test(#337): Add workspaceId verification tests for multi-tenant isolation
- Verify tasks.service includes workspaceId in all queries - Verify knowledge.service includes workspaceId in all queries - Verify projects.service includes workspaceId in all queries - Verify events.service includes workspaceId in all queries - Add 39 tests covering create, findAll, findOne, update, remove operations - Document security concern: findAll accepts empty query without workspaceId - Ensures tenant isolation is maintained at query level Refs #337 Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com>
This commit is contained in:
1170
apps/api/src/common/tests/workspace-isolation.spec.ts
Normal file
1170
apps/api/src/common/tests/workspace-isolation.spec.ts
Normal file
File diff suppressed because it is too large
Load Diff
Reference in New Issue
Block a user