- Gate all RouteForge layers on edit:flight (route middleware, controller docblock, JS comment, test names) to match the page gate and can_commit - Scope the permission:sync --prune query by guard_name so it cannot delete other guards' permissions - Throw when the super-admin role is missing before legacy group import instead of dereferencing null - Guard BasePolicy against an empty $subject to avoid malformed permission names - Drop the redundant is_string() check on Panel::getPages() (always true) |
||
|---|---|---|
| .. | ||
| api.php | ||
| console.php | ||
| web.php | ||