diff options
Diffstat (limited to 'test/services/user/roles.test.js')
| -rw-r--r-- | test/services/user/roles.test.js | 14 |
1 files changed, 14 insertions, 0 deletions
diff --git a/test/services/user/roles.test.js b/test/services/user/roles.test.js index 660df9d..11fd2a4 100644 --- a/test/services/user/roles.test.js +++ b/test/services/user/roles.test.js @@ -92,6 +92,20 @@ describe('user roles', () => { }) }) + it('doesnt let users fetch other users', (done) => { + chai.request(app) + .get('/users/') + .set('Accept', 'application/json') + .set('Authorization', 'Bearer '.concat(userRole.token)) + .send({ + }) + .end((err, res) => { + console.log(res.body) + done() + }) + }) + + it('doesnt let users CRUD other users', (done) => { chai.request(app) .patch('/users/'.concat(managerRole.id)) |
