diff --git a/app/Http/Controllers/Users/UsersController.php b/app/Http/Controllers/Users/UsersController.php index 3bb370e418..e97ef4d23d 100755 --- a/app/Http/Controllers/Users/UsersController.php +++ b/app/Http/Controllers/Users/UsersController.php @@ -266,7 +266,7 @@ class UsersController extends Controller ->update(['location_id' => $request->input('location_id', null)]); - // check for permissions related fields and pull them out if the current user cannot edit them + // check for permissions related fields and only set them if the user has permission to edit them if (auth()->user()->can('editSensitiveUserFields') && auth()->user()->can('editableOnDemo')) { $user->username = trim($request->input('username')); @@ -301,9 +301,6 @@ class UsersController extends Controller ->update(['location_id' => $user->location_id]); - - \Log::error(print_r($user->permissions, true)); - // Handle uploaded avatar app(ImageUploadRequest::class)->handleImages($user, 600, 'avatar', 'avatars', 'avatar'); session()->put(['redirect_option' => $request->get('redirect_option')]);