frappe / frappe/press

[Enhancement]: Protect SQL playground with roles and access controls

Open
#5,201 1 comment 1 reaction 0 assignees View on GitHub
enhancement
Dominant language
Python
Stars
562
Forks
410
Avg merge
22h 15m
Merged PRs (30d)
197

Description

Features like SQL playground can run arbitrary commands. They need to be protected with access controls.

Contributor guide

No contributing guide indexed for this repository

Research direction

No files or tests are named. Start by locating the SQL playground entry point and existing role or access-control handling; done means arbitrary-command execution is protected according to defined roles and unauthorized access is blocked.

Written by the indexing model from the issue text.

Assessment

Tech stack
python, sql
Domain
authorization, security
Issue type
Feature
Difficulty
5/5
Estimated time
Over a week
Activity status
Stale
Clarity
Needs clarification
Newbie friendliness
25/100

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.