Decision
Prevent traversal, absolute-path injection, and escaping symlinks.
Groundwork Rule
Complete user-readable behavior generated from the authoritative rule module.
Prevent traversal, absolute-path injection, and escaping symlinks.
Resolve and validate every target against the application root; Reject traversal, absolute injected paths, and escaping symlinks
Write outside the application root; Create unsafe archive entries
Reject the unsafe target and preserve existing state.
No items match this search.