fix: validate org membership to get organization details

* feat: validate org membership using ID or slug

* fix: remove setActiveOrg from original feature
This commit is contained in:
Matt Sywulak
2025-01-10 07:40:28 +03:00
committed by GitHub
parent 3fd7cb187a
commit e2bdedf129
@@ -392,6 +392,15 @@ export const getFullOrganization = createAuthEndpoint(
organizationId,
isSlug: !!ctx.query?.organizationSlug,
});
const isMember = organization?.members.find(
(member) => member.userId === session.user.id,
);
if (!isMember) {
throw new APIError("FORBIDDEN", {
message:
ORGANIZATION_ERROR_CODES.USER_IS_NOT_A_MEMBER_OF_THE_ORGANIZATION,
});
}
if (!organization) {
throw new APIError("BAD_REQUEST", {
message: ORGANIZATION_ERROR_CODES.ORGANIZATION_NOT_FOUND,