summaryrefslogtreecommitdiffstats
path: root/config
AgeCommit message (Expand)Author
2023-07-21Add check preventing Sidekiq workers from running with Makara configured (#25...Claire
2023-07-21Fix CSP headers being unintendedly wide (#26105)Claire
2023-07-21Fix moderation interface for remote instances with a .zip TLD (#25885)Claire
2023-07-06Merge pull request from GHSA-9928-3cp5-93fmClaire
2023-07-06Add hardened headers to user-uploaded filesClaire
2023-07-06Update rack, rails, nokogiri, omniauth, sanitize and doorkeeper gemsClaire
2023-07-06Allow carets in URL search params (#25216)Renaud Chaput
2023-07-06Fix CSP headers when S3_ALIAS_HOST includes a path component (#25273)Claire
2023-07-06Fix being able to vote on your own polls (#25015)Claire
2023-04-04Change root Chewy strategy to emit a warning instead of erroring out in produ...Claire
2023-04-04Fix user archive takeout when using OpenStack Swift or S3 providers with no A...Claire
2023-03-16Add warning for object storage misconfiguration (#24137)Claire
2023-03-16Change user backups to use expiring URLs for download when possible (#24136)Eugen Rochko
2023-03-14Fix sidekiq jobs not triggering Elasticsearch index updates (#24046)Claire
2023-03-14Fix `/api/v1/streaming` sub-paths not being redirected (#23988)Claire
2023-03-14Fix pgBouncer resetting application name on every transaction (#23958)Eugen Rochko
2023-03-14Fix server error when failing to follow back followers from `/relationships` ...Claire
2023-02-09Add `form-action` CSP directive (#23478)Claire
2022-11-14Fix rate limiting for paths with formatsEugen Rochko
2022-05-26Fix confirmation redirect to app without `Location` header (#18523)Eugen Rochko
2022-05-26Change "dangerous" to "sensitive" in privacy policy and web UI (#18515)Eugen Rochko
2022-05-24New Crowdin updates (#18458)Eugen Rochko
2022-05-19New Crowdin updates (#18419)Eugen Rochko
2022-05-18Change search indexing to use batches to minimize resource usage (#18451)Eugen Rochko
2022-05-15New Crowdin updates (#18339)Eugen Rochko
2022-05-14Fix missing string for appeal validation error (#18410)Eugen Rochko
2022-05-09Change RSS feeds (#18356)Eugen Rochko
2022-05-06Fix ambiguous wording on appeal actions (#18328)Claire
2022-05-06New Crowdin updates (#18255)Eugen Rochko
2022-05-02New Crowdin updates (#18213)Eugen Rochko
2022-05-02Add translatable string for #17431 (#18227)Yamagishi Kazutoshi
2022-04-30New Crowdin updates (#18148)Eugen Rochko
2022-04-29Remove IP matching from e-mail domain blocks (#18190)Eugen Rochko
2022-04-29Fix opening and closing Redis connections instead of using a pool (#18171)Eugen Rochko
2022-04-28Fix stoplight not using REDIS_NAMESPACE (#18160)Claire
2022-04-28Fix single Redis connection being used across all threads (#18135)Eugen Rochko
2022-04-28New Crowdin updates (#18074)Eugen Rochko
2022-04-24New Crowdin updates (#18062)Eugen Rochko
2022-04-21Add missing locale (#18061)Yamagishi Kazutoshi
2022-04-22New Crowdin updates (#18032)Eugen Rochko
2022-04-19Fix parsing `TRUSTED_PROXY_IP` (#18051)Yamagishi Kazutoshi
2022-04-14New Crowdin updates (#17995)Eugen Rochko
2022-04-08Change e-mail notifications to only be sent when recipient is offline (#17984)Eugen Rochko
2022-04-08Bump i18n-tasks from 0.9.37 to 1.0.8 (#17993)dependabot[bot]
2022-04-08New Crowdin updates (#17897)Eugen Rochko
2022-04-08Fix cookies secure flag being set when served over Tor (#17992)Eugen Rochko
2022-04-07Fix unset `SMTP_RETURN_PATH` environment variable causing e-mail not to send ...Eugen Rochko
2022-04-06Remove sign-in token authentication, instead send e-mail about new sign-in (#...Eugen Rochko
2022-04-03Update en.yml (#17942)Ondřej Pokorný
2022-04-01fix: `s3_force_single_request` not parsed (#17922)Holger