Skip to content

Conversation

stevel0pez
Copy link

We should check the requester's rights before making the trip to the db.

check rights before going to database
Copy link

@Berkmann18 Berkmann18 left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Don't you think that would make the code less efficient?

@AcidRaZor
Copy link

Don't you think that would make the code less efficient?

@Berkmann18
Why would checking if you're an admin first and then make a call to the database to retrieve the user, be less efficient? Currently you call the database first (overhead), and THEN check if the user requesting the information is an admin?

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

3 participants