Feature #258
Updated by 關山 和丈 28 days ago
render json: { error: "Unauthorized" }, status: :forbiddenに対して
```
# API関連
def authorize_patient!(patient)
return true if current_pharmacist.admin? || patient.pharmacy_id == current_pharmacist.pharmacy_id
render json: { error: "Unauthorized" }, status: :forbidden
false
end
def authorize_pharmacy_id!(pharmacy_id)
return true if current_pharmacist.admin? || pharmacy_id == current_pharmacist.pharmacy_id
render json: { error: "Unauthorized" }, status: :forbidden
false
end
```
Back