Api-sheriff is an API testing framework that uses the NodeJS libraries "Q" and "request". It can be used to test contents of JSON responses by verifying the JSON structure and asserting on the types and values of certain fields. This initiative was inspired by Frisby.js, another tool for API Testing written by Vance Lucas (http://frisbyjs.com/). This tool was very useful for our testing needs, and so we wanted to enhance it by introducing more features and improving its flexibility.
The following features make it unique when compared to other API testing frameworks -
- It is compatible with both Mocha and Jasmine-Node.
- It allows writing of simple and flexible tests that require step by step analysis of the results. All the methods are synchronized through the use of promises.
- It allows a user to inject custom code at any step within a test; making it very flexible and adaptable.
- It allows for customized error handling. An optional, custom error parameter can be passed to all functions.
Api-sheriff supports the following functions -
- submitPostRequest
- submitGetRequest
- checkFieldPresent
- checkFieldNotPresent
- checkJsonTypes
- checkJsonPresent
- checkJsonLength
- checkHeaderContains
- checkSortOrder
- compareJson
- compareJsonWithMap
- checkDuplicates
All you need to do is include the module into your Mocha/Jasmine tests -
var apisheriff = require('api-sheriff');
var first_resp;
describe("Compare 2 custom api endpoints", function() {
var status_code;
this.timeout(80000);
it("Submit request to first endpoint", function(done) {
apisheriff.submitGetRequest("http://imaginaryhost1:8080/getProperties/nyc", { "Content-Type": "application/json"}, { "json": true }, done, "Endpoint down").then(function(resp) {
first_resp = resp;
});
}, 30000);
it("Test Status Code", function(done) {
apisheriff.checkJsonPresent(".", { "statusCode": 200}, first_resp, 'strict_notnull', done);
});
});
Syntax - submitPostRequest(url, body, headers, options, done, error)
- url (String) - URL of the API to submit the request to
- body (JSON) - Body of the POST request
- headers (String)- (Type: JSON) Headers for the request in JSON format. Default is application/json. If you want to use the default, pass null to this parameter.
- options (JSON) - Optional parameters to pass in the request JSON. If your API is JSON based, pass {json: true}.
- done - Done callback to call once the promise is resolved. Pass as is.
- error (String)- Custom error object; optional
Syntax - submitGetRequest(url, headers, options, done, error)
- url (String) - URL of the API to submit the request to
- headers (String) - (Type: JSON) Headers for the request in JSON format. Default is application/json. If you want to use the default, pass null to this parameter.
- options (JSON) - Optional parameters to pass in the request JSON. If your API is JSON based, pass {json: true}.
- done - Done callback to call once the promise is resolved. Pass as is.
- error (String) - Custom error object; optional
Syntax - checkFieldPresent(path, fieldName, json, mode, done, custom_error)
- path (String) - Path to the field in the JSON object under consideration.
- fieldName (String) - Name of the field.
- json (JSON) - Input JSON.
- mode (String) - Strict or Relaxed. (Explained later)
- done - Done callback to call once the promise is resolved. Pass as is.
- error (String) - Custom error object; optional
Syntax - checkFieldNotPresent(path, fieldName, json, mode, done, custom_error)
- path (String) - Path to the field in the JSON object under consideration.
- fieldName (String) - Name of the field.
- json (JSON) - Input JSON.
- mode (String) - Strict or Relaxed.
- done - Done callback to call once the promise is resolved. Pass as is.
- error (String) - Custom error object; optional
checkJsonTypes - Check if the field types in the specified child JSON object are consistent with the corresponding field types in the parent JSON.
Syntax - checkJsonTypes(path, inputJson, json, mode, done, custom_error)
- path (String) - Path to the root of the child JSON.
- inputJson (JSON) - The child Json object.
- json (JSON) - Parent JSON.
- mode (String) - Strict_Null, Strict_NotNull, Relaxed_Null or Relaxed_NotNull.
- done - Done callback to call once the promise is resolved. Pass as is.
- error (String) - Custom error object; optional
checkJsonPresent - Check if the field values in the specified child JSON object are consistent with the corresponding field values in the parent JSON.
Syntax - checkJsonPresent(path, inputJson, json, mode, done, error)
- path (String) - Path to the root of the child JSON.
- inputJson (JSON) - The child Json object.
- json (JSON) - Parent JSON.
- mode (String) - Strict_Null, Strict_NotNull, Relaxed_Null or Relaxed_NotNull.
- done - Done callback to call once the promise is resolved. Pass as is.
- error (String) - Custom error object; optional
checkJsonLength - Check if the object in the given path of the JSON object has the required length. If the object is a basic type such as String or integer, the default length() method is used. If the object is an array, the number of objects in the array is returned. If the object is a JSON object, the number of fields in the JSON object is returned.
Syntax - checkJsonLength(path, json, expectedLength, mode, done, error)
- path (String) - Path to the root of the child JSON.
- json (JSON) - The parent Json object.
- expectedLength (Integer) - Expected length of the object on the given path.
- mode (String) - Strict or Relaxed.
- done - Done callback to call once the promise is resolved. Pass as is.
- error (String) - Custom error object; optional.
checkHeaderContains - Check if the field values in the specified child JSON object are consistent with the corresponding field values in the parent JSON.
Syntax - checkHeaderContains(headerJson, header, value, done, error)
- headerJson (JSON) - The header JSON to check against.
- header (String) - The header field to check.
- value (String) - Value of the given header field.
- done - Done callback to call once the promise is resolved. Pass as is.
- error (String) - Custom error object; optional
Syntax - checkSortOrder(path, sortType, json, mode, done, error)
- path (String) - Path to the field in the JSON.
- sortType (String) - ASC or DESC. ASC - Ascending order, DESC - Descending order.
- json (JSON) - Input JSON.
- mode (String) - Strict or Relaxed.
- error (String) - Custom error object; optional.
Syntax - compareJson(json1, json2, fields, mode, done, error)
- json1 (JSON) - First JSON object.
- json2 (JSON) - Second JSON object.
- fields (List) - List of strings that contain the full JSON Path to the fields to check against (including the field itself)
- mode (String) - Strict or Relaxed.
- error (String) - Custom error object; optional.
compareJsonWithMap - Compare 2 differently structured JSON objects based on a provided mapping of fields between the 2 JSON's.
Syntax - compareJsonWithMap(json1, json2, fieldmap, mode, done, error)
- json1 (JSON) - First JSON object.
- json2 (JSON) - Second JSON object.
- fieldmap (List) - List of JSON objects. Each JSON object is a map of a field from the 1st JSON to the corresponding field from the 2nd JSON. Eg: [{"node1.*.node2.field1": "node1.node2.*.field2"}], where node1.*.node2.field1 is a valid path in JSON 1 and node1.node2.*.field2 is a valid path in JSON 2. (Note: The number of *'s in a mapping should be the same, otherwise there would be ambiguity in matching all the matching nodes)
- mode (String) - Strict or Relaxed.
- error (String) - Custom error object; optional.
checkDuplicates - Check a list of fields against a JSON object to see if each field is unique in all possible child nodes.
Syntax - checkDuplicates(field_list, json, done, error)
- field_list (List) - List of fields
- JSON - The JSON object to check against.
- error(String) - Custom error object; optional.
Api-sheriff modes are best explained with examples. For each mode, a bunch of apisheriff method calls are listed, explaining what each call does.
checkFieldPresent("hotels.*.rates", "price", <json>, "strict" , done);
Strict mode ensures that all children of "hotels" have a "rates" field. The overall method checks if the "rates" fields for all hotels have a "price" field.
checkFieldPresent("hotels.*.promos.*.discount", "condition", <json>, "strict" , done);
Strict mode ensures that all hotels have a "promos" field, as well as all promos have a "discount" field.
checkFieldPresent("hotels.*.rates", "price", <json>, "relaxed" , done);
Relaxed mode ignores the hotels child nodes that do not have a "rates" field. But the overall method call checks that the hotels that do have a "rates" field, have a "price" field inside them.
compareJsonWithMap(json1, json2, [{"hotels.*.ratesSummary.minPrice", "expressDeals.*.price"}], "relaxed", done);
Relaxed mode ignores those hotels that do not have a ratesSummary field. minPrice, however, should be present for all nodes that contain the given parent nodes in its path.
checkJsonTypes("hotels.*.rates", { "price": "number" }, <json>, "strict_notnull", done);
Strict_notnull not only checks if all hotels have a rates field, but also ensures that the fields in the child JSON object are present in all of the child nodes of hotels. The overall method checks if the "price" attribute is a number for all hotels.
checkJsonTypes("hotels.*.rates", { "price": "number" }, <json>, "strict_null", done);
Strict_null allows the "price" field to not be present in some or all of the nodes. However, if it is present, then the method checks if it is a number. Strict_null also checks if all hotels have a "rates" field.
checkJsonTypes("hotels.*.rates", { "price": "number" }, <json>, "relaxed_notnull", done);
Relaxed_notnull allows some of the hotels to not have a "rates" field. If they do have it, then "price" should not be null, and it should be a number.
checkJsonTypes("hotels.*.rates", { "price": "number" }, <json>, "relaxed_null", done);
Relaxed_null allows some of the hotels to not have a "rates" field. If they do have it, then "price" can be null, but if not null, it should be a number.
all development should be done in the /src
file and the task gulp
should be run from the command line to update the production files