Auto-commit local changes before build (2026-01-13 13:15:30)

This commit is contained in:
Ivo Oskamp 2026-01-13 13:15:30 +01:00
parent 0c66ced915
commit 6c0dcf5a2d
4 changed files with 29 additions and 6 deletions

View File

@ -1 +1 @@
v20260113-04-edge-initial-setup-users-exist v20260113-05-reporter-menu-restrict

View File

@ -4,7 +4,7 @@ from .routes_shared import _format_datetime
@main_bp.route("/feedback") @main_bp.route("/feedback")
@login_required @login_required
@roles_required("admin", "operator", "viewer") @roles_required("admin", "operator", "reporter", "viewer")
def feedback_page(): def feedback_page():
item_type = (request.args.get("type") or "").strip().lower() item_type = (request.args.get("type") or "").strip().lower()
if item_type not in ("", "bug", "feature"): if item_type not in ("", "bug", "feature"):
@ -110,7 +110,7 @@ def feedback_page():
@main_bp.route("/feedback/new", methods=["GET", "POST"]) @main_bp.route("/feedback/new", methods=["GET", "POST"])
@login_required @login_required
@roles_required("admin", "operator", "viewer") @roles_required("admin", "operator", "reporter", "viewer")
def feedback_new(): def feedback_new():
if request.method == "POST": if request.method == "POST":
item_type = (request.form.get("item_type") or "").strip().lower() item_type = (request.form.get("item_type") or "").strip().lower()
@ -145,7 +145,7 @@ def feedback_new():
@main_bp.route("/feedback/<int:item_id>") @main_bp.route("/feedback/<int:item_id>")
@login_required @login_required
@roles_required("admin", "operator", "viewer") @roles_required("admin", "operator", "reporter", "viewer")
def feedback_detail(item_id: int): def feedback_detail(item_id: int):
item = FeedbackItem.query.get_or_404(item_id) item = FeedbackItem.query.get_or_404(item_id)
if item.deleted_at is not None: if item.deleted_at is not None:
@ -200,7 +200,7 @@ def feedback_detail(item_id: int):
@main_bp.route("/feedback/<int:item_id>/reply", methods=["POST"]) @main_bp.route("/feedback/<int:item_id>/reply", methods=["POST"])
@login_required @login_required
@roles_required("admin", "operator", "viewer") @roles_required("admin", "operator", "reporter", "viewer")
def feedback_reply(item_id: int): def feedback_reply(item_id: int):
item = FeedbackItem.query.get_or_404(item_id) item = FeedbackItem.query.get_or_404(item_id)
if item.deleted_at is not None: if item.deleted_at is not None:
@ -233,7 +233,7 @@ def feedback_reply(item_id: int):
@main_bp.route("/feedback/<int:item_id>/vote", methods=["POST"]) @main_bp.route("/feedback/<int:item_id>/vote", methods=["POST"])
@login_required @login_required
@roles_required("admin", "operator", "viewer") @roles_required("admin", "operator", "reporter", "viewer")
def feedback_vote(item_id: int): def feedback_vote(item_id: int):
item = FeedbackItem.query.get_or_404(item_id) item = FeedbackItem.query.get_or_404(item_id)
if item.deleted_at is not None: if item.deleted_at is not None:

View File

@ -68,6 +68,20 @@
<div class="collapse navbar-collapse" id="navbarNav"> <div class="collapse navbar-collapse" id="navbarNav">
{% if current_user.is_authenticated %} {% if current_user.is_authenticated %}
<ul class="navbar-nav me-auto mb-2 mb-lg-0"> <ul class="navbar-nav me-auto mb-2 mb-lg-0">
{% if active_role == 'reporter' %}
<li class="nav-item">
<a class="nav-link" href="{{ url_for('main.dashboard') }}">Dashboard</a>
</li>
<li class="nav-item">
<a class="nav-link" href="{{ url_for('main.reports') }}">Reports</a>
</li>
<li class="nav-item">
<a class="nav-link" href='{{ url_for("main.changelog_page") }}'>Changelog</a>
</li>
<li class="nav-item">
<a class="nav-link" href="{{ url_for('main.feedback_page') }}">Feedback</a>
</li>
{% else %}
<li class="nav-item"> <li class="nav-item">
<a class="nav-link" href="{{ url_for('main.inbox') }}">Inbox</a> <a class="nav-link" href="{{ url_for('main.inbox') }}">Inbox</a>
</li> </li>
@ -126,6 +140,7 @@
<li class="nav-item"> <li class="nav-item">
<a class="nav-link" href="{{ url_for('main.feedback_page') }}">Feedback</a> <a class="nav-link" href="{{ url_for('main.feedback_page') }}">Feedback</a>
</li> </li>
{% endif %}
</ul> </ul>
<span class="navbar-text me-3"> <span class="navbar-text me-3">
<a class="text-decoration-none" href="{{ url_for('main.user_settings') }}"> <a class="text-decoration-none" href="{{ url_for('main.user_settings') }}">

View File

@ -27,6 +27,14 @@
- Changed the setup check from “admin user exists” to “any user exists”, so existing environments always show the login page instead of allowing a new initial admin to be created. - Changed the setup check from “admin user exists” to “any user exists”, so existing environments always show the login page instead of allowing a new initial admin to be created.
- Prevented direct access to the initial setup route when at least one user is present (redirects to login). - Prevented direct access to the initial setup route when at least one user is present (redirects to login).
---
## v20260113-05-reporter-menu-restrict
- Restricted the Reporter role to only access Dashboard, Reports, Changelog, and Feedback.
- Updated menu rendering to hide all unauthorized menu items for Reporter users.
- Adjusted route access to ensure Feedback pages are accessible for the Reporter role.
*** ***
## v0.1.20 ## v0.1.20