Commit Graph

4695 Commits

Author SHA1 Message Date
Sam
7df4e4afb9 security fix, anon should not be treated as though they can create anything 2013-10-13 09:54:48 +11:00
Sam
e5fbdde56f filter params correctly from error log 2013-10-13 08:07:45 +11:00
Sam
60284d8a9a add custom clean env 2013-10-13 08:07:45 +11:00
Régis Hanol
23bf4436f5 FIX: avatar was attached to the user who uploaded it... 2013-10-12 10:55:41 +02:00
Robin Ward
d55dc3dd99 Allow :p to show a tongue as well as :P 2013-10-11 17:06:18 -04:00
Robin Ward
af931f0444 Reverting the Sanitizer commit in case we have to do something urgent
before we deploy it early next week. It's in the branch `sanitizer` for
now.

This reverts commit 9e93d8ed52.
2013-10-11 16:44:26 -04:00
Robin Ward
9e93d8ed52 Upgraded and refactored Sanitizing. Much less crap should get through now!
Conflicts:
	app/assets/javascripts/discourse/components/syntax_highlighting.js
2013-10-11 16:25:40 -04:00
Neil Lalonde
380d8c028f Version bump to v0.9.7 2013-10-11 15:25:55 -04:00
Neil Lalonde
3c2c6ab24b Add sockpuppet spammer detection. Automatically flag posts if they are from new users (registered less than 24 hours ago) at the same IP address and one of them started the topic. 2013-10-11 13:34:05 -04:00
Régis Hanol
c1ba41195e Merge pull request #1520 from ofgeek/patch-1
Update client.zh_CN.yml
2013-10-11 09:53:34 -07:00
Régis Hanol
7938843b50 ooops. régis can't refactor... 2013-10-11 18:49:17 +02:00
Régis Hanol
35214f0b3a Merge pull request #1522 from velesin/syntax_highlighting_context_refactoring
removes unused context binding from Discourse.SyntaxHighlighting
2013-10-11 09:46:47 -07:00
Régis Hanol
c38ba8acdd add rss links to anonymous homepages 2013-10-11 18:43:29 +02:00
Régis Hanol
cf3c4fd743 no need for a computed property 2013-10-11 18:43:10 +02:00
Wojciech Zawistowski
c446cc6ce1 removes unused context binding from Discourse.SyntaxHighlighting 2013-10-11 18:37:18 +02:00
Régis Hanol
27985292e3 Merge pull request #1521 from velesin/lightbox_context_refactoring
removes unused context binding from Discourse.Lightbox
2013-10-11 09:19:14 -07:00
Wojciech Zawistowski
b4a6a5e841 removes unused context binding from Discourse.Lightbox 2013-10-11 17:40:30 +02:00
Robin Ward
fee2734aaa Check for custom avatars by default now. 2013-10-11 11:09:53 -04:00
ofGEEK
5b4b794aa2 Update client.zh_CN.yml 2013-10-11 22:38:02 +08:00
Sam
a80d3aa634 no need for this dependency 2013-10-11 12:24:34 +11:00
Sam
172a85ae14 prettier twitter links, extracted mini api 2013-10-11 11:46:35 +11:00
Jeff Atwood
6ab740aa1c clarify spam domain blocks 2013-10-10 13:48:16 -07:00
Robin Ward
20cba4e092 Never bind the poster expansion twice. 2013-10-10 15:18:38 -04:00
Robin Ward
c3c06ae8ea Merge pull request #1518 from velesin/preload_store_context_refactoring
removes redundant context binding
2013-10-10 10:25:17 -07:00
Wojciech Zawistowski
107932576e removes redundant context binding 2013-10-10 18:33:24 +02:00
Robin Ward
5d329cff3a Merge pull request #1517 from nverba/patch-1
Fix broken markdown formatting.
2013-10-10 09:08:19 -07:00
Robin Ward
ea9398467b For @Sam - hide the poster expansion if you click on the avatar of the user who's expanded 2013-10-10 12:03:52 -04:00
Régis Hanol
ae72724648 add educational hint in the upload selector dialog 2013-10-10 17:54:44 +02:00
Neil Lalonde
c3fd79d61c Fix rendering of muted topic button 2013-10-10 11:26:20 -04:00
nverba
598d14580c Fix broken markdown formatting. 2013-10-10 13:41:00 +01:00
Régis Hanol
f244650832 update images:pull_hotlinked rake task to add support for the markdown reference link style 2013-10-10 11:57:36 +02:00
Régis Hanol
be6dd2c71f Merge pull request #1515 from davguij/master
Changed the client Spanish translation
2013-10-10 01:30:16 -07:00
Sam
b0465c517e (experimental) added framework for filtering all sorts of internals in discourse and consuming by plugins 2013-10-10 18:45:40 +11:00
David Guijarro
2e97677136 Changed the client Spanish translation
As per my previous pull request.
2013-10-10 07:36:25 +02:00
Sam
8afff108bf css.scss makes rails 4 sad 2013-10-10 15:23:14 +11:00
Sam
b490fd2f88 Merge pull request #1513 from velesin/computed_self_refactoring
refactors Discourse.Computed to bind context to self
2013-10-09 21:16:19 -07:00
Sam
90bc3323e1 Merge pull request #1505 from crohr/debian-packaging-with-pkgr
Debian packaging with pkgr
2013-10-09 21:14:58 -07:00
Sam
97dfe97d5b work around startup issue 2013-10-10 14:23:24 +11:00
Sam
28a0cb494a rails 4 upgrade
rack lock is trouble, nuke it out of orbit
more aggressive suicide for forked sidekiq
2013-10-10 14:23:24 +11:00
Sam
c4bab8915c fix initialization issues with unicorn
amend unicorn script to demonize sidekiq
create a sidekiq demon that unicorn consumes
correct bug in exec_sql with empty params
2013-10-10 14:23:24 +11:00
Régis Hanol
15de4ac890 add a rake task to pull hotlinked images 2013-10-10 04:04:08 +02:00
Sam
2a948c52a9 this setting needs to be pushed up to 15 so we will be able to nuke new spammer accounts
it is set to max_topics_in_first_day + max_replies_in_first_day
2013-10-10 10:45:27 +11:00
Sam
ad2ed5fe51 rate limits for topics and posts on first day
max_topics_in_first_day and max_replies_in_first_day
2013-10-10 10:32:03 +11:00
Neil Lalonde
ecc7ba4be6 Improve the wording of the spam_post_blocked notification 2013-10-09 16:17:26 -04:00
Neil Lalonde
43fc772a53 Merge pull request #1514 from cfstras/youtube-https
YoutubeOnebox: FIX HTTP-specific URLs
2013-10-09 12:33:49 -07:00
Claus Strasburger
109c10c883 YoutubeOnebox: FIX HTTP-specific URLs
by replacing with protocol-agnostic URLs.
This fixes the mixed-content warning for secure instances of discourse, at least for Youtube
2013-10-09 20:43:59 +02:00
Régis Hanol
c48030f1ef Merge pull request #1508 from abbat/master
Russian translation (actual version)
2013-10-09 09:44:08 -07:00
Régis Hanol
3854c2d24f Merge pull request #1510 from velesin/model_refactoring
refactors Discourse.Model
2013-10-09 09:26:15 -07:00
Wojciech Zawistowski
708a55cb38 refactors Discourse.Computed to bind context to self 2013-10-09 18:24:33 +02:00
Régis Hanol
9eb0644983 Merge pull request #1511 from velesin/site_self_refactoring
removes unused context binding from Discourse.Site
2013-10-09 09:11:51 -07:00