From 67a9d014af90f64b6c494803d3f89b85975a7176 Mon Sep 17 00:00:00 2001 From: Alex Gleason Date: Mon, 3 Jan 2022 11:10:58 -0600 Subject: [PATCH] AccountHeader: restrict privileged actions, fixes #713 --- app/soapbox/features/account/components/header.js | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/app/soapbox/features/account/components/header.js b/app/soapbox/features/account/components/header.js index a27271888..66830bc6c 100644 --- a/app/soapbox/features/account/components/header.js +++ b/app/soapbox/features/account/components/header.js @@ -356,7 +356,7 @@ class Header extends ImmutablePureComponent { }); } - if (account.get('id') !== me && isLocal(account)) { + if (account.get('id') !== me && isLocal(account) && isAdmin(meAccount)) { if (isAdmin(account)) { menu.push({ text: intl.formatMessage(messages.demoteToModerator, { name: account.get('username') }), @@ -407,7 +407,7 @@ class Header extends ImmutablePureComponent { }); } - if (features.suggestionsV2) { + if (features.suggestionsV2 && isAdmin(meAccount)) { if (account.getIn(['pleroma', 'is_suggested'])) { menu.push({ text: intl.formatMessage(messages.unsuggestUser, { name: account.get('username') }),