5 Commits (7e48bb1d6e2016a253dd1d5000823b3e2424dd79)

Author SHA1 Message Date
Claire 97539b6a96
Fix host check on healthcheck path not being disabled (#16270) 3 years ago
Jeong Arm f09322f9cc
Disable host check on healthcheck path (#16243) 3 years ago
Takeshi Umeda 2360191434
Fix guard against DNS rebinding attacks (#16095) 3 years ago
Takeshi Umeda 8323023464
Add guard against DNS rebinding attacks (#16087) 3 years ago
ThibG 2d27c11061 Set Content-Security-Policy rules through RoR's config (#8957) 6 years ago
aus-social 1f98eae1cf Lint pass (#8876) 6 years ago
Thibaut Girka 48db3b3c99 Tighten CSP while allowing CDN hosts 6 years ago
nightpool 9592b5e31e enforce LOCAL_HTTPS=true in production (#6061) 6 years ago
Yamagishi Kazutoshi 6855baa0c5 Change streaming API URL when remote development (#5942) 7 years ago
Eugen Rochko e528114c53 Follow-up to #4582 and #5027, removing dead code (#5101) 7 years ago
Eugen Rochko d68df88d4e Disable private status federation over OStatus (#5027) 7 years ago
Adam Thurlow 6994664a13 swift-enable the paperclip! 📎 (#2322) 7 years ago
Eugen Rochko cf615abbf9 Add configuration to disable private status federation over PuSH (#4582) 7 years ago
Immae a94c152fd3 Allow alternate domains for mastodon handlers (#3187) 7 years ago
Akihiko Odaki 0cdcf32865 Use ws protocol in streaming API base URL (#2606) 7 years ago
Eugen Rochko c997091166 Clean up redis configuration. Allow using REDIS_URL to set advanced (#2732) 7 years ago
ThibG a9529d3b4b Allow running mastodon on a different domain as the one used for identifying users (#1267) 7 years ago
Eugen Rochko ccb8ac8573 Make the streaming API also handle websockets (because trying to get the browser EventSource interface to 7 years ago
Eugen Rochko 6de079a5af Removing external hub completely, fix #333 fixing digit-only hashtags, 8 years ago
Eugen Rochko b362de2232 Adding configurable e-mail blacklist 8 years ago
Eugen Rochko 4e351baf88 Fix URLs in inline-rendered XML 8 years ago
Eugen 41ef277da3 Fix URLs in ApplicationController.renderer 8 years ago
Eugen Rochko dbe00a4156 Improved configuration from ENV, cleaned up timeline filter methods 8 years ago
Eugen Rochko d14967e1c8 Fix URL configuration when S3 is enabled 8 years ago
Eugen Rochko 1022d682dc Normalized data in Redux, fix for asset URLs when rendered outside request 8 years ago
Eugen Rochko 68c93f8b85 Final fix for ActionCable origin issues 8 years ago
Eugen Rochko 8985f8e66c Fixing more configuration issues with ActionCable 8 years ago
Eugen Rochko 5a8c149f6b Fix ActionCable origin checking 8 years ago
Eugen Rochko 23d08c6749 Changing the use of config constants to the Rails configuration object 8 years ago
Eugen Rochko ee73d35eea Incoming Salmon requests can be turned into follows and unfollows 8 years ago
Eugen Rochko 1dad72bf13 Fixes and general progress 8 years ago
Eugen Rochko 709c6685a9 Made some progress 8 years ago