Logo
Explore Help
Sign In
MasterMito/work-club-manager
1
0
Fork 0
You've already forked work-club-manager
Code Issues 1 Pull Requests Actions Packages Projects Releases 1 Wiki Activity
Files
9cb80e4517dc94eb5bebc2d31e6949c6b68227f3
work-club-manager/.sisyphus/evidence/final-qa/s54-unauthorized-tenant.json

3 lines
89 B
JSON
Raw Normal View History

fix: exempt /api/clubs/me from tenant validation - Add path exemption in TenantValidationMiddleware for /api/clubs/me - Change authorization policy from RequireMember to RequireViewer - Fix KEYCLOAK_CLIENT_ID in docker-compose.yml (workclub-app not workclub-api) - Endpoint now works without X-Tenant-Id header as intended - Other endpoints still protected by tenant validation This fixes the chicken-and-egg problem where frontend needs to call /api/clubs/me to discover available clubs before selecting a tenant.
2026-03-05 21:32:37 +01:00
{"error":"User is not a member of tenant 99999999-9999-9999-9999-999999999999"}
HTTP:403
Reference in New Issue Copy Permalink
Powered by Gitea Version: 1.25.2 Page: 19ms Template: 0ms
English
Bahasa Indonesia Deutsch English Español Français Gaeilge Italiano Latviešu Magyar nyelv Nederlands Polski Português de Portugal Português do Brasil Suomi Svenska Türkçe Čeština Ελληνικά Български Русский Українська فارسی മലയാളം 日本語 简体中文 繁體中文(台灣) 繁體中文(香港) 한국어
Licenses API