任何登录用户都能增加客户

This commit is contained in:
2026-04-29 17:31:51 +08:00
parent 33884bf3d1
commit 61fd83b870
+6 -5
View File
@@ -166,17 +166,18 @@ func ApiCustomerInit() {
} }
func ApiCustomer(r *gin.RouterGroup) { func ApiCustomer(r *gin.RouterGroup) {
// POST /add - 新增客户(需 customer_admin 权限) // POST /add - 新增客户
r.POST("/add", func(ctx *gin.Context) { r.POST("/add", func(ctx *gin.Context) {
isAuth, user, data := AuthenticationAuthority(ctx) isAuth, user, data := AuthenticationAuthority(ctx)
if !isAuth { if !isAuth {
ReturnJson(ctx, "userNoLogin", nil) ReturnJson(ctx, "userNoLogin", nil)
return return
} }
if !customerAdminCheck(user.ID) { //不再需要管理员权限就能新增
ReturnJson(ctx, "permission_denied", nil) // if !customerAdminCheck(user.ID) {
return // ReturnJson(ctx, "permission_denied", nil)
} // return
// }
var params From_customer_add var params From_customer_add
if err := decodeJSON(data, &params); err != nil { if err := decodeJSON(data, &params); err != nil {