Historia zmian

Autor SHA1 Wiadomość Data
  El RIDO 0e3a7196f9 set frame-ancestors to none 4 lat temu
  El RIDO 18972ae0fa luckily the PHP ini parser doesn't interpret this as an empty block, replacing the one defined above 5 lat temu
  El RIDO 3429d293d3 remove configurable dir for traffic & purge limiters 5 lat temu
  Mark van Holsteijn 342270d6dd added Google Cloud Storage support 5 lat temu
  LinQhost Managed hosting 63d6816c7c Merge branch 'api-ip-exempt' of https://github.com/rodehoed/PrivateBin into api-ip-exempt 5 lat temu
  LinQhost Managed hosting 7d82c82fd9 Make it possible to exempt ips from the rate-limiter 5 lat temu
  El RIDO fcb6422663 re-adding CSP directive sandbox allow-forms, it is needed for the password input form to work on the JS side 5 lat temu
  rugk 3ca01024fd feat: disallow form submission alltogether 5 lat temu
  rugk 5809a7cfa7 feat: add form-action CSP restriction 5 lat temu
  rugk fd7d05e862 Add base URL as default CSP restriction 5 lat temu
  El RIDO bb6a44ce7a remove double translation, avoid unsupported double quotes in INI file 5 lat temu
  Andreas Schneider eb32ea1419 Make it possible to change the info text 6 lat temu
  ZerooCool e61c44ef46 Make Opengraph really functional 6 lat temu
  ZerooCool 13c2f8d968 Make Opengraph really functional 6 lat temu
  El RIDO 45a0535640 adding new flag to sandbox policy, introduced and required by Chrome 83 - fixes #634 6 lat temu
  Haocen Xu bb9a5772bc Add resource: to script-src cspheader to allowed rendering of pdf in 6 lat temu
  El RIDO 9aac073a49 clarifying for #525 that none is a string, as PHP might evaluate it to NULL instead 6 lat temu
  El RIDO d5aeba60ca increase default size limit to 10 MiB, documenting change 6 lat temu
  El RIDO 8e27dbff15 clarify the use of 'unsafe-eval' and what the impact removing it has - Firefox users may not care and disable it to improve security 6 lat temu
  Haocen Xu ab75b183fb Fix click on new paste on clone paste editing view not removing custom 7 lat temu
  El RIDO 11375a4f59 moved referrer policy from CSP & meta to proper HTTP header to avoid browser console error message about unknown CSP header and to ensure it always applies before HTML is parsed, fixes #196 7 lat temu
  El RIDO c2e060d464 made compression configurable, fixes #38 7 lat temu
  rugk b7db033bdd Adjust config text 7 lat temu
  El RIDO 42c2003220 made notice configurable, fixing a few CSS glitches 7 lat temu
  El RIDO 362045c664 re-add data-URLs to CSP for img-src, as these are used for the comment icons 7 lat temu
  El RIDO f915af1a5a adjust CSP header to allow blob URLs 7 lat temu
  El RIDO 398fabd664 Chrome requires unsafe-eval for it to parse and evaluate WASM modules 7 lat temu
  El RIDO 720897b902 correct CSP to allow password prompt 8 lat temu
  rugk 60d4ccb02c Add comment about blocked images 8 lat temu
  El RIDO d6f203dc4c Removed option to hide clone button on expiring pastes, since this requires reading the paste for rendering the template, which leaks information on the pastes state 8 lat temu