osamhack2021/Web_Handover_Handover

Fix: Remove admins, inspectors field from GET /group

Closed this issue · 2 comments

  1. Because admins, inspectors is significant informations, removing those fields of response

https://www.notion.so/osam-handover/db648ddd367444c4b2fd757df3666564?v=ef1651b6e3bc498e96f9d5a183921d35
@ntcho : Authorized 사용자이면 모든 부대의 모든 관리자 정보를 볼 수 있는 것인데, 심각한 보안 문제가 발생하지 않을까요?

Related to: 6fdc22d