1
0
Fork 0
mirror of https://github.com/denoland/deno.git synced 2024-12-11 10:07:54 -05:00
denoland-deno/tests/specs/permission
Bartek Iwańczuk 5504acea67
feat: add --allow-import flag (#25469)
This replaces `--allow-net` for import permissions and makes the
security sandbox stricter by also checking permissions for statically
analyzable imports.

By default, this has a value of
`--allow-import=deno.land:443,jsr.io:443,esm.sh:443,raw.githubusercontent.com:443,gist.githubusercontent.com:443`,
but that can be overridden by providing a different set of hosts.

Additionally, when no value is provided, import permissions are inferred
from the CLI arguments so the following works because
`fresh.deno.dev:443` will be added to the list of allowed imports:

```ts
deno run -A -r https://fresh.deno.dev
```

---------

Co-authored-by: David Sherret <dsherret@gmail.com>
2024-09-26 01:50:54 +00:00
..
allow_import feat: add --allow-import flag (#25469) 2024-09-26 01:50:54 +00:00
allow_import_jsx feat: add --allow-import flag (#25469) 2024-09-26 01:50:54 +00:00
allow_import_main_module feat: add --allow-import flag (#25469) 2024-09-26 01:50:54 +00:00
allow_import_not_on_redirect feat: add --allow-import flag (#25469) 2024-09-26 01:50:54 +00:00
deny_run_binary_absolute_path feat: update warning message for --allow-run with no list (#25693) 2024-09-18 00:32:52 +02:00
make_temp_write_perm refactor(permissions): split up Descriptor into Allow, Deny, and Query (#25508) 2024-09-16 21:39:37 +01:00
path_not_permitted feat: warn when using --allow-run with no allow list (#25215) 2024-09-16 23:08:02 +00:00
proc_self_fd fix(runtime): Allow opening /dev/fd/XXX for unix (#23743) 2024-05-10 11:21:36 -06:00
special feat(cli): use NotCapable error for permission errors (#25431) 2024-09-10 11:12:24 -07:00
write_allow_binary feat(cli): use NotCapable error for permission errors (#25431) 2024-09-10 11:12:24 -07:00