Page MenuHomeTometo Phabricator

Lock out normal user from admin panel
Open, NormalPublic


Right now, we just call /api/users/:id/poll, which ensures that the user is logged in, but there's no client-side admin permission check.

Event Timeline

aun created this task.Apr 20 2020, 9:38 AM
aun triaged this task as Normal priority.Apr 20 2020, 11:49 AM
aun edited projects, added 0.5; removed triage.