GQL-61: As a user, I can read and update provider level group permissions #131
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Overview
What is the feature?
In MMT, a user reported that even they don't have system level permission they should still be able to view their provider level permission.
What is the Solution?
Updates the rules and checking in shield.
Query
Mutation
If params.tag includes CMR, check if the user has system level permission
If params.tag does not include CMR and includes some other provider, check if the user has create group permission for that provider
If the user does not have a tag, allow them to update.
What areas of the application does this impact?
List impacted areas. SIT/UAT/PROD
Checklist