diff --git a/app/Http/Middleware/ApiCheck.php b/app/Http/Middleware/ApiCheck.php index 7f59159fe088..80554c977acc 100644 --- a/app/Http/Middleware/ApiCheck.php +++ b/app/Http/Middleware/ApiCheck.php @@ -54,6 +54,8 @@ class ApiCheck if ($token && $token->user) { Auth::onceUsingId($token->user_id); Session::set('token_id', $token->id); + } elseif ($hasApiSecret && $request->is('api/v1/ping')) { + // do nothing: allow ping with api_secret or account token } else { sleep(ERROR_DELAY); $error['error'] = ['message' => 'Invalid token'];