diff options
Diffstat (limited to 'spec/features/users/zuora_csp_spec.rb')
-rw-r--r-- | spec/features/users/zuora_csp_spec.rb | 20 |
1 files changed, 20 insertions, 0 deletions
diff --git a/spec/features/users/zuora_csp_spec.rb b/spec/features/users/zuora_csp_spec.rb new file mode 100644 index 00000000000..f3fd27d6495 --- /dev/null +++ b/spec/features/users/zuora_csp_spec.rb @@ -0,0 +1,20 @@ +# frozen_string_literal: true + +require 'spec_helper' + +RSpec.describe 'Zuora content security policy' do + let(:user) { create(:user) } + let(:project) { create(:project) } + let(:pipeline) { create(:ci_pipeline, project: project) } + + before do + project.add_developer(user) + sign_in(user) + end + + it 'has proper Content Security Policy headers' do + visit pipeline_path(pipeline) + + expect(response_headers['Content-Security-Policy']).to include('https://*.zuora.com') + end +end |