diff --git a/spec/helpers/status_messages_helper_spec.rb b/spec/helpers/status_messages_helper_spec.rb index c15a6e793..c0f7c1e38 100644 --- a/spec/helpers/status_messages_helper_spec.rb +++ b/spec/helpers/status_messages_helper_spec.rb @@ -6,38 +6,37 @@ require 'spec_helper' describe StatusMessagesHelper do it "should not allow basic XSS/HTML" do - evil = "" - make_links(evil).should != evil + make_links("").should == "<script>alert('XSS is evil')</script>" end it "should recognize basic http links (1/3)" do proto="http" url="bugs.joindiaspora.com/issues/332" - make_links(proto+"://"+url).should = ""+url+"" + make_links(proto+"://"+url).should == ""+url+"" end it "should recognize basic http links (2/3)" do proto="http" url="www.youtube.com/watch?v=b15yaPYNDRU" - make_links(proto+"://"+url).should = ""+url+"" + make_links(proto+"://"+url).should == ""+url+"" end it "should recognize basic http links (3/3)" do proto="http" url="127.0.0.1:3000/users/sign_in" - make_links(proto+"://"+url).should = ""+url+"" + make_links(proto+"://"+url).should == ""+url+"" end it "should recognize basic ftp links" do proto="ftp" url="ftp.uni-kl.de/CCC/26C3/mp4/26c3-3540-en-a_hackers_utopia.mp4" # I did not watch that one, but the title sounds nice :P - make_links(proto+"://"+url).should = ""+url+"" + make_links(proto+"://"+url).should == ""+url+"" end it "should recognize www links" do url="www.joindiaspora.com" - make_links(url).should = ""+url+"" + make_links(url).should == ""+url+"" end