| Commit message (Collapse) | Author | Age |
| |
|
|
|
|
|
|
| |
Add SPDX copyright and license headers to source, test, migration,
template, and static files throughout the project.
Include the maintainer email in copyright notices and fill in the BSD
license copyright holder.
|
| |
|
|
|
|
|
|
| |
Add authenticated delete and reverify actions to the received
webmentions admin view and protect them with CSRF validation.
Enable CSRF protection globally while exempting the public Webmention
endpoint.
|
| |
|
|
|
|
|
|
|
| |
Resolve source hostnames before fetching and reject addresses that are
not globally routable to prevent SSRF against local or private services.
Repeat the check for every HTTP request so redirects cannot bypass the
initial source validation. Treat DNS resolution failures during
verification as temporary fetch errors.
|
|
|
Add the Flask application setup, database models and migrations,
authentication, and configuration for development and testing.
Implement asynchronous Webmention verification with Huey, including HTML
and plain-text source validation, retries, status tracking, and size
limits.
Add status, login, and paginated received-Webmention views together with
comprehensive tests for forms, views, and receiver tasks.
|