novatoolpermissions icon indicating copy to clipboard operation
novatoolpermissions copied to clipboard

Do not use allow all default in production

Open tolawho opened this issue 6 years ago • 1 comments

When I set full permission for my admin account. The other people can't see the resource they dont have permission. But when I remove one permission from admin, other people can see permission admin dont have even they dont have. I example my case: Admin with full permission image The buyer view: image

When I remove Plan permission from admin image The buyer view, now they can manage the plans: image image Actually they don't have the permission for the plan image

tolawho avatar Sep 14 '18 07:09 tolawho

Hi. Thanks for your detailed issue report. That currently is intentional behaviour to stop you (the admin) from locking yourself out of features. However we are aware that this is undesirable for many in a production environment and are addressing this in the next major release of Brandenburg and this nova package.

m2de avatar Sep 14 '18 08:09 m2de