## Summary - add the Spec 194 governance action catalog, friction classes, reason policies, and regression guards - align exception, review, evidence, finding, tenant, provider connection, and system run actions to the shared semantics model - add focused feature, RBAC, audit, unit, and browser coverage, including the tenant detail triage header consistency update ## Verification - ran the focused Spec 194 verification pack from the quickstart and task plan - ran targeted tenant triage coverage after the detail-header update - ran `cd apps/platform && ./vendor/bin/sail bin pint --dirty --format agent` ## Filament Notes - Filament v5 / Livewire v4 compliance preserved - provider registration remains in `apps/platform/bootstrap/providers.php` - globally searchable resources were not changed - destructive actions remain confirmation-gated and server-authorized - no new Filament assets were introduced; the existing `cd apps/platform && php artisan filament:assets` deploy step stays unchanged Co-authored-by: Ahmed Darrazi <ahmed.darrazi@live.de> Reviewed-on: #229
125 lines
4.9 KiB
PHP
125 lines
4.9 KiB
PHP
<?php
|
|
|
|
declare(strict_types=1);
|
|
|
|
use App\Filament\Resources\TenantResource\Pages\EditTenant;
|
|
use App\Models\Tenant;
|
|
use Filament\Actions\Action;
|
|
use Filament\Actions\ActionGroup;
|
|
use Filament\Facades\Filament;
|
|
use Livewire\Features\SupportTesting\Testable;
|
|
use Livewire\Livewire;
|
|
|
|
function editTenantUiHeaderActions(Testable $component): array
|
|
{
|
|
$instance = $component->instance();
|
|
|
|
if ($instance->getCachedHeaderActions() === []) {
|
|
$instance->cacheInteractsWithHeaderActions();
|
|
}
|
|
|
|
return $instance->getCachedHeaderActions();
|
|
}
|
|
|
|
describe('Edit tenant archive action UI enforcement', function () {
|
|
it('shows archive action as visible but disabled for manager members', function () {
|
|
$tenant = Tenant::factory()->create();
|
|
[$user] = createUserWithTenant(tenant: $tenant, role: 'manager');
|
|
|
|
$this->actingAs($user);
|
|
|
|
$tenant->makeCurrent();
|
|
Filament::setTenant($tenant, true);
|
|
|
|
$component = Livewire::test(EditTenant::class, ['record' => $tenant->getRouteKey()])
|
|
->assertActionVisible('archive')
|
|
->assertActionDisabled('archive')
|
|
->assertActionExists('archive', function (Action $action): bool {
|
|
return $action->getLabel() === 'Archive'
|
|
&& $action->isConfirmationRequired()
|
|
&& $action->getTooltip() === 'You do not have permission to archive tenants.';
|
|
})
|
|
->mountAction('archive')
|
|
->setActionData([
|
|
'archive_reason' => 'Managers should not be able to archive tenants.',
|
|
])
|
|
->callMountedAction()
|
|
->assertSuccessful();
|
|
|
|
expect(collect(editTenantUiHeaderActions($component))
|
|
->filter(static fn ($action): bool => $action instanceof ActionGroup)
|
|
->map(static fn (ActionGroup $action): string => (string) $action->getLabel())
|
|
->values()
|
|
->all())->toBe(['Lifecycle']);
|
|
|
|
$tenant->refresh();
|
|
expect($tenant->trashed())->toBeFalse();
|
|
});
|
|
|
|
it('allows owner members to archive tenant', function () {
|
|
$tenant = Tenant::factory()->create();
|
|
[$user] = createUserWithTenant(tenant: $tenant, role: 'owner');
|
|
|
|
$this->actingAs($user);
|
|
|
|
$tenant->makeCurrent();
|
|
Filament::setTenant($tenant, true);
|
|
|
|
$component = Livewire::test(EditTenant::class, ['record' => $tenant->getRouteKey()])
|
|
->assertActionVisible('archive')
|
|
->assertActionEnabled('archive')
|
|
->assertActionExists('archive', fn (Action $action): bool => $action->getLabel() === 'Archive' && $action->isConfirmationRequired())
|
|
->mountAction('archive')
|
|
->assertActionMounted('archive')
|
|
->callMountedAction()
|
|
->assertHasActionErrors(['archive_reason'])
|
|
->setActionData([
|
|
'archive_reason' => 'This tenant is being archived from the edit page.',
|
|
])
|
|
->callMountedAction()
|
|
->assertHasNoActionErrors();
|
|
|
|
expect(collect(editTenantUiHeaderActions($component))
|
|
->filter(static fn ($action): bool => $action instanceof ActionGroup)
|
|
->map(static fn (ActionGroup $action): string => (string) $action->getLabel())
|
|
->values()
|
|
->all())->toBe(['Lifecycle']);
|
|
|
|
$tenant->refresh();
|
|
expect($tenant->trashed())->toBeTrue();
|
|
});
|
|
|
|
it('hides the archive action once the tenant is already archived', function () {
|
|
$tenant = Tenant::factory()->archived()->create();
|
|
[$user, $tenant] = createUserWithTenant(tenant: $tenant, role: 'owner', ensureDefaultMicrosoftProviderConnection: false);
|
|
|
|
$this->actingAs($user);
|
|
|
|
Filament::setTenant($tenant, true);
|
|
|
|
Livewire::test(EditTenant::class, ['record' => $tenant->getRouteKey()])
|
|
->assertActionHidden('archive');
|
|
});
|
|
|
|
it('uses restore naming and confirmation copy for archived tenants', function () {
|
|
$tenant = Tenant::factory()->archived()->create();
|
|
[$user, $tenant] = createUserWithTenant(tenant: $tenant, role: 'owner', ensureDefaultMicrosoftProviderConnection: false);
|
|
|
|
$this->actingAs($user);
|
|
|
|
Filament::setTenant($tenant, true);
|
|
|
|
$component = Livewire::test(EditTenant::class, ['record' => $tenant->getRouteKey()])
|
|
->assertActionVisible('restore')
|
|
->assertActionEnabled('restore')
|
|
->assertActionExists('restore', fn (Action $action): bool => $action->getLabel() === 'Restore' && $action->isConfirmationRequired())
|
|
->assertActionHidden('archive');
|
|
|
|
expect(collect(editTenantUiHeaderActions($component))
|
|
->filter(static fn ($action): bool => $action instanceof ActionGroup)
|
|
->map(static fn (ActionGroup $action): string => (string) $action->getLabel())
|
|
->values()
|
|
->all())->toBe(['Lifecycle']);
|
|
});
|
|
});
|