mirror of
https://github.com/rails/rails.git
synced 2022-11-09 12:12:34 -05:00
26 lines
710 B
Ruby
26 lines
710 B
Ruby
module ActiveModel
|
|
# Raised when forbidden attributes are used for mass assignment.
|
|
#
|
|
# class Person < ActiveRecord::Base
|
|
# end
|
|
#
|
|
# params = ActionController::Parameters.new(name: 'Bob')
|
|
# Person.new(params)
|
|
# # => ActiveModel::ForbiddenAttributesError
|
|
#
|
|
# params.permit!
|
|
# Person.new(params)
|
|
# # => #<Person id: nil, name: "Bob">
|
|
class ForbiddenAttributesError < StandardError
|
|
end
|
|
|
|
module ForbiddenAttributesProtection
|
|
def sanitize_for_mass_assignment(attributes, options = {})
|
|
if attributes.respond_to?(:permitted?) && !attributes.permitted?
|
|
raise ActiveModel::ForbiddenAttributesError
|
|
else
|
|
attributes
|
|
end
|
|
end
|
|
end
|
|
end
|