The routes are not checking whether the person who wants to add or delete information from an account is authorised to do that or not.
If the check is not implemented ,anyone can delete anyone's data and that will be a security breach.


In the example snippet above there is not authorization check.
@Sahil1786 ,I want to work on this .please assign me this under GSSOC-2024