Hi, im trying to set up a database collection so users from the client-side can only view/interact with their own row, so if they are signed in to the correct account. How can i do this? In similar tools you can set access rules, so if logged in user email is equal to specific row allow access, where is this in appwrite?
You can go one of two ways.
- Set the collection permission so any user can only create documents.
Then, create a function and let to be triggered new document is created in the collection.
If for example the collection id is aaaaaa
then this would be the right trigger for it databases.*.collections.aaaaa.create
Then inside that function you can adjust the permissions to allow the user to also read
the document.
- Move everything to a function.
Block any access to your collection
And inside your function you can use the variable
APPWRITE_FUNCTION_USER_ID
to get the user id and then do something like this
const currentUserId = req.variables.APPWRITE_FUNCTION_USER_ID?? null;
if(currentUserId !== null){
await databases.createDocument(
'[DATABASE_ID]',
'[COLLECTION_ID]',
{},
[
Permission.write(Role.team(currentUserID)),
]
);
}
This the correct image for the first solution.
👍
[SOLVED] Make users only able to view their own entry in the collection
Recommended threads
- Invalid document structure: missing requ...
I just pick up my code that's working a week ago, and now I got this error: ``` code: 400, type: 'document_invalid_structure', response: { message: 'Inv...
- custom domain with CloudFlare
Hi all, it seems that CloudFlare has blocked cross-domain CNAME link which made my app hostname which is in CloudFlare, unable to create a CNAME pointing to clo...
- Type Mismatch in AppwriteException
There is a discrepancy in the TypeScript type definitions for AppwriteException. The response property is defined as a string in the type definitions, but in pr...