Commit graph

288 commits

Author SHA1 Message Date
Kyle Drake
9479ca05d0 dont set cookie for index if not logged in 2025-04-23 09:59:08 -05:00
Kyle Drake
6662774be1 catch utf-8 encoding errors 2025-04-23 04:49:48 +00:00
Kyle Drake
f4fcf94b1a no csrf_token for create 2025-04-15 15:34:47 -05:00
Kyle Drake
98acf7ce89 sessions: new secret, set issued time of session cookie for revoking 2025-01-31 20:03:41 -06:00
Kyle Drake
581756e110 tag search for activities, more tags in browse cloud, link between activity and browse tags 2024-09-04 12:19:48 -05:00
Kyle Drake
a00d460ce0 scrub all attempts to do stupid things with page 2024-08-20 11:29:38 -05:00
Kyle Drake
be6c4252ff no error emails, using airbrake 2024-04-09 18:06:25 -05:00
Kyle Drake
6ab3656040 tutorial subpages for tutorial match 2024-04-08 17:45:20 -05:00
Kyle Drake
5eac211d4d verification route path fixes 2024-04-08 15:39:04 -05:00
Kyle Drake
10acf8e7bb cleanups for account validation 2024-04-08 15:12:56 -05:00
Kyle Drake
4b8c7c1933 add unsafe-eval to script-src to fix replies on comments 2024-01-07 18:23:28 +00:00
Kyle Drake
f9852d04fd update to latest chartjs 2024-01-06 13:27:48 -06:00
Kyle Drake
afb1d756e0 clean up pasted reference code 2024-01-05 14:50:25 -06:00
Kyle Drake
8c5a8b6f22 fixes for a few missing csp entries needed 2024-01-05 14:47:20 -06:00
Kyle Drake
0ef9bdefce add CSP, remove gravicons that are now blocked by it 2024-01-05 14:46:29 -06:00
Kyle Drake
9fa4cc0e13 fix signout, add press article, add dns bl client 2023-11-13 13:18:11 -06:00
Kyle Drake
7f354bf8f6 fix redirect logic 2023-11-11 21:30:14 -06:00
Kyle Drake
143704215f first pass at phone validation 2023-11-09 14:55:48 -06:00
Kiril Misnikov
5670ef1ad8
you forgot west hollywood kyle 2022-07-18 18:51:31 +03:00
Kyle Drake
bc0addb27b replace recaptch with hcaptcha 2021-12-03 12:04:00 -06:00
Kyle Drake
2821f513f1 fixes for hcaptcha, add to dmca form 2020-11-26 01:45:23 -06:00
Kyle Drake
79cdd06b19 testing hcaptcha for contact form 2020-11-25 18:54:04 -06:00
Kyle Drake
dae2466487 switch to captcha v2 api 2018-02-21 09:29:00 -08:00
Kyle Drake
61bf9012d6 dont set cookie for api calls 2017-05-21 20:12:47 -07:00
Kyle Drake
036a45630e Initial CSP header idea - enable tipping site-wide 2017-02-11 15:39:11 -08:00
Kyle Drake
6dc1abe99b SameSite=Lax for cookies, DENY for X-Frame-Options 2017-01-25 04:52:20 +00:00
Kyle Drake
57e31c66e3 fortify cookie security - samesite, secure, explicit httponly 2017-01-10 16:43:14 -06:00
Kyle Drake
20cbd4ebac redirect to the Internet Archive for Geocities site paths before 404ing 2016-12-16 13:42:45 -06:00
Kyle Drake
882d2fb4b2 fix for api 404 2016-10-26 21:34:53 -05:00
Kyle Drake
2c88c62cbc major refactor of supporter structure 2016-10-18 12:47:58 -05:00
Kyle Drake
444f8a5bd0 use TempfileReaper to hopefully clean up RackMultipart turds 2016-08-16 11:56:47 -07:00
Kyle Drake
f97ebd9781 Set email validation grandfathering for May 16th. All new sites will need to validate email. 2016-05-14 23:15:13 -04:00
Kyle Drake
a2a6a40438 Mandate email validation for free accounts. Be sure to set EMAIL_VALIDATION_CUTOFF_DATE before deploy 2016-05-13 16:48:29 -04:00
Kyle Drake
af0a31d6a2 catch branch up with master 2015-07-13 20:14:55 -07:00
Kyle Drake
fdd98d5fba Not Found for title 2015-06-03 14:51:34 -07:00
Kyle Drake
021589d7dc not sure how that happened... 2015-05-10 09:21:25 +00:00
Kyle Drake
9adf6ba4fb fix error email 2015-05-10 09:17:32 +00:00
Kyle Drake
c4376bc580 an unfinished start on proper paypal recurring integration 2015-04-10 18:15:11 -07:00
Kyle Drake
245ce0c6b0 no unsubscribe footer for internal emails 2015-04-01 11:35:47 -07:00
Kyle Drake
f23b5c4871 remove surf proxy before check 2015-03-28 22:58:03 -07:00
Kyle Drake
75f6c5d31b new strategy for surf mode 2015-03-26 11:53:41 -07:00
Kyle Drake
d56edd80ec better error reporting to help fix bugs 2015-02-21 14:08:27 -08:00
Kyle Drake
60e6697529 further cleanups to app.rb 2014-12-03 08:50:24 -08:00
Kyle Drake
ab60744ac5 refactor app.rb blob to partition routes into files 2014-12-03 08:29:01 -08:00
Kyle Drake
e1a4c4b5c9 multiple site -> supporters 2014-12-03 02:50:22 -08:00
Kyle Drake
2a36bca4c0 no whitelist for catbus and fatcat 2014-12-03 01:13:26 -08:00
Kyle Drake
17610787ee Fixes for surf mode pagination conversion 2014-12-01 22:19:56 -08:00
Kyle Drake
14d29b5bb5 fix to sslsites 2014-11-27 17:32:44 -08:00
Kyle Drake
e08d52d09e fix for certs 2014-11-20 19:02:13 -08:00
Kyle Drake
e54c1a750b services for proxy data 2014-11-20 04:44:44 -08:00