diff --git a/src/Project/Controllers/ProjectQuotaController.cs b/src/Project/Controllers/ProjectQuotaController.cs index 4a3c16a0b39db74b413d35a3f40e1c9e61bdbba9..7f26ec279854498ff32b43f49246139a2fa57b06 100644 --- a/src/Project/Controllers/ProjectQuotaController.cs +++ b/src/Project/Controllers/ProjectQuotaController.cs @@ -64,7 +64,7 @@ namespace Coscine.Api.Project.Controllers return base.NotFound($"Could not find project with id: {id}"); } - if (!_projectModel.HasAccess(user, project, UserRoles.Owner)) + if (!_projectModel.HasAccess(user, project, UserRoles.Owner, UserRoles.Member)) { return Unauthorized("The user is not authorized to perform a get on the selected project!"); } @@ -93,7 +93,7 @@ namespace Coscine.Api.Project.Controllers return NotFound($"Could not find project with id: {id}"); } - if (!_projectModel.HasAccess(user, project, UserRoles.Owner)) + if (!_projectModel.HasAccess(user, project, UserRoles.Owner, UserRoles.Member)) { return Unauthorized("The user is not authorized to perform a get on the selected project!"); }