Implement security/authorization middleware for everything #22
Reference in New Issue
Block a user
Delete Branch "%!s()"
Deleting a branch is permanent. Although the deleted branch may continue to exist for a short time before it actually gets removed, it CANNOT be undone in most cases. Continue?
Currently almost every API route does not have any protection, anon users can approve or submit anything. We need to build a proper RBAC validation layer and start plugging it in to the backend.