mirror of
https://akkoma.dev/AkkomaGang/akkoma.git
synced 2024-11-27 16:24:23 +00:00
lib/pleroma/web/admin_api/admin_api_controller.ex: An admin cannot un-admin themselves
This commit is contained in:
parent
a87ed2fad6
commit
f9d05902fe
|
@ -68,8 +68,19 @@ defmodule Pleroma.Web.AdminAPI.AdminAPIController do
|
|||
|> json(%{error: "No such right"})
|
||||
end
|
||||
|
||||
def right_delete(conn, %{"right" => right, "nickname" => nickname})
|
||||
def right_delete(
|
||||
%{assigns: %{user: %User{:nickname => admin_nickname}}} = conn,
|
||||
%{
|
||||
"right" => right,
|
||||
"nickname" => nickname
|
||||
}
|
||||
)
|
||||
when right in ["moderator", "admin"] do
|
||||
if admin_nickname == nickname do
|
||||
conn
|
||||
|> post_status(403)
|
||||
|> json(%{error: "You can't revoke your own admin status."})
|
||||
else
|
||||
user = User.get_by_nickname(nickname)
|
||||
|
||||
info =
|
||||
|
@ -82,6 +93,7 @@ defmodule Pleroma.Web.AdminAPI.AdminAPIController do
|
|||
conn
|
||||
|> json(user.info)
|
||||
end
|
||||
end
|
||||
|
||||
def right_delete(conn, _) do
|
||||
conn
|
||||
|
|
Loading…
Reference in a new issue