Browse Source

#1127: hide user e-mail when API caller isn't signed in

tags/v1.2.0-rc1
Unknwon 10 years ago
parent
commit
41eec2f7d1
2 changed files with 6 additions and 0 deletions
  1. +1
    -0
      modules/middleware/auth.go
  2. +5
    -0
      routers/api/v1/user.go

+ 1
- 0
modules/middleware/auth.go View File

@@ -69,6 +69,7 @@ func Toggle(options *ToggleOptions) macaron.Handler {
}
}

// Contexter middleware already checks token for user sign in process.
func ApiReqToken() macaron.Handler {
return func(ctx *Context) {
if !ctx.IsSigned {


+ 5
- 0
routers/api/v1/user.go View File

@@ -68,5 +68,10 @@ func GetUserInfo(ctx *middleware.Context) {
}
return
}

// Hide user e-mail when API caller isn't signed in.
if !ctx.IsSigned {
u.Email = ""
}
ctx.JSON(200, &api.User{u.Id, u.Name, u.FullName, u.Email, u.AvatarLink()})
}

Loading…
Cancel
Save