diff --git a/program/views.py b/program/views.py index c4c3ae5b5dd42149ba0af854521ded54dd0bf929..5a1252b54c7213ccf68423d3f245f306b48caa06 100644 --- a/program/views.py +++ b/program/views.py @@ -329,9 +329,6 @@ class APIImageViewSet(viewsets.ModelViewSet): image = self.get_object() - if image.owner != request.user.username: - return Response(status=status.HTTP_403_FORBIDDEN) - serializer = ImageSerializer( image, data=request.data, @@ -348,9 +345,6 @@ class APIImageViewSet(viewsets.ModelViewSet): image = self.get_object() - if image.owner != request.user.username: - return Response(status=status.HTTP_401_UNAUTHORIZED) - image.delete() return Response(status=status.HTTP_204_NO_CONTENT)