diff options
Diffstat (limited to 'internal/text/sanitize_test.go')
| -rw-r--r-- | internal/text/sanitize_test.go | 83 |
1 files changed, 3 insertions, 80 deletions
diff --git a/internal/text/sanitize_test.go b/internal/text/sanitize_test.go index ae49c942c..773713353 100644 --- a/internal/text/sanitize_test.go +++ b/internal/text/sanitize_test.go @@ -36,95 +36,18 @@ type SanitizeTestSuite struct { } func (suite *SanitizeTestSuite) TestSanitizeOutgoing() { - s := text.SanitizeToHTML(sanitizeOutgoing) + s := text.SanitizeHTML(sanitizeOutgoing) suite.Equal(sanitizedOutgoing, s) } func (suite *SanitizeTestSuite) TestSanitizeHTML() { - s := text.SanitizeToHTML(sanitizeHTML) + s := text.SanitizeHTML(sanitizeHTML) suite.Equal(sanitizedHTML, s) } -func (suite *SanitizeTestSuite) TestSanitizeCaption1() { - dodgyCaption := "<script>console.log('haha!')</script>this is just a normal caption ;)" - sanitized := text.SanitizeToPlaintext(dodgyCaption) - suite.Equal("this is just a normal caption ;)", sanitized) -} - -func (suite *SanitizeTestSuite) TestSanitizeCaption2() { - dodgyCaption := "<em>here's a LOUD caption</em>" - sanitized := text.SanitizeToPlaintext(dodgyCaption) - suite.Equal("here's a LOUD caption", sanitized) -} - -func (suite *SanitizeTestSuite) TestSanitizeCaption3() { - dodgyCaption := "" - sanitized := text.SanitizeToPlaintext(dodgyCaption) - suite.Equal("", sanitized) -} - -func (suite *SanitizeTestSuite) TestSanitizeCaption4() { - dodgyCaption := ` - - -here is -a multi line -caption -with some newlines - - - -` - sanitized := text.SanitizeToPlaintext(dodgyCaption) - suite.Equal("here is\na multi line\ncaption\nwith some newlines", sanitized) -} - -func (suite *SanitizeTestSuite) TestSanitizeCaption5() { - // html-escaped: "<script>console.log('aha!')</script> hello world" - dodgyCaption := `<script>console.log('aha!')</script> hello world` - sanitized := text.SanitizeToPlaintext(dodgyCaption) - suite.Equal("hello world", sanitized) -} - -func (suite *SanitizeTestSuite) TestSanitizeCaption6() { - // html-encoded: "<script>console.log('aha!')</script> hello world" - dodgyCaption := `<script>console.log('aha!')</script> hello world` - sanitized := text.SanitizeToPlaintext(dodgyCaption) - suite.Equal("hello world", sanitized) -} - -func (suite *SanitizeTestSuite) TestSanitizeCustomCSS() { - customCSS := `.toot .username { - color: var(--link_fg); - line-height: 2rem; - margin-top: -0.5rem; - align-self: start; - - white-space: nowrap; - overflow: hidden; - text-overflow: ellipsis; -}` - sanitized := text.SanitizeToPlaintext(customCSS) - suite.Equal(customCSS, sanitized) // should be the same as it was before -} - -func (suite *SanitizeTestSuite) TestSanitizeNaughtyCustomCSS1() { - // try to break out of <style> into <head> and change the document title - customCSS := "</style><title>pee pee poo poo</title><style>" - sanitized := text.SanitizeToPlaintext(customCSS) - suite.Empty(sanitized) -} - -func (suite *SanitizeTestSuite) TestSanitizeNaughtyCustomCSS2() { - // try to break out of <style> into <head> and change the document title - customCSS := "pee pee poo poo</style><title></title><style>" - sanitized := text.SanitizeToPlaintext(customCSS) - suite.Equal("pee pee poo poo", sanitized) -} - func (suite *SanitizeTestSuite) TestSanitizeInlineImg() { withInlineImg := "<p>Here's an inline image: <img class=\"fixed-size-img svelte-uci8eb\" aria-hidden=\"false\" alt=\"A black-and-white photo of an Oblique Strategy card. The card reads: 'Define an area as 'safe' and use it as an anchor'.\" title=\"A black-and-white photo of an Oblique Strategy card. The card reads: 'Define an area as 'safe' and use it as an anchor'.\" width=\"0\" height=\"0\" src=\"https://example.org/fileserver/01H7J83147QMCE17C0RS9P10Y9/attachment/small/01H7J8365XXRTCP6CAMGEM49ZE.jpg\" style=\"object-position: 50% 50%;\"></p>" - sanitized := text.SanitizeToHTML(withInlineImg) + sanitized := text.SanitizeHTML(withInlineImg) suite.Equal(`<p>Here's an inline image: </p>`, sanitized) } |
