* updated auth logic on public plans * added skip_authorization statement as 'authorize' is no longer used