X-Git-Url: http://wagnertech.de/gitweb/gitweb.cgi/timetracker.git/blobdiff_plain/21054f67875d0c0c947cc46fe438f407dbe94ee7..216d1c29ae204a1404a5d38cad77abce516e2386:/mobile/projects.php diff --git a/mobile/projects.php b/mobile/projects.php index c35e738a..a9f8ab02 100644 --- a/mobile/projects.php +++ b/mobile/projects.php @@ -31,8 +31,7 @@ import('form.Form'); import('ttTeamHelper'); // Access checks. -// TODO: introduce view_own_projects right to keep access checks simple. -if (!(ttAccessAllowed('track_own_time') || ttAccessAllowed('track_time') || ttAccessAllowed('manage_projects'))) { +if (!(ttAccessAllowed('view_own_projects') || ttAccessAllowed('manage_projects'))) { header('Location: access_denied.php'); exit(); } @@ -40,6 +39,7 @@ if (MODE_PROJECTS != $user->tracking_mode && MODE_PROJECTS_AND_TASKS != $user->t header('Location: feature_disabled.php'); exit(); } +// End of access checks. if($user->can('manage_projects')) { $active_projects = ttTeamHelper::getActiveProjects($user->team_id);