diff --git a/tduck-api/src/main/java/com/tduck/cloud/api/web/controller/UserProjectController.java b/tduck-api/src/main/java/com/tduck/cloud/api/web/controller/UserProjectController.java index 8893a27..31caac9 100644 --- a/tduck-api/src/main/java/com/tduck/cloud/api/web/controller/UserProjectController.java +++ b/tduck-api/src/main/java/com/tduck/cloud/api/web/controller/UserProjectController.java @@ -253,14 +253,12 @@ public class UserProjectController { * @param key */ @GetMapping("/user/project/details/{key}") - public Result queryProjectDetails(@PathVariable @NotBlank String key, - @RequestParam(value = "access_key", required = true) String accessKey, - @RequestHeader(value = "userId", required = true) String userId) { + public Result queryProjectDetails(@PathVariable @NotBlank String key) { // 先校验有没有访问该问卷的权限 - String accessKeyFromCache = (String) redisUtils.get(String.format("epmet:questionnaire:accesskey:%s:%s", userId, key)); - if (StringUtils.isBlank(accessKeyFromCache) || !accessKeyFromCache.equals(accessKey)) { - throw new RuntimeException("您没有访问权限"); - } + //String accessKeyFromCache = (String) redisUtils.get(String.format("epmet:questionnaire:accesskey:%s:%s", userId, key)); + //if (StringUtils.isBlank(accessKeyFromCache) || !accessKeyFromCache.equals(accessKey)) { + // throw new RuntimeException("您没有访问权限"); + //} UserProjectEntity project = projectService.getByKey(key); List projectItemList = projectItemService.listByProjectKey(key);