Skip to content

[API] Add a security check for the commit when the API is used with an api key #525

Open
@ppazos

Description

@ppazos

For #467 we added the system id to the api key, and that value should come on the version_uid.creating_system_id field.

We can compare the system id that comes on the XML with the one in the API key and reject the commit if those don't match.

Metadata

Metadata

Assignees

No one assigned

    Projects

    No projects

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions