d6d838cbe8
To save on bandwith and avoid OOMs with large files. Ofc, this relies on the remote server (a) sending a content-length header and (b) being honest about the size. Common fedi servers seem to provide the header and (b) at least raises the required privilege of an malicious actor to a server infrastructure admin of an explicitly allowed host. A more complete defense which still works when faced with a malicious server requires changes in upstream Finch; see https://github.com/sneako/finch/issues/224 |
||
---|---|---|
.. | ||
mrf | ||
object_validators | ||
side_effects | ||
transmogrifier | ||
views | ||
activity_pub_controller_test.exs | ||
activity_pub_test.exs | ||
builder_test.exs | ||
mrf_test.exs | ||
pipeline_test.exs | ||
publisher_test.exs | ||
relay_test.exs | ||
side_effects_test.exs | ||
transmogrifier_test.exs | ||
utils_test.exs | ||
visibility_test.exs |