mirror of
https://github.com/openfoodfoundation/openfoodnetwork
synced 2026-02-05 22:26:07 +00:00
Fix direct params access in StripeAccountsController
This commit is contained in:
@@ -3,7 +3,7 @@ require 'stripe/account_connector'
|
||||
module Admin
|
||||
class StripeAccountsController < Spree::Admin::BaseController
|
||||
def connect
|
||||
payload = params.slice(:enterprise_id)
|
||||
payload = raw_params.slice(:enterprise_id)
|
||||
key = Openfoodnetwork::Application.config.secret_token
|
||||
url_params = { state: JWT.encode(payload, key, 'HS256'), scope: "read_write" }
|
||||
redirect_to Stripe::OAuth.authorize_url(url_params)
|
||||
|
||||
Reference in New Issue
Block a user