jojo/models/asymkey
Andreas Ahlenstorf 178a0a25f8 chore: flag suspicious OwnerID comparisons (#12184)
Resources in Forgejo can also be owned by predefined system users like Ghost or Forgejo Actions. Those have negative user IDs, for example, -2 in the case of Forgejo Actions. `OwnerID` checks oftentimes do not take these users into account, because their existence and how they work isn't well known. A [semgrep](https://semgrep.dev/) check is added that flags such suspicious `OwnerID` checks.

See https://codeberg.org/forgejo/forgejo/pulls/12144 for background.

## Checklist

The [contributor guide](https://forgejo.org/docs/next/contributor/) contains information that will be helpful to first time contributors. All work and communication must conform to Forgejo's [AI Agreement](https://codeberg.org/forgejo/governance/src/branch/main/AIAgreement.md). There also are a few [conditions for merging Pull Requests in Forgejo repositories](https://codeberg.org/forgejo/governance/src/branch/main/PullRequestsAgreement.md). You are also welcome to join the [Forgejo development chatroom](https://matrix.to/#/#forgejo-development:matrix.org).

### Tests for Go changes

(can be removed for JavaScript changes)

- I added test coverage for Go changes...
  - [ ] in their respective `*_test.go` for unit tests.
  - [ ] in the `tests/integration` directory if it involves interactions with a live Forgejo server.
- I ran...
  - [x] `make pr-go` before pushing

### Tests for JavaScript changes

(can be removed for Go changes)

- I added test coverage for JavaScript changes...
  - [ ] in `web_src/js/*.test.js` if it can be unit tested.
  - [ ] in `tests/e2e/*.test.e2e.js` if it requires interactions with a live Forgejo server (see also the [developer guide for JavaScript testing](https://codeberg.org/forgejo/forgejo/src/branch/forgejo/tests/e2e/README.md#end-to-end-tests)).

### Documentation

- [ ] I created a pull request [to the documentation](https://codeberg.org/forgejo/docs) to explain to Forgejo users how to use this change.
- [x] I did not document these changes and I do not expect someone else to do it.

### Release notes

- [ ] This change will be noticed by a Forgejo user or admin (feature, bug fix, performance, etc.). I suggest to include a release note for this change.
- [x] This change is not visible to a Forgejo user or admin (refactor, dependency upgrade, etc.). I think there is no need to add a release note for this change.

*The decision if the pull request will be shown in the release notes is up to the mergers / release team.*

The content of the `release-notes/<pull request number>.md` file will serve as the basis for the release notes. If the file does not exist, the title of the pull request will be used instead.

Reviewed-on: https://codeberg.org/forgejo/forgejo/pulls/12184
Reviewed-by: Mathieu Fenniak <mfenniak@noreply.codeberg.org>
Co-authored-by: Andreas Ahlenstorf <andreas@ahlenstorf.ch>
Co-committed-by: Andreas Ahlenstorf <andreas@ahlenstorf.ch>
2026-04-19 04:24:09 +02:00
..
lint-locale-usage feat(asymkey/llu): Only interpret .Reason as msgid if .Verified=false (#12019) 2026-04-14 06:27:39 +02:00
asymkey.go feat: consider WebAuthn & SSH for instance signing (#7693) 2025-04-29 10:34:07 +00:00
asymkey_test.go feat: consider WebAuthn & SSH for instance signing (#7693) 2025-04-29 10:34:07 +00:00
error.go chore: branding import path (#7337) 2025-03-27 19:40:14 +00:00
gpg_key.go chore: flag suspicious OwnerID comparisons (#12184) 2026-04-19 04:24:09 +02:00
gpg_key_add.go chore: branding import path (#7337) 2025-03-27 19:40:14 +00:00
gpg_key_commit_verification.go chore: branding import path (#7337) 2025-03-27 19:40:14 +00:00
gpg_key_common.go chore(cleanup): replaces unnecessary calls to formatting functions by non-formatting equivalents (#7994) 2025-05-29 17:34:29 +02:00
gpg_key_import.go chore: branding import path (#7337) 2025-03-27 19:40:14 +00:00
gpg_key_list.go chore: branding import path (#7337) 2025-03-27 19:40:14 +00:00
gpg_key_object_verification.go feat(build): improve lint-locale-usage further (#8736) 2025-08-27 23:47:34 +02:00
gpg_key_tag_verification.go chore: branding import path (#7337) 2025-03-27 19:40:14 +00:00
gpg_key_test.go Update module github.com/golangci/golangci-lint/cmd/golangci-lint to v2 (forgejo) (#7367) 2025-03-28 22:22:21 +00:00
gpg_key_verify.go chore: branding import path (#7337) 2025-03-27 19:40:14 +00:00
main_test.go chore: do not require empty fixtures to clean tables (#8353) 2025-06-30 23:04:16 +02:00
ssh_key.go chore: flag suspicious OwnerID comparisons (#12184) 2026-04-19 04:24:09 +02:00
ssh_key_authorized_keys.go feat: ensure only expected ssh public keys are in authorized_keys file (#10010) 2025-11-09 01:06:04 +01:00
ssh_key_authorized_keys_test.go feat: ensure only expected ssh public keys are in authorized_keys file (#10010) 2025-11-09 01:06:04 +01:00
ssh_key_authorized_principals.go chore: branding import path (#7337) 2025-03-27 19:40:14 +00:00
ssh_key_deploy.go chore: branding import path (#7337) 2025-03-27 19:40:14 +00:00
ssh_key_fingerprint.go chore: branding import path (#7337) 2025-03-27 19:40:14 +00:00
ssh_key_object_verification.go feat(sec): Add SSH signing support for instances (#6897) 2025-04-11 13:25:35 +00:00
ssh_key_object_verification_test.go chore: fix typos throughout the codebase (#10753) 2026-01-26 22:57:33 +01:00
ssh_key_parse.go Update module golang.org/x/crypto to v0.39.0 (forgejo) (#8091) 2025-06-06 15:19:05 +02:00
ssh_key_principals.go chore: branding import path (#7337) 2025-03-27 19:40:14 +00:00
ssh_key_test.go Update module github.com/golangci/golangci-lint/cmd/golangci-lint to v2 (forgejo) (#7367) 2025-03-28 22:22:21 +00:00
ssh_key_verify.go feat: use AppDomain for key verification (#10429) 2025-12-17 17:01:14 +01:00