X-Git-Url: https://git.openstreetmap.org./rails.git/blobdiff_plain/3ece776664381794b5e342e82ed2be3f47f120b5..d17d5689613f1462ef1fabf2a76c2038e2970aa8:/app/controllers/diary_entries_controller.rb diff --git a/app/controllers/diary_entries_controller.rb b/app/controllers/diary_entries_controller.rb index ba2a2976e..5f53e81b6 100644 --- a/app/controllers/diary_entries_controller.rb +++ b/app/controllers/diary_entries_controller.rb @@ -158,7 +158,7 @@ class DiaryEntriesController < ApplicationController @page = (params[:page] || 1).to_i @page_size = 20 - @entries = @entries.visible unless current_user&.administrator? + @entries = @entries.visible unless can? :unhide, DiaryEntry @entries = @entries.order("created_at DESC") @entries = @entries.offset((@page - 1) * @page_size) @entries = @entries.limit(@page_size) @@ -203,7 +203,7 @@ class DiaryEntriesController < ApplicationController @entry = @user.diary_entries.visible.where(:id => params[:id]).first if @entry @title = t "diary_entries.show.title", :user => params[:display_name], :title => @entry.title - @comments = current_user&.administrator? ? @entry.comments : @entry.visible_comments + @comments = can?(:unhidecomment, DiaryEntry) ? @entry.comments : @entry.visible_comments else @title = t "diary_entries.no_such_entry.title", :id => params[:id] render :action => "no_such_entry", :status => :not_found @@ -237,7 +237,7 @@ class DiaryEntriesController < ApplicationController def comments conditions = { :user_id => @user } - conditions[:visible] = true unless current_user&.administrator? + conditions[:visible] = true unless can? :unhidecomment, DiaryEntry @comment_pages, @comments = paginate(:diary_comments, :conditions => conditions,