Fluent Commerce Logo
Docs
Sign In

Improve your Data Security with Retailer-specific Permissions enabled for Comment GraphQL API

Release

Author:

Kirill Gaiduk

Changed on:

6 Dec 2024

Target release date:2024-12-10
Release status:Released

Description

Fluent Application Admins can now manage data access and operation Permissions at the Retailer level for the Comment GraphQL API. Configurable via the new

setting, the new "Retailer-specific Comment Permission Checks" ensure:

  • Secure Direct Object References, enabling Users from a specific Retailer to create, update, and view Comments only for entities they are authorized to access. (i.e., the entities of the same Retailer).
  • Full backward compatibility with no need for any migration process.

📖 Get the instructions for the Comment GraphQL API operations:

Changelog

Comment GraphQL API

Released capability depth:Enhancement
Release bundle / Capability type:Platform, Web apps