Min RK
abe1136cba
Use XSRF tokens for cross-site protections
...
Removes all Referer checks, which have proven unreliable and have never been particularly strong
We can use XSRF on paths for more robust inter-path protections.
- `_xsrf` is added for forms via hidden input
- xsrf check is additionally applied to GET requests on API endpoints
2023-01-16 09:35:33 +01:00
dependabot[bot]
d0f719b0e1
build(deps): bump docker/build-push-action from 3.2.0 to 3.3.0
...
Bumps [docker/build-push-action](https://github.com/docker/build-push-action ) from 3.2.0 to 3.3.0.
- [Release notes](https://github.com/docker/build-push-action/releases )
- [Commits](c56af95754...37abcedcc1
)
---
updated-dependencies:
- dependency-name: docker/build-push-action
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
2023-01-16 05:04:20 +00:00
Simon Li
c565835773
Merge pull request #4299 from minrk/group_property_feature
...
test and fix deprecated load_groups list
2023-01-13 14:58:46 +00:00
Min RK
663857a15f
Merge pull request #4298 from mouse1203/more_selenium
...
Selenium testing: adding new case covered the authorisation page
2023-01-13 15:43:48 +01:00
Min RK
728b4e3dc7
test and fix deprecated load_groups list
2023-01-13 14:22:56 +01:00
mouse1203
6da46f36c9
Apply suggestions from code review
...
Co-authored-by: Min RK <benjaminrk@gmail.com >
2023-01-13 13:33:42 +01:00
Min RK
126f8d0115
Merge pull request #4297 from minrk/linkcheck-skip
...
docs: fix linkcheck in gallery
2023-01-13 11:37:53 +01:00
mouse1203
11f575568f
working on test_oauth_page
...
updated the locator for "Authorize" button
reused functions from scopes.py
changed the part of comparing scopes on the service page
2023-01-13 11:10:05 +01:00
Min RK
57a22719a5
docs: fix linkcheck in gallery
...
- jupyter.chameleoncloud SSL is failing (I can reproduce with conda curl, but not /usr/bin/curl, so seems to be a CA issue)
- remove dead arnesund tag link (keep single article link)
2023-01-13 10:49:21 +01:00
Min RK
995264ffef
Merge pull request #4288 from stevejpurves/docs-name-template
...
added note on `Spawner.name_template` setting
2023-01-12 11:45:43 +01:00
Steve Purves
f364c61d64
a more general statement on named server config
2023-01-11 16:59:37 +00:00
Erik Sundell
93926a564a
Merge pull request #4295 from minrk/docstring-format
...
Fix formatting of load_groups help string
2023-01-11 16:49:44 +01:00
Min RK
5b743a147f
Fix formatting of load_groups help string
2023-01-11 16:43:08 +01:00
Min RK
6abcbe8e37
Merge pull request #3651 from vladfreeze/group_property_feature
...
Dynamic table for changing customizable properties of groups
2023-01-11 16:34:45 +01:00
mouse1203
f4d8ad00a3
working on test_oauth_page
...
working on test_oauth_page case: added a check of scopes on the service page
2023-01-11 15:00:56 +01:00
Min RK
ad9b0095cb
Move some common form CSS to page.less
...
so it affects other forms, such as the spawner form
results in more consistent style
2023-01-11 14:13:05 +01:00
Min RK
3c0467ebcf
add group properties to rest api spec
2023-01-11 12:10:40 +01:00
Min RK
dfec64ab18
test group properties endpoint
2023-01-11 12:00:45 +01:00
Min RK
f65f429a4a
avoid link myst can't seem to understand
2023-01-11 11:46:36 +01:00
Vlad Vifor
db9226d871
Added deprecation warning to jupyterhub/app.py
...
Co-authored-by: Min RK <benjaminrk@gmail.com >
2023-01-11 11:30:50 +01:00
pre-commit-ci[bot]
ced81d1a2e
[pre-commit.ci] auto fixes from pre-commit.com hooks
...
for more information, see https://pre-commit.ci
2023-01-11 09:42:51 +00:00
vpopescu
fec0cb1260
Fixed removals caused by merge, documentation
2023-01-11 10:42:03 +01:00
Min RK
52b8bc135f
Apply suggestions from code review
...
Co-authored-by: Georgiana <georgiana.dolocan@gmail.com >
Co-authored-by: ajpower <122097973+ajpower@users.noreply.github.com >
2023-01-11 10:10:07 +01:00
Min RK
c7402676a8
expand database docs
...
add notes on what's in the database,
why there's a database,
and how it relates to performance
2023-01-09 15:40:00 +01:00
Min RK
336d7cfcfa
Merge pull request #4290 from bl-aire/a11y
...
Fix skipped heading level across pages
2023-01-09 11:45:35 +01:00
Min RK
bf029d3c31
Merge pull request #4291 from jupyterhub/dependabot/npm_and_yarn/jsx/json5-2.2.3
...
build(deps): bump json5 from 2.2.1 to 2.2.3 in /jsx
2023-01-09 11:45:21 +01:00
Ogoh Blessing
ffb41b0164
Remove aria-hidden attribute
2023-01-09 10:26:49 +00:00
dependabot[bot]
86dcb51417
build(deps): bump json5 from 2.2.1 to 2.2.3 in /jsx
...
Bumps [json5](https://github.com/json5/json5 ) from 2.2.1 to 2.2.3.
- [Release notes](https://github.com/json5/json5/releases )
- [Changelog](https://github.com/json5/json5/blob/main/CHANGELOG.md )
- [Commits](https://github.com/json5/json5/compare/v2.2.1...v2.2.3 )
---
updated-dependencies:
- dependency-name: json5
dependency-type: indirect
...
Signed-off-by: dependabot[bot] <support@github.com >
2023-01-09 02:24:16 +00:00
Ogoh Blessing
8613d43fe4
Fix skipped heading level
2023-01-08 00:05:02 +00:00
Ogoh Blessing
6b7061173f
Add th cells to tables
2023-01-08 00:01:29 +00:00
pre-commit-ci[bot]
80368aad24
[pre-commit.ci] auto fixes from pre-commit.com hooks
...
for more information, see https://pre-commit.ci
2023-01-04 21:19:02 +00:00
Steve Purves
b17b073599
added note on Spawner.name_template
setting
2023-01-04 21:14:16 +00:00
Vlad Vifor
e84359cc23
Merge branch 'jupyterhub:main' into group_property_feature
2023-01-03 16:00:45 +01:00
Erik Sundell
e4f72c9eeb
Merge pull request #4286 from jupyterhub/pre-commit-ci-update-config
...
[pre-commit.ci] pre-commit autoupdate
2023-01-03 15:05:21 +01:00
pre-commit-ci[bot]
7a94443a06
[pre-commit.ci] pre-commit autoupdate
...
updates:
- [github.com/pycqa/isort: 5.11.1 → 5.11.4](https://github.com/pycqa/isort/compare/5.11.1...5.11.4 )
2023-01-03 01:50:49 +00:00
mouse1203
ddf1ff03f5
Adding the test case for the oauth confirmation page
...
added draft version of the test case for the oauth confirmation page
2023-01-02 13:10:22 +01:00
Min RK
49c518940b
Merge pull request #4274 from bl-aire/main
...
Fix reoccurring accessibility issues in JupyterHub's pages
2022-12-21 15:36:44 +01:00
Ogoh Blessing
bf0927685f
accessibility improvements across pages
...
- Add html language attribute
- Rename logo's alt text so it clearly states the image's purpose
- Fix missing first level heading for Login, Home and Token page
- Fix missing header level 1 of Login page
- Fix low contrast issue of navbar
Co-authored-by: Min RK <benjaminrk@gmail.com >
2022-12-21 15:04:25 +01:00
Erik Sundell
30f5d9c8ce
Merge pull request #4258 from minrk/rm-unused-cookie
...
Remove remnants of unused jupyterhub-services cookie
2022-12-21 12:52:01 +01:00
Min RK
e057e8696b
Merge pull request #4278 from mouse1203/more_selenium
...
Refactored selenium tests for improved readability
2022-12-21 12:04:27 +01:00
mouse1203
e31b69863f
Changed locator under token_table_body_as_dict function
...
Changed locator under token_table_body_as_dict function
2022-12-21 10:41:27 +01:00
mouse1203
bf85411f23
table-as-dict function, locators, menu-bar
...
Added table-as-dict function instead of few functions for working with the tokens table
replaced static value from locators.py by locator itself in test_browser
simplified menu-bar case
2022-12-20 09:28:00 +01:00
Erik Sundell
5977e7f092
Merge pull request #4245 from manics/docs-fix-spawner-env
...
doc: fix formatting of spawner env-vars
2022-12-15 16:35:57 +01:00
Erik Sundell
70e53f31d0
Merge pull request #4268 from minrk/pre-commit-monthly
...
pre-commit: autoupdate monthly
2022-12-15 16:33:39 +01:00
Simon Li
afe50ef96e
Merge pull request #4269 from minrk/document-jupyter-env
...
Document JUPYTER_PREFER_ENV_PATH=0 for shared user environments
2022-12-15 14:25:22 +00:00
Simon Li
e580b907c3
spawners.md: format env vars as code (avoids prettier bug)
2022-12-15 14:05:24 +00:00
Simon Li
3491ad6816
Merge pull request #4273 from minrk/rm-pipes
...
remove deprecated import of pipes.quote
2022-12-15 13:59:15 +00:00
Min RK
d300eb2519
remove deprecated import of pipes.quote
...
This function has been shlex.quote since 3.3, and pipes is set to be deprecated.
2022-12-15 12:12:48 +01:00
Min RK
7f7463ac3c
Merge pull request #4271 from minrk/testing-localhost
...
only run testing config on localhost
2022-12-14 19:45:29 +01:00
Erik Sundell
b3f121e3e4
Merge pull request #4259 from minrk/toctree-max-depth
...
set max depth on api/index toctree
2022-12-14 16:09:49 +01:00