• Home
  • Features
  • Pricing
  • Docs
  • Announcements
  • Sign In

dunglas / mercure / 35604875334
90%
master: 93%

Build:
Build:
LAST BUILD BRANCH: chore/upgrade-goreleaser-config
DEFAULT BRANCH: master
Ran 21 Sep 2026 01:22PM UTC
Jobs 1
Files 34
Run time 1min
Badge
Embed ▾
README BADGES
x

If you need to use a raster PNG badge, change the '.svg' to '.png' in the link

Markdown

Textile

RDoc

HTML

Rst

21 Sep 2026 01:19PM UTC coverage: 87.973% (-0.02%) from 87.99%
35604875334

push

github

dunglas
fix: refuse a request that carries no Host

A request with no Host (HTTP/1.0, or HTTP/2 with no :authority) leaves a hub
with no configured resource identifier with nothing to derive its identity
from. Refusing every token in that state kept an attacker from presenting one
audienced elsewhere, but the hub still served the request otherwise, deriving
an empty origin for the metadata URL it advertises.

(cherry picked from commit a61f21166)

7 of 7 new or added lines in 1 file covered. (100.0%)

11 existing lines in 3 files now uncovered.

2209 of 2511 relevant lines covered (87.97%)

181.15 hits per line

Coverage Regressions

Lines Coverage ∆ File
7
89.92
0.26% authorization.go
2
90.91
2.02% resourcemetadata.go
2
86.01
-0.58% subscribe.go
Jobs
ID Job ID Ran Files Coverage
1 0 - 35604875334.1 21 Sep 2026 01:22PM UTC 34
87.97
GitHub Action Run
Source Files on build 35604875334
  • Tree
  • List 34
  • Changed 6
  • Source Changed 0
  • Coverage Changed 6
Coverage ∆ File Lines Relevant Covered Missed Hits/Line
  • Back to Repo
  • 7d5b671f on github
  • Prev Build on main (#35604632650)
  • Next Build on main (#35609109230)
STATUS · Troubleshooting · Open an Issue · Sales · Support · CAREERS · ENTERPRISE · START FREE TRIAL · SCHEDULE DEMO
ANNOUNCEMENTS · TWITTER · TOS & SLA · Supported CI Services · What's a CI service? · Automated Testing

© 2026 Coveralls, Inc