Skip to the main content.
Case | Quality Assurance | Naturvårdsverket

Security verification of permissions

Background

The Swedish Environmental Protection Agency (Naturvårdsverket) is a state authority for environmental issues and works on behalf of the Swedish government on environmental issues within Sweden, the EU and internationally. The Swedish Environmental Protection Agency conducts and coordinates Sweden's environmental work. Together with many others, they work to preserve biodiversity, reduce climate impact and contribute to a more resource-efficient society.

Assignment

Rovbase (Predatorbase) is an important tool in the management of bears, wolverines, lynx, wolves and golden eagles in Sweden and Norway. The database documents the inventory of these species, damage to domestic animals that they cause, and hunting and other deaths. CoreChange was commissioned to ensure that access permissions were working as intended, and that the right person would receive the right information from the database.

 
naturvårdsverket
Solutions & Results

Our test leader worked to create test data, writing and executing test cases to ensure that the authorization functions in Rovbase were working as they should.

Rovbase is based on the following method: when an animal has died, the field staff takes either a saliva sample, a stool sample or sometimes a hair sample, that is sent to a lab. This is analyzed in the lab to determine which animal it is. Sometimes the field staff may suggest, for example, the bear is a female of approximately three years, but the results show that the bear is de facto a male. Test data was built up in Rovbase and the test leader from CoreChange created test data with different kinds of scenarios about how the animals had passed away, in what way the animal would be analyzed, potential differences with the lab and the creation of DNA analyzes. The test cases were written in the JIRA tool based on the requirements.

To ensure that the permissions actually worked, the test leader selected locations where the animals had died. If the permission was set up so that it was not possible to see any animals in, for example, Halland, then no visitors could see any animals in Halland, because the permission was specifically set for only a selected animal to be shown. Simply put: the right information for the right person, in the right place.

The result:

The permission features work excellent and the client is satisfied. All’s well that ends well.

Contact us

If you find it exciting and want to learn more, feel free to get in touch with us.

Klaudia-Bahamondez   

Stockholm

Klaudia Bahamondez

klaudia.bahamondez@corechange.se

+46 766 351 977