Now, even if a user does not log out, there is no way for somebody
else to charge coffees on their behalf.
var flavor = getFlavor(msg.key);
if (flavor !== "") {
addCoffee(flavor);
- flavorChosen = flavor;
- loggedIn = false;
}
}
break;
time: new Date().toISOString(),
flavor: flavor
});
- ajax("POST", "coffee/add", data, "user");
+ if (loggedIn) {
+ ajax("POST", "coffee/add", data, "user");
+ flavorChosen = flavor;
+ loggedIn = false;
+ }
}
function sendLog(json) {