mirror of
https://github.com/snapotter-hq/SnapOtter.git
synced 2026-08-03 07:46:42 +02:00
Security: - Apply sanitizeSvg() to all file upload routes (files.ts, user-files.ts) preventing SSRF and script injection via SVG uploads to file library Functional: - Handle PaddleOCR-VL 1.5 markdown_texts output format in ocr.py - Add empty-text fallback in OCR tier chain (ocr.ts) so higher tiers that return empty text fall back to the next tier automatically - Fix SVG->PNG filename extension mismatch in tool-factory.ts so download endpoint serves correct Content-Type - Report original upload size (not decoded size) in API response Test infrastructure: - Move Playwright auth state from test-results/ to .playwright/ to prevent mid-run cleanup deleting auth files - Fix auth.setup.ts navigation race with waitForURL - Fix gui-batch.spec.ts regex matching "Presets" instead of "reset" - Fix pipeline-advanced.spec.ts crop bounds and resize assertions - Broaden pipeline cleanup to include all E2E-prefixed pipelines
60 lines
721 B
Plaintext
60 lines
721 B
Plaintext
node_modules/
|
|
dist/
|
|
.turbo/
|
|
*.db
|
|
*.db-journal
|
|
*.db-wal
|
|
*.db-shm
|
|
data/
|
|
tmp/
|
|
.env
|
|
.env.local
|
|
.env.cloudflare
|
|
.env.*
|
|
.DS_Store
|
|
.playwright/
|
|
.playwright-mcp/
|
|
.vite/
|
|
apps/api/data/
|
|
apps/api/tmp/
|
|
apps/web/.vite/
|
|
|
|
# Python
|
|
__pycache__/
|
|
*.pyc
|
|
|
|
# Build artifacts
|
|
.next/
|
|
**/.vitepress/cache/
|
|
out/
|
|
coverage/
|
|
*.tsbuildinfo
|
|
|
|
# Playwright
|
|
test-results/
|
|
playwright-report/
|
|
blob-report/
|
|
|
|
# IDE / tool scratch
|
|
CLAUDE.md
|
|
.claude/
|
|
.superpowers/
|
|
docs/*
|
|
!docs/COMMUNITY_GUIDE.md
|
|
PRD.md
|
|
|
|
# Ad-hoc test screenshots and reports
|
|
test-*.png
|
|
!tests/fixtures/*.png
|
|
stirling-pdf-*.png
|
|
settings-*.png
|
|
layout-*.png
|
|
audit_report.md
|
|
.worktrees/
|
|
.release-version
|
|
.models
|
|
.local-wiki/
|
|
.mcp.json
|
|
tests/benchmark/bench-limits-results-mac.jsonl
|
|
.superpowers/
|