aboutsummaryrefslogtreecommitdiffstats
path: root/bot/utils/decorators.py
diff options
context:
space:
mode:
authorGravatar kosayoda <[email protected]>2020-09-18 23:33:56 +0800
committerGravatar kosayoda <[email protected]>2020-09-18 23:33:56 +0800
commitdc63f50d2445c628806e9ac4f08d5ece6c72b18a (patch)
tree9a2b74b022d25026b56ae2a7e9bf4c96c6ecfbb0 /bot/utils/decorators.py
parentMerge pull request #421 from PureFunctor/caesar-command (diff)
Stop users from viewing messages they shouldn't.
Using a user token, a user could fetch the message ID of a message in any channel, which may leak information when potential Message objects are automatically converted and parsed. Now, the bot will only retrive text from a valid Message object if the user has read permissions for the message the channel is in.
Diffstat (limited to 'bot/utils/decorators.py')
0 files changed, 0 insertions, 0 deletions