Commit Graph

6 Commits (d8fbd74c47de3148d6693b5cb15e7e868f72448e)

Author SHA1 Message Date
Thibaut Girka 9f2945ef80 Add test to disallow remote users from fetching local-only toots 7 years ago
David Yip f6355f6ffb Update StatusPolicy to check current_account for local_only? toots.
StatusPolicy#account was renamed to StatusPolicy#current_account in
upstream.  This commit renames the local-only changes to match and
augments the #show? policy spec with what we expect for local-only
toots.
8 years ago
Jack Jennings 33f669a5f8 Add status destroy authorization to policy (#3453)
* Add status destroy authorization to policy

* Create explicit unreblog status authorization
9 years ago
Jack Jennings 22cf18e16f Fix incorrect visibility setter in StatusPolicySpec (#3456) 9 years ago
Jack Jennings e031fd60ad Move status reblog authorization into policy (#3425) 9 years ago
Jack Jennings 3a2003ba86 Extract authorization policy for viewing statuses (#3150) 9 years ago