summaryrefslogtreecommitdiffstats
path: root/controller/foldercontroller.php
diff options
context:
space:
mode:
authorBernhard Posselt <dev@bernhard-posselt.com>2014-04-09 01:59:42 +0200
committerBernhard Posselt <dev@bernhard-posselt.com>2014-04-09 22:52:27 +0200
commit4637dcc4587ed0c3b1695568a3c8a3853d695c5d (patch)
treee1778a3ddbaa95568ab90c211d49925f4946d157 /controller/foldercontroller.php
parent6d365e8083ecf67212203fe86fd1e1bf2b4ac281 (diff)
migrate security annotations, please review
Diffstat (limited to 'controller/foldercontroller.php')
-rw-r--r--controller/foldercontroller.php32
1 files changed, 8 insertions, 24 deletions
diff --git a/controller/foldercontroller.php b/controller/foldercontroller.php
index 4a133c6b2..332d09974 100644
--- a/controller/foldercontroller.php
+++ b/controller/foldercontroller.php
@@ -58,9 +58,7 @@ class FolderController extends Controller {
/**
- * @IsAdminExemption
- * @IsSubAdminExemption
- * @Ajax
+ * @NoAdminRequired
*/
public function folders(){
$folders = $this->folderBusinessLayer->findAll($this->api->getUserId());
@@ -80,9 +78,7 @@ class FolderController extends Controller {
/**
- * @IsAdminExemption
- * @IsSubAdminExemption
- * @Ajax
+ * @NoAdminRequired
*/
public function open(){
try {
@@ -97,9 +93,7 @@ class FolderController extends Controller {
/**
- * @IsAdminExemption
- * @IsSubAdminExemption
- * @Ajax
+ * @NoAdminRequired
*/
public function collapse(){
try {
@@ -114,9 +108,7 @@ class FolderController extends Controller {
/**
- * @IsAdminExemption
- * @IsSubAdminExemption
- * @Ajax
+ * @NoAdminRequired
*/
public function create(){
$userId = $this->api->getUserId();
@@ -151,9 +143,7 @@ class FolderController extends Controller {
/**
- * @IsAdminExemption
- * @IsSubAdminExemption
- * @Ajax
+ * @NoAdminRequired
*/
public function delete(){
$userId = $this->api->getUserId();
@@ -171,9 +161,7 @@ class FolderController extends Controller {
/**
- * @IsAdminExemption
- * @IsSubAdminExemption
- * @Ajax
+ * @NoAdminRequired
*/
public function rename(){
$userId = $this->api->getUserId();
@@ -206,9 +194,7 @@ class FolderController extends Controller {
}
/**
- * @IsAdminExemption
- * @IsSubAdminExemption
- * @Ajax
+ * @NoAdminRequired
*/
public function read(){
$userId = $this->api->getUserId();
@@ -225,9 +211,7 @@ class FolderController extends Controller {
/**
- * @IsAdminExemption
- * @IsSubAdminExemption
- * @Ajax
+ * @NoAdminRequired
*/
public function restore(){
$userId = $this->api->getUserId();