From 281c6e39a5420cadf691ce0d11d2de5333e7bdff Mon Sep 17 00:00:00 2001 From: Andras Bacsai Date: Fri, 26 Jul 2024 14:54:24 +0200 Subject: [PATCH] fix: members of root team should not see instance admin stuff --- app/Models/User.php | 4 ++++ 1 file changed, 4 insertions(+) diff --git a/app/Models/User.php b/app/Models/User.php index 3625b9930..ecc4ef6b6 100644 --- a/app/Models/User.php +++ b/app/Models/User.php @@ -180,6 +180,10 @@ class User extends Authenticatable implements SendsEmail { $found_root_team = auth()->user()->teams->filter(function ($team) { if ($team->id == 0) { + if (! auth()->user()->isAdmin()) { + return false; + } + return true; }