X-Git-Url: https://git.openstreetmap.org./rails.git/blobdiff_plain/304e0ef63843ddcb55aab62312ff18be8a5b4703..77a2657d33f0066dbdda5fce831113b6e165a264:/app/controllers/api_controller.rb diff --git a/app/controllers/api_controller.rb b/app/controllers/api_controller.rb index 27f262d00..86924d55d 100644 --- a/app/controllers/api_controller.rb +++ b/app/controllers/api_controller.rb @@ -66,9 +66,10 @@ class ApiController < ApplicationController # Use capabilities from the oauth token if it exists and is a valid access token if doorkeeper_token&.accessible? user = User.find(doorkeeper_token.resource_owner_id) - ApiAbility.new(user, doorkeeper_token) + scopes = Set.new doorkeeper_token.scopes + ApiAbility.new(user, scopes) else - ApiAbility.new(nil, nil) + ApiAbility.new(nil, Set.new) end end