mitgliederverwaltung/lib/mv/authorization/checks
Moritz 5194b20b5c
Some checks failed
continuous-integration/drone/push Build is failing
Fix unlink-by-omission: on_missing :ignore, test, doc, string-key
- Member update_member: on_missing :unrelate → :ignore (no unlink when :user omitted)
- Test: normal_user update linked member without :user keeps link
- Doc: unlink only explicit (user: nil), admin-only; Actor.admin?(nil) note
- Check: defense-in-depth for "user" string key
2026-02-04 14:07:39 +01:00
..
actor_is_admin.ex Doc: Actor maybe_load_role comment; ActorIsAdmin system user = admin 2026-02-03 16:07:39 +01:00
actor_permission_set_is.ex MemberGroup: restrict bypass to own_data via MemberGroupReadLinkedForOwnData 2026-02-04 09:19:57 +01:00
custom_field_value_create_scope.ex CustomFieldValueCreateScope: use get_argument_or_attribute for member_id 2026-01-27 16:07:01 +01:00
forbid_member_user_link_unless_admin.ex Fix unlink-by-omission: on_missing :ignore, test, doc, string-key 2026-02-04 14:07:39 +01:00
has_permission.ex refactor: reduce nesting in HasPermission.strict_check_with_permissions 2026-02-04 13:29:41 +01:00
member_group_read_linked_for_own_data.ex MemberGroup: restrict bypass to own_data via MemberGroupReadLinkedForOwnData 2026-02-04 09:19:57 +01:00
membership_fee_cycle_read_linked_for_own_data.ex MembershipFeeCycle: own_data read :linked via bypass and HasPermission scope 2026-02-04 09:20:10 +01:00