mantimon-tcg/backend/tests/api
Cal Corum 3ec670753b Fix security and validation issues from code review
Critical fixes:
- Add admin API key authentication for admin endpoints
- Add race condition protection via unique partial index for starter decks
- Make starter deck selection atomic with combined method

Moderate fixes:
- Fix DI pattern violation in validate_deck_endpoint
- Add card ID format validation (regex pattern)
- Add card quantity validation (1-99 range)
- Fix exception chaining with from None (B904)

Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com>
2026-01-28 14:16:07 -06:00
..
__init__.py Implement Phase 2: Authentication system 2026-01-27 21:49:59 -06:00
conftest.py Implement Phase 2: Authentication system 2026-01-27 21:49:59 -06:00
test_auth.py Implement Phase 2: Authentication system 2026-01-27 21:49:59 -06:00
test_collections_api.py Fix security and validation issues from code review 2026-01-28 14:16:07 -06:00
test_decks_api.py Fix security and validation issues from code review 2026-01-28 14:16:07 -06:00
test_starter_deck_api.py Fix security and validation issues from code review 2026-01-28 14:16:07 -06:00
test_users.py Fix OAuth absolute URLs and add account linking endpoints 2026-01-27 22:06:22 -06:00