mirror of
https://github.com/invoiceninja/invoiceninja.git
synced 2025-07-09 03:14:30 -04:00
Fix permissions bugs
This commit is contained in:
parent
475f5430f3
commit
c4b17fedd8
13
app/Policies/AccountGatewayPolicy.php
Normal file
13
app/Policies/AccountGatewayPolicy.php
Normal file
@ -0,0 +1,13 @@
|
|||||||
|
<?php
|
||||||
|
|
||||||
|
namespace App\Policies;
|
||||||
|
|
||||||
|
class AccountGatewayPolicy extends EntityPolicy {
|
||||||
|
public static function edit($user, $item) {
|
||||||
|
return $user->hasPermission('admin');
|
||||||
|
}
|
||||||
|
|
||||||
|
public static function create($user) {
|
||||||
|
return $user->hasPermission('admin');
|
||||||
|
}
|
||||||
|
}
|
13
app/Policies/BankAccountPolicy.php
Normal file
13
app/Policies/BankAccountPolicy.php
Normal file
@ -0,0 +1,13 @@
|
|||||||
|
<?php
|
||||||
|
|
||||||
|
namespace App\Policies;
|
||||||
|
|
||||||
|
class BankAccountPolicy extends EntityPolicy {
|
||||||
|
public static function edit($user, $item) {
|
||||||
|
return $user->hasPermission('admin');
|
||||||
|
}
|
||||||
|
|
||||||
|
public static function create($user) {
|
||||||
|
return $user->hasPermission('admin');
|
||||||
|
}
|
||||||
|
}
|
13
app/Policies/PaymentTermPolicy.php
Normal file
13
app/Policies/PaymentTermPolicy.php
Normal file
@ -0,0 +1,13 @@
|
|||||||
|
<?php
|
||||||
|
|
||||||
|
namespace App\Policies;
|
||||||
|
|
||||||
|
class PaymentTermPolicy extends EntityPolicy {
|
||||||
|
public static function edit($user, $item) {
|
||||||
|
return $user->hasPermission('admin');
|
||||||
|
}
|
||||||
|
|
||||||
|
public static function create($user) {
|
||||||
|
return $user->hasPermission('admin');
|
||||||
|
}
|
||||||
|
}
|
@ -6,4 +6,8 @@ class VendorPolicy extends EntityPolicy {
|
|||||||
public static function edit($user, $item) {
|
public static function edit($user, $item) {
|
||||||
return $user->hasPermission('admin');
|
return $user->hasPermission('admin');
|
||||||
}
|
}
|
||||||
|
|
||||||
|
public static function create($user) {
|
||||||
|
return $user->hasPermission('admin');
|
||||||
|
}
|
||||||
}
|
}
|
@ -6,4 +6,8 @@ class TaxRatePolicy extends EntityPolicy {
|
|||||||
public static function edit($user, $item) {
|
public static function edit($user, $item) {
|
||||||
return $user->hasPermission('admin');
|
return $user->hasPermission('admin');
|
||||||
}
|
}
|
||||||
|
|
||||||
|
public static function create($user) {
|
||||||
|
return $user->hasPermission('admin');
|
||||||
|
}
|
||||||
}
|
}
|
13
app/Policies/TokenPolicy.php
Normal file
13
app/Policies/TokenPolicy.php
Normal file
@ -0,0 +1,13 @@
|
|||||||
|
<?php
|
||||||
|
|
||||||
|
namespace App\Policies;
|
||||||
|
|
||||||
|
class TokenPolicy extends EntityPolicy {
|
||||||
|
public static function edit($user, $item) {
|
||||||
|
return $user->hasPermission('admin');
|
||||||
|
}
|
||||||
|
|
||||||
|
public static function create($user) {
|
||||||
|
return $user->hasPermission('admin');
|
||||||
|
}
|
||||||
|
}
|
@ -21,8 +21,13 @@ class AuthServiceProvider extends ServiceProvider
|
|||||||
\App\Models\Payment::class => \App\Policies\PaymentPolicy::class,
|
\App\Models\Payment::class => \App\Policies\PaymentPolicy::class,
|
||||||
\App\Models\Task::class => \App\Policies\TaskPolicy::class,
|
\App\Models\Task::class => \App\Policies\TaskPolicy::class,
|
||||||
\App\Models\Vendor::class => \App\Policies\VendorPolicy::class,
|
\App\Models\Vendor::class => \App\Policies\VendorPolicy::class,
|
||||||
|
\App\Models\AccountGateway::class => \App\Policies\AccountGatewayPolicy::class,
|
||||||
|
\App\Models\Token::class => \App\Policies\TokenPolicy::class,
|
||||||
|
\App\Models\BankAccount::class => \App\Policies\BankAccountPolicy::class,
|
||||||
|
\App\Models\PaymentTerm::class => \App\Policies\PaymentTermPolicy::class,
|
||||||
|
|
||||||
];
|
];
|
||||||
|
|
||||||
/**
|
/**
|
||||||
* Register any application authentication / authorization services.
|
* Register any application authentication / authorization services.
|
||||||
*
|
*
|
||||||
|
Loading…
x
Reference in New Issue
Block a user