Commit message (Collapse) | Author | Age | Files | Lines | |
---|---|---|---|---|---|
* | more markdown purification | zotlabs | 2017-03-29 | 1 | -5/+5 |
| | |||||
* | perform attach_upgrade() | zotlabs | 2017-03-29 | 1 | -0/+3 |
| | |||||
* | after all of this, I would be very hesitant to use any multi-user system ↵ | zotlabs | 2017-03-29 | 1 | -1/+1 |
| | | | | which uses markdown and which doesn't have a large security budget. | ||||
* | even more fine tuning of the markdown purifier - especially when used with ↵ | zotlabs | 2017-03-29 | 3 | -2/+3 |
| | | | | the wiki | ||||
* | various input filter fixes | zotlabs | 2017-03-29 | 9 | -23/+76 |
| | |||||
* | more work related to attach/photo and os_path, display_path and general code ↵ | zotlabs | 2017-03-29 | 2 | -36/+40 |
| | | | | cleanup | ||||
* | input filter updates | zotlabs | 2017-03-29 | 4 | -46/+9 |
| | |||||
* | class MarkdownSoap to safely store markdown by purifying and preserving ↵ | zotlabs | 2017-03-29 | 1 | -0/+86 |
| | | | | (escaped) what may be unsafe code in codeblocks. The stored item needs to be unescaped just prior to calling the markdown-to-html processor | ||||
* | code_allowed is a real mess. Start the cleanup by remving the account level ↵ | zotlabs | 2017-03-29 | 2 | -23/+4 |
| | | | | code allow and limiting to specific channels only. This reduces the possibility of cross channel security issues coming into play. Then provide a single function for checking the code permission. This is only partially done as we often need to check against the observer or logged in channel as well as the resource owner to ensure that this only returns true for local channels which also own the requested resource. | ||||
* | fix widgets for bs4 again | Mario Vavti | 2017-03-29 | 2 | -4/+4 |
| | |||||
* | namespace error | Mario Vavti | 2017-03-29 | 1 | -1/+1 |
| | |||||
* | widget file update | zotlabs | 2017-03-29 | 1 | -2/+2 |
| | |||||
* | remove include/widgets.php | zotlabs | 2017-03-29 | 5 | -13/+1 |
| | |||||
* | the rest of the standard widgets converted | zotlabs | 2017-03-29 | 20 | -0/+860 |
| | |||||
* | namespace error | Mario Vavti | 2017-03-29 | 1 | -2/+2 |
| | |||||
* | widgets cont. | zotlabs | 2017-03-29 | 9 | -0/+274 |
| | |||||
* | widgets cont. | zotlabs | 2017-03-29 | 9 | -0/+411 |
| | |||||
* | more widget migrations | zotlabs | 2017-03-29 | 4 | -0/+102 |
| | |||||
* | more widgets | zotlabs | 2017-03-29 | 3 | -0/+106 |
| | |||||
* | filename issue | zotlabs | 2017-03-29 | 1 | -0/+0 |
| | |||||
* | more widgets | zotlabs | 2017-03-29 | 3 | -0/+166 |
| | |||||
* | convert more widgets to classes | zotlabs | 2017-03-29 | 5 | -0/+166 |
| | |||||
* | use absolute namespace | zotlabs | 2017-03-29 | 1 | -1/+2 |
| | |||||
* | Comanche: allow widgets to be class based and stored appropriately in Zotlabs | zotlabs | 2017-03-29 | 2 | -0/+37 |
| | |||||
* | Import Module documentation and @-sign replacement. | Klaus Weidenbach | 2017-03-25 | 1 | -111/+115 |
| | | | | | If you copy the identity from your profile page the @-sign is invalid for the import and fails. Replace it for convenience. | ||||
* | move profile tabs to app-tray | Mario Vavti | 2017-03-20 | 10 | -10/+17 |
| | |||||
* | Merge branch 'dev' into bs4 | Mario Vavti | 2017-03-19 | 2 | -4/+2 |
|\ | |||||
| * | fix php warning and remove logging | Mario Vavti | 2017-03-19 | 1 | -4/+2 |
| | | |||||
| * | Merge branch 'dev' of https://github.com/redmatrix/hubzilla into dev_merge | zotlabs | 2017-03-18 | 1 | -2/+1 |
| |\ | |||||
| * \ | Merge branch 'dev' of https://github.com/redmatrix/hubzilla into dev_merge | zotlabs | 2017-03-15 | 2 | -18/+6 |
| |\ \ | |||||
| * | | | Monday is a proper name and should be capitalised (except in private ↵ | zotlabs | 2017-03-08 | 1 | -1/+1 |
| | | | | | | | | | | | | | | | | conversation amongst unix geeks). | ||||
* | | | | fix abook_edit and private mail | Mario Vavti | 2017-03-18 | 1 | -1/+1 |
| | | | | |||||
* | | | | Merge branch 'dev' into bs4 | Mario Vavti | 2017-03-18 | 1 | -2/+1 |
|\ \ \ \ | | |_|/ | |/| | | |||||
| * | | | Missed one old Markdown() | Klaus | 2017-03-18 | 1 | -2/+1 |
| | |/ | |/| | |||||
* | | | fix item_list and item_search templates. make item filer use a bootdtrap ↵ | Mario Vavti | 2017-03-17 | 1 | -1/+3 |
| | | | | | | | | | | | | modal and some css and class fixes | ||||
* | | | Merge branch 'dev' into bs4 | Mario Vavti | 2017-03-15 | 2 | -18/+6 |
|\| | | |||||
| * | | better handling of mimetype security | Mario Vavti | 2017-03-15 | 2 | -18/+6 |
| |/ | |||||
* | | many class fixes and revive shiny class for item titles in a new way | Mario Vavti | 2017-03-13 | 1 | -5/+7 |
| | | |||||
* | | many dropdown and class fixes. still a long way to go... | Mario Vavti | 2017-03-12 | 2 | -13/+13 |
|/ | |||||
* | add public_policy to the nwiki container also. This should not affect the ↵ | zotlabs | 2017-03-06 | 1 | -0/+2 |
| | | | | recent bug as presented, but is being added for consistency. | ||||
* | correct fix for wiki anonymous read issue (items_permissions_sql checks ↵ | zotlabs | 2017-03-06 | 1 | -8/+4 |
| | | | | item.public_policy which was set for posts, not wikis) | ||||
* | allow unauthenticated access to public wiki pages | Mario Vavti | 2017-03-06 | 1 | -2/+10 |
| | |||||
* | we need item edited for wiki page history, not item created | Mario Vavti | 2017-03-04 | 1 | -1/+1 |
| | |||||
* | Merge branch 'dev' of https://github.com/redmatrix/hubzilla into dev_merge | zotlabs | 2017-03-02 | 1 | -1/+1 |
|\ | |||||
| * | reset schema value after we empty and repopulate it. second half of fix for #624 | Mario Vavti | 2017-03-02 | 1 | -1/+1 |
| | | |||||
* | | activity widget - like the forum widget but represents unseen activity by ↵ | zotlabs | 2017-03-02 | 6 | -4/+29 |
| | | | | | | | | author. Still experimental until it can be tested with diaspora xchans, which may require additional urlencoding. | ||||
* | | make system.expire_delivery_reports default setting consistent (10 days) | zotlabs | 2017-03-01 | 1 | -1/+1 |
|/ | |||||
* | expire unread system notifications after a year. It would provide a better ↵ | zotlabs | 2017-02-28 | 1 | -0/+7 |
| | | | | experience for infrequent visitors if we didn't expire them at all, but at some point we need to draw a line so as not to degrade system performance searching through old notifications that it's highly unlikely will ever be viewed again. | ||||
* | Merge pull request #686 from dawnbreak/markdown | zotlabs | 2017-03-01 | 3 | -87/+86 |
|\ | | | | | Upgrade PHP Markdown library. | ||||
| * | :arrow_up: :hammer: Upgrade PHP Markdown library. | Klaus Weidenbach | 2017-02-27 | 3 | -87/+86 |
| | | | | | | | | | | | | The current version throws deprecated warning with PHP7.1 and PHPUnit. Upgrade the Markdown library to the current PHP Markdown Lib 1.7.0. Used composer to manage this library. |