View Issue Details

IDProjectCategoryView StatusLast Update
5443Composrcore_cnspublic2024-03-30 03:52
ReporterPDStig Assigned ToPDStig  
PrioritynormalSeverityfeature 
Status resolvedResolutionfixed 
Summary5443: Forced email and web notification when staff edit a member's notification settings
DescriptionTo help prevent staff abuse (e.g. turning off certain notification settings for a member so that they can then change critical settings / SU into their account undetected), there should be a hidden notification type (or at least make it visible, but not editable) that will email and send a web notification to a member whenever someone changes their notification settings.

Ideally, the notification should also list what notification settings were changed, and who changed them.
Additional InformationAlternatively, if we do not want this being a hidden / forced notification, we could classify changes to a member's notification settings as "high impact" and include it as part of the "high impact change" notification.
TagsRoadmap: v11
Attach Tags
Time estimation (hours)
Sponsorship open

Sponsor

Date Added Member Amount Sponsored

Relationships

related to 5442 ClosedPDStig New notification type to let users know when staff SU'd into their account 

Activities

PDStig

2024-01-28 22:55

administrator   ~8266

Actually enable_notifications and disable_notifications were very confusing for API names because enable_notifications could disable them, and disable_notifications really means "reset to default".

I renamed these API calls as follows:

enable_notifications -> set_notifications
disable_notifications -> reset_notifications

PDStig

2024-01-28 23:40

administrator   ~8267

I went the route of treating notification edits as high-impact changes. They will be sent out just like high-impact changes for username, password, etc.

Issue History

Date Modified Username Field Change
2023-11-14 05:57 PDStig New Issue
2023-11-14 05:57 PDStig Status Not Assigned => Assigned
2023-11-14 05:57 PDStig Assigned To => user4172
2023-11-14 05:57 PDStig Relationship added related to 5442
2023-11-14 05:58 PDStig Tag Attached: Roadmap: v11
2023-11-14 05:59 PDStig Description Updated
2023-11-14 06:00 PDStig Description Updated
2024-01-28 22:55 PDStig Note Added: 0008266
2024-01-28 23:40 PDStig Status Assigned => Resolved
2024-01-28 23:40 PDStig Resolution open => fixed
2024-01-28 23:40 PDStig Note Added: 0008267
2024-03-30 03:28 PDStig Project Composr alpha bug reports => Composr
2024-03-30 03:52 PDStig Category General / Uncategorised => core_cns