Skip to content
Commits on Sep 8, 2011
  1. @jeremy

    Serve call stacks as HTML. Make CallStackPrinter the default since it…

    jeremy committed Sep 8, 2011
    …'s much easier to deal with than the other formats.
Commits on Sep 7, 2011
  1. @jeremy

    Qualify the rest of the RubyProf references to toplevel since ruby-pr…

    jeremy committed Sep 7, 2011
    …of has an evil Rack::RubyProf class now
  2. @jeremy
Commits on May 6, 2011
  1. @mtodd

    Merge pull request #37 from judofyr/jsonp_u2028

    mtodd committed May 6, 2011
    JSONP: Always escape U+2028 and U+2029
  2. @judofyr
Commits on Apr 30, 2011
  1. @mtodd

    Merged pull request #22 from toolmantim/master.

    mtodd committed Apr 29, 2011
    Fix PostBodyContentTypeParser's content-type matching
Commits on Apr 25, 2011
  1. @mtodd

    Merged pull request #33 from rack/jsonp-xss-vulnerability.

    mtodd committed Apr 25, 2011
    Strip invalid JS var name chars from JSONP callback
Commits on Apr 9, 2011
  1. @mtodd
  2. @mtodd

    Remove accidental inclusion

    mtodd committed Apr 8, 2011
  3. @mtodd

    Ignore callback if empty

    mtodd committed Apr 8, 2011
  4. @mtodd
Commits on Apr 6, 2011
  1. @mtodd

    Support $ as valid JS callback name character

    mtodd committed Apr 6, 2011
    * is a valid JS var/function name
  2. @mtodd

    Support JSONP callbacks with dots (.)

    mtodd committed Apr 6, 2011
    * in practice, callbacks often are within objects
    * for example:
      foo.bar.baz({...})
  3. @mtodd

    Clean JSONP callback

    mtodd committed Apr 6, 2011
    * strips any non-word characters: attemps to ensure only valid JavaScript
      function names are returned
    * reduces XSS vulnerability
Commits on Dec 19, 2010
  1. @kennyp @manveru

    Added TryStatic as autoload

    kennyp committed with manveru Dec 18, 2010
Commits on Dec 13, 2010
  1. @toolmantim

    Fix PostBodyContentTypeParser's handling of empty JSON content bodies…

    toolmantim committed Dec 14, 2010
    …, and cleaned up the spec
  2. @toolmantim

    Fix PostBodyContentTypeParser's content-type matching to support cont…

    toolmantim committed Dec 13, 2010
    …ent-types with media-type parameters (such as 'application/json; charset=utf-8')
Commits on Oct 19, 2010
  1. @rtomayko

    1.1.0 release

    rtomayko committed Oct 19, 2010
Commits on Oct 10, 2010
  1. @rtomayko

    whitespace errors

    rtomayko committed Oct 9, 2010
  2. @rtomayko
Commits on Oct 1, 2010
  1. @brainopia
  2. @brainopia

    Add tests

    brainopia committed Oct 1, 2010
  3. @brainopia

    Fix small bugs

    brainopia committed Oct 1, 2010
Commits on Sep 30, 2010
  1. @brainopia
  2. @brainopia
  3. @brainopia
Commits on Sep 19, 2010
  1. @gmarik

    Rack::TryStatic middleware

    gmarik committed Sep 19, 2010
    - try match request to a static file
Commits on Sep 18, 2010
  1. @gmarik @manveru

    MailExceptions: add tls support

    gmarik committed with manveru Sep 17, 2010
    - TODO: use mailer
  2. @gmarik

    MailExceptions: add tls support

    gmarik committed Sep 16, 2010
    - TODO: use mailer
Commits on Sep 3, 2010
  1. @matth @manveru
Commits on Aug 15, 2010
  1. @samleb @manveru
Commits on Aug 7, 2010
  1. @elitheeli @manveru

    A few minor text changes

    elitheeli committed with manveru Aug 7, 2010
  2. @elitheeli @manveru

    Domain-Specific Language

    elitheeli committed with manveru Aug 7, 2010
Commits on Jun 10, 2010
  1. @rtomayko

    1.0.1 release

    rtomayko committed Jun 9, 2010
  2. @rafaelss @rtomayko

    removed the last traces of etag

    rafaelss committed with rtomayko Jun 10, 2010
Something went wrong with that request. Please try again.