From e9e9d6000d9f9d72bf2fe1f19d6024b4a642e95e Mon Sep 17 00:00:00 2001 From: Girish Ramakrishnan Date: Thu, 2 Jun 2016 11:29:59 -0700 Subject: [PATCH] remove token check for user.update to work with dev tokens --- src/routes/user.js | 1 - 1 file changed, 1 deletion(-) diff --git a/src/routes/user.js b/src/routes/user.js index 93198416a..9d6cbc9fe 100644 --- a/src/routes/user.js +++ b/src/routes/user.js @@ -67,7 +67,6 @@ function update(req, res, next) { if ('email' in req.body && typeof req.body.email !== 'string') return next(new HttpError(400, 'email must be string')); if ('displayName' in req.body && typeof req.body.displayName !== 'string') return next(new HttpError(400, 'displayName must be string')); - if (req.user.tokenType !== tokendb.TYPE_USER) return next(new HttpError(403, 'Token type not allowed')); if (req.user.id !== req.params.userId && !req.user.admin) return next(new HttpError(403, 'Not allowed')); user.get(req.params.userId, function (error, result) {