apache / apache/airavata-data-lake
Resource parent endpoint returns resources the user is not authorized
Open
- Dominant language
- Java
- Stars
- 9
- Forks
- 5
- PR merge metrics
- No merged PRs in 30d
Description
This issue has no description.
Contributor guide
No contributing guide indexed for this repository
Research direction
Start by locating the resource parent endpoint and tracing how it filters resources by the requesting user's authorization. Confirm the behavior with an existing request or test if one is available; done means unauthorized resources no longer appear in the endpoint response.
Written by the indexing model from the issue text.
Assessment
- Tech stack
- java
- Domain
- api, backend, security
- Issue type
- Bug
- Difficulty
- 4/5
- Estimated time
- 3-5 days
- Activity status
- Stale
- Clarity
- Needs clarification
- Newbie friendliness
- 20/100