
Security News
NVD Quietly Sweeps 100K+ CVEs Into a “Deferred” Black Hole
NVD now marks all pre-2018 CVEs as "Deferred," signaling it will no longer enrich older vulnerabilities, further eroding trust in its data.
behaving is a web application testing framework for Behavior-Driven-Development, based on behave and splinter.
behave is written in Python and is similar to Cucumber. behaving adds the step-libraries for multi-user web/email/sms/gcm interactions, and provides the Python behaving namespace so that independent step-libraries can work together.
Please refer to behave's excellent documentation for a guide on how to use it, how to write your custom steps and make it possible to extend behaving.
See CONTRIBUTING.rst
Starting to use behaving is pretty easy. Inside some python module,
add your features consisting each of one or more scenarios. These
features are Gherkin language files with an extension of .feature
. In
the same directory you should have a steps module which imports the
behaving steps as well as your own custom steps (more on that later in
the setup_ section) . Here's a basic example:
Feature: Text presence
Background:
Given a browser
Scenario: Search for BDD
When I visit "http://www.wikipedia.org/"
And I fill in "search" with "BDD"
And I press "go"
Then I should see "Behavior-driven development" within 5 seconds
While the web is the focus of behaving, it also includes simple mocks for a mail, SMS and a GCM server. These come with a small collection of steps allowing you to do things like:
Feature: Email & SMS
Scenario: Click link in an email
Given a browser
When I send an email to "foo@bar.com" with subject "Hello" and body "Try out this website at http://google.com"
And I click the link in the email I received at "foo@bar.com"
Then the browser's URL should be "http://google.com/"
Scenario: Receive SMS with body
When I send an sms to "+4745690001" with body "Hello world"
Then I should receive an sms at "+4745690001" containing "world"
Scenario: Receive GCM Notification
When I send a gcm message "{"to":"deviceID", "data": {"message": "Foo Bar", "badge": 6}}"
Then I should receive a gcm notification at "deviceID" containing "{'data': {'message': 'Foo Bar'}}"
Typically, it will be your web application that sends email/sms/notifications and testing it comes down to configuring the application to send email/sms/notifications to the mock servers.
A lot of web apps today rely on multi-user interactions. To help you with those interactions, behaving uses the notion of personas. A persona within a test runs in its own instance of a browser and you can have more than one persona (and its browser instance) running concurrently. You switch among personas by calling
Given "PersonaName" as the persona
Personas are also typically implemented as simple dictionaries allowing them to carry state, save and reuse variables inside a scenario. When a persona is first invoked it is created as an empty dictionary. You can predefine personas though with set values.
Let's take the familiar LOTR characters as our test users. On setting up the test environment (details later in the setup_ section), we set up the characters basic variables we might be needing in the tests as such:
PERSONAS = {
'Frodo': dict(
fullname=u'Frodo Baggins',
email=u'frodo@shire.com',
password=u'frodopass',
mobile='+4745690001',
address: {
street: "The Shire",
zip: "4321"
}
),
'Gandalf': dict(
fullname=u'Gandalf the Grey',
email=u'gandalf@wizardry.com',
password=u'gandalfpass',
mobile='+4745690004',
address: {
street: "Rivendell street 1",
zip: "1234"
}
),
...
}
def before_scenario(context, scenario):
...
context.personas = PERSONAS
Within a test and given a persona, you can now use $var_name
to access
a variable of a persona. You can also set new variables on personas. So
the following,
Given "Gandalf" as the persona
When I fill in "name" with "$fullname"
And I fill in "street" with "$address.street"
And I set "title" to the text of "document-title"
And I fill in "delete" with "$title"
And I set "address.country" to the text of "country"
And I set "postaddress" to:
"""
$fullname
$address.street, $address.zip, $address.country
"""
would fill in the field with id name
with Gandalf the Grey
, street
with Rivendell street 1
set the variable title
to the text of the
element with id document-title
and reuse the variable title
to fill
in the field with id delete
. It would also store the value of the
field with id "country" in address[country
]. The $var_name
pattern
is also usable in the text received by steps that expect a body of text,
which means that the postaddress
persona variable will contain
Gandalf's complete snail-mail postage address nicely formatted on
multiple lines.
Let us assume the following (coming from a real example) scenario. Crypho, is an online messaging/sharing site that provides users with end-to-end encrypted real-time communications. behaving was written to help test Crypho.
In Crypho, teams collaborate in spaces. To invite somebody in a space the invitee has to share a token with an invitor, so both can verify each other's identity.
Feature: Frodo invites Gandalf to The Shire space
Given state "the-shire"
Scenario: Frodo invites Gandalf to The Shire
Given "Gandalf" as the persona
When I log in
Before the scenarios start, the custom step Given state "the-shire"
executes. This preloads the db with data, sets up the server etc. Then
the scenario executes:
First Gandalf logs in. The step Given "Gandalf" as the persona
, fires
up a browser that belongs to the persona Gandalf. The following step,
When I log in
is a custom step defined as follows:
@when('I log in')
def log_in(context):
assert context.persona
context.execute_steps(u"""
When I go to Home
Then I should see an element with id "email" within 2 seconds
When I fill in "email" with "$email"
And I press "send-sms"
Then I should see "We have sent you an SMS with a security code" within 2 seconds
And I should receive an sms at "$mobile"
And "token" should be enabled
When I parse the sms I received at "$mobile" and set "Your Crypho code is {token}"
And I fill in "token" with "$token"
And I fill in "password" with "$password"
And I press "login"
Then I should see "Crypho" within 5 seconds
""")
Observe above how the current persona (Gandalf) parses the sms it receives and saves it as "token". Later Gandalf reuses it to fill in the two-factor authentication field.
Now that Gandalf is logged in, the test proceeds with Frodo. Frodo will log in, and invite Gandalf to a private space.
Given "Frodo" as the persona
When I log in
And I click the link with text that contains "My spaces"
And I click the link with text that contains "The Shire"
And I press "invite-members"
Then I should see "Invite members" within 1 seconds
When I fill in "invitees" with "gandalf@wizardry.com"
And I fill in "invitation-message" with "Come and join us!"
And I press "send-invitations"
Then I should see "Your invitations have been sent" within 2 seconds
Once the invitations are sent we switch back to Gandalf's browser, who should have received a notification in his browser, as well as an email. He then proceeds to send an sms to Frodo with the token who completes the invitation.
Given "Gandalf" as the persona
Then I should see "Your invitations have been updated" within 2 seconds
And I should receive an email at "gandalf@wizardry.com" containing "Frodo Baggins has invited you to join a private workspace in Crypho"
When I click the link with text that contains "Invitations"
And I click the link with text that contains "Pending invitations"
Then I should see "Come and join us!"
When I set "token" to the text of "invitation-token"
And I send an sms to "45699900" with body "$token"
Given "Frodo" as the persona
Then I should receive an sms at "45699900"
When I set "FrodoToken" to the body of the sms I received at "45699900"
And I click the link with text that contains "Invitations"
And I click the link with text that contains "Enter authorization token"
And I fill in "auth-token" with "$FrodoToken"
And I press "Submit"
Then I should see "The invitation has been accepted." within 5 seconds
And I should see "Gandalf the Grey has joined the space, invited by Frodo Baggins" within 10 seconds
You can see the test in action on video here.
Start by installing behaving by using either pip
or easy_install
.
This will also install dependencies and create the behave
script with
which you invoke your tests. If you prefer using buildout, clone the
package itself from its repository, it contains already a buildout
configuration.
Typically you will be having a folder containing all your features and steps. For example a directory structure like the following:
features/
features/mytest.feature
features/myothertest.feature
features/environment.py
features/steps/
features/steps/steps.py
In the steps directory you will need to import the behaving steps you
need. You can also define your own steps. So steps.py
might look like:
from behave import when
from behaving.web.steps import *
from behaving.sms.steps import *
from behaving.mail.steps import *
from behaving.notifications.gcm.steps import *
from behaving.personas.steps import *
@when('I go to home')
def go_to_home(context):
context.browser.visit('https://web/')
In environment.py
you specify settings as well the things that need to
happen at various stages of testing, i.e. before and after everything, a
feature run, or a scenario run. For convenience you can import and reuse
behaving.environment
which will perform default actions like closing
all browsers after a scenario, clean the email folder etc.
It is also possible to use behaving.web.environment
,
behaving.mail.environment
, behaving.sms.environment
and
behaving.personas.environment
on their own, if you don't have need for
SMS for example.
An example of an environment that does simply set some variables and then rely on default actions for the various stages, might look like the following:
import os
from behaving import environment as benv
PERSONAS = {}
def before_all(context):
import mypackage
context.attachment_dir = os.path.join(os.path.dirname(mypackage.__file__), 'tests/data')
context.sms_path = os.path.join(os.path.dirname(mypackage.__file__), '../../var/sms/')
context.gcm_path = os.path.join(os.path.dirname(mypackage.__file__), '../../var/gcm/')
context.mail_path = os.path.join(os.path.dirname(mypackage.__file__), '../../var/mail/')
benv.before_all(context)
def after_all(context):
benv.after_all(context)
def before_feature(context, feature):
benv.before_feature(context, feature)
def after_feature(context, feature):
benv.after_feature(context, feature)
def before_scenario(context, scenario):
benv.before_scenario(context, scenario)
context.personas = PERSONAS
def after_scenario(context, scenario):
benv.after_scenario(context, scenario)
The following variables are supported and can be set to override defaults:
screenshots_dir
(the path where screenshots will be saved. If it
is set, any failure in a scenario will result in a screenshot of the
browser at the time when the failure happened.)attachment_dir
(the path where file attachments can be found)sms_path
(the path to be used by smsmock
to save sms. Defaults
to current_dir/sms
)gcm_path
(the path to be used by gcmmock
to save gcm
notifications. Defaults to current_dir/gcm
)mail_path
(the path to be used by mailmock
to save mail.
Defaults to current_dir/mail
)default_browser
default_browser_size
(tuple (width, height), applied to each
browser as it's created)max_browser_attempts
(how many times to retry creating the browser
if it fails)remote_webdriver_url
(points to your selenium hub url or remote
webdriver. Defaults to None
)browser_args
(a dict of additional keyword arguments used when
creating a browser)base_url
(the base url for a browser, allows you to use relative
paths)accept_ssl_certs
(setting to True
will accept self-signed/invalid
certificates. Defaults to None
)You can run the tests simply by issuing
./bin/behave ./features
For chrome and docker issues, the code below is useful
from selenium.webdriver.chrome.options import Options
chrome_options = Options()
chrome_options.add_argument('--no-sandbox')
context.browser_args = {
'options': chrome_options
}
When behaving is installed, it creates three scripts to help you test
mail, gcm and sms, mailmock
, gcmmock
and smsmock
respectively. You
can directly invoke them before running your tests, they all take a port
as well as the directory to output data as parameters. For example,
./bin/smsmock -p 8081 -o ./var/sms
./bin/gcmmock -p 8082 -o ./var/notifications/gcm
./bin/mailmock -p 8083 -o ./var/mail [--no-stdout]
behaving.web
Supported matchers/stepsBrowsers
brand
as the default browser [sets the default browser to be brand
, this is the browser name when using the remote webdriver or Firefox, Chrome, Safari]app_path
" [for use with electron-based desktop apps]name
" [opens the browser named name
]width
xheight
width
xheight
screenshots_dir
is set on the environment. Also, if screenshots_dir
is set, all failing tests will result in a screenshot.]script
"key
" to "value
"key
"name
"Frames
css
"Windows
name
" at "url
"name
"name
"URLs
url
" [sets the base url to url
, alternatively set context.base_url
directly in environment.py
]url
"url
"{expression}
"url
"text
"text
"Links
url
"url
"text
"text
"Text, element & class presence
When I wait for timeout
seconds
When I show the element with id "id
"
When I hide the element with id "id
"
Text
text
"text
"text
" within timeout
secondstext
" within timeout
secondsID
id
"id
"id
" within timeout
secondsid
" within timeout
secondsCSS
selector
"selector
"selector
" within timeout
secondsselector
" within timeout
secondsn
elements with the css selector "css
"n
elements with the css selector "css
" within timeout
secondscss
" should be visiblecss
" should be visible within timeout
secondscss
" should not be visiblecss
" should be visible within timeout
secondscss
" should be visiblecss
" should be visible within timeout
secondscss
" should be visiblecss
" should be visible within timeout
secondsxpath
" should have the class "cls
"xpath
" should not have the class "cls
"xpath
" should have the class "cls
" within timeout
secondsxpath
" should not have the class "cls
" within timeout
secondsname
" should have the class "cls
"name
" should not have the class "cls
"name
" should have the class "cls
" within timeout
secondsname
" should not have the class "cls
" within timeout:d
secondsxpath
"xpath
"xpath
" within timeout
secondsxpath
" within timeout
secondsForms
name|id
" with "value
"name|id
"value
" to "name|id
" [same as fill, but happens slowly triggering keyboard events]value
" from "name
"name|id
"name|id
"name|id
"value
" from "name
""text
" from "name
""name|id|text|innerText
"xpath
"path
" to "name
"id
" to "contents
" [Sets html on a contenteditable
element with id id
to contents
]class
" to "contents
"class
" to "contents
"KEY
" to "name
"name
"name
" should have the value "value
"name
" should have the value "value
" within timeout
secondsname
" should have the options "valueA, valueB
" selectedname
" should be enabledname
" should be disabledname
" should not be enabledname
" should be validname
" should be invalidname
" should not be validname
" should be requiredname
" should not be requiredHTML tables
Then the table with id "id
" should be
| header1 | header2 | ... | header(m) |
| cell00 | cell01 | ... | cell0m |
| cell10 | cell11 | ... | cell1m |
...
| celln0 | celln1 | ... | cellnm |
Then the table with xpath "xpath
" should be
| header1 | header2 | ... | header(m) |
| cell00 | cell01 | ... | cell0m |
| cell10 | cell11 | ... | cell1m |
...
| celln0 | celln1 | ... | cellnm |
Then the table with id "id
" should contain the rows
| cell00 | cell01 | ... | cell0m |
| cell10 | cell11 | ... | cell1m |
Then the table with xpath "xpath
" should contain the rows
| cell00 | cell01 | ... | cell0m |
| cell10 | cell11 | ... | cell1m |
Then the table with id "id
" should not contain the rows
| cell00 | cell01 | ... | cell0m |
| cell10 | cell11 | ... | cell1m |
Then the table with xpath "xpath
" should not contain the rows
| cell00 | cell01 | ... | cell0m |
| cell10 | cell11 | ... | cell1m |
Then row row_no
in the table with id "id
" should be
| cell00 | cell01 | ... | cell0m |
Then row row_no
in the table with xpath "xpath
" should be
| cell00 | cell01 | ... | cell0m |
Then the value of the cell in row row_no
, column col_no
in the table with id "id
" should be "value
"
Then the value of the cell in row row_no
, column col_no
in the table with xpath "xpath
" should be "value
"
Then the value of the cell in row row_no
, column "col_header
" in the table with id "id
" should be "value
"
Then the value of the cell in row row_no
, column "col_header
" in the table with xpath "xpath
" should be "value
"
Alerts & prompts
text
" to the alert - When I accept the alert - When I dismiss the alert - Then I should see an alert - Then I should see an alert within timeout
seconds - Then I should see an alert containing "text
" - Then I should see an alert containing "text
" within timeout
secondsMouse
xpath
"xpath
"Downloads
filename
" with contents "text
" should have been downloaded within timeout
secondsfilename
" should have been downloaded within timeout
secondsPersona interaction & variables
key
" to the text of "id|name
"key
" to the attribute "attr
" of the element with xpath "xpath
"script
" and assign the result to "key
"behaving.mail
Supported matchers/stepsaddress
"address
" and set "expression
"address
"address
" with subject "subject
"address
" containing "text
"address
" with attachment "filename
"address
"behaving.sms
Supported matchers/stepskey
" to the body of the sms I received at "number
"number
" and set "expression
"number
"number
" containing "text
"behaving.notifications.gcm
Supported matchers/stepsbehaving.personas
Supported matchers/stepsname
" as the personakey
" to "value
"key
" to:some longer body of text
usually multiline
source
" to "target
"key
" is set to "value
"A Dockerfile
as well as a complete setup using docker-compose
are provided to help you create selenium grid configurations that run your tests. In addition dev container configuration is included if VSCode is your thing.
In addition we provide pre-build images on docker hub for the linux/amd64
and linux/arm64
platforms. Use
docker pull behaving/behaving:latest
to pull the image.
You can run all behaving tests as follows:
Start docker compose:
docker-compose up
Open a shell in the behaving container:
docker-compose exec behaving bash
Run behaving tests:
behave tests/features
FAQs
BDD Behavior-Driven-Development testing
We found that behaving demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 2 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
NVD now marks all pre-2018 CVEs as "Deferred," signaling it will no longer enrich older vulnerabilities, further eroding trust in its data.
Research
Security News
Lazarus-linked threat actors expand their npm malware campaign with new RAT loaders, hex obfuscation, and over 5,600 downloads across 11 packages.
Security News
Safari 18.4 adds support for Iterator Helpers and two other TC39 JavaScript features, bringing full cross-browser coverage to key parts of the ECMAScript spec.