SponsorBlockServer/test/cases/getUserID.ts

316 lines
11 KiB
TypeScript
Raw Normal View History

2021-09-23 00:52:35 +02:00
import { db } from "../../src/databases/databases";
import { getHash } from "../../src/utils/getHash";
2021-07-12 08:43:46 +02:00
import assert from "assert";
2021-09-22 23:50:06 +02:00
import { client } from "../utils/httpClient";
import { AxiosResponse } from "axios";
const endpoint = "/api/userID";
2021-09-23 00:52:35 +02:00
const getUserName = (username: string): Promise<AxiosResponse> => client.get(endpoint, { params: { username } });
2021-06-25 09:33:41 +02:00
2021-07-12 08:43:46 +02:00
describe("getUserID", () => {
2021-06-25 09:33:41 +02:00
before(async () => {
const insertUserNameQuery = 'INSERT INTO "userNames" ("userID", "userName") VALUES(?, ?)';
2021-07-12 08:43:46 +02:00
await db.prepare("run", insertUserNameQuery, [getHash("getuserid_user_01"), "fuzzy user 01"]);
await db.prepare("run", insertUserNameQuery, [getHash("getuserid_user_02"), "fuzzy user 02"]);
await db.prepare("run", insertUserNameQuery, [getHash("getuserid_user_03"), "specific user 03"]);
await db.prepare("run", insertUserNameQuery, [getHash("getuserid_user_04"), "repeating"]);
await db.prepare("run", insertUserNameQuery, [getHash("getuserid_user_05"), "repeating"]);
2021-06-25 17:57:27 +02:00
await db.prepare("run", insertUserNameQuery, [getHash("getuserid_user_06"), getHash("getuserid_user_06")]);
2021-07-12 08:43:46 +02:00
await db.prepare("run", insertUserNameQuery, [getHash("getuserid_user_07"), "0redos0"]);
await db.prepare("run", insertUserNameQuery, [getHash("getuserid_user_08"), "%redos%"]);
await db.prepare("run", insertUserNameQuery, [getHash("getuserid_user_09"), "_redos_"]);
await db.prepare("run", insertUserNameQuery, [getHash("getuserid_user_10"), "redos\\%"]);
await db.prepare("run", insertUserNameQuery, [getHash("getuserid_user_11"), "\\\\\\"]);
await db.prepare("run", insertUserNameQuery, [getHash("getuserid_user_12"), "a"]);
2021-06-25 09:33:41 +02:00
});
2021-09-22 23:50:06 +02:00
it("Should be able to get a 200", (done) => {
getUserName("fuzzy user 01")
.then(res => {
2021-07-12 08:43:46 +02:00
assert.strictEqual(res.status, 200);
done();
})
.catch(err => done(err));
2021-06-25 09:33:41 +02:00
});
2021-09-22 23:50:06 +02:00
it("Should be able to get a 400 (No username parameter)", (done) => {
client.get(endpoint)
2021-07-12 08:43:46 +02:00
.then(res => {
assert.strictEqual(res.status, 400);
done();
})
.catch(err => done(err));
2021-06-25 09:33:41 +02:00
});
2021-09-22 23:50:06 +02:00
it("Should be able to get a 200 (username is public id)", (done) => {
2021-09-23 00:52:35 +02:00
client.get(endpoint, { params: { username: getHash("getuserid_user_06") } })
2021-09-22 23:50:06 +02:00
.then(res => {
2021-07-12 08:43:46 +02:00
assert.strictEqual(res.status, 200);
done();
})
.catch(err => done(err));
2021-06-25 17:57:27 +02:00
});
2021-09-22 23:50:06 +02:00
it("Should be able to get a 400 (username longer than 64 chars)", (done) => {
2021-09-23 00:52:35 +02:00
client.get(endpoint, { params: { username: `${getHash("getuserid_user_06")}0` } })
2021-07-12 08:43:46 +02:00
.then(res => {
assert.strictEqual(res.status, 400);
done();
})
.catch(err => done(err));
2021-06-25 17:57:27 +02:00
});
2021-09-22 23:50:06 +02:00
it("Should be able to get single username", (done) => {
2021-09-23 00:52:35 +02:00
client.get(endpoint, { params: { username: "fuzzy user 01" } })
2021-09-22 23:50:06 +02:00
.then(res => {
2021-07-12 08:43:46 +02:00
assert.strictEqual(res.status, 200);
const expected = [{
userName: "fuzzy user 01",
userID: getHash("getuserid_user_01")
}];
2021-09-22 23:50:06 +02:00
assert.deepStrictEqual(res.data, expected);
2021-07-12 08:43:46 +02:00
done();
})
.catch(err => done(err));
2021-06-25 09:33:41 +02:00
});
2021-09-22 23:50:06 +02:00
it("Should be able to get multiple fuzzy user info from start", (done) => {
getUserName("fuzzy user")
.then(res => {
2021-07-12 08:43:46 +02:00
assert.strictEqual(res.status, 200);
const expected = [{
userName: "fuzzy user 01",
userID: getHash("getuserid_user_01")
}, {
userName: "fuzzy user 02",
userID: getHash("getuserid_user_02")
}];
2021-09-22 23:50:06 +02:00
assert.deepStrictEqual(res.data, expected);
2021-07-12 08:43:46 +02:00
done();
})
.catch(err => done(err));
2021-06-25 09:33:41 +02:00
});
2021-09-22 23:50:06 +02:00
it("Should be able to get multiple fuzzy user info from middle", (done) => {
getUserName("user")
.then(res => {
2021-07-12 08:43:46 +02:00
assert.strictEqual(res.status, 200);
const expected = [{
userName: "fuzzy user 01",
userID: getHash("getuserid_user_01")
}, {
userName: "fuzzy user 02",
userID: getHash("getuserid_user_02")
}, {
userName: "specific user 03",
userID: getHash("getuserid_user_03")
}];
2021-09-22 23:50:06 +02:00
assert.deepStrictEqual(res.data, expected);
2021-07-12 08:43:46 +02:00
done();
})
.catch(err => done(err));
2021-06-25 09:33:41 +02:00
});
2021-06-25 20:35:51 +02:00
2021-09-22 23:50:06 +02:00
it("Should be able to get with public ID", (done) => {
2021-06-25 21:57:41 +02:00
const userID = getHash("getuserid_user_06");
2021-09-22 23:50:06 +02:00
getUserName(userID)
.then(res => {
2021-07-12 08:43:46 +02:00
assert.strictEqual(res.status, 200);
const expected = [{
userName: userID,
userID
}];
2021-09-22 23:50:06 +02:00
assert.deepStrictEqual(res.data, expected);
2021-07-12 08:43:46 +02:00
done();
})
.catch(err => done(err));
2021-06-25 20:35:51 +02:00
});
2021-09-22 23:50:06 +02:00
it("Should be able to get with fuzzy public ID", (done) => {
2021-06-25 21:57:41 +02:00
const userID = getHash("getuserid_user_06");
2021-09-22 23:50:06 +02:00
getUserName(userID.substr(10,60))
.then(res => {
2021-07-12 08:43:46 +02:00
assert.strictEqual(res.status, 200);
const expected = [{
userName: userID,
userID
}];
2021-09-22 23:50:06 +02:00
assert.deepStrictEqual(res.data, expected);
2021-07-12 08:43:46 +02:00
done();
})
.catch(err => done(err));
2021-06-25 20:35:51 +02:00
});
2021-09-22 23:50:06 +02:00
it("Should be able to get repeating username", (done) => {
getUserName("repeating")
.then(res => {
2021-07-12 08:43:46 +02:00
assert.strictEqual(res.status, 200);
const expected = [{
userName: "repeating",
userID: getHash("getuserid_user_04")
}, {
userName: "repeating",
userID: getHash("getuserid_user_05")
}];
2021-09-22 23:50:06 +02:00
assert.deepStrictEqual(res.data, expected);
2021-07-12 08:43:46 +02:00
done();
})
.catch(err => done(err));
2021-06-25 20:35:51 +02:00
});
2021-06-25 21:57:41 +02:00
2021-09-22 23:50:06 +02:00
it("Should be able to get repeating fuzzy username", (done) => {
getUserName("peat")
.then(res => {
2021-07-12 08:43:46 +02:00
assert.strictEqual(res.status, 200);
const expected = [{
userName: "repeating",
userID: getHash("getuserid_user_04")
}, {
userName: "repeating",
userID: getHash("getuserid_user_05")
}];
2021-09-22 23:50:06 +02:00
assert.deepStrictEqual(res.data, expected);
2021-07-12 08:43:46 +02:00
done();
})
.catch(err => done(err));
2021-06-27 05:02:52 +02:00
});
2021-09-22 23:50:06 +02:00
it("should avoid ReDOS with _", (done) => {
getUserName("_redos_")
.then(res => {
2021-07-12 08:43:46 +02:00
assert.strictEqual(res.status, 200);
const expected = [{
userName: "_redos_",
userID: getHash("getuserid_user_09")
}];
2021-09-22 23:50:06 +02:00
assert.deepStrictEqual(res.data, expected);
2021-07-12 08:43:46 +02:00
done();
})
.catch(err => done(err));
2021-06-25 21:57:41 +02:00
});
2021-09-22 23:50:06 +02:00
it("should avoid ReDOS with %", (done) => {
getUserName("%redos%")
.then(res => {
2021-07-12 08:43:46 +02:00
assert.strictEqual(res.status, 200);
const expected = [{
userName: "%redos%",
userID: getHash("getuserid_user_08")
}];
2021-09-22 23:50:06 +02:00
assert.deepStrictEqual(res.data, expected);
2021-07-12 08:43:46 +02:00
done();
})
.catch(err => done(err));
2021-06-25 21:57:41 +02:00
});
2021-09-22 23:50:06 +02:00
it("should return 404 if escaped backslashes present", (done) => {
getUserName("%redos\\\\_")
2021-07-12 08:43:46 +02:00
.then(res => {
assert.strictEqual(res.status, 404);
done();
})
.catch(err => done(err));
2021-06-25 21:57:41 +02:00
});
2021-09-22 23:50:06 +02:00
it("should return 404 if backslashes present", (done) => {
getUserName(`\\%redos\\_`)
2021-07-12 08:43:46 +02:00
.then(res => {
assert.strictEqual(res.status, 404);
done();
})
.catch(err => done(err));
2021-06-25 21:57:41 +02:00
});
2021-09-22 23:50:06 +02:00
it("should return user if just backslashes", (done) => {
getUserName(`\\\\\\`)
.then(res => {
2021-07-12 08:43:46 +02:00
assert.strictEqual(res.status, 200);
const expected = [{
userName: "\\\\\\",
userID: getHash("getuserid_user_11")
}];
2021-09-22 23:50:06 +02:00
assert.deepStrictEqual(res.data, expected);
2021-07-12 08:43:46 +02:00
done();
})
.catch(err => done(err));
2021-06-25 21:57:41 +02:00
});
2021-09-22 23:50:06 +02:00
it("should not allow usernames more than 64 characters", (done) => {
getUserName("0".repeat(65))
2021-07-12 08:43:46 +02:00
.then(res => {
assert.strictEqual(res.status, 400);
done();
})
.catch(err => done(err));
2021-06-25 21:57:41 +02:00
});
2021-09-22 23:50:06 +02:00
it("should not allow usernames less than 3 characters", (done) => {
getUserName("aa")
2021-07-12 08:43:46 +02:00
.then(res => {
assert.strictEqual(res.status, 400);
done();
})
.catch(err => done(err));
2021-06-25 21:57:41 +02:00
});
2021-06-27 05:02:52 +02:00
2021-09-22 23:50:06 +02:00
it("should allow exact match", (done) => {
2021-09-23 00:52:35 +02:00
client.get(endpoint, { params: { username: "a", exact: true } })
2021-09-22 23:50:06 +02:00
.then(res => {
2021-07-12 08:43:46 +02:00
assert.strictEqual(res.status, 200);
const expected = [{
userName: "a",
userID: getHash("getuserid_user_12")
}];
2021-09-22 23:50:06 +02:00
assert.deepStrictEqual(res.data, expected);
2021-07-12 08:43:46 +02:00
done();
})
.catch(err => done(err));
2021-06-27 05:02:52 +02:00
});
2021-09-22 23:50:06 +02:00
it("Should be able to get repeating username with exact username", (done) => {
2021-09-23 00:52:35 +02:00
client.get(endpoint, { params: { username: "repeating", exact: true } })
2021-09-22 23:50:06 +02:00
.then(res => {
2021-07-12 08:43:46 +02:00
assert.strictEqual(res.status, 200);
const expected = [{
userName: "repeating",
userID: getHash("getuserid_user_04")
}, {
userName: "repeating",
userID: getHash("getuserid_user_05")
}];
2021-09-22 23:50:06 +02:00
assert.deepStrictEqual(res.data, expected);
2021-07-12 08:43:46 +02:00
done();
})
.catch(err => done(err));
2021-06-27 05:02:52 +02:00
});
2021-09-22 23:50:06 +02:00
it("Should not get exact unless explicitly set to true", (done) => {
2021-09-23 00:52:35 +02:00
client.get(endpoint, { params: { username: "user", exact: 1 } })
2021-09-22 23:50:06 +02:00
.then(res => {
2021-07-12 08:43:46 +02:00
assert.strictEqual(res.status, 200);
const expected = [{
userName: "fuzzy user 01",
userID: getHash("getuserid_user_01")
}, {
userName: "fuzzy user 02",
userID: getHash("getuserid_user_02")
}, {
userName: "specific user 03",
userID: getHash("getuserid_user_03")
}];
2021-09-22 23:50:06 +02:00
assert.deepStrictEqual(res.data, expected);
2021-07-12 08:43:46 +02:00
done();
})
.catch(err => done(err));
2021-06-27 05:02:52 +02:00
});
2021-07-10 22:30:30 +02:00
2021-09-22 23:50:06 +02:00
it("should return 400 if no username parameter specified", (done) => {
client.get(endpoint)
2021-07-22 23:50:39 +02:00
.then(res => {
assert.strictEqual(res.status, 400);
done();
})
.catch(() => ("couldn't call endpoint"));
2021-07-10 22:30:30 +02:00
});
2021-06-25 09:33:41 +02:00
});