HJulio commented on issue #37061:
URL: https://github.com/apache/superset/issues/37061#issuecomment-4750288243

   > This restriction is intentional security behavior: guest users in embedded 
contexts can't modify the chart payload (which includes re-sorting). Closing 
since it seems to be working as designed. Feel free to open a feature PR or 
Discussion if you'd like to propose more granular guest interaction controls.
   
   Thanks. Just flagging that the fix is already in flight in #37371, and last 
week you asked there to get it merged after a rebase and a security pass (CC 
@dpgaspar @mistercrunch). So closing this as working-as-designed seems to 
conflict with that PR being active and on track to land.
   
   The branch currently has conflicts, so the real blocker looks like the 
rebase plus the security review, not the behavior itself. Could we keep this 
open and linked to #37371 so it tracks until that merges? 


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: [email protected]

For queries about this service, please contact Infrastructure at:
[email protected]


---------------------------------------------------------------------
To unsubscribe, e-mail: [email protected]
For additional commands, e-mail: [email protected]

Reply via email to