Swarthmore / litterfall

Application and Scripts used for the Litterfall Project
0 stars 1 forks source link

make sure no one can hackishly add data in inspector #15

Closed mpitser closed 11 years ago

mpitser commented 11 years ago

the page temlate and html for the edit and analyze data pages are the same -- the only difference is that in the analyze view the buttons are all hidden... but in the inspector if you figure out what is hidden, you can show it again and click buttons to be able to edit the entry. we need to make sure somehow that only authenticated users can actually save data to the database.

swingaroo2 commented 11 years ago

You should make a snarky popup message that chides the user for attempting to hack the database. That'll show 'em.