User with 'access administration pages' permission can see JWT key config #1026
Labels
Subject: Access Control
related to managing roles and permissions/information security.
Milestone
Some level of administrator access, e.g. Editor or Moderator roles, may need 'access administration pages' permission (e.g. to see default node and comment administration views, but such a role can also see/change JWT config unless the patch from https://www.drupal.org/project/jwt/issues/2890241#comment-12150674 is applied to add a specific permission for that path.
e.g. similar to
The text was updated successfully, but these errors were encountered: