Matthew O'Riordan aaaad0e845 Store user against bin even if allowAnonymous is true
Previously because an API key was only validated if allowAnonymous was true, an invalid API key could be provided and the request would have been accepted, and also if a valid API key was provided it was not used to authenticate the user.
2013-07-24 12:15:12 +01:00
..
2013-06-21 11:51:59 +01:00