1
0
Fork 0
mirror of https://github.com/sinatra/sinatra synced 2023-03-27 23:18:01 -04:00
sinatra/rack-protection/spec/authenticity_token_spec.rb

12 lines
510 B
Ruby
Raw Normal View History

require File.expand_path('../spec_helper.rb', __FILE__)
describe Rack::Protection::AuthenticityToken do
it_behaves_like "any rack application"
2011-06-19 15:35:58 +02:00
it "denies post requests without any token"
it "accepts post requests with correct X-CSRF-Token header"
it "denies post requests with wrong X-CSRF-Token header"
it "accepts post form requests with correct authenticity_token field"
it "denies post form requests with wrong authenticity_token field"
it "prevents ajax requests without a valid token"
end