cancancan
https://github.com/cancancommunity/cancancan
Ruby
The authorization Gem for Ruby on Rails.
Triage Issues!
When you volunteer to triage issues, you'll receive an email each day with a link to an open issue that needs help in this project. You'll also receive instructions on how to triage issues.
Triage Docs!
Receive a documented method or class from your favorite GitHub repos in your inbox every day. If you're really pro, receive undocumented methods or classes and supercharge your commit history.
9 Subscribers
Add a CodeTriage badge to cancancan
Help out
- Issues
- Use `relation.and` instead of `relation.merge` whenever possible.
- Confirm that `:manage` and `:all` also apply to `cannot`
- Cannot use MySQL UUID through binary type
- STI type in SQL set differently from actual class
- Override parent controller authorization options
- Children / sub-actions accessible even if object is unauthorized
- be_able_to negative matcher passes with accessable actions
- negated matcher for be_able_to only passes when no ability is eligible
- Ability definitions overwrite parent association of nested resource
- build_ressource: conditions hash mess with user params/default value
- Docs
- Subscribe to help with docs for this repo and come back later