You cannot select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.
mastodon/app/controllers/api/v1
Eugen Rochko 48fee1a800
Fix poll API not requiring authentication on non-public polls (#10960)
* Fix poll API not requiring authentication on non-public polls

That API does not reveal the content of the status, i.e. the question
itself, nor who the author is, nor which status it belongs to, but it
does reveal the poll options and how many answers they got

Fix #10959

* Add test
6 years ago
..
accounts Improve blocked view of profiles (#10491) 6 years ago
apps Add vapid_key to the application entity in the REST API (#10058) 7 years ago
instances Explicitly disable storage of REST API results (#10655) 6 years ago
lists Extract counters from accounts table to account_stats table (#9295) 7 years ago
polls Add polls (#10111) 7 years ago
push Fix web push notifications for polls (#10864) 6 years ago
statuses Improve blocked view of profiles (#10491) 6 years ago
timelines Fix `tagged` param not being normalized before querying tags (#10249) 7 years ago
accounts_controller.rb Improve blocked view of profiles (#10491) 6 years ago
apps_controller.rb
blocks_controller.rb Extract counters from accounts table to account_stats table (#9295) 7 years ago
conversations_controller.rb Add unread indicator to conversations (#9009) 7 years ago
custom_emojis_controller.rb Explicitly disable storage of REST API results (#10655) 6 years ago
domain_blocks_controller.rb
endorsements_controller.rb Extract counters from accounts table to account_stats table (#9295) 7 years ago
favourites_controller.rb Support min_id-based pagination in REST API (#8736) 7 years ago
filters_controller.rb
follow_requests_controller.rb Extract counters from accounts table to account_stats table (#9295) 7 years ago
follows_controller.rb
instances_controller.rb Explicitly disable storage of REST API results (#10655) 6 years ago
lists_controller.rb
media_controller.rb
mutes_controller.rb
notifications_controller.rb Add `account_id` param to `GET /api/v1/notifications` (#10796) 6 years ago
polls_controller.rb Fix poll API not requiring authentication on non-public polls (#10960) 6 years ago
preferences_controller.rb Add a preferences API so apps can share basic behaviours (#10109) 7 years ago
reports_controller.rb Add unread indicator to conversations (#9009) 7 years ago
scheduled_statuses_controller.rb Add scheduled statuses (#9706) 7 years ago
search_controller.rb Add type, limit, offset, min_id, max_id, account_id to search API (#10091) 7 years ago
statuses_controller.rb Add toot source to delete result to ease Delete & Redraft (#10669) 6 years ago
streaming_controller.rb
suggestions_controller.rb