Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Group Requirement Security #5358

Closed
1 task done
jcjones37 opened this issue Mar 27, 2023 · 0 comments
Closed
1 task done

Group Requirement Security #5358

jcjones37 opened this issue Mar 27, 2023 · 0 comments

Comments

@jcjones37
Copy link

jcjones37 commented Mar 27, 2023

Please go through all the tasks below

  • Check this box only after you have successfully completed both the above tasks

Please provide a brief description of the problem. Please do not forget to attach the relevant screenshots from your side.

[View] security associated with a Group Requirement is not honored on the external site.

Expected Behavior

I would expect, when I set the [View] security on a Group Requirement Type, that security would be honored on the external site? Example: Only Staff can view.

Actual Behavior

Currently all Group Requirement Types set on a particular group are shown to the individual group member no matter what security is applied to the Group Requirement Type: https://community.rockrms.com/documentation/bookcontent/7/255#fundraisinggroups

Steps to Reproduce

  • Go to Admin Tools
  • Go to General Settings
  • Go to Group Requirement Types
  • Set a [View] Security on one of the Group Requirement Types to Rock Admins only
  • Add that Group Requirement to a Fundraising Group
  • Add a group member to that fundraising group (not a Rock Admin)
  • Impersonate that Group Member (non Rock Admin)
  • Check what that group member can view from the external site within the fundraising group.

Rock Version

14.2

Client Culture Setting

en-US

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

No branches or pull requests

2 participants