aboutsummaryrefslogtreecommitdiff
path: root/tests/test_url_security.py (follow)
Commit message (Collapse)AuthorAge
* fix(receiver): prevent requests to non-public addressesDennis Fink2026-08-10
Resolve source hostnames before fetching and reject addresses that are not globally routable to prevent SSRF against local or private services. Repeat the check for every HTTP request so redirects cannot bypass the initial source validation. Treat DNS resolution failures during verification as temporary fetch errors.