From 5f2e0d4e4911e6b5900b76e65ca068072e5b8a0a Mon Sep 17 00:00:00 2001 From: Leo Hemsted Date: Wed, 14 Mar 2018 15:39:06 +0000 Subject: [PATCH] organisations can be edited by anyone who belongs to that org --- app/main/views/organisations.py | 6 +++--- 1 file changed, 3 insertions(+), 3 deletions(-) diff --git a/app/main/views/organisations.py b/app/main/views/organisations.py index 0010e5c5b..be2395b8c 100644 --- a/app/main/views/organisations.py +++ b/app/main/views/organisations.py @@ -160,7 +160,7 @@ def cancel_invited_org_user(org_id, invited_user_id): @main.route("/organisations//settings/", methods=['GET']) @login_required -@user_is_platform_admin +@user_has_permissions() def organisation_settings(org_id): return render_template( 'views/organisations/organisation/settings/index.html', @@ -169,7 +169,7 @@ def organisation_settings(org_id): @main.route("/organisations//settings/edit-name", methods=['GET', 'POST']) @login_required -@user_is_platform_admin +@user_has_permissions() def edit_organisation_name(org_id): form = RenameOrganisationForm() @@ -192,7 +192,7 @@ def edit_organisation_name(org_id): @main.route("/organisations//settings/edit-name/confirm", methods=['GET', 'POST']) @login_required -@user_is_platform_admin +@user_has_permissions() def confirm_edit_organisation_name(org_id): # Validate password for form def _check_password(pwd):