admin = UserFactory::refresh()->asAdmin()->withTokens()->create(); $this->manager = UserFactory::refresh()->asManager()->withTokens()->create(); $this->auditor = UserFactory::refresh()->asAuditor()->withTokens()->create(); $this->user = UserFactory::refresh()->asUser()->withTokens()->create(); $this->projectData = ProjectFactory::createRandomModelData(); } public function test_create_as_admin(): void { $this->assertDatabaseMissing('projects', $this->projectData); $response = $this->actingAs($this->admin)->postJson(self::URI, $this->projectData); $response->assertOk(); $response->assertJson(['res' => $this->projectData]); $this->assertDatabaseHas('projects', $this->projectData); } public function test_create_as_manager(): void { $this->assertDatabaseMissing('projects', $this->projectData); $response = $this->actingAs($this->manager)->postJson(self::URI, $this->projectData); $response->assertOk(); $response->assertJson(['res' => $this->projectData]); $this->assertDatabaseHas('projects', $this->projectData); } public function test_create_as_auditor(): void { $this->assertDatabaseMissing('projects', $this->projectData); $response = $this->actingAs($this->auditor)->postJson(self::URI, $this->projectData); $response->assertForbidden(); } public function test_create_as_user(): void { $this->assertDatabaseMissing('projects', $this->projectData); $response = $this->actingAs($this->user)->postJson(self::URI, $this->projectData); $response->assertForbidden(); } public function test_unauthorized(): void { $response = $this->postJson(self::URI); $response->assertUnauthorized(); } public function test_without_params(): void { $response = $this->actingAs($this->admin)->postJson(self::URI); $response->assertValidationError(); } }