Skip to content

Add logic to prevent symlink usage in samples#1507

Merged
tomer-stripe merged 3 commits intomasterfrom
prevent-symlink-usage-in-samples
Mar 25, 2026
Merged

Add logic to prevent symlink usage in samples#1507
tomer-stripe merged 3 commits intomasterfrom
prevent-symlink-usage-in-samples

Conversation

@ianjabour-stripe
Copy link
Contributor

@ianjabour-stripe ianjabour-stripe commented Mar 23, 2026

Reviewers

cc @stripe/developer-products

Summary

This PR adds logic to prevent symlinks from be used within the stripe samples create command. This avoids situations where a compromised sample might attempt to link outside the bounds of the destination directory.

@ianjabour-stripe ianjabour-stripe marked this pull request as ready for review March 24, 2026 18:41
@ianjabour-stripe ianjabour-stripe requested a review from a team as a code owner March 24, 2026 18:41
@tomer-stripe tomer-stripe merged commit 25ece2b into master Mar 25, 2026
14 checks passed
@tomer-stripe tomer-stripe deleted the prevent-symlink-usage-in-samples branch March 25, 2026 16:35
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants