Allow supplying Authorization: via query parameter.

There is no other way to authorize GitHub and Gogs webhook payloads.
This commit is contained in:
Catherine
2025-09-15 16:46:19 +00:00
parent 194302f4cf
commit 03d6c55855
2 changed files with 8 additions and 1 deletions
+7
View File
@@ -174,6 +174,13 @@ func postPage(w http.ResponseWriter, r *http.Request) error {
}
allowRepoURL = fmt.Sprintf(config.Wildcard.CloneURL, userName, repoName)
} else {
// GitHub and Gogs cannot supply an `Authorization:` header.
if r.Header.Get("Authorization") == "" {
if value := r.URL.Query().Get("Authorization"); value != "" {
r.Header.Set("Authorization", value)
}
}
if err := Authorize(w, r); err != nil {
return err
}