diff options
context:
space:
mode:
authorBryce Kwon <bryce@brycekwon.com>
committerBryce Kwon <bryce@brycekwon.com>
commit
parent
tree
download
Gate scanned filters with `trust-scan-filters`
Diffstat (limited to 'custom/cgitrc')
-rw-r--r--custom/cgitrc34
1 file changed, 16 insertions, 18 deletions
diff --git a/custom/cgitrc b/custom/cgitrc
index 9684a0b..e6532cf 100644
--- a/custom/cgitrc
+++ b/custom/cgitrc
@@ -265,9 +265,12 @@ enable-http-clone=1
# repository ships under custom/extensions/. The ones written as
# /path/to/your-command mark where your own command goes.
-# Allow the filter settings to be set per repository, both as repo.* lines below
-# and inside per-repo cgitrc files. Values are 0 or 1. Default is 0.
-enable-filter-overrides=0
+# Honour the filter settings in a repository's own cgitrc and git config found
+# by scan-path. Those files belong to whoever can push, and a filter is a
+# command cgit runs, so leave this off unless the scanned repositories are
+# trusted. The repo.* lines below never need it. Values are 0 or 1. Default is
+# 0.
+trust-scan-filters=0
# Filter command used to format about-page content. The bundled about-render.lua
# renders markdown, man pages and plain text. Value is a command optionally
@@ -534,27 +537,22 @@ enable-plain-email=1
# global max-stats value.
#repo.max-stats=week
-# Per-repo override of the about-filter. Only honoured when
-# enable-filter-overrides is 1. Value is a command. Default is the global
-# about-filter value.
+# Per-repo override of the about-filter. Value is a command. Default is the
+# global about-filter value.
#repo.about-filter=exec:/path/to/your-command
-# Per-repo override of the commit-filter. Only honoured when
-# enable-filter-overrides is 1. Value is a command. Default is the global
-# commit-filter value.
+# Per-repo override of the commit-filter. Value is a command. Default is the
+# global commit-filter value.
#repo.commit-filter=lua:/usr/local/lib/cgit/filters/link-commits.lua
-# Per-repo override of the source-filter. Only honoured when
-# enable-filter-overrides is 1. Value is a command. Default is the global
-# source-filter value.
+# Per-repo override of the source-filter. Value is a command. Default is the
+# global source-filter value.
#repo.source-filter=exec:/path/to/your-command
-# Per-repo override of the email-filter. Only honoured when
-# enable-filter-overrides is 1. Value is a command. Default is the global
-# email-filter value.
+# Per-repo override of the email-filter. Value is a command. Default is the
+# global email-filter value.
#repo.email-filter=lua:/usr/local/lib/cgit/filters/email-gravatar.lua
-# Per-repo override of the trailer-filter. Only honoured when
-# enable-filter-overrides is 1. Value is a command. Default is the global
-# trailer-filter value.
+# Per-repo override of the trailer-filter. Value is a command. Default is the
+# global trailer-filter value.
#repo.trailer-filter=lua:/usr/local/lib/cgit/filters/link-trailers.lua