Conditions | 5 |
Paths | 3 |
Total Lines | 16 |
Lines | 0 |
Ratio | 0 % |
Tests | 8 |
CRAP Score | 5 |
Changes | 0 |
1 | <?php |
||
21 | 24 | public function process(ServerRequestInterface $request, RequestHandlerInterface $handler): ResponseInterface |
|
22 | { |
||
23 | 24 | $resource = $request->getAttribute(ResourceMiddlewareInterface::DATA_RESOURCE); |
|
24 | |||
25 | 24 | if ($resource && $resource instanceof ClaimedResourceInterface) { |
|
26 | 14 | $resourceOwner = $resource->getOwner(); |
|
27 | /** @var User|null $currentOwner */ |
||
28 | 14 | $currentOwner = $request->getAttribute(TokenMiddleware::USER_PARAM); |
|
29 | |||
30 | 14 | if (!$currentOwner || ($currentOwner->getId() !== $resourceOwner->getId())) { |
|
31 | 4 | return (new ResponseFactory())('Access denied.', 403); |
|
32 | } |
||
33 | } |
||
34 | |||
35 | 20 | return $handler->handle($request); |
|
36 | } |
||
37 | } |
||
38 |