Closed natacha-beck closed 4 months ago
Line 161:
format.json { render :json => @provider }
There is no .to_api() method invoked, which means the returned objects contains sensitive information (e.g. tokens) that should never be returned back on the API channel.
Rejected after discussions