diff --git a/backend/account/views.py b/backend/account/views.py index ad91bc4..b731b0d 100644 --- a/backend/account/views.py +++ b/backend/account/views.py @@ -177,11 +177,12 @@ class GetIDUserAddressView(generics.RetrieveAPIView): class SubscribeView(APIView): serializer_class = PushSubscriptionSerializer + permission_classes = [IsAuthenticated] def post(self, request): push_ser = self.serializer_class(data=request.data) if push_ser.is_valid(): PushSubscription.objects.update_or_create( - user=User.objects.all().first(), + user=request.user, defaults=(push_ser.validated_data) ) return Response(status=status.HTTP_201_CREATED)