I post links to articles on my site on Bluesky. Posted a link today. Somebody clicked on the link and, in addition to seeing the article, she also got my admin toolbar at the top - and sent me screenshots of how she'd pulled down a couple of the menus. She doesn't have an account on the system, so it's not a question of me accidentally making her an admin.

Fortunately, she was a kind person, so didn't start futzing around with, oh, deleting posts or anything. And when she tried it again a couple hours later, she didn't get the admin toolbar.

Any suggestions on where I should start to look to see what's going on and fixing it?

Thanks!

Comments

Sounds maybe like something is caching pages for all users when it should be caching per user -- just a wild first guess. (If this was so, she would have gotten an error if she tried to click on any link in the menu).

Can you post what you have under Reports > Debug information?

Backdrop CMS:                    1.34.0
Installation profile:            standard
PHP version:                     8.4.21
Drupal 7 compatibility:          on
Database server:                 8.0.44
Web server:                      Apache
jQuery version:                  3.7.1
jQuery UI version:               1.14.1
TinyMCE version: 1.x-1.5.8       Used in formats: Full HTML, Essential, Basic, Middling, wysiwyg
BUEditor version: 1.x-2.4        Used in formats: Raw HTML, Raw HTML - the Sequel, bbcode

Themes
======
Default theme:                   uhubtatsu (uhubtatsu)
  ↳ base theme:                  ↳ Tatsu (tatsu) 1.x-2.0.0
Admin theme:                     Seven* (seven) 1.34.0
                                *used when editing or creating content

Enabled modules
===============

Core
----
admin_bar                        1.34.0
block                            1.34.0
comment                          1.34.0
config                           1.34.0
contact                          1.34.0
contextual                       1.34.0
dashboard                        1.34.0
date                             1.34.0
dblog                            1.34.0
email                            1.34.0
entity                           1.34.0
entityreference                  1.34.0
field                            1.34.0
field_sql_storage                1.34.0
field_ui                         1.34.0
file                             1.34.0
filter                           1.34.0
image                            1.34.0
installer                        1.34.0
layout                           1.34.0
link                             1.34.0
list                             1.34.0
menu                             1.34.0
node                             1.34.0
number                           1.34.0
options                          1.34.0
path                             1.34.0
redirect                         1.34.0
system                           1.34.0
taxonomy                         1.34.0
telemetry                        1.34.0
text                             1.34.0
update                           1.34.0
user                             1.34.0
views                            1.34.0
views_ui                         1.34.0

Contrib
-------
actions_permissions              1.x-3.0.6
backup_migrate                   1.x-1.0.30
better_exposed_filters           1.x-3.6.3
bueditor                         1.x-2.4
colorbox                         1.x-2.17.4
comment_notify                   1.x-1.3.3
comments_bulk_actions            1.x-1.0.0
content_type_clone               1.x-1.0.4
custom_breadcrumbs               1.x-2.0.0
custom_breadcrumbs_paths         1.x-2.0.0
custom_breadcrumbs_taxonomy      1.x-2.0.0
custom_breadcrumbs_views         1.x-2.0.0
custom_breadcrumbsapi            1.x-2.0.0
customerror                      1.x-1.0.0
entity_plus                      1.x-1.0.23
entityreference_migration        1.x-1.2.1
extlink                          1.x-1.21.0
field_group                      1.x-1.3.0
geofield                         1.x-1.0.7
globalredirect                   1.x-1.6.0
googleanalytics                  1.x-2.8.0
honeypot                         1.x-1.26.1
image_field_caption              1.x-2.3.0
imce                             1.x-1.0.1
leaflet                          1.x-1.2.4
leaflet_views                    1.x-1.2.4
libraries                        1.x-2.2.3
metatag                          1.x-1.22.7
metatag_facebook                 1.x-1.22.7
metatag_opengraph                1.x-1.22.7
metatag_verification             1.x-1.22.7
metatag_views                    1.x-1.22.7
mimemail                         1.x-1.1.9
node_convert                     1.x-1.2.2
node_notify                      1.x-1.0.1
nodequeue                        1.x-2.3.1
preset                           1.x-2.0.2
print                            1.x-2.4.0-beta6
print_mail                       1.x-2.4.0-beta6
print_ui                         1.x-2.4.0-beta6
profile                          1.x-1.2.3
rate                             1.x-1.8.0
rate_expiration                  1.x-1.8.0
readmore_extrafield              1.x-1.0.0
rrssb                            1.x-2.3.2
submitted_by                     1.x-1.0.2
taxonomy_manager                 1.x-1.3.0-beta2
tinymce                          1.x-1.5.8
tinymce_emojis                   1.x-1.0.0
tinymce_imce                     1.x-1.0.0
video_embed_facebook             1.x-2.0.2
video_embed_field                1.x-2.0.2
viewfield                        1.x-1.0.1
views_block_filter_block         1.x-1.0.4
views_bulk_operations            1.x-3.0.6
views_litepager                  1.x-1.0.1
votingapi                        1.x-2.16.0
webform                          1.x-4.26.5
xmlsitemap                       1.x-1.0.12
xmlsitemap_engines               1.x-1.0.12
xmlsitemap_node                  1.x-1.0.12