# HG changeset patch # User nanaya # Date 1689342220 -32400 # Node ID 4222343d94333d34422e2e68e7b2cb09c3cd67a7 # Parent 7a773720d81ff2748de108297648a95d7dab214a No access to protected user diff -r 7a773720d81f -r 4222343d9433 app/controllers/tweets_controller.rb --- a/app/controllers/tweets_controller.rb Fri Jul 14 22:42:20 2023 +0900 +++ b/app/controllers/tweets_controller.rb Fri Jul 14 22:43:40 2023 +0900 @@ -13,6 +13,11 @@ return end + if @user[:protected] + head :forbidden + return + end + return redirect if normalized_screen_name != params[:name] @tweets = CachedFetch.timeline params[:id]