Richard Hansen
cb02253e62
tests: chat API: Reorder assertions
...
* There's no point in asserting that the Content-Type type is JSON
if it didn't return 200.
* There's no point in asserting JSON body properties if the
Content-Type isn't JSON.
* There's no point in asserting data properties if it returned an
error code.
2022-05-06 02:54:34 -04:00
Richard Hansen
3146d6758b
tests: chat API: Use `assert` library
2022-05-06 02:54:34 -04:00
Richard Hansen
5603e6b94e
tests: chat API: Promisify
2022-05-06 02:54:34 -04:00
Richard Hansen
33c46cb002
tests: chat: Wait for message ack
2022-05-06 02:54:34 -04:00
Richard Hansen
8d062b254e
tests: chat: Consolidate all frontend chat tests
2022-05-06 02:54:34 -04:00
Richard Hansen
16f84ba3d3
plugins: Move plugin logging to `plugins.update()`
2022-05-06 02:54:34 -04:00
Richard Hansen
595697bc8a
plugins: Don't tell clients about server-side hooks
2022-05-06 02:54:34 -04:00
Richard Hansen
5fe5a87c85
collab_client: Pass raw message to `handleClientMessage_*` hooks
2022-05-06 02:54:34 -04:00
Richard Hansen
9b7108d730
PadMessageHandler: Delete unnecessary variables
...
to improve readability.
2022-05-06 02:54:34 -04:00
Richard Hansen
fec1bc0d4a
css: Fix class name typo
2022-05-06 02:54:34 -04:00
Richard Hansen
cae949afc6
lint: Fix indentation and formatting in `pad.html`
2022-05-06 02:54:34 -04:00
Richard Hansen
7e2472cef7
Move `tar.json` into JavaScript
...
This makes it possible to add comments and conditional logic.
2022-05-06 02:54:34 -04:00
Richard Hansen
f812e53dc9
API: Add missing `await`
...
This isn't strictly necessary, but it improves readability.
2022-05-06 02:54:34 -04:00
Richard Hansen
2facf3a0c5
ExportEtherpad: New `importEtherpad`, `exportEtherpad` hooks
2022-05-06 02:54:34 -04:00
Richard Hansen
44fd70491d
ImportEtherpad: Batch database writes
2022-05-05 20:49:52 -04:00
Richard Hansen
c1652fd695
ImportEtherpad: Process records in batches
...
This enables ueberdb to combine multiple queries into a single message
to the database backend.
2022-05-05 20:49:52 -04:00
Richard Hansen
10117bc988
ImportEtherpad: Use a real ueberdb object for the temp Pad
...
Now plugin authors have access to the full set of DB operations.
2022-05-05 20:49:52 -04:00
Richard Hansen
6a183db850
ExportEtherpad: Parallelize record reads
2022-05-05 19:33:21 -04:00
Richard Hansen
88c0ab8255
ExportEtherpad: Support custom subkeys
2022-05-05 19:33:21 -04:00
Richard Hansen
4b2e2dd9f2
tests: Add tests for `exportEtherpadAdditionalContent` hook
2022-05-05 19:33:21 -04:00
Richard Hansen
78b44daaa8
ExportEtherpad: Fix `exportEtherpadAdditionalContent` hook docs
...
When exporting, only records like `comments:padId` are supported, not
records like `comments:padId:foo`.
2022-05-05 19:33:21 -04:00
Richard Hansen
936185e3b6
ExportEtherpad: Use Pad API to collect data
2022-05-05 19:33:21 -04:00
Richard Hansen
4a6e77839e
ExportEtherpad: Process pad record separately
...
to improve readability.
2022-05-05 19:33:21 -04:00
Richard Hansen
56a60a34fb
ExportEtherpad: Simplify attribute pool iteration
2022-05-05 19:33:21 -04:00
Richard Hansen
3004bc1583
ExportEtherpad: Invert conditions to improve readability
...
Also delete unnecessary comments.
2022-05-05 19:33:21 -04:00
Richard Hansen
b82ccb76df
Merge branch 'master' into develop
2022-05-05 18:53:03 -04:00
Richard Hansen
4b96ff6e02
Release v1.8.18
2022-05-05 18:44:03 -04:00
Richard Hansen
10206d9e25
DB: Clean up database initialization
2022-05-05 05:18:53 -04:00
Richard Hansen
f22fb13d89
deps: Bump ueberdb2 to 2.2.4
2022-05-05 05:18:53 -04:00
dependabot[bot]
3030f9a417
build(deps): bump ejs from 3.1.6 to 3.1.7 in /src
...
Bumps [ejs](https://github.com/mde/ejs ) from 3.1.6 to 3.1.7.
- [Release notes](https://github.com/mde/ejs/releases )
- [Changelog](https://github.com/mde/ejs/blob/main/CHANGELOG.md )
- [Commits](https://github.com/mde/ejs/compare/v3.1.6...v3.1.7 )
---
updated-dependencies:
- dependency-name: ejs
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com>
2022-05-03 01:31:58 +00:00
dependabot[bot]
0adc027e25
build(deps): bump github/codeql-action from 1 to 2
...
Bumps [github/codeql-action](https://github.com/github/codeql-action ) from 1 to 2.
- [Release notes](https://github.com/github/codeql-action/releases )
- [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md )
- [Commits](https://github.com/github/codeql-action/compare/v1...v2 )
---
updated-dependencies:
- dependency-name: github/codeql-action
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com>
2022-05-02 21:30:46 -04:00
dependabot[bot]
6362a625eb
build(deps): bump express-rate-limit from 6.3.0 to 6.4.0 in /src
...
Bumps [express-rate-limit](https://github.com/nfriedly/express-rate-limit ) from 6.3.0 to 6.4.0.
- [Release notes](https://github.com/nfriedly/express-rate-limit/releases )
- [Changelog](https://github.com/nfriedly/express-rate-limit/blob/master/changelog.md )
- [Commits](https://github.com/nfriedly/express-rate-limit/compare/v6.3.0...v6.4.0 )
---
updated-dependencies:
- dependency-name: express-rate-limit
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com>
2022-05-02 21:30:22 -04:00
Naveen
77e036e8d3
chore(deps): Included dependency review
...
> Dependency Review GitHub Action in your repository to enforce dependency reviews on your pull requests.
> The action scans for vulnerable versions of dependencies introduced by package version changes in pull requests,
> and warns you about the associated security vulnerabilities.
> This gives you better visibility of what's changing in a pull request,
> and helps prevent vulnerabilities being added to your repository.
https://docs.github.com/en/code-security/supply-chain-security/understanding-your-software-supply-chain/about-dependency-review#dependency-review-enforcement
2022-05-02 21:27:57 -04:00
dependabot[bot]
ddb1397ebf
build(deps): bump underscore from 1.13.2 to 1.13.3 in /src
...
Bumps [underscore](https://github.com/jashkenas/underscore ) from 1.13.2 to 1.13.3.
- [Release notes](https://github.com/jashkenas/underscore/releases )
- [Commits](https://github.com/jashkenas/underscore/compare/1.13.2...1.13.3 )
---
updated-dependencies:
- dependency-name: underscore
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com>
2022-05-03 01:25:05 +00:00
Richard Hansen
9b87007278
lint: Bump ESLint dependencies
2022-05-02 21:16:24 -04:00
naveen
2929a3c0bd
chore: Set permissions for GitHub actions
...
Restrict the GitHub token permissions only to the required ones; this way, even if the attackers will succeed in compromising your workflow, they won’t be able to do much.
- Included permissions for the action. https://github.com/ossf/scorecard/blob/main/docs/checks.md#token-permissions
https://docs.github.com/en/actions/using-workflows/workflow-syntax-for-github-actions#permissions
https://docs.github.com/en/actions/using-jobs/assigning-permissions-to-jobs
[Keeping your GitHub Actions and workflows secure Part 1: Preventing pwn requests](https://securitylab.github.com/research/github-actions-preventing-pwn-requests/ )
Signed-off-by: naveen <172697+naveensrinivasan@users.noreply.github.com>
2022-05-02 20:48:01 -04:00
dependabot[bot]
0b5ee334d1
build(deps): bump marked from 4.0.14 to 4.0.15 in /src/bin/doc
...
Bumps [marked](https://github.com/markedjs/marked ) from 4.0.14 to 4.0.15.
- [Release notes](https://github.com/markedjs/marked/releases )
- [Changelog](https://github.com/markedjs/marked/blob/master/.releaserc.json )
- [Commits](https://github.com/markedjs/marked/compare/v4.0.14...v4.0.15 )
---
updated-dependencies:
- dependency-name: marked
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com>
2022-05-02 15:36:41 +00:00
translatewiki.net
59037b4117
Localisation updates from https://translatewiki.net .
2022-04-28 13:03:58 +02:00
Richard Hansen
0ddefb6221
Merge branch 'master' into develop
2022-04-23 19:08:22 -04:00
DanielHabenicht
745c78c536
Update CONTRIBUTING.md
2022-04-22 22:39:33 -04:00
translatewiki.net
074482afea
Localisation updates from https://translatewiki.net .
2022-04-21 13:03:39 +02:00
dependabot[bot]
64757d1636
build(deps): bump ueberdb2 from 2.0.4 to 2.1.0 in /src
...
Bumps [ueberdb2](https://github.com/ether/ueberDB ) from 2.0.4 to 2.1.0.
- [Release notes](https://github.com/ether/ueberDB/releases )
- [Changelog](https://github.com/ether/ueberDB/blob/main/CHANGELOG.md )
- [Commits](https://github.com/ether/ueberDB/compare/v2.0.4...v2.1.0 )
---
updated-dependencies:
- dependency-name: ueberdb2
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com>
2022-04-18 15:29:43 +00:00
Richard Hansen
088bb12797
Pad: Parallelize record fetching when checking consistency
2022-04-16 00:03:07 -04:00
Richard Hansen
096379e6f9
Pad: Limit DB concurrency when copying a pad
2022-04-16 00:03:00 -04:00
Richard Hansen
8442e002f9
Pad: Use the Stream library to improve readability
2022-04-15 23:52:16 -04:00
Richard Hansen
7c6746612c
tests: Missing chat messages should cause check failure
2022-04-15 23:52:16 -04:00
Richard Hansen
cad2440e6a
Pad: Improve check failure message prefixing
2022-04-15 23:52:16 -04:00
Richard Hansen
2dbda3fe7e
Pad: Check nullness before checking `Number.isInteger()`
...
This makes it easier to troubleshoot if the value is null.
2022-04-15 23:52:16 -04:00
Richard Hansen
01ffa070ee
Pad: Only check `getKeyRevisionNumber()` at key revisions
...
Checking every revision is more of a unit test than a consistency
check, and limiting checks to key revisions should improve performance
considerably.
2022-04-15 23:52:16 -04:00
Richard Hansen
fa0d77c11d
Pad: Factor out key rev atext fetch
2022-04-15 23:52:16 -04:00