Files
accounted/lib/bookkeeping/__tests__/delete-last-voucher.pg.test.ts
T
Jakob WennbergandClaude Opus 4.7 d0fbc2b616 refactor(ui): app-wide UI/UX consistency pass (#436)
* refactor(ui): app-wide UI/UX consistency pass

Net: +1,159 / −1,373 LOC across 77 files. No new features, no behavior
changes. Locks in a uniform design system across every dashboard surface.

What changed:

- **Foundation**: sidebar width 232→256px (md:w-64), spacing scale locked
  (Tailwind 1/2/3/4/6/8/10/12; 2.5/5 forbidden), card padding p-6 default
  (p-4 for compact metric cards), space-y-8 between page sections.

- **Tables unified**: all 33 thead blocks now share the Resultatrapport
  pattern via shadcn Table primitive (text-[11px] font-medium uppercase
  tracking-wider text-muted-foreground). Hand-rolled <table> instances
  converted where they were data tables; form/edit grids kept distinct.

- **Status badges unified**: every status indicator routes through
  shadcn <Badge variant>. Eliminated raw Tailwind colors
  (bg-amber-100, bg-emerald-500/10, bg-blue-100, bg-purple-100, etc.)
  in favor of the gnubok semantic palette (success=sage, warning=ochre,
  destructive=terracotta).

- **Empty states unified**: list pages migrated from hand-rolled
  "flex flex-col items-center py-12" divs to the EmptyState primitive.

- **Loading skeletons unified**: hand-rolled bg-muted rounded animate-pulse
  divs replaced with shadcn <Skeleton> across 15 files.

- **Touch targets**: 6 back-buttons + edit-pencil + inbox delete bumped
  from 24/32/36px to shadcn's 40px icon default. Added aria-labels on
  9 icon-only navigation buttons.

- **Date formatting**: formatDate() for accounting data (ISO yyyy-MM-dd,
  table-friendly) vs formatDateLong() for metadata (Swedish long form).
  Raw {x.invoice_date} renderings routed through formatDate() in 18 sites.

- **Toast titles**: eliminated 33 generic "Fel" titles. Each toast title
  now carries the action ("Kunde inte skapa lönekörning" etc.) with
  description carrying the error detail.

- **Page-level cleanups**:
  - Dashboard: dropped greeting hero + Snabbåtgärder/Att hantera nav
    duplicates + Visa detaljer collapsible.
  - Reports: 5-col mega-menu replaced with left-rail layout
    (new ReportsNav component).
  - Bookkeeping: fixed layout jump between Verifikationer/Ny verifikation
    tabs (moved FiscalYearSelector inside journal tab).
  - Bookkeeping: added voucher sort (A1 first / latest first) alongside
    existing date sort. Required matching API param sort_by.
  - KPI page: FiscalYearSelector instead of raw <select>; InfoTooltip
    instead of inline info-button toggle; bigger numbers.
  - Salary section: enum values translated to Swedish labels, mobile
    table collapses to Anställd+Netto on <md, KPI typography aligned
    with dashboard.
  - Invoice forms: styled RequiredMark + aria-required, tabular-nums
    on amount inputs.

- **CLAUDE.md**: new "Design System Tokens" subsection documents the
  locked spacing scale, primitives table, typography rules, date helpers,
  and forbidden patterns so future contributors don't drift.

Tests: 2,906 passing (unchanged). Lint: unchanged from main baseline.

Co-Authored-By: Claude Opus 4.7 (1M context) <noreply@anthropic.com>

* fix: address PR review feedback (Greptile + compliance bot)

- **formatDate / formatDateLong timezone fix**: switch from new Date() to
  parseISO. Bare yyyy-MM-dd strings are now parsed as local midnight rather
  than UTC midnight, eliminating the off-by-one display in west-of-UTC
  timezones flagged by Greptile.

- **DashboardContentProps cleanup**: removed unused firstName and settings
  fields from the interface, and the corresponding fetch (profiles table)
  + computation in app/(dashboard)/page.tsx. The greeting was dropped in
  the dashboard cleanup; these props were dead weight.

- **Voucher sort behavior documented**: extended the comment in the journal
  entries API route to explain why voucher sort intentionally uses strict
  fiscal_period_id filtering (BFL 5 kap 6–7 §§ — voucher numbers are
  series-scoped within a fiscal year). The row-count delta between date
  sort and voucher sort is now a documented design choice.

- **delete_last_voucher migration + draft-delete test included**: the UI
  already shipped the "Radera utkast" path in the previous commit; this
  pulls in the backing RPC migration that allows draft deletes (with the
  full safety logic — drafts skip series/period checks since they have
  voucher_number=0, posted entries go through the existing unchanged
  path). This was originally meant for a separate PR but the UI shipped
  half the feature without it.

Co-Authored-By: Claude Opus 4.7 (1M context) <noreply@anthropic.com>

* chore(migration): rename to match applied version

The function delete_last_voucher is already applied to the production DB
under version 20260509103736 (verified via pg_get_functiondef — exact
byte-for-byte match to file content). The previous file timestamp
20260509120000 would cause a fresh `supabase db push` to attempt re-applying
under a different version row. Renaming the file aligns local tracking
with what the database actually has.

Co-Authored-By: Claude Opus 4.7 (1M context) <noreply@anthropic.com>

* fix: address compliance bot findings (payroll label + VAT visibility)

- sick_karens label: drop "(första sjukdagen)" qualifier. Per sjuklönelagen
  6 §, karensavdrag is a single calculated amount (20% of one week's
  sjuklön) deducted from the first sick day's pay — not bounded to the
  first day. The qualifier could mislead users when the first sick day
  and return-to-work span a weekend. Swedish-payroll bot recommendation.

- Omvänd skattskyldighet badge: variant outline → warning. The reverse-
  charge indicator is compliance-critical (ML 16 kap) — missing it leads
  to incorrect input VAT deduction. Outline was too subtle; warning's
  ochre fill matches its semantic weight.

Co-Authored-By: Claude Opus 4.7 (1M context) <noreply@anthropic.com>

---------

Co-authored-by: Claude Opus 4.7 (1M context) <noreply@anthropic.com>
2026-05-11 16:34:07 +02:00

294 lines
10 KiB
TypeScript

import { randomUUID } from 'node:crypto'
import { describe, expect, it } from 'vitest'
import { getPool, withUserContext } from '@/tests/pg/setup'
import {
insertBalancedLines,
insertDraftJournalEntry,
seedCompany,
} from '@/tests/pg/fixtures'
// Set up a posted journal entry with balanced lines, going through draft so
// the line-immutability trigger is happy. Returns the entry id.
async function insertPostedEntryWithLines(params: {
userId: string
companyId: string
fiscalPeriodId: string
voucherNumber: number
reversesId?: string
sourceType?: string
}): Promise<string> {
const id = randomUUID()
await getPool().query(
`INSERT INTO public.journal_entries
(id, user_id, company_id, fiscal_period_id, voucher_number, voucher_series,
entry_date, description, source_type, status, reverses_id)
VALUES ($1, $2, $3, $4, $5, 'A', '2026-06-01', 'Test entry', $6, 'draft', $7)`,
[
id,
params.userId,
params.companyId,
params.fiscalPeriodId,
params.voucherNumber,
params.sourceType ?? 'manual',
params.reversesId ?? null,
],
)
await insertBalancedLines(id)
await getPool().query(
`UPDATE public.journal_entries SET status = 'posted' WHERE id = $1`,
[id],
)
return id
}
// Insert a document_attachment row already linked to a journal entry, so
// tests can exercise the bidirectional immutability trigger on the
// journal_entry_id column.
async function insertDocumentLinkedToEntry(params: {
userId: string
companyId: string
journalEntryId: string
}): Promise<string> {
const id = randomUUID()
await getPool().query(
`INSERT INTO public.document_attachments
(id, user_id, company_id, storage_path, file_name, sha256_hash,
journal_entry_id)
VALUES ($1, $2, $3, $4, $5, $6, $7)`,
[
id,
params.userId,
params.companyId,
`test/${id}.pdf`,
'receipt.pdf',
'a'.repeat(64),
params.journalEntryId,
],
)
return id
}
describe('delete_last_voucher.pg — RPC + immutability trigger interaction', () => {
it('deletes the last posted voucher in a series', async () => {
const { userId, companyId, fiscalPeriodId } = await seedCompany()
const entryId = await insertPostedEntryWithLines({
userId, companyId, fiscalPeriodId, voucherNumber: 1,
})
await withUserContext(userId, async (client) => {
await client.query(
`SELECT public.delete_last_voucher($1::uuid, $2::uuid)`,
[companyId, entryId],
)
// Verify inside the txn — withUserContext rolls back on exit, so an
// outer pool query would see the row again.
const after = await client.query(
`SELECT 1 FROM public.journal_entries WHERE id = $1`,
[entryId],
)
expect(after.rowCount).toBe(0)
})
})
it('flips original from reversed back to posted when its storno is deleted', async () => {
const { userId, companyId, fiscalPeriodId } = await seedCompany()
const originalId = await insertPostedEntryWithLines({
userId, companyId, fiscalPeriodId, voucherNumber: 1,
})
// Storno: insert with reverses_id already set so the immutability trigger
// never sees an UPDATE that adds it after the fact.
const stornoId = await insertPostedEntryWithLines({
userId, companyId, fiscalPeriodId, voucherNumber: 2,
sourceType: 'storno', reversesId: originalId,
})
// Mark original as reversed — posted → reversed is allowed by the state
// machine as long as no other fields change.
await getPool().query(
`UPDATE public.journal_entries SET status = 'reversed', reversed_by_id = $1 WHERE id = $2`,
[stornoId, originalId],
)
await withUserContext(userId, async (client) => {
await client.query(
`SELECT public.delete_last_voucher($1::uuid, $2::uuid)`,
[companyId, stornoId],
)
const restored = await client.query<{ status: string; reversed_by_id: string | null }>(
`SELECT status, reversed_by_id FROM public.journal_entries WHERE id = $1`,
[originalId],
)
expect(restored.rows[0]!.status).toBe('posted')
expect(restored.rows[0]!.reversed_by_id).toBeNull()
})
})
it('blocks direct DELETE on a posted entry without the bypass flag', async () => {
const { userId, companyId, fiscalPeriodId } = await seedCompany()
const entryId = await insertPostedEntryWithLines({
userId, companyId, fiscalPeriodId, voucherNumber: 1,
})
await expect(
getPool().query(`DELETE FROM public.journal_entries WHERE id = $1`, [entryId]),
).rejects.toThrow(/Cannot delete journal entries/i)
})
it('blocks UPDATE of arbitrary fields on a posted entry even when bypass flag is set', async () => {
const { userId, companyId, fiscalPeriodId } = await seedCompany()
const entryId = await insertPostedEntryWithLines({
userId, companyId, fiscalPeriodId, voucherNumber: 1,
})
const client = await getPool().connect()
try {
await client.query(`SELECT set_config('gnubok.allow_delete', 'true', true)`)
await expect(
client.query(
`UPDATE public.journal_entries SET description = 'tampered' WHERE id = $1`,
[entryId],
),
).rejects.toThrow(/Cannot modify a posted journal entry/i)
} finally {
client.release()
}
})
it('clears journal_entry_id on attached documents and deletes the voucher', async () => {
// Regression for the document-immutability triggers ignoring the
// gnubok.allow_delete bypass. delete_last_voucher unlinks documents
// (UPDATE document_attachments SET journal_entry_id = NULL) before
// deleting the entry; if the trigger refused the unlink the whole RPC
// would fail and the entry would remain.
const { userId, companyId, fiscalPeriodId } = await seedCompany()
const entryId = await insertPostedEntryWithLines({
userId, companyId, fiscalPeriodId, voucherNumber: 1,
})
const docId = randomUUID()
await getPool().query(
`INSERT INTO public.document_attachments
(id, user_id, company_id, storage_path, file_name, file_size_bytes,
mime_type, sha256_hash, journal_entry_id)
VALUES ($1, $2, $3, $4, 'underlag.pdf', 1024, 'application/pdf', $5, $6)`,
[
docId,
userId,
companyId,
`documents/${userId}/${docId}.pdf`,
'a'.repeat(64),
entryId,
],
)
await withUserContext(userId, async (client) => {
await client.query(
`SELECT public.delete_last_voucher($1::uuid, $2::uuid)`,
[companyId, entryId],
)
const entryAfter = await client.query(
`SELECT 1 FROM public.journal_entries WHERE id = $1`,
[entryId],
)
expect(entryAfter.rowCount).toBe(0)
const docAfter = await client.query<{ journal_entry_id: string | null }>(
`SELECT journal_entry_id FROM public.document_attachments WHERE id = $1`,
[docId],
)
expect(docAfter.rows[0]!.journal_entry_id).toBeNull()
})
})
it('blocks reversed → posted UPDATE without the bypass flag', async () => {
const { userId, companyId, fiscalPeriodId } = await seedCompany()
const entryId = await insertPostedEntryWithLines({
userId, companyId, fiscalPeriodId, voucherNumber: 1,
})
await getPool().query(
`UPDATE public.journal_entries SET status = 'reversed' WHERE id = $1`,
[entryId],
)
await expect(
getPool().query(
`UPDATE public.journal_entries SET status = 'posted' WHERE id = $1`,
[entryId],
),
).rejects.toThrow(/Cannot modify a reversed journal entry/i)
})
// The bypass must remain narrow: an unauthorized direct UPDATE that clears
// journal_entry_id outside delete_last_voucher (no gnubok.allow_delete
// transaction-local flag) must still raise BFL_DOCUMENT_IMMUTABILITY.
it('blocks direct UPDATE that nulls journal_entry_id without the bypass flag', async () => {
const { userId, companyId, fiscalPeriodId } = await seedCompany()
const entryId = await insertPostedEntryWithLines({
userId, companyId, fiscalPeriodId, voucherNumber: 1,
})
const documentId = await insertDocumentLinkedToEntry({
userId, companyId, journalEntryId: entryId,
})
await expect(
getPool().query(
`UPDATE public.document_attachments SET journal_entry_id = NULL WHERE id = $1`,
[documentId],
),
).rejects.toThrow(/BFL_DOCUMENT_IMMUTABILITY/)
})
// Drafts (voucher_number=0, never committed) can arise as orphans when a
// mark-paid or similar engine flow fails between draft creation and commit.
// They are not part of the verifikationsserie under BFL and must be
// deletable so users can clean up their books.
it('deletes a draft entry without touching the voucher series', async () => {
const { userId, companyId, fiscalPeriodId } = await seedCompany()
const draftId = await insertDraftJournalEntry({
userId, companyId, fiscalPeriodId,
})
await insertBalancedLines(draftId)
await withUserContext(userId, async (client) => {
const result = await client.query<{ delete_last_voucher: { deleted: boolean; was_draft: boolean } }>(
`SELECT public.delete_last_voucher($1::uuid, $2::uuid)`,
[companyId, draftId],
)
expect(result.rows[0]!.delete_last_voucher.deleted).toBe(true)
expect(result.rows[0]!.delete_last_voucher.was_draft).toBe(true)
const after = await client.query(
`SELECT 1 FROM public.journal_entries WHERE id = $1`,
[draftId],
)
expect(after.rowCount).toBe(0)
})
})
it('deletes a draft even when the fiscal period is locked', async () => {
// Drafts are not bokförda — period locks (which protect committed entries)
// do not need to block draft cleanup.
const { userId, companyId, fiscalPeriodId } = await seedCompany()
const draftId = await insertDraftJournalEntry({
userId, companyId, fiscalPeriodId,
})
await insertBalancedLines(draftId)
await getPool().query(
`UPDATE public.fiscal_periods SET locked_at = now() WHERE id = $1`,
[fiscalPeriodId],
)
await withUserContext(userId, async (client) => {
await client.query(
`SELECT public.delete_last_voucher($1::uuid, $2::uuid)`,
[companyId, draftId],
)
const after = await client.query(
`SELECT 1 FROM public.journal_entries WHERE id = $1`,
[draftId],
)
expect(after.rowCount).toBe(0)
})
})
})