Hacktoberfest 2026: die Issues, die Maintainer für den Oktober markiert haben – offen und einsteigerfreundlich. Hacktoberfest-Issues durchsuchen

A few results from sonarwhal linter

Offen
#337 1 Kommentar 0 Reaktionen 0 zugewiesene Personen Auf GitHub ansehen

Dieses Issue hat noch niemand übernommen.

Bewertung

Schwierigkeit
5/5
Geschätzter Aufwand
Über eine Woche
Anfängerfreundlichkeit
25/100
Issue-Typ
Bug
Klarheit
Muss geklärt werden
Aktivitätsstatus
Veraltet
Tech-Stack
javascript
Bereich
security, web-dev

Rechercherichtung

Beginne mit den Ergebnissen von npm run sonarwhal und vergleiche sie anschließend mit .sonarwhalrc und den im Bericht aufgeführten bereitgestellten Ressourcen. Prüfe package.json auf die Sonarwhal-Konfiguration und ermittle, welche der gemeldeten Probleme mit Headern, Komprimierung, Caching, Integrität und Content-Type tatsächlich bestehen; abgeschlossen ist die Aufgabe, wenn die umsetzbaren Ergebnisse behoben oder ausdrücklich als Ausnahmen konfiguriert sind.

Vom Indexierungsmodell aus dem Issue-Text verfasst.

Beschreibung

Priority: p4

Some random results, some may be bogus and ignored, others may potentially be legit (or already reported via Mozilla Observatory:

$ npm run sonarwhal

> [email protected] sonarwhal /Users/pdehaan/dev/github/mozilla/FirefoxColor
> sonarwhal 'https://color.firefox.com/'

https://color.firefox.com/
                Error    'content-type' header should have 'charset=utf-8'                                             content-type
                Error    'public-key-pins' header is disallowed                                                        no-disallowed-headers
                Error    'x-content-type-options' header is not needed                                                 x-content-type-options
                Error    The target should not be cached, or have a small "max-age" value (180):
public, max-age=3600  http-cache
                Error    Should be served compressed with gzip when gzip compression is requested.                     http-compression
                Error    Should be served compressed with Brotli when Brotli compression is requested over HTTPS.      http-compression
                Error    Response with status code 403 had less than 256 bytes                                         no-friendly-error-pages
line 23  col 5  Warning  The “type” attribute is unnecessary for JavaScript resources.                                 html-checker
✖ Found 7 errors and 1 warning

https://color.firefox.com/index.css
line 18  col 3  Error  'content-type' header should have 'charset=utf-8'                                                                 content-type
line 18  col 3  Error  'public-key-pins' header is disallowed                                                                            no-disallowed-headers
line 18  col 3  Error  'content-security-policy', 'x-frame-options', 'x-xss-protection' headers are not needed                           no-html-only-headers
line 18  col 3  Error  Resource https://color.firefox.com/index.css requested without the "integrity" attribute                          sri
line 18  col 3  Error  Static resources should have a long cache value (31536000) and use the immutable directive:
public, max-age=3600  http-cache
line 18  col 3  Error  Should be served compressed with gzip when gzip compression is requested.                                         http-compression
line 18  col 3  Error  Should be served compressed with Brotli when Brotli compression is requested over HTTPS.                          http-compression
✖ Found 7 errors and 0 warnings

https://color.firefox.com/vendor/json-url.js
line 21  col 5  Error  'content-type' header should have media type 'text/javascript' (not 'application/javascript')                     content-type
line 21  col 5  Error  'public-key-pins' header is disallowed                                                                            no-disallowed-headers
line 21  col 5  Error  'content-security-policy', 'x-frame-options', 'x-xss-protection' headers are not needed                           no-html-only-headers
line 21  col 5  Error  Resource https://color.firefox.com/vendor/json-url.js requested without the "integrity" attribute                 sri
line 21  col 5  Error  Static resources should have a long cache value (31536000) and use the immutable directive:
public, max-age=3600  http-cache
line 21  col 5  Error  'content-type' header should have 'charset=utf-8'                                                                 content-type
line 21  col 5  Error  Should be served compressed with gzip when gzip compression is requested.                                         http-compression
line 21  col 5  Error  Should be served compressed with Brotli when Brotli compression is requested over HTTPS.                          http-compression
✖ Found 8 errors and 0 warnings

https://color.firefox.com/index.js
line 22  col 3  Error  'content-type' header should have media type 'text/javascript' (not 'application/javascript')                     content-type
line 22  col 3  Error  'public-key-pins' header is disallowed                                                                            no-disallowed-headers
line 22  col 3  Error  'content-security-policy', 'x-frame-options', 'x-xss-protection' headers are not needed                           no-html-only-headers
line 22  col 3  Error  Resource https://color.firefox.com/index.js requested without the "integrity" attribute                           sri
line 22  col 3  Error  Static resources should have a long cache value (31536000) and use the immutable directive:
public, max-age=3600  http-cache
line 22  col 3  Error  'content-type' header should have 'charset=utf-8'                                                                 content-type
line 22  col 3  Error  Should be served compressed with gzip when gzip compression is requested.                                         http-compression
line 22  col 3  Error  Should be served compressed with Brotli when Brotli compression is requested over HTTPS.                          http-compression
✖ Found 8 errors and 0 warnings

https://color.firefox.com/images/icon.svg
line 17  col 5  Error  'content-type' header should have 'charset=utf-8'                                                                 content-type
line 17  col 5  Error  'public-key-pins' header is disallowed                                                                            no-disallowed-headers
line 17  col 5  Error  'content-security-policy', 'x-frame-options', 'x-xss-protection' headers are not needed                           no-html-only-headers
line 17  col 5  Error  'x-content-type-options' header is not needed                                                                     x-content-type-options
line 17  col 5  Error  Static resources should have a long cache value (31536000) and use the immutable directive:
public, max-age=3600  http-cache
line 17  col 5  Error  Should be served compressed with gzip when gzip compression is requested.                                         http-compression
line 17  col 5  Error  Should be served compressed with Brotli when Brotli compression is requested over HTTPS.                          http-compression
✖ Found 7 errors and 0 warnings

✖ Found a total of 37 errors and 1 warning

here's my .sonarwhalrc config file:

$ cat .sonarwhalrc

{
  "extends": [
    "web-recommended"
  ],
  "formatters": "stylish",
  "rules": {
  }
}

and my package.json diff:

$ git diff package.json

diff --git a/package.json b/package.json
index c91c541..18d4c77 100644
--- a/package.json
+++ b/package.json
@@ -48,6 +48,7 @@
     "validate:themes": "node ./bin/validate-themes.js",
     "test": "npm-run-all --parallel test:*",
     "test:js": "mocha --require src/lib/test-setup.js --recursive \"src/**/*-test.js\"",
+    "sonarwhal": "sonarwhal 'https://color.firefox.com/'",
     "deploy": "gh-pages -x -d build/web -r \"https://[email protected]/mozilla/FirefoxColor.git\"",
     "release:base": "npm-run-all clean build:web sign && mv addon.xpi build/web && npm run deploy",
     "release:dev": "cross-env ADDON_URL='https://mozilla.github.io/FirefoxColor/addon.xpi' SITE_URL='https://mozilla.github.io/FirefoxColor/' SITE_ID=github npm run release:base"
@@ -64,6 +65,8 @@
     ]
   },
   "devDependencies": {
+    "@sonarwhal/configuration-web-recommended": "6.0.0",
+    "@sonarwhal/formatter-stylish": "2.0.3",
     "addons-linter": "^1.1.0",
     "babel-core": "^6.26.0",
     "babel-loader": "^7.1.2",
@@ -96,6 +99,7 @@
     "rimraf": "^2.6.2",
     "sass-loader": "^7.0.1",
     "sinon": "^5.0.7",
+    "sonarwhal": "1.10.0",
     "style-loader": "^0.21.0",
     "stylelint": "^9.1.1",
     "stylelint-config-standard": "^18.1.0",
Vorherrschende Sprache
JavaScript
Sterne
506
Forks
100
PR-Merge-Kennzahlen
Keine gemergten PRs in 30 T.

Entwicklungsumgebung

Erste Schritte

  1. Lesen Sie das ganze Issue und danach den Beitragsleitfaden des Projekts.
  2. Schreiben Sie ins Issue, dass Sie es übernehmen — das erspart doppelte Arbeit.
  3. Forken Sie das Repository und arbeiten Sie in einem Branch.
  4. Öffnen Sie einen Pull Request, der die Issue-Nummer nennt.

Mehr aus mozilla/FirefoxColor

Alle Issues in mozilla/FirefoxColor

Ähnliche Issues

Weitere Issues zu JavaScript

Neue Issues direkt in Ihr Postfach

Eine kurze Übersicht über anfängerfreundliche GitHub-Issues.