Meeds-io / meeds

The Meeds Association provides its members with an employee recognition software implementation. The employee recognition software is fueled by the Meeds ERC-20 tokens.
https://meeds.io
GNU Lesser General Public License v3.0
283 stars 9 forks source link

Prevent space members from editing or deleting articles they don't own. #2603

Open sofyenne opened 2 days ago

sofyenne commented 2 days ago

Steps to reproduce

  1. Open the article details page as a user who is not the owner
  2. Open the article action menu.

Current behaviour

Space members can edit and remove articles

Expected behavior

Disallow space members from editing or removing articles they didn't author