create(); $response = $this->actingAs($user)->get('/confirm-password'); $response->assertStatus(200); } public function test_password_can_be_confirmed(): void { $user = User::factory()->create(); $response = $this->withoutMiddleware(VerifyCsrfToken::class) ->actingAs($user) ->post('/confirm-password', [ 'password' => 'password', ]); $response->assertRedirect(); $response->assertSessionHasNoErrors(); } public function test_password_is_not_confirmed_with_invalid_password(): void { $user = User::factory()->create(); $response = $this->withoutMiddleware(VerifyCsrfToken::class) ->actingAs($user) ->post('/confirm-password', [ 'password' => 'wrong-password', ]); $response->assertSessionHasErrors(); } }