This repository was archived by the owner on Aug 21, 2024. It is now read-only.
refactor scopes for media
services
#9153
Merged
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Summary
🤖 Generated by Copilot at 95d6e2e
This pull request updates the authorization logic for the
file-browser
,static-resource-filters
, andstatic-resource
services to use more granular and specific roles and scopes. This enhances the security and access control for the media files and resources in the server.References
refs #9161
Explanation
🤖 Generated by Copilot at 95d6e2e
file-browser
service by requiring theread
scope for theeditor
role for all methods, and thewrite
scope for theeditor
role for thecreate
,update
, andremove
methods (link, link, link)static-resource-filters
service by requiring theread
scope for thestatic_resource
role for all methods, instead of theadmin
scope for theadmin
role (link)static-resource
service by requiring theread
scope for thestatic_resource
role for thefind
method, and thewrite
scope for thestatic_resource
role for thecreate
,update
,patch
, andremove
methods, instead of allowing any external request or theadmin
scope for theadmin
role (link, link)iff
andisProvider
functions fromfeathers-hooks-common
in thestatic-resource-filters
andstatic-resource
service hooks to conditionally apply hooks based on the request provider (link, link)🤖 Generated by Copilot at 95d6e2e
QA Steps
List any additional steps required to QA the changes of this PR, as well as any supplemental images or videos.
Checklist