Browse Source

Update update_credentials endpoint, enforce validator limits

Daniel Supernault 2 years ago
parent
commit
b700790bb4
1 changed files with 3 additions and 3 deletions
  1. 3 3
      app/Http/Controllers/Api/ApiV1Controller.php

+ 3 - 3
app/Http/Controllers/Api/ApiV1Controller.php

@@ -217,10 +217,10 @@ class ApiV1Controller extends Controller
 
 		$this->validate($request, [
 			'avatar'			=> 'sometimes|mimetypes:image/jpeg,image/png|min:10|max:' . config('pixelfed.max_avatar_size'),
-			'display_name'      => 'nullable|string',
-			'note'              => 'nullable|string',
+			'display_name'      => 'nullable|string|max:30',
+			'note'              => 'nullable|string|max:200',
 			'locked'            => 'nullable',
-			'website'			=> 'nullable',
+			'website'			=> 'nullable|string|max:120',
 			// 'source.privacy'    => 'nullable|in:unlisted,public,private',
 			// 'source.sensitive'  => 'nullable|boolean'
 		], [