Skip to content

Secure API #153

@gerrycampion

Description

@gerrycampion

Currently, even though the frontend is restricted, all API functionality is accessible by all CDISCID users.

Acceptance Criteria:

  • Only users with write permissions (currently this means users in the Core Author Group) should be authorized to perform create, update, delete operations via the api

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type
    No fields configured for issues without a type.

    Projects

    No projects

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions