admin = UserFactory::refresh()->asAdmin()->withTokens()->create(); $this->manager = UserFactory::refresh()->asManager()->withTokens()->create(); $this->auditor = UserFactory::refresh()->asAuditor()->withTokens()->create(); $this->user = UserFactory::refresh()->asUser()->withTokens()->create(); $this->invitation = InvitationFactory::create(); } public function test_show_as_admin(): void { $response = $this->actingAs($this->admin)->postJson(self::URI, $this->invitation->only('id')); $response->assertOk(); $response->assertJson($this->invitation->toArray()); } public function test_show_as_manager(): void { $response = $this->actingAs($this->manager)->postJson(self::URI, $this->invitation->only('id')); $response->assertForbidden(); } public function test_show_as_auditor(): void { $response = $this->actingAs($this->auditor)->postJson(self::URI, $this->invitation->only('id')); $response->assertForbidden(); } public function test_show_as_user(): void { $response = $this->actingAs($this->user)->postJson(self::URI, $this->invitation->only('id')); $response->assertForbidden(); } public function test_unauthorized(): void { $response = $this->postJson(self::URI); $response->assertUnauthorized(); } }