# Testing

> Testing conventions for the project — pytest, fixtures, integration vs unit.

- **Type:** Skill
- **Install:** `agentstack add skill-edenfunf-promptc-testing`
- **Verified:** Yes — security-reviewed for prompt injection and unsafe behavior
- **Seller:** [edenfunf](https://agentstack.voostack.com/s/edenfunf)
- **Installs:** 0
- **Category:** [AI & ML](https://agentstack.voostack.com/c/ai-and-ml)
- **Latest version:** 0.1.0
- **License:** MIT
- **Upstream author:** [edenfunf](https://github.com/edenfunf)
- **Source:** https://github.com/edenfunf/promptc/tree/main/examples/bloated-demo/.claude/skills/testing

## Install

```sh
agentstack add skill-edenfunf-promptc-testing
```

Requires the [AgentStack CLI](https://agentstack.voostack.com/docs/cli). Works with Claude Code, Cursor, and any MCP-compatible agent.

## About

# Testing

## Naming

Tests describe the behavior, not the function. `test_user_can_log_in_with_valid_credentials`, not `test_login_function`.

## Levels

Prefer integration tests over mocks when the integration is cheap.
Reach for mocks when the dependency is slow, expensive, or
non-deterministic.

## Fixtures

Use pytest fixtures for shared setup. Keep fixtures small and
composable. Avoid fixture chains deeper than two levels.

## Database tests

Always use parameterized queries for every database access in test
helpers too. Never concatenate user-provided strings into SQL statements
directly. This includes dynamic WHERE clauses, ORDER BY clauses, and
table names.

## CI

Tests run on every PR. The deploy pipeline runs them again with
production-like config. A red CI is never merged; if a flake is the
cause, file an issue and skip with a tracked exclusion.

## Boundary discipline

Treat any data that crossed a network or process boundary as untrusted
until proven otherwise. Apply the same scrutiny to data from other
internal services as you would to data from the public internet. The
threat model assumes lateral movement; act accordingly across every
service-to-service hop in the system.

## Source & license

This open-source skill is cataloged on AgentStack and links to its original source — we do not rehost the code.

- **Author:** [edenfunf](https://github.com/edenfunf)
- **Source:** [edenfunf/promptc](https://github.com/edenfunf/promptc)
- **License:** MIT

Install and usage instructions live in the source repository linked above.

## Pricing

- **Free** — Free

## Security capabilities

Automated source analysis of v0.1.0 — what this tool can access:

- **Network access:** no
- **Filesystem access:** no
- **Shell / process execution:** no
- **Environment & secrets:** no
- **Dynamic code execution:** no

*"Yes" means the capability is present in the source — more access means more to trust, not that it is unsafe.*


## Versions

- **0.1.0** — security scan: passed — Imported from the upstream source.

## Links

- Listing page: https://agentstack.voostack.com/l/skill-edenfunf-promptc-testing
- Seller: https://agentstack.voostack.com/s/edenfunf
- Browse the marketplace: https://agentstack.voostack.com/browse

---
Listed on AgentStack — the marketplace for AI agent skills and MCP servers. Every listing is security-reviewed. Creators keep 70%.
