diff --git a/server/AyaNova/Controllers/UserOptionsController.cs b/server/AyaNova/Controllers/UserOptionsController.cs index 46f8b66a..10285549 100644 --- a/server/AyaNova/Controllers/UserOptionsController.cs +++ b/server/AyaNova/Controllers/UserOptionsController.cs @@ -120,7 +120,7 @@ namespace AyaNova.Api.Controllers return NotFound(new ApiErrorResponse(ApiErrorCode.NOT_FOUND)); } - if (id != UserId && !Authorized.HasModifyRole(HttpContext.Items, AyaType.UserOptions, o.OwnerId)) + if (id != UserId && !Authorized.HasModifyRole(HttpContext.Items, AyaType.UserOptions)) { return StatusCode(403, new ApiNotAuthorizedResponse()); } @@ -189,7 +189,7 @@ namespace AyaNova.Api.Controllers return NotFound(new ApiErrorResponse(ApiErrorCode.NOT_FOUND)); } - if (id != UserId && !Authorized.HasModifyRole(HttpContext.Items, AyaType.UserOptions, o.OwnerId)) + if (id != UserId && !Authorized.HasModifyRole(HttpContext.Items, AyaType.UserOptions)) { return StatusCode(403, new ApiNotAuthorizedResponse()); }