diff --git a/InvenTree/part/api.py b/InvenTree/part/api.py index 8883699f9a..c2785b666f 100644 --- a/InvenTree/part/api.py +++ b/InvenTree/part/api.py @@ -201,6 +201,7 @@ class PartInternalPriceList(generics.ListCreateAPIView): queryset = PartInternalPriceBreak.objects.all() serializer_class = part_serializers.PartInternalPriceSerializer + permission_required = 'roles.sales_order.show' filter_backends = [ DjangoFilterBackend diff --git a/InvenTree/part/templates/part/internal_prices.html b/InvenTree/part/templates/part/internal_prices.html index fdc69ce198..2f54f3bb64 100644 --- a/InvenTree/part/templates/part/internal_prices.html +++ b/InvenTree/part/templates/part/internal_prices.html @@ -13,7 +13,7 @@ {% block details %} {% settings_value "PART_INTERNAL_PRICE" as show_internal_price %} -{% if show_internal_price %} +{% if show_internal_price and roles.sales_order.view %}