API Keys only work for admin user. 403 on Non-admin users.

Title pretty much says it all. If I hit my API endpoint with a token from my Admin user, it works as expected, but if I use a token generated from another user it gives a 403.
11 Replies
Immich
Immich4mo ago
:wave: Hey @Meatfucker, Thanks for reaching out to us. Please carefully read this message and follow the recommended actions. This will help us be more effective in our support effort and leave more time for building Immich :immich:. References - Container Logs: docker compose logs docs - Container Status: docker ps -a docs - Reverse Proxy: https://immich.app/docs/administration/reverse-proxy - Code Formatting https://support.discord.com/hc/en-us/articles/210298617-Markdown-Text-101-Chat-Formatting-Bold-Italic-Underline#h_01GY0DAKGXDEHE263BCAYEGFJA Checklist I have... 1. :ballot_box_with_check: verified I'm on the latest release(note that mobile app releases may take some time). 2. :blue_square: read applicable release notes. 3. :ballot_box_with_check: reviewed the FAQs for known issues. 4. :ballot_box_with_check: reviewed Github for known issues. 5. :ballot_box_with_check: tried accessing Immich via local ip (without a custom reverse proxy). 6. :ballot_box_with_check: uploaded the relevant information (see below). 7. :blue_square: tried an incognito window, disabled extensions, cleared mobile app cache, logged out and back in, different browsers, etc. as applicable (an item can be marked as "complete" by reacting with the appropriate number) Information In order to be able to effectively help you, we need you to provide clear information to show what the problem is. The exact details needed vary per case, but here is a list of things to consider: - Your docker-compose.yml and .env files. - Logs from all the containers and their status (see above). - All the troubleshooting steps you've tried so far. - Any recent changes you've made to Immich or your system. - Details about your system (both software/OS and hardware). - Details about your storage (filesystems, type of disks, output of commands like fdisk -l and df -h). - The version of the Immich server, mobile app, and other relevant pieces. - Any other information that you think might be relevant. Please paste files and logs with proper code formatting, and especially avoid blurry screenshots. Without the right information we can't work out what the problem is. Help us help you ;) If this ticket can be closed you can use the /close command, and re-open it later if needed.
Meatfucker
MeatfuckerOP4mo ago
No description
Daniel
Daniel4mo ago
Which endpoint are you trying to hit?
Meatfucker
MeatfuckerOP4mo ago
server/statistics just to check that my api stuff is working
Daniel
Daniel4mo ago
Well, that's an admin-only endpoint
Meatfucker
MeatfuckerOP4mo ago
oh, well derp, lol I didnt notice any indication in the api docs, Ill have to look closer
Daniel
Daniel4mo ago
Oh well, it's well likely there isn't tbh :/
Meatfucker
MeatfuckerOP4mo ago
hah, right on I thought my code had some weird bug for a while until I realized what was happening Is there a similar endpoint thatll just return how many pics and such a user has? I havnt dug through all the endpoints yet, saw that one and its schema looked promising
Daniel
Daniel4mo ago
/assets/statistics
Meatfucker
MeatfuckerOP4mo ago
thanks, and thanks for the quick reply. love the software, trying to make tools for myself to make it better
Immich
Immich4mo ago
This thread has been closed. To re-open, use the button below.

Did you find this page helpful?