Misc

This page contains additional information about general topics that do not fit to the other categories and will be extended from time to time.

Purchases in test cycles

If a test instructs you not to complete any purchases/orders, this means, also no such attempt should be made. This also includes cases in which the final order form is sent with missing mandatory fields or in which an external payment provider is triggered afterwards (even if this provider allows cancelling the transaction).

Endless loading

We do not consider it a bug if an app keeps “endlessly” loading without any error message but doesn’t crash. This is most likely connected to connection issues and hard to fix for the developer.

XSS-Bugs

XSS vulnerabilities are often a general problem and not restricted to a single form field. Consequently, it is sufficient to inform a site owner about the general problem by providing one example, i.e. we won’t accept more than one XSS bug per test cycle.

Prior-Acceptance “Guarantee”

Please note that the fact that an issue has been accepted in the past (either by the team leader or by the client) cannot guarantee that the same issue will be accepted in all future cycles. Of course, our aim is to evaluate all errors in a comparable way, but it cannot be completely ruled out that something has been overlooked in the past or that new information has been added in the meantime.

Social Media Signup and Login

This topic is a bit more complex this is why I would like to explain it here too.
If you cannot login or sign up on a website or in an app the following severities apply.

On Staging

→ “Login/signup” is required:
Social Network doesn’t work = Low, since it’s often not integrated
Email doesn’t work = Critical

→ “Login/signup” is not required:
Social Network doesn’t work = Low, since it’s often not integrated
Email doesn’t work = High

Live System

→ “Login/signup” is required:
Social Network doesn’t work = High
Email doesn’t work = Critical

→ “Login/signup” is not required:
Social Network doesn’t work = High
Email doesn’t work = Critical

If the app or site crashes without an error message after an unsuccessful login or sign up, this is handled like a normal crash meaning it would be a critical issue.

%d bloggers like this: