din-co / d2

Solidus-based commerce application
0 stars 2 forks source link

Impersonate users, when you're an admin #292

Closed cee-dub closed 8 years ago

beausmith commented 8 years ago

LGTM… other than the fact that random user can impersonate an admin user. :smirk:

cee-dub commented 8 years ago

Yeah, trying to understand CanCan and Devise and Warden to sort this out...

On Tue, Apr 5, 2016 at 16:23 Beau Smith notifications@github.com wrote:

LGTM… other than the fact that random user can impersonate an admin user. [image: :smirk:]

— You are receiving this because you authored the thread. Reply to this email directly or view it on GitHub https://github.com/din-co/d2/pull/292#issuecomment-206030962

—cw Head of Engineering @ Din c@din.co