PUZ-API-008

End another user's game returns 403

Cannot end someone else's session

P0
automation
puzzle
api
security
negative
Test Steps
Steps to execute this test
  1. User B calls POST /api/puzzle-games/{userA-game-id}/end
Expected Result

403 Forbidden: Not your game.

Preconditions
  • User A's active game exists
  • User B authenticated
Execution History
Recent test executions

This test has not been executed yet