diff options
| author | Danilo M. <danix@danix.xyz> | 2026-09-08 15:19:14 +0200 |
|---|---|---|
| committer | Danilo M. <danix@danix.xyz> | 2026-09-08 15:19:14 +0200 |
| commit | e1b3204c2af639e2a5ccf01d76f3dd280304702e (patch) | |
| tree | fbcbb61ab07f4f43fcd7c6da4f5e0fb8b178ca8f /tests/fixtures/simple.eml | |
| parent | d5dbf6328b9f38fe938d79e11769337b390ab9ba (diff) | |
| download | abusectl-e1b3204c2af639e2a5ccf01d76f3dd280304702e.tar.gz abusectl-e1b3204c2af639e2a5ccf01d76f3dd280304702e.zip | |
test: wire leaky.eml into the anti-leak suite (red, defect 2)
test_no_ioc_holds_a_recipient_address grepped for the literal
"example.org", and every existing fixture hides the recipient address
as base64, so URL redaction could be disabled entirely and both this
test and test_cli's counterpart stayed green.
leaky.eml carries you@example.org in five URL shapes plus a From
display-name trap. Adding it to the fixture list, plus a new test
asserting on the raw address and its percent-encoded form, turns the
suite red: the valueless-query-parameter defect (redact.py) currently
lets ?victim@example.org through as a kept parameter NAME. Left
failing on purpose; the next commit fixes redact.py and turns it
green.
Co-Authored-By: Claude Opus 5 <noreply@anthropic.com>
Claude-Session: https://claude.ai/code/session_01KphFXTc2QajxXsHWyvGJ4R
Diffstat (limited to 'tests/fixtures/simple.eml')
0 files changed, 0 insertions, 0 deletions
