From d0e245d63e014d268310976fc45429f08d2cbbe9 Mon Sep 17 00:00:00 2001 From: Dennis Fink Date: Wed, 19 Aug 2026 19:49:55 +0200 Subject: refactor(core): improve typing and test coverage Restructure database and user CLI commands, make passwords write-only model properties, and use the UTC datetime constant throughout the application. Add PEP 287-style documentation and expand receiver, scanner, sender, and URL security tests to cover error paths and edge cases. --- webmentions_ssg/url_security.py | 15 ++++++++++++++- 1 file changed, 14 insertions(+), 1 deletion(-) (limited to 'webmentions_ssg/url_security.py') diff --git a/webmentions_ssg/url_security.py b/webmentions_ssg/url_security.py index 51c037a..9cd261e 100644 --- a/webmentions_ssg/url_security.py +++ b/webmentions_ssg/url_security.py @@ -10,6 +10,14 @@ class AddressResolutionError(Exception): def is_public_url(url: str) -> bool: + """ + Check whether a URL resolves exclusively to public IP addresses. + + :param url: URL whose hostname should be resolved. + :return: Whether all resolved addresses are globally routable. + :raises ValueError: If the URL does not contain a hostname. + :raises AddressResolutionError: If the hostname cannot be resolved. + """ hostname = urlsplit(url).hostname if hostname is None: @@ -30,7 +38,12 @@ def is_public_url(url: str) -> bool: def is_http_url(url: str) -> bool: - """Return whether a URL is an absolute HTTP or HTTPS URL.""" + """ + Check whether a URL is an absolute HTTP or HTTPS URL. + + :param url: URL to validate. + :return: Whether the URL uses HTTP or HTTPS and contains a hostname. + """ try: parsed = urlsplit(url) except ValueError: -- cgit v1.3.1