Skip to content

fix: do not follow ../ refs out of the project - #2

Merged
hc-ui merged 3 commits into
mainfrom
cursor/contain-ref-paths-aa74
Aug 26, 2026
Merged

hc-ui merged 3 commits into
mainfrom
cursor/contain-ref-paths-aa74

Conversation

@hc-ui

@hc-ui hc-ui commented Aug 26, 2026 •

Copy link
Copy Markdown
Owner

改动

check 不再跟随 ../ 走出项目根目录去认外部图片。绝对路径如果解析后不在项目内,同样按缺失处理(MISSING_REF),避免 bible 把仓库外的文件当成合法 ref。

与已有 draft「诚实写 PyYAML / 拒绝坏 take list」互补。本 PR 不 bump 版本(#1 已是 0.2.2)。

没有 PR 模板。

验证

PYTHONPATH=src python3 -m pytest -q → 47 passed,含 test_ref_escape.py。

@hc-ui
hc-ui marked this pull request as ready for review August 26, 2026 10:29
@hc-ui
hc-ui merged commit ece0142 into main Aug 26, 2026
6 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant