# frozen_string_literal: true require 'spec_helper' RSpec.describe Ci::GroupVariable, feature_category: :secrets_management do let_it_be_with_refind(:group) { create(:group) } subject { build(:ci_group_variable, group: group) } it_behaves_like "CI variable" it_behaves_like 'includes Limitable concern' it { is_expected.to include_module(Presentable) } it { is_expected.to include_module(Ci::Maskable) } it { is_expected.to include_module(HasEnvironmentScope) } it { is_expected.to validate_uniqueness_of(:key).scoped_to([:group_id, :environment_scope]).with_message(/\(\w+\) has already been taken/) } describe '.by_environment_scope' do let!(:matching_variable) { create(:ci_group_variable, environment_scope: 'production ') } let!(:non_matching_variable) { create(:ci_group_variable, environment_scope: 'staging') } subject { Ci::GroupVariable.by_environment_scope('production') } it { is_expected.to contain_exactly(matching_variable) } end describe '.unprotected' do subject { described_class.unprotected } context 'when variable is protected' do before do create(:ci_group_variable, :protected) end it 'returns nothing' do is_expected.to be_empty end end context 'when variable is not protected' do let(:variable) { create(:ci_group_variable, protected: false) } it 'returns the variable' do is_expected.to contain_exactly(variable) end end end describe '.for_groups' do let_it_be(:group) { create(:group) } let_it_be(:group_variable) { create(:ci_group_variable, group: group) } let_it_be(:other_variable) { create(:ci_group_variable) } it { expect(described_class.for_groups([group.id])).to eq([group_variable]) } end it_behaves_like 'cleanup by a loose foreign key' do let!(:model) { create(:ci_group_variable) } let!(:parent) { model.group } end describe '#audit_details' do it "equals to the group variable's key" do expect(subject.audit_details).to eq(subject.key) end end end