From fdd1a8ee25e508d9c978294a51052467c8b68d12 Mon Sep 17 00:00:00 2001 From: Slavcho Ivanov Date: Tue, 16 Jan 2024 12:53:50 +0200 Subject: [PATCH] Refund payment should also be covered by the account-edit-financials-requests role. --- apps/api/src/donations/donations.controller.ts | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/apps/api/src/donations/donations.controller.ts b/apps/api/src/donations/donations.controller.ts index c7e5d077..8704ff70 100644 --- a/apps/api/src/donations/donations.controller.ts +++ b/apps/api/src/donations/donations.controller.ts @@ -227,7 +227,7 @@ export class DonationsController { @Post('/refund-stripe-payment/:id') @Roles({ - roles: [RealmViewSupporters.role, ViewSupporters.role], + roles: [EditFinancialsRequests.role], mode: RoleMatchingMode.ANY, }) refundStripePaymet(@Param('id') paymentIntentId: string) {