Skip to content

feat(security): activate Structurizr DSL restricted parsing#1805

Merged
ggrossetie merged 1 commit intoyuzutech:mainfrom
ggrossetie:structurizr-restricted
Jan 26, 2025
Merged

feat(security): activate Structurizr DSL restricted parsing#1805
ggrossetie merged 1 commit intoyuzutech:mainfrom
ggrossetie:structurizr-restricted

Conversation

@ggrossetie
Copy link
Member

Enable restricted parsing to disable !script and other dangerous methods to be executed during parsing.

@ggrossetie ggrossetie force-pushed the structurizr-restricted branch 3 times, most recently from 4e4e5ee to d2cb0a4 Compare November 11, 2024 11:52
Enable restricted parsing to disable `!script` and other dangerous methods to be executed during parsing
By default, Kroki will parse Structurizr diagrams in "restricted mode" unless `KROKI_STRUCTURIZR_SAFE_MODE` (or `KROKI_SAFE_MODE`) is set to `unsafe`.
@ggrossetie ggrossetie force-pushed the structurizr-restricted branch from d2cb0a4 to d041e2a Compare November 11, 2024 11:58
@ggrossetie ggrossetie merged commit df9ba49 into yuzutech:main Jan 26, 2025
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants