Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
@asab.web.auth.require_superuser
decorator.ASAB API
Core
/asab/v1/api/config
has been disabled./asab/v1/api/environ
has been disabled./asab/v1/api/manifest
is open./asab/v1/api/changelog
is open.Logs
/asab/v1/api/log
requiresasab:service:access
authorization./asab/v1/api/logws
requiresasab:service:access
authorization.OpenAPI and Swagger docs
/doc
is open./asab/v1/openapi
is open./oauth2-redirect.html
is open.Metrics
/asab/v1/api/metrics
is open*./asab/v1/api/watch_metrics
is open*./asab/v1/api/metrics.json
is open*.*Metrics should be eventually protected (
asab:service:access
) but that would block Prometheus at the moment. I leave them open until client credentials grant is implemented in Seacat Auth.