Commit Verlauf

Autor SHA1 Nachricht Datum
  El RIDO 0e3a7196f9 set frame-ancestors to none vor 4 Jahren
  El RIDO 18972ae0fa luckily the PHP ini parser doesn't interpret this as an empty block, replacing the one defined above vor 5 Jahren
  El RIDO 3429d293d3 remove configurable dir for traffic & purge limiters vor 5 Jahren
  Mark van Holsteijn 342270d6dd added Google Cloud Storage support vor 5 Jahren
  LinQhost Managed hosting 63d6816c7c Merge branch 'api-ip-exempt' of https://github.com/rodehoed/PrivateBin into api-ip-exempt vor 5 Jahren
  LinQhost Managed hosting 7d82c82fd9 Make it possible to exempt ips from the rate-limiter vor 5 Jahren
  El RIDO fcb6422663 re-adding CSP directive sandbox allow-forms, it is needed for the password input form to work on the JS side vor 5 Jahren
  rugk 3ca01024fd feat: disallow form submission alltogether vor 5 Jahren
  rugk 5809a7cfa7 feat: add form-action CSP restriction vor 5 Jahren
  rugk fd7d05e862 Add base URL as default CSP restriction vor 5 Jahren
  El RIDO bb6a44ce7a remove double translation, avoid unsupported double quotes in INI file vor 5 Jahren
  Andreas Schneider eb32ea1419 Make it possible to change the info text vor 6 Jahren
  ZerooCool e61c44ef46 Make Opengraph really functional vor 6 Jahren
  ZerooCool 13c2f8d968 Make Opengraph really functional vor 6 Jahren
  El RIDO 45a0535640 adding new flag to sandbox policy, introduced and required by Chrome 83 - fixes #634 vor 6 Jahren
  Haocen Xu bb9a5772bc Add resource: to script-src cspheader to allowed rendering of pdf in vor 6 Jahren
  El RIDO 9aac073a49 clarifying for #525 that none is a string, as PHP might evaluate it to NULL instead vor 6 Jahren
  El RIDO d5aeba60ca increase default size limit to 10 MiB, documenting change vor 6 Jahren
  El RIDO 8e27dbff15 clarify the use of 'unsafe-eval' and what the impact removing it has - Firefox users may not care and disable it to improve security vor 6 Jahren
  Haocen Xu ab75b183fb Fix click on new paste on clone paste editing view not removing custom vor 7 Jahren
  El RIDO 11375a4f59 moved referrer policy from CSP & meta to proper HTTP header to avoid browser console error message about unknown CSP header and to ensure it always applies before HTML is parsed, fixes #196 vor 7 Jahren
  El RIDO c2e060d464 made compression configurable, fixes #38 vor 7 Jahren
  rugk b7db033bdd Adjust config text vor 7 Jahren
  El RIDO 42c2003220 made notice configurable, fixing a few CSS glitches vor 7 Jahren
  El RIDO 362045c664 re-add data-URLs to CSP for img-src, as these are used for the comment icons vor 7 Jahren
  El RIDO f915af1a5a adjust CSP header to allow blob URLs vor 7 Jahren
  El RIDO 398fabd664 Chrome requires unsafe-eval for it to parse and evaluate WASM modules vor 7 Jahren
  El RIDO 720897b902 correct CSP to allow password prompt vor 8 Jahren
  rugk 60d4ccb02c Add comment about blocked images vor 8 Jahren
  El RIDO d6f203dc4c Removed option to hide clone button on expiring pastes, since this requires reading the paste for rendering the template, which leaks information on the pastes state vor 8 Jahren