminUid }, { slug: 'administrators', uid: adminUid });
assert(false);
} catch (err) {
assert.equal(err.message, '[[error:cant-remove-self-as-admin]]');
}
});
it('should leave test group', async () => {
await apiGroups.leave({ uid: adminUid }, { slug: 'test', uid: adminUid });
const isMember = await Groups.isMember(adminUid, 'Test');
assert(!isMember);
});
it('should fail to join if group is private and join requests are disabled', async () => {
meta.config.allowPrivateGroups = 1;
try {
await apiGroups.join({ uid: testUid }, { slug: 'privatenojoin', uid: testUid });
assert(false);
} catch (err) {
assert.equal(err.message, '[[error:group-join-disabled]]');
}
});
it('should fail to leave if group is private and leave is disabled', async () => {
await Groups.join('PrivateNoLeave', testUid);
const isMember = await Groups.isMember(testUid, 'PrivateNoLeave');
assert(isMember);
try {
await apiGroups.leave({ uid: testUid }, { slug: 'privatenoleave', uid: testUid });
assert(false);
} catch (err) {
assert.equal(err.message, '[[error:group-leave-disabled]]');
}
});
it('should join if user is admin', async () => {
await apiGroups.join({ uid: adminUid }, { slug: 'privatecanjoin', uid: adminUid });
const isMember = await Groups.isMember(adminUid, 'PrivateCanJoin');
assert(isMember);
});
it('should request membership for regular user', async () => {
await apiGroups.join({ uid: testUid }, { slug: 'privatecanjoin', uid: testUid });
const isPending = await Groups.isPending(testUid, 'PrivateCanJoin');
assert(isPending);
});
it('should reject membership of user', async () => {
await apiGroups.reject({ uid: adminUid }, { slug: 'privatecanjoin', uid: testUid });
const invited = await Groups.isInvited(testUid, 'PrivateCanJoin');
assert.equal(invited, false);
8 years ago
});
it('should error if not owner or admin', async () => {
await assert.rejects(
apiGroups.accept({ uid: 0 }, { slug: 'privatecanjoin', uid: testUid }),
{ message: '[[error:no-privileges]]' }
);
8 years ago
});
it('should accept membership of user', async () => {
await apiGroups.join({ uid: testUid }, { slug: 'privatecanjoin', uid: testUid });
await apiGroups.accept({ uid: adminUid }, { slug: 'privatecanjoin', uid: testUid });
const isMember = await Groups.isMember(testUid, 'PrivateCanJoin');
assert(isMember);
8 years ago
});
it('should issue invite to user', async () => {
const uid = await User.create({ username: 'invite1' });
await apiGroups.issueInvite({ uid: adminUid }, { slug: 'privatecanjoin', uid });
const isInvited = await Groups.isInvited(uid, 'PrivateCanJoin');
assert(isInvited);
8 years ago
});
it('should rescind invite', async () => {
const uid = await User.create({ username: 'invite3' });
await apiGroups.issueInvite({ uid: adminUid }, { slug: 'privatecanjoin', uid });
await apiGroups.rejectInvite({ uid: adminUid }, { slug: 'privatecanjoin', uid });
const isInvited = await Groups.isInvited(uid, 'PrivateCanJoin');
assert(!isInvited);
8 years ago
});
it('should error if user is not invited', async () => {
await assert.rejects(
apiGroups.acceptInvite({ uid: adminUid }, { slug: 'privatecanjoin', uid: adminUid }),
{ message: '[[error:not-invited]]' }
);
8 years ago
});
it('should accept invite', async () => {
const uid = await User.create({ username: 'invite4' });
await apiGroups.issueInvite({ uid: adminUid }, { slug: 'privatecanjoin', uid });
await apiGroups.acceptInvite({ uid }, { slug: 'privatecanjoin', uid });
const isMember = await Groups.isMember(uid, 'PrivateCanJoin');
assert(isMember);
8 years ago
});
it('should reject invite', async () => {
const uid = await User.create({ username: 'invite5' });
await apiGroups.issueInvite({ uid: adminUid }, { slug: 'privatecanjoin', uid });
await apiGroups.rejectInvite({ uid }, { slug: 'privatecanjoin', uid });
const isInvited = await Groups.isInvited(uid, 'PrivateCanJoin');
assert(!isInvited);
8 years ago
});
it('should grant ownership to user', async () => {
await apiGroups.grant({ uid: adminUid }, { slug: 'privatecanjoin', uid: testUid });
const isOwner = await Groups.ownership.isOwner(testUid, 'PrivateCanJoin');
assert(isOwner);
8 years ago
});
it('should rescind ownership from user', async () => {
await apiGroups.rescind({ uid: adminUid }, { slug: 'privatecanjoin', uid: testUid });
const isOwner = await Groups.ownership.isOwner(testUid, 'PrivateCanJoin');
assert(!isOwner);
8 years ago
});
it('should fail to kick user with invalid data', async () => {
await assert.rejects(
apiGroups.leave({ uid: adminUid }, { slug: 'privatecanjoin', uid: 8721632 }),
{ message: '[[error:group-not-member]]' }
);
8 years ago
});
it('should kick user from group', async () => {
await apiGroups.leave({ uid: adminUid }, { slug: 'privatecanjoin', uid: testUid });
const isMember = await Groups.isMember(testUid, 'PrivateCanJoin');
assert(!isMember);
8 years ago
});
it('should fail to create group with invalid data', async () => {
await assert.rejects(
apiGroups.create({ uid: 0 }, {}),
{ message: '[[error:no-privileges]]' }
);
8 years ago
});
8 years ago
it('should fail to create group if group creation is disabled', async () => {
await assert.rejects(
apiGroups.create({ uid: testUid }, { name: 'avalidname' }),
{ message: '[[error:no-privileges]]' }
);
8 years ago
});
it('should fail to create group if name is privilege group', async () => {
try {
await apiGroups.create({ uid: 1 }, { name: 'cid:1:privileges:groups:find' });
assert(false);
} catch (err) {
8 years ago
assert.equal(err.message, '[[error:invalid-group-name]]');
}
8 years ago
});
it('should create/update group', async () => {
const groupData = await apiGroups.create({ uid: adminUid }, { name: 'createupdategroup' });
assert(groupData);
const data = {
slug: 'createupdategroup',
name: 'renamedupdategroup',
description: 'cat group',
userTitle: 'cats',
userTitleEnabled: 1,
disableJoinRequests: 1,
hidden: 1,
private: 0,
};
await apiGroups.update({ uid: adminUid }, data);
const updatedData = await Groups.get('renamedupdategroup', {});
assert.equal(updatedData.name, 'renamedupdategroup');
assert.equal(updatedData.userTitle, 'cats');
assert.equal(updatedData.description, 'cat group');
assert.equal(updatedData.hidden, true);
assert.equal(updatedData.disableJoinRequests, true);
assert.equal(updatedData.private, false);
8 years ago
});
it('should fail to create a group with name guests', async () => {
try {
await apiGroups.create({ uid: adminUid }, { name: 'guests' });
assert(false);
} catch (err) {
7 years ago
assert.equal(err.message, '[[error:invalid-group-name]]');
}
7 years ago
});
it('should fail to rename guests group', async () => {
const data = {
slug: 'guests',
name: 'guests2',
7 years ago
};
try {
await apiGroups.update({ uid: adminUid }, data);
assert(false);
} catch (err) {
assert.equal(err.message, '[[error:invalid-group-name]]');
}
8 years ago
});
8 years ago
it('should delete group', async () => {
await apiGroups.delete({ uid: adminUid }, { slug: 'renamedupdategroup' });
const exists = await Groups.exists('renamedupdategroup');
assert(!exists);
8 years ago
});
it('should fail to delete group if name is special', async () => {
const specialGroups = [
'administrators', 'registered-users', 'verified-users',
'unverified-users', 'global-moderators',
];
for (const slug of specialGroups) {
try {
// eslint-disable-next-line no-await-in-loop
await apiGroups.delete({ uid: adminUid }, { slug: slug });
assert(false);
} catch (err) {
assert.equal(err.message, '[[error:not-allowed]]');
}
}
8 years ago
});
it('should fail to delete group if name is special', async () => {
try {
await apiGroups.delete({ uid: adminUid }, { slug: 'guests' });
assert(false);
} catch (err) {
assert.equal(err.message, '[[error:invalid-group-name]]');
}
7 years ago
});
it('should fail to load more groups with invalid data', (done) => {
socketGroups.loadMore({ uid: adminUid }, {}, (err) => {
8 years ago
assert.equal(err.message, '[[error:invalid-data]]');
done();
});
});
it('should load more groups', (done) => {
socketGroups.loadMore({ uid: adminUid }, { after: 0, sort: 'count' }, (err, data) => {
8 years ago
assert.ifError(err);
assert(Array.isArray(data.groups));
done();
});
});
it('should fail to load more members with invalid data', (done) => {
socketGroups.loadMoreMembers({ uid: adminUid }, {}, (err) => {
8 years ago
assert.equal(err.message, '[[error:invalid-data]]');
done();
});
});
it('should load more members', (done) => {
socketGroups.loadMoreMembers({ uid: adminUid }, { after: 0, groupName: 'PrivateCanJoin' }, (err, data) => {
8 years ago
assert.ifError(err);
assert(Array.isArray(data.users));
done();
});
});
});
describe('api methods', () => {
const apiGroups = require('../src/api/groups');
it('should fail to create group with invalid data', async () => {
let err;
try {
await apiGroups.create({ uid: adminUid }, null);
} catch (_err) {
err = _err;
}
assert.strictEqual(err.message, '[[error:invalid-data]]');
8 years ago
});
it('should fail to create group if group name is privilege group', async () => {
let err;
try {
await apiGroups.create({ uid: adminUid }, { name: 'cid:1:privileges:read' });
} catch (_err) {
err = _err;
}
assert.strictEqual(err.message, '[[error:invalid-group-name]]');
8 years ago
});
it('should create a group', async () => {
const groupData = await apiGroups.create({ uid: adminUid }, { name: 'newgroup', description: 'group created by admin' });
assert.equal(groupData.name, 'newgroup');
assert.equal(groupData.description, 'group created by admin');
assert.equal(groupData.private, 1);
assert.equal(groupData.hidden, 0);
assert.equal(groupData.memberCount, 1);
8 years ago
});
it('should fail to join with invalid data', async () => {
let err;
try {
await apiGroups.join({ uid: adminUid }, null);
} catch (_err) {
err = _err;
}
assert.strictEqual(err.message, '[[error:invalid-data]]');
8 years ago
});
it('should add user to group', async () => {
await apiGroups.join({ uid: adminUid }, { uid: testUid, slug: 'newgroup' });
const isMember = await Groups.isMember(testUid, 'newgroup');
assert(isMember);
8 years ago
});
it('should not error if user is already member', async () => {
await apiGroups.join({ uid: adminUid }, { uid: testUid, slug: 'newgroup' });
8 years ago
});
it('it should fail with invalid data', async () => {
let err;
try {
await apiGroups.leave({ uid: adminUid }, null);
} catch (_err) {
err = _err;
}
assert.strictEqual(err.message, '[[error:invalid-data]]');
8 years ago
});
it('it should fail if admin tries to remove self', async () => {
let err;
try {
await apiGroups.leave({ uid: adminUid }, { uid: adminUid, slug: 'administrators' });
} catch (_err) {
err = _err;
}
assert.strictEqual(err.message, '[[error:cant-remove-self-as-admin]]');
8 years ago
});
it('should error if user is not member', async () => {
await assert.rejects(
apiGroups.leave({ uid: adminUid }, { uid: 3, slug: 'newgroup' }),
{ message: '[[error:group-not-member]]' }
);
});
it('should fail if trying to remove someone else from group', async () => {
await assert.rejects(
apiGroups.leave({ uid: testUid }, { uid: adminUid, slug: 'newgroup' }),
{ message: '[[error:no-privileges]]' },
);
8 years ago
});
it('should remove user from group', async () => {
await apiGroups.leave({ uid: adminUid }, { uid: testUid, slug: 'newgroup' });
const isMember = await Groups.isMember(testUid, 'newgroup');
assert(!isMember);
8 years ago
});
it('should fail with invalid data', async () => {
let err;
try {
await apiGroups.update({ uid: adminUid }, null);
} catch (_err) {
err = _err;
}
assert.strictEqual(err.message, '[[error:invalid-data]]');
8 years ago
});
it('should update group', async () => {
const data = {
slug: 'newgroup',
name: 'renamedgroup',
description: 'cat group',
userTitle: 'cats',
userTitleEnabled: 1,
disableJoinRequests: 1,
hidden: 1,
private: 0,
8 years ago
};
await apiGroups.update({ uid: adminUid }, data);
const groupData = await Groups.get('renamedgroup', {});
assert.equal(groupData.name, 'renamedgroup');
assert.equal(groupData.userTitle, 'cats');
assert.equal(groupData.description, 'cat group');
assert.equal(groupData.hidden, true);
assert.equal(groupData.disableJoinRequests, true);
assert.equal(groupData.private, false);
8 years ago
});
});
describe('groups cover', () => {
const socketGroups = require('../src/socket.io/groups');
let regularUid;
const logoPath = path.join(__dirname, '../test/files/test.png');
const imagePath = path.join(__dirname, '../test/files/groupcover.png');
before((done) => {
User.create({ username: 'regularuser', password: '123456' }, (err, uid) => {
assert.ifError(err);
regularUid = uid;
async.series([
function (next) {
Groups.join('Test', adminUid, next);
},
function (next) {
Groups.join('Test', regularUid, next);
},
function (next) {
helpers.copyFile(logoPath, imagePath, next);
},
], done);
});
});
it('should fail if user is not logged in or not owner', (done) => {
socketGroups.cover.update({ uid: 0 }, { imageData: 'asd' }, (err) => {
assert.equal(err.message, '[[error:no-privileges]]');
socketGroups.cover.update({ uid: regularUid }, { groupName: 'Test', imageData: 'asd' }, (err) => {
assert.equal(err.message, '[[error:no-privileges]]');
done();
});
});
});
it('should upload group cover image from file', (done) => {
const data = {
groupName: 'Test',
file: {
path: imagePath,
type: 'image/png',
},
};
Groups.updateCover({ uid: adminUid }, data, (err, data) => {
assert.ifError(err);
Groups.getGroupFields('Test', ['cover:url'], (err, groupData) => {
assert.ifError(err);
assert.equal(nconf.get('relative_path') + data.url, groupData['cover:url']);
if (nconf.get('relative_path')) {
assert(!data.url.startsWith(nconf.get('relative_path')));
assert(groupData['cover:url'].startsWith(nconf.get('relative_path')), groupData['cover:url']);
}
done();
});
});
});
it('should upload group cover image from data', (done) => {
const data = {
groupName: 'Test',
imageData: '
};
socketGroups.cover.update({ uid: adminUid }, data, (err, data) => {
assert.ifError(err);
Groups.getGroupFields('Test', ['cover:url'], (err, groupData) => {
assert.ifError(err);
assert.equal(nconf.get('relative_path') + data.url, groupData['cover:url']);
done();
});
});
});
it('should fail to upload group cover with invalid image', (done) => {
const data = {
groupName: 'Test',
file: {
path: imagePath,
type: 'image/png',
},
};
socketGroups.cover.update({ uid: adminUid }, data, (err) => {
assert.equal(err.message, '[[error:invalid-data]]');
done();
});
});
it('should fail to upload group cover with invalid image', (done) => {
const data = {
groupName: 'Test',
imageData: '',
};
socketGroups.cover.update({ uid: adminUid }, data, (err, data) => {
assert.equal(err.message, '[[error:invalid-image]]');
done();
});
});
it('should update group cover position', (done) => {
const data = {
groupName: 'Test',
position: '50% 50%',
};
socketGroups.cover.update({ uid: adminUid }, data, (err) => {
assert.ifError(err);
Groups.getGroupFields('Test', ['cover:position'], (err, groupData) => {
assert.ifError(err);
assert.equal('50% 50%', groupData['cover:position']);
done();
});
});
});
it('should fail to update cover position if group name is missing', (done) => {
Groups.updateCoverPosition('', '50% 50%', (err) => {
assert.equal(err.message, '[[error:invalid-data]]');
done();
});
});
it('should fail to remove cover if not logged in', (done) => {
socketGroups.cover.remove({ uid: 0 }, { groupName: 'Test' }, (err) => {
8 years ago
assert.equal(err.message, '[[error:no-privileges]]');
done();
});
});
it('should fail to remove cover if not owner', (done) => {
socketGroups.cover.remove({ uid: regularUid }, { groupName: 'Test' }, (err) => {
assert.equal(err.message, '[[error:no-privileges]]');
done();
});
});
it('should remove cover', async () => {
const fields = ['cover:url', 'cover:thumb:url'];
const values = await Groups.getGroupFields('Test', fields);
await socketGroups.cover.remove({ uid: adminUid }, { groupName: 'Test' });
fields.forEach((field) => {
const filename = values[field].split('/').pop();
const filePath = path.join(nconf.get('upload_path'), 'files', filename);
assert.strictEqual(fs.existsSync(filePath), false);
});
const groupData = await db.getObjectFields('group:Test', ['cover:url']);
assert(!groupData['cover:url']);
});
});
});