marthaegrimaldi / marthaegrimaldi/meal-ordering-app-using-react-native

Enatega Admin Dashboard : Unauthorized Data Display on Admin Dashboard to new user logged-in.

Open
#787 0 comments 0 reactions 0 assignees View on GitHub
Dominant language
JavaScript
Stars
0
Forks
1
PR merge metrics
No merged PRs in 30d

Description

Describe the bug
The admin dashboard displays data that is not relevant to the user's position, allowing users to view information they should not have access to. For example if a vendor logs-in to admin dashboard he should only be allowed to see the data relevant to his position not overall or un-necessary information.

To Reproduce
Steps to reproduce the behavior:

Go to 'Enatega Admin Dashboard'
Login as new user for example as new Vendor.
See error , now see admin dashboard displays data that is not relevant to the user's position, allowing users to view information they should not have access to.
Expected behavior
The dashboard should display only the data that is relevant to the logged-in user's role or position.
Users should not see data that belongs to other roles or departments.

Screenshots

Image Image
Desktop (please complete the following information):

OS: [e.g. Windows]
Browser [e.g. Chrome]
Version [e.g. Latest]

Contributor guide

Open the contributing guide

Research direction

Start in the Enatega Admin Dashboard by logging in as a new Vendor and record which data is visible. Trace the dashboard's role-based data loading and verify completion by confirming that each role sees only data relevant to its position, including the Vendor role.

Written by the indexing model from the issue text.

Assessment

Tech stack
javascript, react-native
Domain
authorization, frontend, security
Issue type
Bug
Difficulty
4/5
Estimated time
3-5 days
Activity status
Stale
Clarity
Mostly clear
Newbie friendliness
35/100

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.