mirror of
https://github.com/koreanbots/core.git
synced 2025-12-15 14:10:22 +00:00
* deps: added mongoose * feat(*): added mongo and saving invited count * chore(env): updated mongo configuration * chore: updated next-env.d.ts * chore(*): changed categories to botCategories * chore(Image): maded image component * feat(ServerCard): added ServerCard component * feat(ServerIcon): added ServerIcon component * feat(Tools): added server related functions * feat(Mongo): added serverSchema * chore(Hero): support serverlist * feat(Owner): added crown * feat(icons): added icons api * feat(Yup): added AddServerSubmitSchema * types: added server related types * chore(BotCard): changed bot category link * chore(Hero): changed category links * feat(ServerCard): added unreachable state display * feat(Yup): added ManageServerSchema * feat(Query): added server related queries * feat(Constants): added server related stuffs * types: added updatedAt field for ServerData * feat(pages/servers/*): added server pages * feat(*): moved bot category rotue * typo: fixed typo issue * feat(pages/addserver/*): added add server page * feat(api/servers): added server related api * feat(pages/servers): added server edit page * feat(pages/bots): changed bot list route * feat(*): server categories * feat(pages/users): added owned server list * chore(pages/bots): changed image size * feat(docker-compose): added bot * ci: made some changes * types: fixed type * types(Search): fixed type * types(*): fixed type * fix(*): missing fields * fix: Hero type typo issue * ci(*): missing sentry org slug * ci(*): fix * feat(*): added and changed search pages * Update pages/addserver/[id].tsx Co-authored-by: Ryu JuHeon <saidbysolo@gmail.com> * feat(api/search): added servers search api * feat(pages/panel): added server list in manage page * feat(Search): supporting server search at SearchBox * feat(pages/apllications/servers): added server application page * chore(docker-compose): changed image link * chore(utils): removing server cache at submit * chore(image/icons): added debug code * chore(*): changed component names * chore(Query): decreased server cache ttl * fix(Query): error on addserver page close: https://github.com/koreanbots/serverlist-testing/issues/10 * fix(Query): not using vote type close: https://github.com/koreanbots/serverlist-testing/issues/9 * fix(Constants): fixed category unexpected char close: https://github.com/koreanbots/serverlist-testing/issues/8 * fix(Query): serialize server data * fix(Query): returning null on boost level 0 * fix(page/servers): displaying n/a on boostTier null close: https://github.com/koreanbots/serverlist-testing/issues/4 * fix(pages/servers): hiding emoji list if no emoji close: https://github.com/koreanbots/serverlist-testing/issues/1 * typo(pages/servers): bot to server close: https://github.com/koreanbots/serverlist-testing/issues/2 * fix(components/Hero): editing vote list link close: https://github.com/koreanbots/serverlist-testing/issues/11 * chore(*): changed list route * feat(pages/servers/list/votes): added server vote list page close: https://github.com/koreanbots/serverlist-testing/issues/12 * feat(Dockerfile): added pre-build * fix(Image): image broken when fallbackSrc not given close: https://github.com/koreanbots/serverlist-testing/issues/5 * ci: checking out submodules * fix(ServerCard): bot category displayed at ServerCard close: https://github.com/koreanbots/serverlist-testing/issues/16 * feat(*): supporting opengraph image for server * fix(utils/Constants): fixed type missing on og * feat(pages/servers): not forcing emoji width * chore(utils/Yup): fixed agree checkbox error message * typo(utils/Yup): fixed bot to server * feat(pages/servers): improved emoji display * chore(api/images/discord/icons): removed debug code * chore(pages/servers): removed crown for owner close: https://github.com/koreanbots/serverlist-testing/issues/19 * fix(utils/Query): returning date as string close: https://github.com/koreanbots/serverlist-testing/issues/23 * fix(ServerCard): changed manage link from bot manage link * fix(ServerCard): same height for every card * chore: removed debug code * chore(pages/addserver): showing as invite for server kicked bot * typo(*): fixed typo issues * types: added nullable type * feat(Navbar): added list menu * chore: showing warning for server data not fetched * chore: changed main page (combined bots and servers) * typo(*): replace '한국 디스코드봇 리스트' with '한국 디스코드 리스트' * chore: added Hero component combined state * typo: changed name * fix(Navbar): fix link href * typo: fix about page for serverlist * chore: decrease font size * fix: server category tag link * fix: bot category link * feat: added server widget * fix(ServerCard): fixed servername overflowing * chore: forcing re-login when discord server data fetch fails * fix: error causing on owner not registered * fix: making state same for join button * fix: filtering owner if null * fix(servers/[id]): fix error causing if owner is null * fix(addserver): fixed error occuring for users not logged in * fix(Constant): fixed og image extension getting popped * typo: fixed typo issue * fix: showing forbidden page for non-owner users * feat: invite guide for server which bot left * fix: invalid path for paginator on bot page Co-authored-by: Hajin Lim <zero734kr@gmail.com> Co-authored-by: Ryu JuHeon <saidbysolo@gmail.com>
81 lines
3.6 KiB
TypeScript
81 lines
3.6 KiB
TypeScript
import { GetServerSideProps, NextPage } from 'next'
|
|
import dynamic from 'next/dynamic'
|
|
|
|
import { User } from '@types'
|
|
import { BUG_REPORTERS, BUG_REPORT_GROUPS } from '@utils/Constants'
|
|
import { get } from '@utils/Query'
|
|
|
|
const Docs = dynamic(() => import('@components/Docs'))
|
|
const DiscordAvatar = dynamic(() => import('@components/DiscordAvatar'))
|
|
const Button = dynamic(() => import('@components/Button'))
|
|
|
|
const BODY = '중요도:\n설명:\n\n영향을 줄 수 있는 경우:'
|
|
|
|
const Security: NextPage<SecurityProps> = ({ bugReports }) => {
|
|
return <Docs
|
|
header='버그 바운티 프로그램'
|
|
description='한국 디스코드 리스트는 보안을 최우선으로 생각합니다.'
|
|
>
|
|
<h1 className='mb-3 text-3xl font-bold text-koreanbots-blue'>소개</h1>
|
|
<p>한국 디스코드 리스트는 보안을 우선으로 생각합니다. 보안 버그 제보를 장려하기위해 보안 관련 취약점을 제보해주신 분께 소정의 보상을 지급해드립니다.</p>
|
|
<h1 className='mt-6 mb-3 text-3xl font-bold text-koreanbots-blue'>규칙</h1>
|
|
<ul className='list-disc list-inside'>
|
|
<li>자신이 소유하고 있는 계정과 봇에서만 테스트해야합니다. 절대로 다른 유저에게 영향을 주어서는 안됩니다.</li>
|
|
<li>한국 디스코드 리스트의 서비스에 피해를 끼치는 활동을 해서는 안됩니다. 예) 무차별 대입, DDoS, DoS 등</li>
|
|
<li>취약점을 찾기 위해 스캐너와 같은 자동화 도구는 사용하지 마세요.</li>
|
|
<li>발견한 문제에 대한 모든 정보는 보안팀이 완벽하게 조사하고 해결하기 전까지는 절대로 제3자에게 공개/공유해서는 안됩니다.</li>
|
|
<li>한국 디스코드 리스트는 제보된 문제에 관한 모든 정보를 공개할 권한을 가집니다.</li>
|
|
</ul>
|
|
<h1 className='mt-6 mb-3 text-3xl font-bold text-koreanbots-blue'>범위</h1>
|
|
<ul className='list-disc list-inside'>
|
|
{
|
|
['koreanbots.dev 및 *.koreanbots.dev', 'kbots.link', '디스코드.한국'].map(el => <li key={el}>{el}</li>)
|
|
}
|
|
</ul>
|
|
<h1 className='mt-6 mb-3 text-3xl font-bold text-koreanbots-blue'>취약점에 포함되지 않는 사항</h1>
|
|
<ul className='list-disc list-inside'>
|
|
<li>이미 한국 디스코드 리스트 내부에서 해당 취약점을 인지하고 있는 경우</li>
|
|
<li>Brute force 공격</li>
|
|
<li>Clickjacking</li>
|
|
<li>DoS 공격</li>
|
|
<li>본인에게만 영향이 미치는 취약점(Self XSS 등)</li>
|
|
</ul>
|
|
<h1 className='mt-6 mb-3 text-3xl font-bold text-koreanbots-blue'>취약점을 제보해주신 분들</h1>
|
|
<div className='flex flex-wrap'>
|
|
{
|
|
bugReports.filter(el=>el).map(u =>
|
|
<div key={u.id} className='flex items-center mr-2.5'>
|
|
<DiscordAvatar userID={u.id} size={128} className='rounded-full w-6 h-6 mr-1' />
|
|
<span className='text-base font-semibold dark:text-gray-300'>{u.username}#{u.tag}</span>
|
|
</div>
|
|
)
|
|
}
|
|
</div>
|
|
<ul className='flex flex-wrap mt-2 list-disc list-inside'>
|
|
{
|
|
BUG_REPORT_GROUPS.map((g, i) => <li key={i} className='text-base font-semibold dark:text-gray-300'>
|
|
{g}
|
|
</li>
|
|
)
|
|
}
|
|
</ul>
|
|
<div className='text-center py-36'>
|
|
<h1 className='text-3xl font-bold mb-6'>취약점을 발견하셨나요?</h1>
|
|
<Button href={`mailto:team@koreanbots.dev?subject=[Security] &body=${encodeURI(BODY)}`}>제보하기</Button>
|
|
</div>
|
|
</Docs>
|
|
}
|
|
|
|
export const getServerSideProps: GetServerSideProps<SecurityProps> = async () => {
|
|
return {
|
|
props: {
|
|
bugReports: await Promise.all(BUG_REPORTERS.map(u => get.user.load(u)))
|
|
}
|
|
}
|
|
}
|
|
|
|
export default Security
|
|
|
|
interface SecurityProps {
|
|
bugReports: User[]
|
|
} |