HJulio commented on issue #37061: URL: https://github.com/apache/superset/issues/37061#issuecomment-4750288243
> This restriction is intentional security behavior: guest users in embedded contexts can't modify the chart payload (which includes re-sorting). Closing since it seems to be working as designed. Feel free to open a feature PR or Discussion if you'd like to propose more granular guest interaction controls. Thanks. Just flagging that the fix is already in flight in #37371, and last week you asked there to get it merged after a rebase and a security pass (CC @dpgaspar @mistercrunch). So closing this as working-as-designed seems to conflict with that PR being active and on track to land. The branch currently has conflicts, so the real blocker looks like the rebase plus the security review, not the behavior itself. Could we keep this open and linked to #37371 so it tracks until that merges? -- This is an automated message from the Apache Git Service. To respond to the message, please log on to GitHub and use the URL above to go to the specific comment. To unsubscribe, e-mail: [email protected] For queries about this service, please contact Infrastructure at: [email protected] --------------------------------------------------------------------- To unsubscribe, e-mail: [email protected] For additional commands, e-mail: [email protected]
