@[email protected] to Software [email protected] • 5 months agoThis is why you shouldn't allow URLs as a person namefeddit.itimagemessage-square52fedilinkarrow-up1222arrow-down19file-text
arrow-up1213arrow-down1imageThis is why you shouldn't allow URLs as a person namefeddit.it@[email protected] to Software [email protected] • 5 months agomessage-square52fedilinkfile-text
minus-squareBjörn Tantaulinkfedilink45•5 months agoI mean, allowing arbitrary characters in the name is one thing. I think I would do that as well, as there are many weird names out there. But then actually parsing it out (or not escaping it properly), that’s the real sin.
minus-square@towerfullink32•5 months agoMight be the mail client being helpful and going “hey! Thats a URL. Let me make it a link”
minus-square@[email protected]linkfedilink2•5 months agoAt the very least remove slashes and periods from the name…
I mean, allowing arbitrary characters in the name is one thing. I think I would do that as well, as there are many weird names out there.
But then actually parsing it out (or not escaping it properly), that’s the real sin.
Might be the mail client being helpful and going “hey! Thats a URL. Let me make it a link”
At the very least remove slashes and periods from the name…