gnu-social/actions
Brion Vibber d3d9797496 Prevent group creation by silenced users.
* adds Right::CREATEGROUP
* logic in Profile::hasRight() checks for silencing
* NewgroupAction checks for the permission before letting you see or process the form in the UI
* User_group::register() logic does a low-level check on the specified initial group admin, and rejects creation if that user doesn't have the right; guaranteeing that API methods etc will also have this restriction applied sensibly.
2010-12-28 11:34:02 -08:00
..
accessadminpanel.php * i18n/L10n fixes. 2010-10-28 01:21:09 +02:00
accesstoken.php * i18n/L10n fixes. 2010-10-28 01:21:09 +02:00
all.php * i18n/L10n fixes. 2010-10-28 01:21:09 +02:00
allrss.php Fix missing close of comment block 2010-11-11 10:33:26 -08:00
apiaccountratelimitstatus.php * i18n/L10n fixes. 2010-10-28 01:21:09 +02:00
apiaccountupdatedeliverydevice.php * i18n/L10n fixes. 2010-10-28 01:21:09 +02:00
apiaccountupdateprofile.php * i18n/L10n fixes. 2010-10-28 01:21:09 +02:00
apiaccountupdateprofilebackgroundimage.php * i18n/L10n fixes. 2010-10-28 01:21:09 +02:00
apiaccountupdateprofilecolors.php * i18n/L10n fixes. 2010-10-28 01:21:09 +02:00
apiaccountupdateprofileimage.php * i18n/L10n fixes. 2010-10-28 01:21:09 +02:00
apiaccountverifycredentials.php * i18n/L10n fixes. 2010-10-28 01:21:09 +02:00
apiblockcreate.php i18n/L10n updates, translator comments added/fixed, superfluous whitespace removed. 2010-10-21 01:53:42 +02:00
apiblockdestroy.php * i18n/L10n fixes. 2010-10-28 01:21:09 +02:00
apidirectmessage.php * i18n/L10n fixes. 2010-10-28 01:21:09 +02:00
apidirectmessagenew.php * i18n/L10n fixes. 2010-10-28 01:21:09 +02:00
apifavoritecreate.php * i18n/L10n fixes. 2010-10-28 01:21:09 +02:00
apifavoritedestroy.php * i18n/L10n fixes. 2010-10-28 01:21:09 +02:00
apifriendshipscreate.php * i18n/L10n fixes. 2010-10-28 01:21:09 +02:00
apifriendshipsdestroy.php * i18n/L10n fixes. 2010-10-28 01:21:09 +02:00
apifriendshipsexists.php * i18n/L10n fixes. 2010-10-28 01:21:09 +02:00
apifriendshipsshow.php * i18n/L10n fixes. 2010-10-28 01:21:09 +02:00
apigroupcreate.php * i18n/L10n fixes. 2010-10-28 01:21:09 +02:00
apigroupismember.php * i18n/L10n fixes. 2010-10-28 01:21:09 +02:00
apigroupjoin.php * i18n/L10n fixes. 2010-10-28 01:21:09 +02:00
apigroupleave.php * i18n/L10n fixes. 2010-10-28 01:21:09 +02:00
apigrouplist.php * i18n/L10n fixes. 2010-10-28 01:21:09 +02:00
apigrouplistall.php * i18n/L10n fixes. 2010-10-28 01:21:09 +02:00
apigroupmembership.php * i18n/L10n fixes. 2010-10-28 01:21:09 +02:00
apigroupshow.php * i18n/L10n fixes. 2010-10-28 01:21:09 +02:00
apihelptest.php * i18n/L10n fixes. 2010-10-28 01:21:09 +02:00
apimediaupload.php * i18n/L10n fixes. 2010-10-28 01:21:21 +02:00
apioauthaccesstoken.php * i18n/L10n fixes. 2010-10-28 01:21:21 +02:00
apioauthauthorize.php Update translator documentation. 2010-10-28 01:42:09 +02:00
apioauthpin.php * i18n/L10n fixes. 2010-10-28 01:21:21 +02:00
apioauthrequesttoken.php * i18n/L10n fixes. 2010-10-28 01:21:21 +02:00
apisearchatom.php Ticket #1987: support since_id on API notice search methods. 2010-11-19 14:00:22 -08:00
apisearchjson.php Ticket #1987: support since_id on API notice search methods. 2010-11-19 14:00:22 -08:00
apistatusesdestroy.php * i18n/L10n fixes. 2010-10-28 01:21:21 +02:00
apistatusesretweet.php * i18n/L10n fixes. 2010-10-28 01:21:21 +02:00
apistatusesretweets.php * i18n/L10n fixes. 2010-10-28 01:21:21 +02:00
apistatusesshow.php * i18n/L10n fixes. 2010-10-28 01:21:21 +02:00
apistatusesupdate.php * i18n/L10n fixes. 2010-10-28 01:21:21 +02:00
apistatusnetconfig.php * i18n/L10n fixes. 2010-10-28 01:21:21 +02:00
apistatusnetversion.php * i18n/L10n fixes. 2010-10-28 01:21:21 +02:00
apisubscriptions.php * i18n/L10n fixes. 2010-10-28 01:21:21 +02:00
apitimelinefavorites.php * i18n/L10n fixes. 2010-10-28 01:21:21 +02:00
apitimelinefriends.php * i18n/L10n fixes. 2010-10-28 01:21:21 +02:00
apitimelinegroup.php * i18n/L10n fixes. 2010-10-28 01:21:21 +02:00
apitimelinehome.php * i18n/L10n fixes. 2010-10-28 01:21:21 +02:00
apitimelinementions.php * i18n/L10n fixes. 2010-10-28 01:21:21 +02:00
apitimelinepublic.php * i18n/L10n fixes. 2010-10-28 01:21:21 +02:00
apitimelineretweetedbyme.php * i18n/L10n fixes. 2010-10-28 01:21:21 +02:00
apitimelineretweetedtome.php * i18n/L10n fixes. 2010-10-28 01:21:21 +02:00
apitimelineretweetsofme.php * i18n/L10n fixes. 2010-10-28 01:21:21 +02:00
apitimelinetag.php * i18n/L10n fixes. 2010-10-28 01:21:21 +02:00
apitimelineuser.php * i18n/L10n fixes. 2010-10-28 01:21:21 +02:00
apitrends.php * i18n/L10n fixes. 2010-10-28 01:21:21 +02:00
apiuserfollowers.php * i18n/L10n fixes. 2010-10-28 01:21:21 +02:00
apiuserfriends.php * i18n/L10n fixes. 2010-10-28 01:21:21 +02:00
apiusershow.php * i18n/L10n fixes. 2010-10-28 01:21:21 +02:00
attachment_ajax.php define LACONICA and accept LACONICA for backwards compatibility 2009-08-26 10:41:36 -04:00
attachment_thumbnail.php define LACONICA and accept LACONICA for backwards compatibility 2009-08-26 10:41:36 -04:00
attachment.php Revert "Remove more contractions" 2009-11-09 20:01:46 +01:00
avatarbynickname.php Revert "Remove more contractions" 2009-11-09 20:01:46 +01:00
avatarsettings.php i18n/L10n consistency updates. 2010-10-21 13:20:21 +02:00
block.php Merge branch 'testing' into 0.9.x 2010-05-21 13:15:08 -07:00
blockedfromgroup.php modify group actions so they use Local_group to look up by nickname 2010-02-25 08:44:15 -05:00
bookmarklet.php Cleanup bad i18n format for page title on bookmarklet posting window 2010-04-09 09:44:30 -07:00
confirmaddress.php Document messages for which clarification was requested. 2010-04-10 01:48:16 +02:00
conversation.php define LACONICA and accept LACONICA for backwards compatibility 2009-08-26 10:41:36 -04:00
deleteapplication.php Add translator documentation for uses of 'Yes' and 'No' in the interface. 2010-04-11 21:04:07 +02:00
deletegroup.php * fix bugs in parameter numbering for two messages 2010-10-18 22:47:50 +02:00
deletenotice.php Fix PHP fatal error in DeletenoticeAction: died when we had a valid notice, but weren't logged in due to accessing $this->user before the login check. Moved check up to prepare() from handle() so it's done before usage 2010-10-08 10:33:43 -07:00
deleteuser.php Merge branch 'testing' into 0.9.x 2010-05-21 13:15:08 -07:00
designadminpanel.php i18n/L10n consistency updates. 2010-10-21 13:20:21 +02:00
disfavor.php Fix inconsistencies in clientError() messages 2010-04-09 16:11:20 -07:00
doc.php Allow site-specific doc files 2010-03-10 22:27:28 +00:00
editapplication.php i18n/L10n consistency updates. 2010-10-21 13:20:21 +02:00
editgroup.php i18n/L10n consistency updates. 2010-10-21 13:20:21 +02:00
emailsettings.php Update/add translator documentation. 2010-09-12 17:27:38 +02:00
favor.php Make some messages gender neutral. 2010-07-19 21:09:09 -05:00
favorited.php Prep for ticket #2895: consolidate common code from PopularNoticeList and FavoritedAction for fetching popular notice lists 2010-11-16 11:10:32 -08:00
favoritesrss.php Implement since_id and max_id param handling for /api/favorites 2010-05-05 14:46:36 -07:00
featured.php Remove pleonasm in UI text 2009-12-20 20:20:35 +01:00
file.php (Puctuation) consistency in clientError() calls. 2009-12-13 18:55:17 +01:00
finishremotesubscribe.php Make some messages gender neutral. 2010-07-19 21:09:09 -05:00
foaf.php Ticket #2350: fix for incorrect FOAF sioc:follows entries for users who are followed by, but don't themselves follow the user whose FOAF we're displaying. 2010-06-10 11:42:58 -07:00
foafgroup.php Avoid E_NOTICE spew when listing group members who aren't admins 2010-04-09 08:38:42 -07:00
geocode.php Assigning my copyrights to the Free Software Foundation 2010-05-27 18:27:33 -04:00
getfile.php Improve name validation checks on local File references 2010-02-01 08:49:59 -08:00
grantrole.php Fix inconsistencies in clientError() messages 2010-04-09 16:11:20 -07:00
groupblock.php Merge branch 'testing' into 0.9.x 2010-05-21 13:15:08 -07:00
groupbyid.php Lots of tiny message changes. 2010-01-10 12:26:24 +01:00
groupdesignsettings.php modify group actions so they use Local_group to look up by nickname 2010-02-25 08:44:15 -05:00
grouplogo.php modify group actions so they use Local_group to look up by nickname 2010-02-25 08:44:15 -05:00
groupmembers.php Fix PHP syntax errors introduced during localization fixups in a few files. 2010-09-25 12:10:36 -07:00
grouprss.php Document messages for which clarification was requested. 2010-04-10 01:48:16 +02:00
groups.php modify group actions so they use Local_group to look up by nickname 2010-02-25 08:44:15 -05:00
groupsearch.php Merge remote branch 'statusnet/0.8.x' into 0.9.x 2009-10-11 13:39:10 -04:00
groupunblock.php define LACONICA and accept LACONICA for backwards compatibility 2009-08-26 10:41:36 -04:00
hcard.php Add an hcard action 2010-02-25 18:39:55 -05:00
imsettings.php Update translator documentation. 2010-09-12 17:43:43 +02:00
inbox.php fix interpolation of positional arguments to sprintf in inbox 2010-01-24 22:54:25 -05:00
invite.php Many i18n/L10n updates and lots of descriptions for translators added. 2010-10-20 00:35:39 +02:00
joingroup.php OStatus: fix remote groups to work with new user_groups/local_groups split. 2010-02-25 13:02:08 -08:00
leavegroup.php OStatus: fix remote groups to work with new user_groups/local_groups split. 2010-02-25 13:02:08 -08:00
licenseadminpanel.php License admin panel should allow empty or valid URLs for (license 2010-09-21 13:06:23 -07:00
login.php Redirect non-SSL hits to login & register actions to SSL if 'always' or 'sometimes' SSL modes are kicked in. 2010-05-18 21:52:17 +00:00
logout.php Revert "Remove more contractions" 2009-11-09 20:01:46 +01:00
makeadmin.php Fix for ticket #2837: white screen when hitting 'make admin' button on group members list. 2010-10-15 15:33:54 -07:00
microsummary.php Fix inconsistencies in clientError() messages 2010-04-09 16:11:20 -07:00
newapplication.php i18n/L10n consistency updates. 2010-10-21 13:20:21 +02:00
newgroup.php Prevent group creation by silenced users. 2010-12-28 11:34:02 -08:00
newmessage.php i18n/L10n consistency updates. 2010-10-21 13:20:21 +02:00
newnotice.php i18n/L10n consistency updates. 2010-10-21 13:20:21 +02:00
noticesearch.php * L10n updates: consistent puctuation 2010-01-10 01:45:58 +01:00
noticesearchrss.php Fix bug 1997: notice search rss utter failure 2009-11-20 14:54:59 -08:00
nudge.php Add missing "address" 2010-10-20 00:49:12 +02:00
oauthappssettings.php * translator documentation added. 2010-10-23 19:20:51 +02:00
oauthconnectionssettings.php * i18n/L10n fixes. 2010-10-20 19:34:27 +02:00
oembed.php Assigning my copyrights to the Free Software Foundation 2010-05-27 18:27:33 -04:00
opensearch.php Revert "Remove more contractions" 2009-11-09 20:01:46 +01:00
othersettings.php Make page titles more consistent: no title case in four cases. 2010-01-14 23:32:40 +01:00
otp.php an otp is a real login 2010-03-08 18:06:21 -05:00
outbox.php fix interpolation of positional arguments to sprintf in outbox 2010-01-24 22:53:29 -05:00
passwordsettings.php Fix regression in password settings: users have been unable to change their passwords since introduction of ChangePassword event (later StartChangePassword) November 5 in commit d6ddb84132 2009-12-01 15:44:07 -08:00
pathsadminpanel.php Consistent punctuation. 2010-10-20 20:29:59 +02:00
peoplesearch.php Bringing Sphinx search support up to code: broken out to a plugin, now supports multiple sites on a single server. 2009-11-10 13:44:40 -08:00
peopletag.php Fix inconsistencies in clientError() messages 2010-04-09 16:11:20 -07:00
postnotice.php Fix inconsistencies in clientError() messages 2010-04-09 16:11:20 -07:00
profilesettings.php i18n/L10n consistency updates. 2010-10-21 13:20:21 +02:00
public.php Fix inconsistencies in clientError() messages 2010-04-09 16:11:20 -07:00
publicrss.php Output If-Modified-Since header for all RSS 1.0 feeds (again) 2009-09-24 15:10:55 -07:00
publictagcloud.php Many i18n/L10n updates and lots of descriptions for translators added. 2010-10-20 00:35:39 +02:00
publicxrds.php Assigning my copyrights to the Free Software Foundation 2010-05-27 18:27:33 -04:00
recoverpassword.php Fixes for password recovery; lookups for unconfirmed addresses were failing or inconsistent (using staticGet with unindexed fields, which would not get decached correctly and could get confused if multiple pending confirmations of different types are around). 2010-03-11 18:01:50 -08:00
register.php i18n/L10n consistency updates. 2010-10-21 13:20:21 +02:00
remotesubscribe.php Update message formatting for serverError to use a starting capital and a leading period. 2010-04-09 15:29:41 -07:00
repeat.php Fix inconsistencies in clientError() messages 2010-04-09 16:11:20 -07:00
replies.php Tweak message per suggestion of The Evil IP Address[1]. 2010-08-01 00:16:39 +02:00
repliesrss.php Output If-Modified-Since header for all RSS 1.0 feeds (again) 2009-09-24 15:10:55 -07:00
requesttoken.php Response for request token doesn't contain omb_version 2009-09-13 00:01:23 -04:00
revokerole.php Fix inconsistencies in clientError() messages 2010-04-09 16:11:20 -07:00
robotstxt.php Add a robots.txt URL to the site root 2010-01-31 10:12:26 -05:00
rsd.php Add Really Simple Discovery (RSD) support 2010-01-31 15:16:59 -05:00
sandbox.php Fix inconsistencies in clientError() messages 2010-04-09 16:11:20 -07:00
sessionsadminpanel.php Removed periods from instructions on some admin panels for consistency 2010-09-17 14:32:18 -07:00
showapplication.php Re-camelcase ApiOauthAuthorizeAction so it will be accessible when 2010-10-21 18:15:11 -07:00
showfavorites.php options to nofollow external links in notices 2010-10-18 11:29:52 -04:00
showgroup.php Fix for regression: fatal error on group page display when not logged in. 2010-10-28 12:19:19 -07:00
showmessage.php Revert "Remove more contractions" 2009-11-09 20:01:46 +01:00
shownotice.php options to nofollow external links in notices 2010-10-18 11:29:52 -04:00
showstream.php Many i18n/L10n updates and lots of descriptions for translators added. 2010-10-20 00:35:39 +02:00
silence.php Fix inconsistencies in clientError() messages 2010-04-09 16:11:20 -07:00
siteadminpanel.php Fix inconsistencies in clientError() messages 2010-04-09 16:11:20 -07:00
sitenoticeadminpanel.php Fix inconsistencies in clientError() messages 2010-04-09 16:11:20 -07:00
smssettings.php Add translator documentation. 2010-04-11 23:24:38 +02:00
snapshotadminpanel.php Lower case "Web" 2010-04-11 01:03:06 +02:00
subedit.php define LACONICA and accept LACONICA for backwards compatibility 2009-08-26 10:41:36 -04:00
subscribe.php Fix bug on subscribe/unsubscribe in profile lists. Bogus call to nonexisting profile->getProfile() was masked by DB_DataObject 2010-02-25 15:22:23 -08:00
subscribers.php Many i18n/L10n updates and lots of descriptions for translators added. 2010-10-20 00:35:39 +02:00
subscriptions.php Many i18n/L10n updates and lots of descriptions for translators added. 2010-10-20 00:35:39 +02:00
sup.php Performance fix for FriendFeed sup interface: MySQL query optimizer was doing a table scan on notice; explicit subquery makes it run much more efficiently, only scanning items within the period under consideration. Standard subquery should be PostgreSQL-compatible. 2010-02-21 15:21:18 -08:00
tag.php Update message formatting for serverError to use a starting capital and a leading period. 2010-04-09 15:29:41 -07:00
tagother.php Lots of tiny message changes. 2010-01-10 12:26:24 +01:00
tagrss.php Fix for blank RSS1 tag feeds 2010-03-05 16:23:28 -08:00
unblock.php add events for unblocking a profile 2009-12-28 10:50:12 -08:00
unsandbox.php Fix inconsistencies in clientError() messages 2010-04-09 16:11:20 -07:00
unsilence.php Fix inconsistencies in clientError() messages 2010-04-09 16:11:20 -07:00
unsubscribe.php Fix inconsistencies in clientError() messages 2010-04-09 16:11:20 -07:00
updateprofile.php remove strict check on OMB exception strings 2010-03-01 18:03:18 -05:00
useradminpanel.php Removed periods from instructions on some admin panels for consistency 2010-09-17 14:32:18 -07:00
userauthorization.php Fix inconsistencies in clientError() messages 2010-04-09 16:11:20 -07:00
userbyid.php (Puctuation) consistency in clientError() calls. 2009-12-13 18:55:17 +01:00
userdesignsettings.php Lots of tiny message changes. 2010-01-10 12:26:24 +01:00
usergroups.php Document messages for which clarification was requested. 2010-04-10 01:48:16 +02:00
userrss.php Document messages for which clarification was requested. 2010-04-10 01:48:16 +02:00
version.php Assigning my copyrights to the Free Software Foundation 2010-05-27 18:27:33 -04:00
xrds.php A further change to the XRDS is required if 0.9.x is to be able to remote sub to a 0.8.x account, with the OpenID plugin enabled. 2009-11-12 20:57:09 +00:00