open-sauced / hot

🍕The site that recommends the hottest projects on GitHub.
https://hot.opensauced.pizza
MIT License
418 stars 145 forks source link

Bug: client side hooks are a security concernt #442

Open 0-vortex opened 1 year ago

0-vortex commented 1 year ago

Describe the bug

We have some pieces of code that should move to the backend, like sending webhooks and notifications, that have been left commented. We sometimes forget that is the case and let new contributors try and fix them.

Steps to reproduce

Let any user send discord webhooks for example, not a good idea :swea

Affected services

hot.opensauced.pizza

Platforms

No response

Browsers

No response

Environment

No response

Additional context

No response

Code of Conduct

Contributing Docs