1553 Commits (hometown-dev)

Author SHA1 Message Date
Misty De Méo 81c450c667
Mastodon 4.5.7 (#1389) 3 weeks ago
Misty De Méo a0c53bc040
Bringing Hometown up to date with mastodon/mastodon (#1371) 3 weeks ago
Claire bea340816d
Merge commit from fork 1 year ago
Claire 5a44db38ac Fix incorrect signature after HTTP redirect (#33757) 1 year ago
Claire 346c37df80 Fix replies collection being cached improperly 1 year ago
Claire 4fb4721072
Merge pull request from GHSA-58x8-3qxw-6hm7 2 years ago
Claire df974a912b
Merge pull request from GHSA-vp5r-5pgw-jwqx 2 years ago
Emelia Smith 67b2e62331 Fix missing destory audit logs for Domain Allows (#30125) 2 years ago
Claire 56b7d1a7b6 Fix not being able to block a subdomain of an already-blocked domain through the API (#30119) 2 years ago
Claire c3be5a3d2e Remove caching in `cache_collection` (#29862) 2 years ago
Matt Jankowski 0143c9d3e1 Fix results/query in `api/v1/featured_tags/suggestions` (#29597) 2 years ago
Claire 6536d96d1b Add fallback redirection when getting a webfinger query `WEB_DOMAIN@WEB_DOMAIN` (#28592) 2 years ago
Misty De Méo ba20b7d86a
Merge upstream changes from v4.0.15 (#1344) 2 years ago
Claire 870ee80fd3 Fix user creation failure handling in OAuth paths (#29207) 2 years ago
Misty De Méo 3c9599f19a
Upstream backports (#1343) 2 years ago
Claire f1700523f1
Merge pull request from GHSA-vm39-j3vx-pch3 2 years ago
Jasmin 13fa4f70cc
Merge security fixes of mastodon v4.0.13 (#1340) 2 years ago
Claire a6641f828b
Merge pull request from GHSA-3fjr-858r-92rw 2 years ago
Claire 6fe2a47357 Add rate-limit of TOTP authentication attempts at controller level (#28801) 2 years ago
Claire 3837ec2227 Fix Mastodon not correctly processing HTTP Signatures with query strings (#28476) 2 years ago
Claire c0a9db3611 Fix potential redirection loop of streaming endpoint (#28665) 2 years ago
Claire 01caa18e5b Fix streaming API redirection ignoring the port of `streaming_api_base_url` (#28558) 2 years ago
nachtjasmin 66ff566453
Fix several merge errors (whitespace, duplicate lines) 2 years ago
nachtjasmin a23ca40a44
Respect user settings for RSS feeds 2 years ago
nachtjasmin 104981bbba
Switch to the JS-based start page for now 2 years ago
Claire d7875adad2
Fix call to inefficient `delete_matched` cache method in domain blocks (#28367) 2 years ago
Claire 700ae1f918 Fix report processing notice not mentioning the report number when performing a custom action (#27442) 2 years ago
Claire ffcf2c691e Fix Vary headers not being set on some redirects (#27272) 2 years ago
Jasmin 3b69a29703
Merge changes of 4.0.7..4.0.10 (#1324) 3 years ago
Robert R George 20666482ef
Added admin api for managing tags (#26872) 3 years ago
CSDUMMI 9a70cac9de
Fix #26849 by adding the domain of the current SSO provider to the form-action CSP (#26857) 3 years ago
Claire 33c8708a1a
Change `GET /api/v1/directory` to use database replica rather than primary (#26856) 3 years ago
Claire 09ec9c6aa5
Downgrade signature verification debug logging from `warn` to `debug` (#26812) 3 years ago
Claire 548c032dbb
Improve interaction modal error handling (#26795) 3 years ago
Daniel M Brasil ea7fa048f3 Fix `/api/v1/timelines/tag/:hashtag` allowing for unauthenticated access when public preview is disabled (#26237) 3 years ago
Claire 6339806f05 Fix blocking subdomains of an already-blocked domain (#26392) 3 years ago
Daniel M Brasil db8db60244 Fix `/api/v1/timelines/tag/:hashtag` allowing for unauthenticated access when public preview is disabled (#26237) 3 years ago
Claire d30fbc0900 Fix blocking subdomains of an already-blocked domain (#26392) 3 years ago
Claire 16681e0f20
Add admin notifications for new Mastodon versions (#26582) 3 years ago
Claire 9e26cd5503
Add `authorized_fetch` server setting in addition to env var (#25798) 3 years ago
Daniel M Brasil ccca542db1
Fix `/api/v1/timelines/tag/:hashtag` allowing for unauthenticated access when public preview is disabled (#26237) 3 years ago
Claire 25bf640629
Add debug logging on signature verification failure (#26637) 3 years ago
Lukas Martini a7d96e6aff
Improve error messages when DeepL quota is exceeded (#26704) 3 years ago
jsgoldstein 30c191aaa0
Add new public status index (#26344) 3 years ago
Claire 191d302b7f
Refactor `Api::V1::ProfilesController` into two separate controllers (#26573) 3 years ago
Daniel M Brasil d24a87ce4f
Add ability to delete avatar or header picture via the API (#25124) 3 years ago
Claire cc4560d95b
Change “privacy and reach” settings so that unchecking boxes always increase privacy and checking them always increase reach (#26508) 3 years ago
Claire fc5ab2dc83
Add privacy tab in profile settings (#26484) 3 years ago
Claire b12d75ef4f
Fix blocking subdomains of an already-blocked domain (#26392) 3 years ago
Claire 8b37dd2c86
Fix Content Security Policy sometimes unnecessarily allowing hCaptcha scripts (#26388) 3 years ago