Add authorization attribute to ConfigurationController for security

Co-authored-by: clayschaad <11883505+clayschaad@users.noreply.github.com>
This commit is contained in:
copilot-swe-agent[bot] 2025-08-26 15:46:45 +00:00
parent eda9c17116
commit 760750de05

View file

@ -1,3 +1,4 @@
using Microsoft.AspNetCore.Authorization;
using Microsoft.AspNetCore.Mvc; using Microsoft.AspNetCore.Mvc;
using ShiftScheduler.Services; using ShiftScheduler.Services;
using ShiftScheduler.Shared; using ShiftScheduler.Shared;
@ -7,6 +8,7 @@ namespace ShiftScheduler.Server.Controllers
{ {
[ApiController] [ApiController]
[Route("api/[controller]")] [Route("api/[controller]")]
[Authorize(Policy = "AllowedEmails")]
public class ConfigurationController : ControllerBase public class ConfigurationController : ControllerBase
{ {
private readonly IConfigurationService _configurationService; private readonly IConfigurationService _configurationService;