Files
9router/tests/unit/auth-status.test.js
luulam 7e45ead2ac Merge remote-tracking branch 'origin/master' into gitea/feature/end
Resolved conflicts taking origin/master (v0.5.55) as canonical, with local
features re-applied:
- runtime log level (LOG_LEVEL env + dashboard Settings → Logging, applied
  immediately and persisted across restarts)
- free/noAuth provider enable/disable toggle via providerStrategies.enabled
- parallel model testing (Test All Models / Test Selected Keys)
2026-08-17 00:38:31 +07:00

70 lines
1.9 KiB
JavaScript

import { describe, it, expect, vi, beforeEach } from "vitest";
const mocks = vi.hoisted(() => ({
json: vi.fn((body, init) => ({
status: init?.status || 200,
body,
})),
cookies: vi.fn(),
getSettings: vi.fn(),
isOidcConfigured: vi.fn(),
getDashboardAuthSession: vi.fn(),
}));
vi.mock("next/server", () => ({
NextResponse: { json: mocks.json },
}));
vi.mock("next/headers", () => ({
cookies: mocks.cookies,
}));
vi.mock("@/lib/localDb", () => ({
getSettings: mocks.getSettings,
}));
vi.mock("@/lib/auth/oidc", () => ({
isOidcConfigured: mocks.isOidcConfigured,
}));
vi.mock("@/lib/auth/dashboardSession", () => ({
getDashboardAuthSession: mocks.getDashboardAuthSession,
}));
const { GET } = await import("../../src/app/api/auth/status/route.js");
describe("GET /api/auth/status", () => {
beforeEach(() => {
vi.clearAllMocks();
mocks.getSettings.mockResolvedValue({ requireLogin: true, authMode: "password" });
mocks.cookies.mockResolvedValue({ get: vi.fn(() => ({ value: "session-token" })) });
mocks.isOidcConfigured.mockReturnValue(false);
});
it("reports an authenticated session when the auth cookie is valid", async () => {
mocks.getDashboardAuthSession.mockResolvedValue({ authenticated: true });
const response = await GET();
expect(response.body.authenticated).toBe(true);
expect(mocks.getDashboardAuthSession).toHaveBeenCalledWith("session-token");
});
it("reports unauthenticated when the auth cookie is invalid", async () => {
mocks.getDashboardAuthSession.mockResolvedValue(null);
const response = await GET();
expect(response.body.authenticated).toBe(false);
});
it("fails closed when status dependencies throw", async () => {
mocks.getSettings.mockRejectedValue(new Error("database unavailable"));
const response = await GET();
expect(response.body.authenticated).toBe(false);
expect(response.body.requireLogin).toBe(true);
});
});