diff --git a/backend/helpers/auth_guard.py b/backend/helpers/auth_guard.py index b9dd97234133eaeec0862ed3d5f671a5c31f858c..6d0f480b7db1bff38196320e24842d8ab9d17286 100644 --- a/backend/helpers/auth_guard.py +++ b/backend/helpers/auth_guard.py @@ -30,7 +30,10 @@ def kratos_webhook(): @wraps(fn) def decorator(*args, **kwargs): header = request.headers.get("Authorization") - if header is not None and header == os.environ.get("KRATOS_WEBHOOK_SECRET"): + # TO DO: uncomment line below once merged to main + # if header is not None and header == os.environ.get("KRATOS_WEBHOOK_SECRET"): + # TO DO: remove line below once merged to main + if header is not None and header == os.environ.get("KRATOS_WEBHOOK_SECRET", "test-kratos-hooks-remove-before-merge"): return fn(*args, **kwargs) else: raise Unauthorized("This needs a valid api key.")