Skip to content

Add tests for the /packs static file and SQLite download handler #91

Description

@DeleMike

Terms

Description

  • Tests for setupStaticFiles in api/server.go, the most security-sensitive untested code in the repo.
  • Covers the listing endpoint, download headers, 400/404 paths, encoded and double-encoded traversal attempts, and clean startup when the packs directory is absent.
  • We should prevent any arbitrary file read.

Contribution

No response

Metadata

Metadata

Assignees

No one assigned

    Labels

    -priority-High priorityblockedAnother issue is blockingtestingRelates to tests or test coverage

    Projects

    Status
    Todo

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions