瀏覽代碼

feat: add export permission (#5841)

Joe 9 月之前
父節點
當前提交
59ad091e69
共有 1 個文件被更改,包括 4 次插入0 次删除
  1. 4 0
      api/controllers/console/app/app.py

+ 4 - 0
api/controllers/console/app/app.py

@@ -190,6 +190,10 @@ class AppExportApi(Resource):
     @get_app_model
     def get(self, app_model):
         """Export app"""
+        # The role of the current user in the ta table must be admin, owner, or editor
+        if not current_user.is_editor:
+            raise Forbidden()
+
         app_service = AppService()
 
         return {