Files
admin/.cursor/skills/plan/templates/security-tests.md
T
Oleksandr Bezdieniezhnykh d96971b050 Update .gitignore to include .env and .DS_Store files
Add .cursor autodevelopment system
2026-03-25 17:41:10 +02:00

818 B

Security Tests Template

Save as DOCUMENT_DIR/tests/security-tests.md.


# Security Tests

### NFT-SEC-01: [Test Name]

**Summary**: [What security property this validates]
**Traces to**: AC-[ID], RESTRICT-[ID]

**Steps**:

| Step | Consumer Action | Expected Response |
|------|----------------|------------------|
| 1 | [attempt unauthorized access / injection / etc.] | [rejection / no data leak / etc.] |

**Pass criteria**: [specific security outcome]

Guidance Notes

  • Security tests at blackbox level focus on black-box attacks (unauthorized API calls, malformed input), not code-level vulnerabilities.
  • Verify the system remains operational after security-related edge cases (no crash, no hang).
  • Test authentication/authorization boundaries from the consumer's perspective.