trackslash
TRACK-27 P2

Allow projects to block users

0
All issues

Description

Goal

Let a project owner prevent specific accounts from accessing or interacting with that project.

Acceptance criteria

  • Project owners and authorized administrators can block and unblock a user from the project member/access page.
  • A project cannot block its owner; unauthorized users cannot manage the block list.
  • A block overrides member/read-only grants, public visibility, public issue submission, and other project access paths for that user.
  • Blocking an existing member has a clearly defined, transactionally applied effect on their membership while retaining historical authorship, comments, and issue attribution.
  • Blocked users are not offered as new members or assignees while the block remains active.
  • Direct UI, API, MCP, attachment/object, and realtime access is rejected consistently without leaking private project details.
  • The page shows the current block list and supports deliberate unblocking without exposing unrelated usernames.
  • Add store, handler, authorization, realtime, and UI coverage for block, unblock, precedence over each access mode, existing membership, project owner protection, and direct-route attempts.

Sub-issues

0

Linked issues

0

GitHub

0

No branches or pull requests linked.

Comments

0
No comments.