Skip to content

Anti SSRF Client - on top of #6521#6521

Merged
aerosol merged 12 commits into
ip-toolsfrom
ip-tools-ssrf-client
Jul 22, 2026
Merged

Anti SSRF Client - on top of #6521#6521
aerosol merged 12 commits into
ip-toolsfrom
ip-tools-ssrf-client

Conversation

@aerosol

@aerosol aerosol commented Jul 21, 2026

Copy link
Copy Markdown
Member

Changes

Base branch: ip-tools (#6512)
This PR implements SSRF protection - a Req wrapper meant to be used with arbitrary user-supplied hostnames.

Split from a bigger chunk of work, incoming PRs will be opened on top.

Tests

  • Automated tests have been added
  • This PR does not require tests

Changelog

  • Entry has been added to changelog
  • This PR does not make a user-facing change

Documentation

  • Docs have been updated
  • This change does not need a documentation update

Dark mode

  • The UI has been tested both in dark and light mode
  • This PR does not change the UI

@aerosol aerosol changed the title Ip tools ssrf client Anti SSRF Client - on top of #6521 Jul 21, 2026
@aerosol
aerosol marked this pull request as ready for review July 21, 2026 06:13
@aerosol
aerosol requested review from a team and cnkk July 21, 2026 06:14

@zoldar zoldar left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Nice ✨

Comment thread lib/plausible/ssrf.ex Outdated
Comment thread test/plausible/ssrf_test.exs
aerosol and others added 4 commits July 21, 2026 22:23
Co-authored-by: Adrian Gruntkowski <adrian.gruntkowski@gmail.com>
SSRF-aware plausible installation support (on top of #6522)
SSRF-aware SSO domain provisioning (on top of #6521)
@aerosol
aerosol merged commit 5cf5c83 into ip-tools Jul 22, 2026
22 checks passed
@aerosol
aerosol deleted the ip-tools-ssrf-client branch July 22, 2026 05:47
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants