We at least need to check access, prevent the user from visiting the pages of operations that aren't allowed.
Would also be great to do more work around operations, so that a payment gateway doesn't need to alter the payment entity annotation, and define a route.

Comments

bojanz created an issue. See original summary.

bojanz’s picture

Assigned: Unassigned » bojanz

In progress.

  • bojanz committed 83c6ccc on 8.x-2.x
    Issue #2790549 by bojanz: Improve the API for payment operations
    
bojanz’s picture

Status: Active » Fixed

Done, both the access and the more-generic code. Payment gateways can now define operations without the extra route/annotation work.

Status: Fixed » Closed (fixed)

Automatically closed - issue fixed for 2 weeks with no activity.