Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Private subscriptions could be unexpectdly indexed by search engines and public access #2554

Open
3 of 5 tasks
di9eiko0dcikv opened this issue Jan 12, 2025 · 1 comment
Open
3 of 5 tasks

Comments

@di9eiko0dcikv
Copy link

Describe the bug

Even set "private subscription" for subscriptions, they still can be public access through the url path: https://app.follow.is/share/feeds/:id,,also could be indexed by search engines, this is not the expected behavior in most cases.this compromises users privacy.

Feed Info

any subscription with set "private subscription".

Reproduction Video

  1. Add a subscription
  2. set the subscription as private subscription
  3. access the share page of the subscription from url path: https://app.follow.is/share/feeds/:id

Environment

The online web version

Validations

  • Check that there isn't already an issue that reports the same bug to avoid creating a duplicate.
  • Check that this is a concrete bug. For Q&A, please open a GitHub Discussion instead.
  • This issue is valid

Contributions

  • I am willing to submit a PR to fix this issue
  • I am willing to submit a PR with failing tests (actually just go ahead and do it, thanks!)
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant