Beit-Hatfutsot / dbs-front

Frontend code for http://dbs.bh.org.il
GNU Affero General Public License v3.0
10 stars 13 forks source link

General search displays results we are not allowed to display. Items produce 403. #332

Closed TheGrandVizier closed 7 years ago

TheGrandVizier commented 7 years ago

There are some items in BHP we are not supposed to show because the museum does not own rights for it. In theory, these items should never even be migrated to to start with. Attempting to display the item page fails with 403.

Reproduce:

  1. Search for Cohen: http://test.dbs.bh.org.il/search?q=cohen
  2. Find the result labeled "Mr Cohen, Mrs Cohen": http://prntscr.com/emmu9g
  3. Click the result

Expected result: Taken to item page

Actual result: Page fails to load, notified of 403 (forbidden): http://prntscr.com/emmup9

OriHoch commented 7 years ago

Issue moved to Beit-Hatfutsot/dbs-back #129 via ZenHub