Skip to content

Commit 73e356c

Browse files
committed
fix: add comment
1 parent 0e579a2 commit 73e356c

File tree

2 files changed

+7
-0
lines changed

2 files changed

+7
-0
lines changed

coderd/database/dbauthz/dbauthz.go

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -3582,6 +3582,7 @@ func (q *querier) OrganizationMembers(ctx context.Context, arg database.Organiza
35823582
}
35833583

35843584
func (q *querier) PaginatedOrganizationMembers(ctx context.Context, arg database.PaginatedOrganizationMembersParams) ([]database.PaginatedOrganizationMembersRow, error) {
3585+
// Required to have permission to read all members in the organization
35853586
if err := q.authorizeContext(ctx, policy.ActionRead, rbac.ResourceOrganizationMember.InOrg(arg.OrganizationID)); err != nil {
35863587
return nil, err
35873588
}

coderd/database/dbauthz/dbauthz_test.go

Lines changed: 6 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -987,6 +987,12 @@ func (s *MethodTestSuite) TestOrganization() {
987987
}))
988988
s.Run("PaginatedOrganizationMembers", s.Subtest(func(db database.Store, check *expects) {
989989
o := dbgen.Organization(s.T(), db, database.Organization{})
990+
u := dbgen.User(s.T(), db, database.User{})
991+
mem := dbgen.OrganizationMember(s.T(), db, database.OrganizationMember{
992+
OrganizationID: o.ID,
993+
UserID: u.ID,
994+
Roles: []string{rbac.RoleOrgAdmin()},
995+
})
990996

991997
check.Args(database.PaginatedOrganizationMembersParams{
992998
OrganizationID: o.ID,

0 commit comments

Comments
 (0)