Added gate to check that the user is allowed to view API keys

Signed-off-by: snipe <snipe@snipe.net>
This commit is contained in:
snipe 2022-01-13 01:33:27 -08:00
parent eb8f23a888
commit 512dbfee7a

View file

@ -113,6 +113,12 @@ class ProfileController extends Controller
*/
public function api()
{
// Make sure the self.api permission has been granted
if (!Gate::allows('self.api')) {
abort(403);
}
return view('account/api');
}