can't wait until admins get easily socially engineered to suspend people since they can be given a single DM in a vacuum by someone that wants to abuse the system and now they can't look up context anymore
@KS similarily discourse really doesn't want to do this for some reason? even though it's as easy as (1) running the access checks twice (2) include a boolean in the json (3) render an interstitial on the client
@KS geez... DM viewing needs to be _audited_, not _prohibited_