## Summary - add the Spec 194 governance action catalog, friction classes, reason policies, and regression guards - align exception, review, evidence, finding, tenant, provider connection, and system run actions to the shared semantics model - add focused feature, RBAC, audit, unit, and browser coverage, including the tenant detail triage header consistency update ## Verification - ran the focused Spec 194 verification pack from the quickstart and task plan - ran targeted tenant triage coverage after the detail-header update - ran `cd apps/platform && ./vendor/bin/sail bin pint --dirty --format agent` ## Filament Notes - Filament v5 / Livewire v4 compliance preserved - provider registration remains in `apps/platform/bootstrap/providers.php` - globally searchable resources were not changed - destructive actions remain confirmation-gated and server-authorized - no new Filament assets were introduced; the existing `cd apps/platform && php artisan filament:assets` deploy step stays unchanged Co-authored-by: Ahmed Darrazi <ahmed.darrazi@live.de> Reviewed-on: #229
94 lines
3.4 KiB
PHP
94 lines
3.4 KiB
PHP
<?php
|
|
|
|
declare(strict_types=1);
|
|
|
|
use App\Filament\Resources\FindingResource\Pages\ViewFinding;
|
|
use App\Models\Finding;
|
|
use App\Models\User;
|
|
use Filament\Facades\Filament;
|
|
use Illuminate\Foundation\Testing\RefreshDatabase;
|
|
use Livewire\Livewire;
|
|
|
|
uses(RefreshDatabase::class);
|
|
|
|
it('shows workflow header actions on the view page for authorized members', function (): void {
|
|
[$user, $tenant] = createUserWithTenant(role: 'owner');
|
|
$this->actingAs($user);
|
|
Filament::setTenant($tenant, true);
|
|
|
|
$newFinding = Finding::factory()->for($tenant)->create(['status' => Finding::STATUS_NEW]);
|
|
$triagedFinding = Finding::factory()->for($tenant)->create(['status' => Finding::STATUS_TRIAGED]);
|
|
$resolvedFinding = Finding::factory()->for($tenant)->create([
|
|
'status' => Finding::STATUS_RESOLVED,
|
|
'resolved_at' => now(),
|
|
'resolved_reason' => 'fixed',
|
|
]);
|
|
|
|
Livewire::test(ViewFinding::class, ['record' => $newFinding->getKey()])
|
|
->assertActionVisible('triage')
|
|
->assertActionVisible('assign')
|
|
->assertActionVisible('resolve')
|
|
->assertActionVisible('close')
|
|
->assertActionVisible('request_exception');
|
|
|
|
Livewire::test(ViewFinding::class, ['record' => $triagedFinding->getKey()])
|
|
->assertActionVisible('start_progress');
|
|
|
|
Livewire::test(ViewFinding::class, ['record' => $resolvedFinding->getKey()])
|
|
->assertActionVisible('reopen')
|
|
->mountAction('reopen')
|
|
->assertActionMounted('reopen')
|
|
->callMountedAction()
|
|
->assertHasActionErrors(['reopen_reason']);
|
|
});
|
|
|
|
it('executes workflow actions from view header and supports assignment to tenant members only', function (): void {
|
|
[$user, $tenant] = createUserWithTenant(role: 'owner');
|
|
$this->actingAs($user);
|
|
Filament::setTenant($tenant, true);
|
|
|
|
$assignee = User::factory()->create();
|
|
createUserWithTenant(tenant: $tenant, user: $assignee, role: 'operator');
|
|
|
|
$outsider = User::factory()->create();
|
|
|
|
$finding = Finding::factory()->for($tenant)->create(['status' => Finding::STATUS_NEW]);
|
|
|
|
Livewire::test(ViewFinding::class, ['record' => $finding->getKey()])
|
|
->callAction('triage')
|
|
->assertHasNoActionErrors()
|
|
->callAction('assign', [
|
|
'assignee_user_id' => (int) $assignee->getKey(),
|
|
'owner_user_id' => (int) $user->getKey(),
|
|
])
|
|
->assertHasNoActionErrors()
|
|
->callAction('resolve', [
|
|
'resolved_reason' => 'handled in queue',
|
|
])
|
|
->assertHasNoActionErrors();
|
|
|
|
$finding->refresh();
|
|
expect($finding->status)->toBe(Finding::STATUS_RESOLVED)
|
|
->and((int) $finding->assignee_user_id)->toBe((int) $assignee->getKey())
|
|
->and((int) $finding->owner_user_id)->toBe((int) $user->getKey());
|
|
|
|
Livewire::test(ViewFinding::class, ['record' => $finding->getKey()])
|
|
->mountAction('reopen')
|
|
->assertActionMounted('reopen')
|
|
->callMountedAction()
|
|
->assertHasActionErrors(['reopen_reason']);
|
|
|
|
Livewire::test(ViewFinding::class, ['record' => $finding->getKey()])
|
|
->callAction('reopen', [
|
|
'reopen_reason' => 'The finding recurred after remediation.',
|
|
])
|
|
->assertHasNoActionErrors()
|
|
->callAction('assign', [
|
|
'assignee_user_id' => (int) $outsider->getKey(),
|
|
'owner_user_id' => (int) $user->getKey(),
|
|
]);
|
|
|
|
$finding->refresh();
|
|
expect((int) $finding->assignee_user_id)->toBe((int) $assignee->getKey());
|
|
});
|