Skip to content

Remove the broken "Host" header logic for isRequestToItself#596

Open
bitterpanda63 wants to merge 2 commits intomainfrom
remove-broken-is-request-to-itself-logic
Open

Remove the broken "Host" header logic for isRequestToItself#596
bitterpanda63 wants to merge 2 commits intomainfrom
remove-broken-is-request-to-itself-logic

Conversation

@bitterpanda63
Copy link
Member

@bitterpanda63 bitterpanda63 commented Mar 16, 2026

Summary by Aikido

Security Issues: 0 Quality Issues: 0 Resolved Issues: 0

🚀 New Features

  • Introduced get_trusted_hostnames helper to parse trusted hostnames from environment variable

⚡ Enhancements

  • Reworked is_request_to_itself to use trusted hostnames instead of headers
  • Updated find_hostname_in_context to skip trusted hostnames via new check

More info

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants