Flow Permission Notes
Below is the list of actions in FlowsController?, and the proposed permissions to apply to each action:
| Action | Permission Type |
| list | :has_view_permission |
| addflowitem | :has_edit_permission |
| list_update | :has_view_permission |
| list_items_only | :has_view_permission |
| update_for_list | :has_view_permission |
| get_flow_items | :has_view_permission |
| default_flow_filter | none? |
| create | :has_edit_permission |
| reply | :has_edit_permission |
| show | :has_view_permission |
| show_feed | :has_view_permission |
| show_comment | :has_view_permission |
| show_issue | :has_view_permission |
| edit | :has_all_permission |
| resolve | :has_edit_permission |
| update | :has_all_permission |
| add_feed | :has_all_permission |
Login is not required for any of the above actions because anonymous users can sometimes have ALL permissions. More on permissions at PermissionNotes.