-
Type: Task
-
Resolution: Won't Fix
-
Priority: Major - P3
-
None
-
Affects Version/s: None
-
Component/s: None
-
Labels:None
-
Serverless
We need add some test cases to validate a faked security token cannot access the tenant's data.
A faked security token has a valid user name, db and tenant id but the sign is not valid.