System Acceptance & Security Testing Center
Automated verification of 8 core shoe inventory rules + 10 Single-User Security & Authentication scenarios.
Test Suite Status
0 of 18 Scenarios Passing
8 Stock Ledger Scenarios + 10 Single-User Security, First-Login & Protection Tests.
Scenario 1: Purchase Receiving
Purchase 20 pairs of Size 20 → stock must increase by 20 in ledger.
Scenario 2: Sales Stock Deduction
Sell 3 pairs → stock must decrease by 3 in ledger.
Scenario 3: Customer Return Restock
Return 1 pair → stock must increase by 1 in ledger.
Scenario 4: Size 20 → 21 Exchange
Exchange Size 20 for Size 21 → Size 20 (+1), Size 21 (-1) in single atomic operation.
Scenario 5: Warehouse A → B Transfer
Transfer 5 pairs from Warehouse A to B → A decreases by 5, B increases by 5.
Scenario 6: Stock Count Correction
Stock adjustment → ledger and audit log must both record difference and reason.
Scenario 7: Negative Stock Policy
Attempt to sell unavailable SKU → system must follow configured negative-stock policy.
Scenario 8: Stock Valuation & Ledger Match
Generate stock valuation → result must match inventory ledger balances.
Security Test 1: Single Owner Account Enforcement
Verify that exactly 1 owner account exists with full administrative privileges.
Security Test 2: Salted Password Verification
Password hashes must be salted and correctly validated with Argon2id format.
Security Test 3: Generic Error Messages
Failed login returns generic 'Invalid user ID or password' without exposing account existence.
Security Test 4: First Login Isolation
First-time login locks access and routes owner to /first-login with zero business data leaked.
Security Test 5: Brute-Force Rate Limiting
5 repeated failed logins trigger temporary account lockout duration.
Security Test 6: Session Invalidation on Logout
User logout destroys the active session and logs audit trail record.
Security Test 7: Full Owner Module Access
Authenticated owner has unrestricted access to all 12 ERP and POS modules.
Security Test 8: Zero Plaintext Passwords
Audit database records: zero plaintext passwords exist in state or storage.
Security Test 9: Mandatory Audit Trail Logging
All stock movements, logins, and setting updates create permanent immutable audit logs.
Security Test 10: Non-Destructive Data Policy
Void and reversal workflows used instead of hard record deletions.