From b367d749cad31ccfbcee9d3e8cbbbd000de45e4b Mon Sep 17 00:00:00 2001 From: redfast00 Date: Fri, 5 Apr 2019 16:38:42 +0200 Subject: [PATCH] You can reset your own API token --- app/models/user_ability.rb | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/app/models/user_ability.rb b/app/models/user_ability.rb index 1f48d8f..0c21657 100644 --- a/app/models/user_ability.rb +++ b/app/models/user_ability.rb @@ -7,7 +7,7 @@ class UserAbility can :manage, :all if user.penning? can :create, Request, creditor_id: user.id can [:confirm, :decline], Request, debtor_id: user.id - can :read, User, id: user.id + can [:read, :reset_key], User, id: user.id can :manage, Notification, user_id: user.id can :create, Transaction do |t| t.debtor == user && t.amount <= Rails.application.config.maximum_amount