tr
TryGhost
GitHub
Ghost
Workspace
GitHub
CI Pipeline Executions
Current execution
Succeeded
claude/unsubscribe-events-investigation-75fdad
Runs and Agents
Configuration
Self-Healing CI
Project Graph
Circular Dependencies
Enterprise
Resource Usage
Analysis
Conformance
Enterprise
Runs
Current run
Succeeded
Tasks
Resource Usage
Insights
Compare tasks
Analytics
Sign in
Toggle sidebar
🐛 Fixed unsubscribe links affecting the wrong member when logged in no ref An email unsubscribe link carries a uuid and key identifying whose subscription it manages, but Portal's unsubscribe page routed the actual update through the browser's member session whenever one existed. If the link belonged to a different member — a forwarded email, a shared device, or staff opening a reader's link — the logged-in member was silently unsubscribed instead of the link's owner, and their newsletter selection was overwritten with the other member's list. The flow auto-executes on page load, so a single open of someone else's link was enough. A mismatched session almost always signals a mistake, so the page now rejects it outright: an error explains the link belongs to a different email address, nobody's preferences are touched, and the link member's data is never fetched, so nothing about the other subscriber is exposed to the session. The logged-out flow and the member's own link are unchanged.
nx run @tryghost/comments-ui:test:acceptance
⌘K
Succeeded
nx run @tryghost/comments-ui:test:acceptance
Click to copy
Linux
4 CPU cores
read-write
access token used
34a1236d
30376
GitHub
Ghost
Workspace