diff --git a/app/Http/Controllers/BaseAPIController.php b/app/Http/Controllers/BaseAPIController.php index 6b7c8bc4d77e..a24916723275 100644 --- a/app/Http/Controllers/BaseAPIController.php +++ b/app/Http/Controllers/BaseAPIController.php @@ -116,7 +116,7 @@ class BaseAPIController extends Controller $query->whereHas('client', $filter); } - if (! Utils::hasPermission('admin')) { + if (! Utils::hasPermission('view_'.$this->entityType)) { if ($this->entityType == ENTITY_USER) { $query->where('id', '=', Auth::user()->id); } else {