|
@@ 303-310 (lines=8) @@
|
| 300 |
|
{ |
| 301 |
|
$isAdmin = $f3->get('isAdmin'); |
| 302 |
|
$users_uuid = null; |
| 303 |
|
if (!$isAdmin && array_key_exists('id', $params)) { |
| 304 |
|
$this->failure('authentication_error', "User does not have permission.", 401); |
| 305 |
|
return $this->setOAuthError('access_denied'); |
| 306 |
|
} elseif ($isAdmin && array_key_exists('id', $params)) { |
| 307 |
|
$users_uuid = $params['id']; |
| 308 |
|
} elseif (!$isAdmin) { |
| 309 |
|
$users_uuid = $f3->get('uuid'); |
| 310 |
|
} |
| 311 |
|
|
| 312 |
|
// return raw data for object? |
| 313 |
|
$adminView = $f3->get('isAdmin') && 'admin' == $f3->get('REQUEST.view'); |
|
@@ 465-472 (lines=8) @@
|
| 462 |
|
public function search(\Base $f3, array $params) |
| 463 |
|
{ |
| 464 |
|
$isAdmin = $f3->get('isAdmin'); |
| 465 |
|
if (!$isAdmin && array_key_exists('id', $params)) { |
| 466 |
|
$this->failure('authentication_error', "User does not have permission.", 401); |
| 467 |
|
return $this->setOAuthError('access_denied'); |
| 468 |
|
} elseif ($isAdmin && array_key_exists('id', $params)) { |
| 469 |
|
$users_uuid = $params['id']; |
| 470 |
|
} elseif (!$isAdmin) { |
| 471 |
|
$users_uuid = $f3->get('uuid'); |
| 472 |
|
} |
| 473 |
|
|
| 474 |
|
// return raw data for object? |
| 475 |
|
$adminView = $f3->get('isAdmin') && 'admin' == $f3->get('REQUEST.view'); |