35168b9b83
- chat.SanitizeHTML/SanitizePlain decoded-then-escape text runs, so HTML entities the browser emits (e.g. for the space after a mention chip, or & for a typed "&") no longer render as literal " "/"&". Re-escaping keeps output XSS-safe. Adds regression tests. - Rename ./volumes -> ./.volumes so `go build/vet/test ./...` skip the mongo data dir (700-perm files); Makefile lint now gofmt's tracked files only. Co-Authored-By: Claude Fable 5 <noreply@anthropic.com>
9 lines
119 B
Plaintext
9 lines
119 B
Plaintext
.env
|
|
bin/
|
|
backups/
|
|
*.test
|
|
coverage.out
|
|
|
|
# Docker volume data (bind-mounted under the repo; never committed)
|
|
/.volumes/
|