Thanks to visit codestin.com
Credit goes to github.com

Skip to content

Remove role 'guest' #3

@aimed

Description

@aimed

Having the dedicated guest user role to resolve the current user can lead to bad security practices. Instead when needed the user should be queried manually in the resolver.

Metadata

Metadata

Assignees

No one assigned

    Labels

    securitySecurity related

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions