Skip to content
This repository has been archived by the owner on Aug 28, 2021. It is now read-only.

User emails are exposed through user search endpoint #74

Closed
1 task done
didimitrie opened this issue May 21, 2018 · 0 comments
Closed
1 task done

User emails are exposed through user search endpoint #74

didimitrie opened this issue May 21, 2018 · 0 comments
Assignees
Milestone

Comments

@didimitrie
Copy link
Member

Step 0:

Expected Behaviour

You should not be able to trawl for emails when searching for users.

Actual Behaviour

You can get everyone's email out if you're patient enough.

Proposed Solution (if any)

Do not return email address on user search route.

Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Projects
None yet
Development

No branches or pull requests

1 participant