[tantek]trwnh, yes, it's "fine to require authorization to edit a resource" but not to deceive the user with implying that such an "authorization link" is an "edit link". It's always deception to make the user do something other than what the label of the link or button says it does.