]> cat aescling's git repositories - mastodon.git/commitdiff
Prevent admins and moderators eavesdropping in private and direct toots (#7067)
authorAlda Marteau-Hardi <github@ltch.fr>
Sat, 7 Apr 2018 19:33:01 +0000 (21:33 +0200)
committerEugen Rochko <eugen@zeonfederated.com>
Sat, 7 Apr 2018 19:33:01 +0000 (21:33 +0200)
Fix #6986

app/controllers/admin/statuses_controller.rb

index 5d4325f574424bd816fbda7372ccc532adb01004..d5787acfb9895a7b8c1b4605a9edf1538217988a 100644 (file)
@@ -12,7 +12,7 @@ module Admin
     def index
       authorize :status, :index?
 
-      @statuses = @account.statuses
+      @statuses = @account.statuses.where(visibility: [:public, :unlisted])
 
       if params[:media]
         account_media_status_ids = @account.media_attachments.attached.reorder(nil).select(:status_id).distinct