155 lines
		
	
	
		
			3.6 KiB
		
	
	
	
		
			PHP
		
	
	
	
	
	
			
		
		
	
	
			155 lines
		
	
	
		
			3.6 KiB
		
	
	
	
		
			PHP
		
	
	
	
	
	
| <?php
 | |
| 
 | |
| namespace App\Policies;
 | |
| 
 | |
| use App\Models\Application;
 | |
| use App\Models\User;
 | |
| use Illuminate\Auth\Access\Response;
 | |
| 
 | |
| class ApplicationPolicy
 | |
| {
 | |
|     /**
 | |
|      * Determine whether the user can view any models.
 | |
|      */
 | |
|     public function viewAny(User $user): bool
 | |
|     {
 | |
|         // Authorization temporarily disabled
 | |
|         /*
 | |
|         return true;
 | |
|         */
 | |
|         return true;
 | |
|     }
 | |
| 
 | |
|     /**
 | |
|      * Determine whether the user can view the model.
 | |
|      */
 | |
|     public function view(User $user, Application $application): bool
 | |
|     {
 | |
|         // Authorization temporarily disabled
 | |
|         /*
 | |
|         return true;
 | |
|         */
 | |
|         return true;
 | |
|     }
 | |
| 
 | |
|     /**
 | |
|      * Determine whether the user can create models.
 | |
|      */
 | |
|     public function create(User $user): bool
 | |
|     {
 | |
|         // Authorization temporarily disabled
 | |
|         /*
 | |
|         if ($user->isAdmin()) {
 | |
|             return true;
 | |
|         }
 | |
| 
 | |
|         return false;
 | |
|         */
 | |
|         return true;
 | |
|     }
 | |
| 
 | |
|     /**
 | |
|      * Determine whether the user can update the model.
 | |
|      */
 | |
|     public function update(User $user, Application $application): Response
 | |
|     {
 | |
|         // Authorization temporarily disabled
 | |
|         /*
 | |
|         if ($user->isAdmin()) {
 | |
|             return Response::allow();
 | |
|         }
 | |
| 
 | |
|         return Response::deny('As a member, you cannot update this application.<br/><br/>You need at least admin or owner permissions.');
 | |
|         */
 | |
|         return Response::allow();
 | |
|     }
 | |
| 
 | |
|     /**
 | |
|      * Determine whether the user can delete the model.
 | |
|      */
 | |
|     public function delete(User $user, Application $application): bool
 | |
|     {
 | |
|         // Authorization temporarily disabled
 | |
|         /*
 | |
|         if ($user->isAdmin()) {
 | |
|             return true;
 | |
|         }
 | |
| 
 | |
|         return false;
 | |
|         */
 | |
|         return true;
 | |
|     }
 | |
| 
 | |
|     /**
 | |
|      * Determine whether the user can restore the model.
 | |
|      */
 | |
|     public function restore(User $user, Application $application): bool
 | |
|     {
 | |
|         // Authorization temporarily disabled
 | |
|         /*
 | |
|         return true;
 | |
|         */
 | |
|         return true;
 | |
|     }
 | |
| 
 | |
|     /**
 | |
|      * Determine whether the user can permanently delete the model.
 | |
|      */
 | |
|     public function forceDelete(User $user, Application $application): bool
 | |
|     {
 | |
|         // Authorization temporarily disabled
 | |
|         /*
 | |
|         return $user->isAdmin() && $user->teams->contains('id', $application->team()->first()->id);
 | |
|         */
 | |
|         return true;
 | |
|     }
 | |
| 
 | |
|     /**
 | |
|      * Determine whether the user can deploy the application.
 | |
|      */
 | |
|     public function deploy(User $user, Application $application): bool
 | |
|     {
 | |
|         // Authorization temporarily disabled
 | |
|         /*
 | |
|         return $user->teams->contains('id', $application->team()->first()->id);
 | |
|         */
 | |
|         return true;
 | |
|     }
 | |
| 
 | |
|     /**
 | |
|      * Determine whether the user can manage deployments.
 | |
|      */
 | |
|     public function manageDeployments(User $user, Application $application): bool
 | |
|     {
 | |
|         // Authorization temporarily disabled
 | |
|         /*
 | |
|         return $user->isAdmin() && $user->teams->contains('id', $application->team()->first()->id);
 | |
|         */
 | |
|         return true;
 | |
|     }
 | |
| 
 | |
|     /**
 | |
|      * Determine whether the user can manage environment variables.
 | |
|      */
 | |
|     public function manageEnvironment(User $user, Application $application): bool
 | |
|     {
 | |
|         // Authorization temporarily disabled
 | |
|         /*
 | |
|         return $user->isAdmin() && $user->teams->contains('id', $application->team()->first()->id);
 | |
|         */
 | |
|         return true;
 | |
|     }
 | |
| 
 | |
|     /**
 | |
|      * Determine whether the user can cleanup deployment queue.
 | |
|      */
 | |
|     public function cleanupDeploymentQueue(User $user): bool
 | |
|     {
 | |
|         // Authorization temporarily disabled
 | |
|         /*
 | |
|         return $user->isAdmin();
 | |
|         */
 | |
|         return true;
 | |
|     }
 | |
| }
 | 
