Commit graph

26777 commits

Author SHA1 Message Date
Laura Hausmann
febb499fcb
[backend] Compact LD-signed activities against well-known context to defend against spoofing attacks 2024-04-29 16:36:58 +02:00
Laura Hausmann
dcfa69ff9d
[backend/masto-client] Fix user profile html cache not updating 2024-04-27 18:48:03 +02:00
Mae Dartmann
562b378b1b
[chart] make number of worker threads configurable
Signed-off-by: Mae Dartmann <mae+git_work@dartmann.net>
2024-04-24 16:36:53 +02:00
Laura Hausmann
6f3818a8bb
[backend/masto-client] Correctly set meId in FTS query helper 2024-04-24 03:02:24 +02:00
Mae Dartmann
e4850b4636
Dockerfile: stop using cp -T
Signed-off-by: Mae Dartmann <mae+git_work@dartmann.net>
2024-04-23 12:14:23 +02:00
Laura Hausmann
948dc85a56
[yarn] Update version to 4.1.1 2024-04-19 20:23:41 +02:00
mei23
301c754e95
[backend] Add Cache-Control to Bull Dashboard 2024-04-19 17:11:14 +02:00
Laura Hausmann
ff660659b8
[docs] Fix typo in CHANGELOG.md 2024-04-11 20:05:18 +02:00
Ezeani Emmanuel
3fa791d71f
[backend] Improve custom TypeORM logger with configurable logging options
Co-authored-by: Laura Hausmann <laura@hausmann.dev>
2024-04-11 17:22:45 +02:00
Laura Hausmann
74a3375886
[backend] Add quote_id to mastodon api note responses 2024-04-10 18:21:59 +02:00
Laura Hausmann
5a30581c73
[backend] Fix autofollowedAccount being set to random (possibly non-local) users on update-meta 2024-04-08 20:39:41 +02:00
Laura Hausmann
85cdfb8f33
Release: v2023.12.6 2024-03-30 13:11:19 +01:00
Laura Hausmann
41cb218aa8
[backend] Set X-Content-Type-Options to nosniff on the drive files endpoint 2024-03-30 13:11:15 +01:00
Laura Hausmann
cf506d3bd9
[backend] Reject anonymous objects in the AP resolver 2024-03-30 13:11:09 +01:00
Laura Hausmann
ac57c58ecf
[backend] Stricter validation of activity identifiers
This resolves a security issue that was disclosed on 2024-03-24 & patched in coordination with other affected software on 2024-03-30.
Huge thanks to Oneric for the detailed security disclosure.
2024-03-30 13:11:03 +01:00
Crimekillz
74df0b3602 Fix bug: Pass reference to Note OBJ when creating notifications for Poll Vote and Poll End so muted threads can be resolved correctly 2024-03-26 16:24:19 +01:00
Lilian
e099582809
[frontend] Align welcome screen reactions to the right
Thanks Yonei!
2024-03-22 22:20:17 +01:00
Laura Hausmann
dbd65a335a
[docs] Add postgresql-contrib to installation requirements 2024-03-21 14:41:07 +01:00
Laura Hausmann
01fbd1a5c7
[backend] Fix video playback for files hosted from different origins 2024-03-18 15:34:14 +01:00
Jegler
b1b9616572
Add support for decoding AVIF images 2024-03-14 16:59:04 +01:00
Norm
c8704f4517 [docs] Enable gzip compression in example nginx config
This should help reduce the bandwith usage of Iceshrimp when using
Nginx.

The `gzip_types` setting is copied from Akkoma's nginx config:
889b57df82/installation/nginx/akkoma.nginx (L66)
2024-03-14 00:18:21 -04:00
Laura Hausmann
0022e9d0e0
Update README.md 2024-03-07 17:44:17 +01:00
CookiLover311
ccec3e7e63 [mastodon-client] Add default reaction to /v1/instance 2024-03-01 14:25:41 +01:00
老周部落
3824767cc9 [backend] Fix resolver cannot parse some follows and notes request 2024-02-26 08:49:45 +01:00
naskya
e9ef70e272
fix (backend): check url properly
Co-authored-by: syuilo <Syuilotan@yahoo.co.jp>
2024-02-26 00:11:21 +01:00
Norm
9ac99d9f86 [docs] Improve podman guide
- Create the `$HOME/.config/containers/systemd` dir if it doesn't
  already exists
- Fix the copy command for podman services
- Call `systemctl --user daemon-reload` to reload services before
  starting them.
2024-02-25 14:24:28 -05:00
konkonkon
ef66626c43 [client] Update translations (Filipino)
Currently translated at 1.1% (21 of 1883 strings)

Translation: Iceshrimp/locales
Translate-URL: https://translate.iceshrimp.dev/projects/iceshrimp/locales/fil/
2024-02-24 22:04:41 +01:00
konkonkon
594c7d7551 [client] Added translations (Filipino) 2024-02-23 20:34:53 +01:00
Salif Mehmed
799f83a1c8 [client] Update translations (Bulgarian)
Currently translated at 39.4% (742 of 1883 strings)

Translation: Iceshrimp/locales
Translate-URL: https://translate.iceshrimp.dev/projects/iceshrimp/locales/bg/
2024-02-21 16:04:43 +01:00
jeder
9472dc7a8d [client] Update translations (Polish)
Currently translated at 96.4% (1817 of 1883 strings)

Translation: Iceshrimp/locales
Translate-URL: https://translate.iceshrimp.dev/projects/iceshrimp/locales/pl/
2024-02-18 21:04:43 +01:00
Laura Hausmann
5de32c6097
Fix typo in changelog 2024-02-18 02:52:14 +01:00
Laura Hausmann
f1a3965881
Release: v2023.12.5 2024-02-18 02:13:18 +01:00
Laura Hausmann
27017272b8
Update README 2024-02-17 19:15:09 +01:00
Laura Hausmann
e2cff0340f
[backend] When fetching activities, specify the acceptable JSON-LD profile explicitly 2024-02-17 16:11:23 +01:00
Laura Hausmann
099ba9ce65
[backend] Enforce JSON-LD profile when fetching activities 2024-02-17 15:59:24 +01:00
Laura Hausmann
31122636d3
[backend] Fix federation for incoming note edits with an attachment that has no alt text 2024-02-17 04:04:25 +01:00
Laura Hausmann
20ae0829a5
Release: v2023.12.4 2024-02-16 19:42:36 +01:00
Laura Hausmann
5f6096c1b7
[backend] Verify object id host matches final URL when fetching remote activities 2024-02-16 18:42:23 +01:00
Laura Hausmann
9fc45f166c
[backend] Verify response content type when fetching remote activities 2024-02-16 18:42:22 +01:00
tournesol
4cd9c002e6 [client] Update translations (French)
Currently translated at 100.0% (1883 of 1883 strings)

Translation: Iceshrimp/locales
Translate-URL: https://translate.iceshrimp.dev/projects/iceshrimp/locales/fr/
2024-02-15 09:04:43 +01:00
Laura Hausmann
129cc4408a
[mastodon-client] Register full OAuth scopes as well 2024-02-14 23:56:11 +01:00
Laura Hausmann
3399187302
[mastodon-client] Fix /v2/suggestions endpoint (undocumented API behavior strikes again) 2024-02-14 23:55:50 +01:00
Laura Hausmann
e49d168ecd
[mastodon-client] Add support for quote_id parameter when creating posts (#515) 2024-02-13 16:51:08 +01:00
Laura Hausmann
63fa244ea8
[client] Fix migration page when migrating from/to the same account twice, resolves #514 2024-02-10 15:52:48 +01:00
Laura Hausmann
4b20ab6ad4
[backend] Fix typo in audience.ts isPublic check 2024-02-07 19:56:02 +01:00
Pyrox
826e2c2867
[nix] Update packaged yarn 2024-02-04 19:21:36 -05:00
Laura Hausmann
dd6bd0267c
Release: v2023.12.3 2024-02-04 20:41:06 +01:00
Laura Hausmann
1378037384
[backend] Only allow author to see hidden posts 2024-02-04 20:23:42 +01:00
Laura Hausmann
f14c5ed4ef
[backend/frontend] Disable post imports for security reasons 2024-02-04 20:12:51 +01:00
corite
3dff9eac78 fix: k8s persistence access mode 2024-02-02 21:35:24 +01:00