d-oit/do-epub-studio·#1026· closed

fix(security): enforce schema validation for admin insights query params

Analysed against 9177c7e93 files changedby d-oit
Open PR on GitHub

Change-risk score

4.8out of 10Typical
Repository health
9.3to9.4base against this head

This change sits in the middle third of this repository's own risk distribution, so it is about as risky as the work around it. It is riskier than 44% of this repository's own commits.

No changed file lost health in this diff. Nothing outside this PR depends on a contract it changed.

Files changed
3
in this diff
Contracts changed
0
removed or signature
Outside callers
0
not in this diff
Findings added
0
2 resolved

Blast radius on the repo map

Every file in the repository, grouped into its own directories and sized by lines. The ones this PR changes are lit, and everything that imports them is marked.

.agentsappspackagesplansscriptsskillswebworkerreader-coreschemashareduiarchiveagent-brow…do-web-doc-…srcsrcsrcsrcsrcscripts__tests__featuresi18nlib__tests__routes__tests__
changed, health fellchanged, health rosechanged, health heldimports a changed fileuntouchedchanged by this PR

Drawing 1,168 of 1,217 files at a readable size, grouped by directory and sized by lines of code. 3 changed here reach 2 more by import. 49 are too small to see at this width, which is what the frame below is for.

Inside apps/worker/src

__tests__authlibmiddlewareroutesadminreaderauthworker-configuration.d.tsadmin…admin…audit…audit…contr…cors.…edge-…fixtures.tsmfa-helpers…mfa.test.tsmiddleware.…middleware.…middleware.…observabili…password-co…ra…rate-…recov…risk-…routes.acc…rout…routes.a…rout…routes.…routes.…routes.…routes.…routes.…routes.demo.test…route…ro…ro…ro…ro…routes.telemet…securit…securit…securit…sess…si…ten…ten…upload…valida…inde…admin-midd…mfa.tsmiddl…passw…re…edge…observ…rate…te…ra…access.…books.tscatalog…comment…demo.tsexport.tsnotifi…search.tstelemetry.tsred…audit…books…grant…bo…highlig…insi…pr…ac…lo…logi…mfa.…recovery.…

126 files, 2 changed by this PR and 1 that import one. This PR changes 3 files in total, spread across more than one top-level directory. Click any directory above to frame it instead.

Changed

What this PR added, and what it took away

Introduced findings are the ones inside the lines this PR added, not the file's existing ones. The resolved column is the only place in the product that lists them.

Introduced (0)
  • Nothing added in the changed lines.
Resolved (2)
  • dry violation
    apps/worker/src/routes/admin/insights.ts
  • dry violation
    packages/schema/src/schemas/insights.ts

Who else knows this code

The primary author of each changed file by share of its recent commits, mined from git history. Advisory: it says who has context, not who must review.

  • apps/worker/src/__tests__/routes.admin.insights.test.tsDominik Oswald 100% of 1 commits

AI-authored against human-authored

Each changed file attributed to whichever author class contributed more of its added lines, then scored. File-level, because a line-level blame index is not persisted.

Files changed
AI 3Human 0
Findings introduced
AI 0Human 0
Share of the regression
AI 0.00Human 0.00

Get this on your own pull requests

This page came from an index of d-oit/do-epub-studio. No model calls, no configuration, and it refreshes on every push. Install the bot and every pull request gets one of these.