Implement security/authorization middleware for everything #22

Open
opened 2025-11-10 12:52:08 -06:00 by Ajdj100 · 0 comments
Member

Currently almost every API route does not have any protection, anon users can approve or submit anything. We need to build a proper RBAC validation layer and start plugging it in to the backend.

Currently almost every API route does not have any protection, anon users can approve or submit anything. We need to build a proper RBAC validation layer and start plugging it in to the backend.
Ajdj100 added the Kind/Security label 2025-11-10 12:52:08 -06:00
Sign in to join this conversation.
1 Participants
Notifications
Due Date
No due date set.
Dependencies

No dependencies set.

Reference: 17th-Ranger-Battalion-ORG/milsim-site-v4#22