diff --git a/server/polls/user_polls_record_handler.coffee b/server/polls/user_polls_record_handler.coffee index 83e29746e..36b81298a 100644 --- a/server/polls/user_polls_record_handler.coffee +++ b/server/polls/user_polls_record_handler.coffee @@ -25,6 +25,7 @@ UserPollsRecordHandler = class UserPollsRecordHandler extends Handler @createAndSaveNewUserPollsRecord userID, req, res createAndSaveNewUserPollsRecord: (userID, req, res) => + return @sendForbiddenError(res) unless req.user initVals = user: userID, polls: {}, level: req.user.level() userPollsRecord = new UserPollsRecord initVals userPollsRecord.save (err) =>