fix(server): blob read should not require write scope (#4610)
This commit is contained in:
committed by
GitHub
parent
fcd0bdf239
commit
e18f1a6eb5
@@ -373,7 +373,7 @@ export const streamCommentsWritePermissionsPipelineFactory =
|
||||
]
|
||||
|
||||
export const streamReadPermissionsPipelineFactory = (): AuthPipelineFunction[] => [
|
||||
validateScope({ requiredScope: Scopes.Streams.Write }),
|
||||
validateScope({ requiredScope: Scopes.Streams.Read }),
|
||||
validateStreamPolicyAccessFactory({
|
||||
policyInvoker: async ({ authData, policies }) =>
|
||||
policies.project.canRead({
|
||||
|
||||
Reference in New Issue
Block a user