Lesson locked
Please enrol in the course or become a Pro member to access this lesson.
Enrol to course
Are you already enrolled? Log in to
continue learning.
Preventing unauthorized access
As it stands, we have a potential loophole in the API. Anyone can update or even delete threads, which ought not to be. Users should only be able to update or delete their threads. Let's fix that in this lesson.