mitgliederverwaltung/lib/mv/authorization/checks
Moritz 890a4d3752 MemberGroup: restrict bypass to own_data via MemberGroupReadLinkedForOwnData
- ActorPermissionSetIs check; bypass policy filters by member_id for own_data only.
- Admin with member_id still gets :all via HasPermission. Tests added.
2026-02-04 09:19:57 +01:00
..
actor_is_admin.ex Doc: Actor maybe_load_role comment; ActorIsAdmin system user = admin 2026-02-03 16:07:39 +01:00
actor_permission_set_is.ex MemberGroup: restrict bypass to own_data via MemberGroupReadLinkedForOwnData 2026-02-04 09:19:57 +01:00
custom_field_value_create_scope.ex CustomFieldValueCreateScope: use get_argument_or_attribute for member_id 2026-01-27 16:07:01 +01:00
has_permission.ex Add PermissionSets for Group, MemberGroup, MembershipFeeType, MembershipFeeCycle 2026-02-03 23:52:09 +01:00
member_group_read_linked_for_own_data.ex MemberGroup: restrict bypass to own_data via MemberGroupReadLinkedForOwnData 2026-02-04 09:19:57 +01:00