Skip to content

Conversation

@ArhamSyed
Copy link

Used authheader to secure the endpoint

Copy link
Owner

@fred-maina fred-maina left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

This endpoint is meant to provide chat history for anonymous users. i.e they are not logged in so they will not have a jwt token. So this will block every anonymous user from reading even their own messages. We need to think about an alternative way to secure this enpoint.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants