Look for private status posts if editor or admin #1813
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Description of the Change
Hi @tlovett1 ,
Could you please review this PR which addresses #1800?
This changes the
is_user_logged_in()
check in favor of checking if the current user is either aneditor
or anadministrator
, and displays private posts only to them. Both in the frontend and in the admin.As per WP documentation, private posts should only be visible to editors and administrators: https://developer.wordpress.org/reference/classes/wp_query/#status-parameters and without Elasticpress enabled, I could confirm this was true.
Additionally, the PR solves another bug I spotted, which lets authors and contributors see just anyone private posts in the admin if Elasticpress is enabled.
Alternate Designs
Benefits
Not allowed users won't see post they should not. Allowed users should be able to see private posts in the frontend.
Possible Drawbacks
Verification Process
Checklist:
Applicable Issues
Changelog Entry