mirror of
https://github.com/go-vikunja/vikunja.git
synced 2026-07-24 08:48:48 -05:00
Read-only users can't comment #356
Open
opened 2025-11-01 20:54:52 -05:00 by GiteaMirror
·
3 comments
No Branch/Tag Specified
main
renovate/dev-dependencies
renovate/github.com-prometheus-client_golang-1.x
renovate/github.com-gabriel-vasile-mimetype-1.x
renovate/postcss-8.x
renovate/undici6-8.x
renovate/major-dev-dependencies
renovate/sentry-javascript-monorepo
renovate/marked-18.x
renovate/crowdin-github-action-2.x
fix-migration-index-wipe
fix-sr-findings
pr-swarm-assets
claude/task-event-field-changes-ws73g2
feat-mcp
feat-audit-sinks
claude/per-user-feature-toggles-vqlg8x
docs-v2-query-param
feat-project-templates
claude/veans-question-xBFkq
spike-huma-openapi3
claude/investigate-swagger3-support-nyyUa
feat-list-view-buckets
ci-mysql-8-test
codex/analyze-codebase-for-email-task-feature
csv-import-feature
claude/email-reply-comments-wpdcQ
fix-oidc-pkce-support
fix/overview-subtasks-expand
feat/bucket-select-task-detail
feat-soft-delete-projects
claude/review-bot-design-plan-cf5C3
claude/project-scoped-api-tokens-KTqR3
claude/explore-openclaw-integration-KQEzg
claude/project-scoped-api-tokens-yv5KS
fix-duplicate-close-button
feat-list-view-sorting
feat/official-vite-sentry-plugin
feat/highlight-overdue-tasks
feat/add-enter-key-form-submission-handling
feat/TipTap-nits
feat/update-caldavtimetotimestamp-parsing
feat-phosphor-icons
wip-plans
claude/investigate-issue-2173-llKme
fix-description-text-drag
feat-custom-keyboard-shortcuts
pr-1845-ci
codex/fix-drag-and-drop-behavior-inconsistency
copilot/add-clickable-labels-for-filtering
copilot/fix-issue-1786
playwright-migration
fix-kanban-repeating-wip
copilot/fix-1498
feature/replace-axios
codex/upgrade-to-tailwind-4.1.8-using-pnpm
codex/add-cypress-test-for-avatar-types
feature/biome
feature/oxc
codex/update-flexsearch-to-0.8.205
4r6ni9-codex/fix-deprecated-sass-@import-usage
codex/fix-deprecated-sass-@import-usage
codex/add-cypress-test-for-task-list-refresh-fix
codex/fix-quick-add-magic-not-adding-tasks
codex/fix-all-type-errors
codex/fix-mimetype-for-docs.json
feature/caldav-from-scratch
feature/gh-actions-hetzner
fix-ci
feat/new-logger
jyte-better-dev-config
feat/add-team-member-with-enter
fix/button-and-icon-types
fix/notifications-component-name-collision
feature/null-time
renovate/tailwindcss-4.x
feature/unplugin-vue-router
fix/deprecated-import
feature/zod-schema
renovate/golangci-golangci-lint-1.x
fix/tiptap-editor-reactive-destructuring
release/0.24
feat/improve-add-task
fix/saved-filter-search
feat/webp-and-avif-attachment-previews
feature/migrate-back-to-bulma
fix/sass-add-missing-list-import
feature/sticky-demo-bar
fix/gantt-view-switch
feature/typesense-position-join
feature/focus-visible
dependencies/golangci-lint
feature/better-filter-syntax
fix/tiptap-task-list
renovate/github.com-golang-jwt-jwt-v4-5.x
feature/hide-forbidden-related-tasks
renovate/golang-1.x
release/0.20
release/0.17
release/0.16
release/0.15
release/0.14
v2.4.0
v2.3.0
v2.2.2
v2.2.1
v2.2.0
v2.1.0
v2.0.0
v1.1.0
v1.0.0
v1.0.0-rc4
v1.0.0-rc3
v1.0.0-rc2
v1.0.0-rc1
v1.0.0-rc0
v0.24.6
v0.24.5
v0.24.4
v0.24.3
v0.24.2
v0.24.1
v0.24.0
v0.23.0
v0.22.1
v0.22.0
0.21.0
v0.21.0
v0.20.4
v0.20.5
v0.20.3
v0.20.2
v0.20.1
v0.20.0
v0.19.2
v0.19.1
v0.19.0
vue3
v0.18.1
v0.18.0
v0.17.1
v0.17.0
v0.16.1
v0.16.0
v0.15.1
v0.15.0
v0.14.1
v0.14.0
v0.13.1
v0.13
v0.12
v0.11
v0.10
v0.9
v0.8
v0.7
v0.6
v0.5
v0.4
v0.3
v0.2
v0.1
Labels
Clear labels
area/api
area/attachments
area/auth
area/avatars
area/backup-restore
area/caldav
area/calendar-view
area/comments
area/config
area/database
area/desktop
area/docker
area/email
area/favorites
area/filters
area/frontend
area/gantt
area/i18n
area/import-export
area/internal-code
area/kanban
area/labels
area/list-view
area/mobile
area/notifications
area/permissions
area/projects
area/pwa
area/recurring-tasks
area/reminders
area/search
area/shortcuts
area/subtasks
area/sync
area/table-view
area/task-editor
area/task-metadata
area/task-relations
area/teams
area/theming
area/time-tracking
area/typesense
area/views
area/webhooks
bug
changes requested
concern/accessibility
concern/performance
concern/regression
concern/ux
confirmed
db/mysql
dependencies
enhancement
good first issue
help wanted
integration/inbound
integration/outbound
kind/bug
kind/feature
needs reproduction
pull-request
question
security
support
upstream issue
waiting for reply
wontfix
Mirrored from GitHub Pull Request
No labels
Milestone
No items
No Milestone
Projects
Clear projects
No projects
No Assignees
Notifications
Due Date
No due date set.
Dependencies
No dependencies set.
Reference: github-starred/vikunja#356
Reference in New Issue
Block a user
Blocking a user prevents them from interacting with repositories, such as opening or commenting on pull requests or issues. Learn more about blocking a user.
Originally created by @morrolinux on GitHub (Feb 18, 2025).
Description
As of now, users belonging to a group that has "Read Only" permissions over a project can only view the project and its tasks as expected.
The problem lies in the comments section of a task:
As a standard (RW) user, I can comment a task and tag a RO user, but he/she won't be able to reply to the comment, because the current policy is not to allow Read Only users to leave comments on tasks.
That, I think, would be a bit too restrictive for for any sorts of useful collaboration, as it makes no difference to the "sharing link" with read only setting.
Read only users should be able to at least comment on tasks, or maybe a more fine-grained permission system should be possible from the UI, since for the API keys it's already possible to have fine-grained permission control
Vikunja Version
5cea469Browser and version
No response
Can you reproduce the bug on the Vikunja demo site?
Yes
Screenshots
No response
@kolaente commented on GitHub (Mar 1, 2025):
I'm pretty sure we could integrate that. Logically, this kind of makes sense because adding a comment is a write operation - but I understand why it does not make sense from a workflow perspective.
I've seen your video, would you be open to submitting your changes as a PR? I've commented about the other things as well, but the comment seems to be stuck in some kind of spam-review queue.
@morrolinux commented on GitHub (Mar 1, 2025):
Hi @kolaente
thanks for getting back to me!
Unfortunately I wasn't able to retrieve your comment even in my youtube spam section: it's just... gone!
I'd love to know what your other comments were and possibly discuss them, just let me know if/where you'd be reachable :)
Now for the feature:
I actually wanted to make a PR, but after creating an account on gitea I got an error:
And I haven't received any confirmation email to click on or stuff like that.
Maybe I've missed something?
Best,
Moreno
@kolaente commented on GitHub (Mar 1, 2025):
Hey Moreno!
Very interesting. I wasn't able to find it either.
From memory: I'm certain we could integrate the gantt changes, but we'd need to make a plan and look a little more into them. I think the easiest way going forward would be if you open issues here or threads in the forum to discuss these further. If it helped you more, we could also hop on a call to discuss this.
I've just enabled your account - unfortunately, each account needs to be enabled manually to prevent spam.