瀏覽代碼

Update BaseApiController, invalidate session after account deletion

Daniel Supernault 5 年之前
父節點
當前提交
826978ce08
共有 1 個文件被更改,包括 4 次插入0 次删除
  1. 4 0
      app/Http/Controllers/Api/BaseApiController.php

+ 4 - 0
app/Http/Controllers/Api/BaseApiController.php

@@ -314,6 +314,10 @@ class BaseApiController extends Controller
     {
         $user = $request->user();
         abort_if(!$user, 403);
+        if($user->status != null) {
+            Auth::logout();
+            return redirect('/login');
+        }
         $resource = new Fractal\Resource\Item($user->profile, new AccountTransformer());
         $res = $this->fractal->createData($resource)->toArray();
         return response()->json($res);