story cleanup, form, policy
This commit is contained in:
14
app/policies/edit_own_policy.rb
Normal file
14
app/policies/edit_own_policy.rb
Normal file
@ -0,0 +1,14 @@
|
||||
# allows to edit/detroy own data
|
||||
# which can be viewed by anyone
|
||||
class EditOwnPolicy < ApplicationPolicy
|
||||
def edit?
|
||||
return true if member.admin?
|
||||
owner?
|
||||
end
|
||||
def owner?
|
||||
member == record.member
|
||||
end
|
||||
alias :update? :edit?
|
||||
alias :destroy? :edit?
|
||||
|
||||
end
|
@ -1,4 +1,4 @@
|
||||
class StoryPolicy < ApplicationPolicy
|
||||
class StoryPolicy < EditOwnPolicy
|
||||
|
||||
def edit?
|
||||
(member == record.member) or member.admin?
|
||||
|
Reference in New Issue
Block a user