-
Notifications
You must be signed in to change notification settings - Fork 3k
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
[$500] Public Room-Anonymous user can download images #30806
Comments
Triggered auto assignment to @muttmuure ( |
Job added to Upwork: https://www.upwork.com/jobs/~0114824716246f4944 |
Bug0 Triage Checklist (Main S/O)
|
Triggered auto assignment to Contributor-plus team member for initial proposal review - @situchan ( |
ProposalPlease re-state the problem that we are trying to solve in this issue.Anonymous user can download images in public rooms. What is the root cause of that problem?We allow Download for annonymous user here:
What changes do you think we should make in order to solve the problem?Set the above prop to What alternative solutions did you explore? (Optional)NA |
ProposalPlease re-state the problem that we are trying to solve in this issue.Anonymous user can download images in public rooms. What is the root cause of that problem?Download is allowed for annonymous user.
What changes do you think we should make in order to solve the problem?
What alternative solutions did you explore? (Optional)Screen.Recording.2023-11-03.at.1.39.16.AM.mov |
ProposalPlease re-state the problem that we are trying to solve in this issue.
What is the root cause of that problem?
What changes do you think we should make in order to solve the problem?
What alternative solutions did you explore? (Optional)
|
It's expected behavior that we decided here #22321 |
@muttmuure, @situchan Whoops! This issue is 2 days overdue. Let's get this updated quick! |
@muttmuure can you please double check the expected behavior? |
Are you searching for a resolution? |
Seems like expected behavior to me |
QA will come back to this issue and see that it is closed as expected. I'm not aware of anywhere that we say it is not. @lanitochka17 if you find that we say that this should not happen, please let me know where and I will get it updated. Thank you! |
If you haven’t already, check out our contributing guidelines for onboarding and email [email protected] to request to join our Slack channel!
**Version Number:**1.3.95-0
**Reproducible in staging?:**Y
**Reproducible in production?:**Y
If this was caught during regression testing, add the test name, ID and link from TestRail:
Email or phone of affected tester (no customers):
Logs: https://stackoverflow.com/c/expensify/questions/4856
Expensify/Expensify Issue URL:
**Issue reported by:**Applause - Internal Team
Slack conversation:
Action Performed:
)
Expected Result:
Clicking on Download should not be allowed to an unauthenticated user, so should be redirected to the Sign In page
Actual Result:
Image is downloaded although anonymous user doesn't have the authentication
Workaround:
Unknown
Platforms:
Which of our officially supported platforms is this issue occurring on?
Screenshots/Videos
Add any screenshot/video evidence
Bug6261532_1698963588150.anonymous_user_downloads_images.mp4
View all open jobs on GitHub
Upwork Automation - Do Not Edit
The text was updated successfully, but these errors were encountered: