meal-order-manager/tests
Adam Moussa 311eab35c0
fix(auth): require Google authentication in cloud mode (#90)
* fix(auth): require Google authentication in cloud mode

Remove the public shared-key mechanism and fail closed on Google auth while adding submit-route throttling.

* fix(auth): address review follow-ups

Fail closed on whitespace-only Google configuration and centralize shared authentication behavior.

* test(auth): use non-secret Google client fixture

Make the public test identifier explicit so secret scanning does not misclassify it as an API key.

* test(auth): avoid OAuth-shaped fixture

Use a format-neutral audience value so secret scanning can distinguish the fixture from a real client identifier.

* chore(security): suppress public OAuth fixture

Document the scanner false positive without suppressing any runtime credential flow.
2026-08-03 13:51:12 -04:00
..
fixtures fix(form): accessibility for qty, status, and descriptions (#81) 2026-07-31 10:15:43 -04:00
conftest.py fix(test): fix aggregated notifier tests + enable CI test suite (INFRA-72) (#39) 2026-07-08 16:33:42 -04:00
test_admin_authorizer.py Add gateway-level authorizer to admin API (INFRA-100) (#24) 2026-06-08 18:05:09 -04:00
test_aggregate_orders.py Add weekly summary PDF and admin order-list download (#16) (#17) 2026-06-01 18:49:58 -04:00
test_close_form.py Add discount pricing, Google auth, and order hardening (#10) 2026-05-13 18:00:21 -04:00
test_generate_form.py fix(auth): require Google authentication in cloud mode (#90) 2026-08-03 13:51:12 -04:00
test_pdf.py Add weekly summary PDF and admin order-list download (#16) (#17) 2026-06-01 18:49:58 -04:00
test_secrets.py Add discount pricing, Google auth, and order hardening (#10) 2026-05-13 18:00:21 -04:00
test_slack_notifier.py fix(test): fix aggregated notifier tests + enable CI test suite (INFRA-72) (#39) 2026-07-08 16:33:42 -04:00
test_submit_order.py fix(auth): require Google authentication in cloud mode (#90) 2026-08-03 13:51:12 -04:00