From a8908282bbd312c40e6cd7662ea5448c0f602e5e Mon Sep 17 00:00:00 2001 From: Nick Sergeant Date: Fri, 28 Aug 2015 12:37:56 -0400 Subject: [PATCH] Scope private snipt search to user. --- snipts/api.py | 3 ++- 1 file changed, 2 insertions(+), 1 deletion(-) diff --git a/snipts/api.py b/snipts/api.py index f46ba96..7c32fc1 100644 --- a/snipts/api.py +++ b/snipts/api.py @@ -445,7 +445,8 @@ class PrivateSniptResource(ModelResource): orm_filters['pk__in'] = [i.object_id for i in tagged_items] if 'q' in filters: - sqs = SearchQuerySet().auto_query(filters['q']) + user = User.objects.get(username=filters['username']) + sqs = SearchQuerySet().filter(author=user, content=filters['q']) orm_filters['pk__in'] = [i.pk for i in sqs] return orm_filters