<https://github.com/cofacts/rumors-site/pull/519|#519 Bump decode-uri-component from 0.2.0 to 0.2.2>
Bumps <https://github.com/SamVerschueren/decode-uri-component|decode-uri-component> from 0.2.0 to 0.2.2. Release notes _Sourced from <https://github.com/SamVerschueren/decode-uri-component/releases|decode-uri-component's releases>._ > *v0.2.2* > > • Prevent overwriting previously decoded tokens 980e0bf > > <https://github.com/SamVerschueren/decode-uri-component/compare/v0.2.1...v0.2.2|SamVerschueren/decode-uri-component@v0.2.1...v0.2.2> > > *v0.2.1* > > • Switch to GitHub workflows 76abc93 > • Fix issue where decode throws - fixes <https://github-redirect.dependabot.com/SamVerschueren/decode-uri-component/issues/6|#6> 746ca5d > • Update license (<https://github-redirect.dependabot.com/SamVerschueren/decode-uri-component/issues/1|#1>) 486d7e2 > • Tidelift tasks a650457 > • Meta tweaks 66e1c28 > > <https://github.com/SamVerschueren/decode-uri-component/compare/v0.2.0...v0.2.1|SamVerschueren/decode-uri-component@v0.2.0...v0.2.1> Commits • <https://github.com/SamVerschueren/decode-uri-component/commit/a0eea469d26eb0df668b081672cdb9581feb78eb|`a0eea46`> 0.2.2 • <https://github.com/SamVerschueren/decode-uri-component/commit/980e0bf09b64d94f1aa79012f895816c30ffd152|`980e0bf`> Prevent overwriting previously decoded tokens • <https://github.com/SamVerschueren/decode-uri-component/commit/3c8a373dd4837e89b3f970e01295dd03e1405a33|`3c8a373`> 0.2.1 • <https://github.com/SamVerschueren/decode-uri-component/commit/76abc939783fe3900fadb7d384a74d324d5557f3|`76abc93`> Switch to GitHub workflows • <https://github.com/SamVerschueren/decode-uri-component/commit/746ca5dcb6667c5d364e782d53c542830e4c10b9|`746ca5d`> Fix issue where decode throws - fixes <https://github-redirect.dependabot.com/SamVerschueren/decode-uri-component/issues/6|#6> • <https://github.com/SamVerschueren/decode-uri-component/commit/486d7e26d3a8c0fbe860fb651fe1bc98c2f2be30|`486d7e2`> Update license (<https://github-redirect.dependabot.com/SamVerschueren/decode-uri-component/issues/1|#1>) • <https://github.com/SamVerschueren/decode-uri-component/commit/a65045724e6234acef87f31da499d4807b20b134|`a650457`> Tidelift tasks • <https://github.com/SamVerschueren/decode-uri-component/commit/66e1c2834c0e189201cb65196ec3101372459b02|`66e1c28`> Meta tweaks • See full diff in <https://github.com/SamVerschueren/decode-uri-component/compare/v0.2.0...v0.2.2|compare view> <https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores|Dependabot compatibility score> Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`. * * * Dependabot commands and options You can trigger Dependabot actions by commenting on this PR: • `@dependabot rebase` will rebase this PR • `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it • `@dependabot merge` will merge this PR after your CI passes on it • `@dependabot squash and merge` will squash and merge this PR after your CI passes on it • `@dependabot cancel merge` will cancel a previously requested merge and block automerging • `@dependabot reopen` will reopen this PR if it is closed • `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually • `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) • `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) • `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself) • `@dependabot use these labels` will set the current labels as the default for future PRs for this repo and language • `@dependabot use these reviewers` will set the current reviewers as the default for future PRs for this repo and language • `@dependabot use these assignees` will set the current assignees as the default for future PRs for this repo and language • `@dependabot use this milestone` will set the current milestone as the default for future PRs for this repo and language You can disable automated security fix PRs for this repo from the <https://github.com/cofacts/rumors-site/network/alerts|Security Alerts page>.
:white_check_mark: All checks have passed
<https://github.com/cofacts/rumors-site/pull/519|#519 Bump decode-uri-component from 0.2.0 to 0.2.2>
Bumps <https://github.com/SamVerschueren/decode-uri-component|decode-uri-component> from 0.2.0 to 0.2.2. Release notes _Sourced from <https://github.com/SamVerschueren/decode-uri-component/releases|decode-uri-component's releases>._ > *v0.2.2* > > • Prevent overwriting previously decoded tokens 980e0bf > > <https://github.com/SamVerschueren/decode-uri-component/compare/v0.2.1...v0.2.2|SamVerschueren/decode-uri-component@v0.2.1...v0.2.2> > > *v0.2.1* > > • Switch to GitHub workflows 76abc93 > • Fix issue where decode throws - fixes <https://github-redirect.dependabot.com/SamVerschueren/decode-uri-component/issues/6|#6> 746ca5d > • Update license (<https://github-redirect.dependabot.com/SamVerschueren/decode-uri-component/issues/1|#1>) 486d7e2 > • Tidelift tasks a650457 > • Meta tweaks 66e1c28 > > <https://github.com/SamVerschueren/decode-uri-component/compare/v0.2.0...v0.2.1|SamVerschueren/decode-uri-component@v0.2.0...v0.2.1> Commits • <https://github.com/SamVerschueren/decode-uri-component/commit/a0eea469d26eb0df668b081672cdb9581feb78eb|`a0eea46`> 0.2.2 • <https://github.com/SamVerschueren/decode-uri-component/commit/980e0bf09b64d94f1aa79012f895816c30ffd152|`980e0bf`> Prevent overwriting previously decoded tokens • <https://github.com/SamVerschueren/decode-uri-component/commit/3c8a373dd4837e89b3f970e01295dd03e1405a33|`3c8a373`> 0.2.1 • <https://github.com/SamVerschueren/decode-uri-component/commit/76abc939783fe3900fadb7d384a74d324d5557f3|`76abc93`> Switch to GitHub workflows • <https://github.com/SamVerschueren/decode-uri-component/commit/746ca5dcb6667c5d364e782d53c542830e4c10b9|`746ca5d`> Fix issue where decode throws - fixes <https://github-redirect.dependabot.com/SamVerschueren/decode-uri-component/issues/6|#6> • <https://github.com/SamVerschueren/decode-uri-component/commit/486d7e26d3a8c0fbe860fb651fe1bc98c2f2be30|`486d7e2`> Update license (<https://github-redirect.dependabot.com/SamVerschueren/decode-uri-component/issues/1|#1>) • <https://github.com/SamVerschueren/decode-uri-component/commit/a65045724e6234acef87f31da499d4807b20b134|`a650457`> Tidelift tasks • <https://github.com/SamVerschueren/decode-uri-component/commit/66e1c2834c0e189201cb65196ec3101372459b02|`66e1c28`> Meta tweaks • See full diff in <https://github.com/SamVerschueren/decode-uri-component/compare/v0.2.0...v0.2.2|compare view> <https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores|Dependabot compatibility score> Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`. * * * Dependabot commands and options You can trigger Dependabot actions by commenting on this PR: • `@dependabot rebase` will rebase this PR • `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it • `@dependabot merge` will merge this PR after your CI passes on it • `@dependabot squash and merge` will squash and merge this PR after your CI passes on it • `@dependabot cancel merge` will cancel a previously requested merge and block automerging • `@dependabot reopen` will reopen this PR if it is closed • `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually • `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) • `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) • `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself) • `@dependabot use these labels` will set the current labels as the default for future PRs for this repo and language • `@dependabot use these reviewers` will set the current reviewers as the default for future PRs for this repo and language • `@dependabot use these assignees` will set the current assignees as the default for future PRs for this repo and language • `@dependabot use this milestone` will set the current milestone as the default for future PRs for this repo and language You can disable automated security fix PRs for this repo from the <https://github.com/cofacts/rumors-site/network/alerts|Security Alerts page>.
<https://coveralls.io/builds/54772106|Coverage Status> Coverage remained the same at 76.235% when pulling *<https://github.com/cofacts/rumors-site/commit/281c343a60c00bdabcde8f0c17250b244d58e713|281c343> on dependabot/npm_and_yarn/decode-uri-component-0.2.2* into *<https://github.com/cofacts/rumors-site/commit/bf0362a6f41dbed8331fafa20bbb1002bf55a029|bf0362a> on master*.
<https://coveralls.io/builds/54772106|Coverage Status> Coverage remained the same at 76.235% when pulling *<https://github.com/cofacts/rumors-site/commit/281c343a60c00bdabcde8f0c17250b244d58e713|281c343> on dependabot/npm_and_yarn/decode-uri-component-0.2.2* into *<https://github.com/cofacts/rumors-site/commit/bf0362a6f41dbed8331fafa20bbb1002bf55a029|bf0362a> on master*.
<https://github.com/cofacts/rumors-fb-bot/pull/40|#40 Bump decode-uri-component from 0.2.0 to 0.2.2>
Bumps <https://github.com/SamVerschueren/decode-uri-component|decode-uri-component> from 0.2.0 to 0.2.2. Release notes _Sourced from <https://github.com/SamVerschueren/decode-uri-component/releases|decode-uri-component's releases>._ > *v0.2.2* > > • Prevent overwriting previously decoded tokens 980e0bf > > <https://github.com/SamVerschueren/decode-uri-component/compare/v0.2.1...v0.2.2|SamVerschueren/decode-uri-component@v0.2.1...v0.2.2> > > *v0.2.1* > > • Switch to GitHub workflows 76abc93 > • Fix issue where decode throws - fixes <https://github-redirect.dependabot.com/SamVerschueren/decode-uri-component/issues/6|#6> 746ca5d > • Update license (<https://github-redirect.dependabot.com/SamVerschueren/decode-uri-component/issues/1|#1>) 486d7e2 > • Tidelift tasks a650457 > • Meta tweaks 66e1c28 > > <https://github.com/SamVerschueren/decode-uri-component/compare/v0.2.0...v0.2.1|SamVerschueren/decode-uri-component@v0.2.0...v0.2.1> Commits • <https://github.com/SamVerschueren/decode-uri-component/commit/a0eea469d26eb0df668b081672cdb9581feb78eb|`a0eea46`> 0.2.2 • <https://github.com/SamVerschueren/decode-uri-component/commit/980e0bf09b64d94f1aa79012f895816c30ffd152|`980e0bf`> Prevent overwriting previously decoded tokens • <https://github.com/SamVerschueren/decode-uri-component/commit/3c8a373dd4837e89b3f970e01295dd03e1405a33|`3c8a373`> 0.2.1 • <https://github.com/SamVerschueren/decode-uri-component/commit/76abc939783fe3900fadb7d384a74d324d5557f3|`76abc93`> Switch to GitHub workflows • <https://github.com/SamVerschueren/decode-uri-component/commit/746ca5dcb6667c5d364e782d53c542830e4c10b9|`746ca5d`> Fix issue where decode throws - fixes <https://github-redirect.dependabot.com/SamVerschueren/decode-uri-component/issues/6|#6> • <https://github.com/SamVerschueren/decode-uri-component/commit/486d7e26d3a8c0fbe860fb651fe1bc98c2f2be30|`486d7e2`> Update license (<https://github-redirect.dependabot.com/SamVerschueren/decode-uri-component/issues/1|#1>) • <https://github.com/SamVerschueren/decode-uri-component/commit/a65045724e6234acef87f31da499d4807b20b134|`a650457`> Tidelift tasks • <https://github.com/SamVerschueren/decode-uri-component/commit/66e1c2834c0e189201cb65196ec3101372459b02|`66e1c28`> Meta tweaks • See full diff in <https://github.com/SamVerschueren/decode-uri-component/compare/v0.2.0...v0.2.2|compare view> <https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores|Dependabot compatibility score> Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`. * * * Dependabot commands and options You can trigger Dependabot actions by commenting on this PR: • `@dependabot rebase` will rebase this PR • `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it • `@dependabot merge` will merge this PR after your CI passes on it • `@dependabot squash and merge` will squash and merge this PR after your CI passes on it • `@dependabot cancel merge` will cancel a previously requested merge and block automerging • `@dependabot reopen` will reopen this PR if it is closed • `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually • `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) • `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) • `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself) • `@dependabot use these labels` will set the current labels as the default for future PRs for this repo and language • `@dependabot use these reviewers` will set the current reviewers as the default for future PRs for this repo and language • `@dependabot use these assignees` will set the current assignees as the default for future PRs for this repo and language • `@dependabot use this milestone` will set the current milestone as the default for future PRs for this repo and language You can disable automated security fix PRs for this repo from the <https://github.com/cofacts/rumors-fb-bot/network/alerts|Security Alerts page>.
<https://github.com/cofacts/rumors-fb-bot/pull/40|#40 Bump decode-uri-component from 0.2.0 to 0.2.2>
Bumps <https://github.com/SamVerschueren/decode-uri-component|decode-uri-component> from 0.2.0 to 0.2.2. Release notes _Sourced from <https://github.com/SamVerschueren/decode-uri-component/releases|decode-uri-component's releases>._ > *v0.2.2* > > • Prevent overwriting previously decoded tokens 980e0bf > > <https://github.com/SamVerschueren/decode-uri-component/compare/v0.2.1...v0.2.2|SamVerschueren/decode-uri-component@v0.2.1...v0.2.2> > > *v0.2.1* > > • Switch to GitHub workflows 76abc93 > • Fix issue where decode throws - fixes <https://github-redirect.dependabot.com/SamVerschueren/decode-uri-component/issues/6|#6> 746ca5d > • Update license (<https://github-redirect.dependabot.com/SamVerschueren/decode-uri-component/issues/1|#1>) 486d7e2 > • Tidelift tasks a650457 > • Meta tweaks 66e1c28 > > <https://github.com/SamVerschueren/decode-uri-component/compare/v0.2.0...v0.2.1|SamVerschueren/decode-uri-component@v0.2.0...v0.2.1> Commits • <https://github.com/SamVerschueren/decode-uri-component/commit/a0eea469d26eb0df668b081672cdb9581feb78eb|`a0eea46`> 0.2.2 • <https://github.com/SamVerschueren/decode-uri-component/commit/980e0bf09b64d94f1aa79012f895816c30ffd152|`980e0bf`> Prevent overwriting previously decoded tokens • <https://github.com/SamVerschueren/decode-uri-component/commit/3c8a373dd4837e89b3f970e01295dd03e1405a33|`3c8a373`> 0.2.1 • <https://github.com/SamVerschueren/decode-uri-component/commit/76abc939783fe3900fadb7d384a74d324d5557f3|`76abc93`> Switch to GitHub workflows • <https://github.com/SamVerschueren/decode-uri-component/commit/746ca5dcb6667c5d364e782d53c542830e4c10b9|`746ca5d`> Fix issue where decode throws - fixes <https://github-redirect.dependabot.com/SamVerschueren/decode-uri-component/issues/6|#6> • <https://github.com/SamVerschueren/decode-uri-component/commit/486d7e26d3a8c0fbe860fb651fe1bc98c2f2be30|`486d7e2`> Update license (<https://github-redirect.dependabot.com/SamVerschueren/decode-uri-component/issues/1|#1>) • <https://github.com/SamVerschueren/decode-uri-component/commit/a65045724e6234acef87f31da499d4807b20b134|`a650457`> Tidelift tasks • <https://github.com/SamVerschueren/decode-uri-component/commit/66e1c2834c0e189201cb65196ec3101372459b02|`66e1c28`> Meta tweaks • See full diff in <https://github.com/SamVerschueren/decode-uri-component/compare/v0.2.0...v0.2.2|compare view> <https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores|Dependabot compatibility score> Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`. * * * Dependabot commands and options You can trigger Dependabot actions by commenting on this PR: • `@dependabot rebase` will rebase this PR • `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it • `@dependabot merge` will merge this PR after your CI passes on it • `@dependabot squash and merge` will squash and merge this PR after your CI passes on it • `@dependabot cancel merge` will cancel a previously requested merge and block automerging • `@dependabot reopen` will reopen this PR if it is closed • `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually • `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) • `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) • `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself) • `@dependabot use these labels` will set the current labels as the default for future PRs for this repo and language • `@dependabot use these reviewers` will set the current reviewers as the default for future PRs for this repo and language • `@dependabot use these assignees` will set the current assignees as the default for future PRs for this repo and language • `@dependabot use this milestone` will set the current milestone as the default for future PRs for this repo and language You can disable automated security fix PRs for this repo from the <https://github.com/cofacts/rumors-fb-bot/network/alerts|Security Alerts page>.
<https://github.com/cofacts/rumors-api/pull/293|#293 Add status to article>
• Sync DB field • Creation API `CreateArticle`, `CreateMediaArticle` writes to `status` field • `ListArticles` adds `statuses` filter; do not list out `BLOCKED` articles by default • `relatedArticles` in `Article` do not list out `BLOCKED` articles by default • exception: for blocked articles, its `relatedArticles` will also include blocked articles
:white_check_mark: All checks have passed
<https://github.com/cofacts/rumors-api/pull/293|#293 Add status to article>
• Sync DB field • Creation API `CreateArticle`, `CreateMediaArticle` writes to `status` field • `ListArticles` adds `statuses` filter; do not list out `BLOCKED` articles by default • `relatedArticles` in `Article` do not list out `BLOCKED` articles by default • exception: for blocked articles, its `relatedArticles` will also include blocked articles
:white_check_mark: All checks have passed
<https://coveralls.io/builds/54809457|Coverage Status> Coverage increased (+0.03%) to 87.833% when pulling *<https://github.com/cofacts/rumors-api/commit/dad137bd014c970973c99a20fbcb7251f971a1d6|dad137b> on anti-seo-spam* into *<https://github.com/cofacts/rumors-api/commit/4f97b9f523fda6e90d9b8e4bb92630f838895980|4f97b9f> on master*.
<https://coveralls.io/builds/54809457|Coverage Status> Coverage increased (+0.03%) to 87.833% when pulling *<https://github.com/cofacts/rumors-api/commit/dad137bd014c970973c99a20fbcb7251f971a1d6|dad137b> on anti-seo-spam* into *<https://github.com/cofacts/rumors-api/commit/4f97b9f523fda6e90d9b8e4bb92630f838895980|4f97b9f> on master*.
Migration script: Add a status="NORMAL" to those articles which don't have a `status`. ``` curl -XPOST "{db_url}/articles/_update_by_query" -H 'Content-Type: application/json' -d' { "script": { "source": "ctx._source[\"status\"]=\"NORMAL\";", "lang": "painless" }, "query": { "bool": { "must_not": { "exists": { "field": "status" } } } } }' ```
Migration script: Add a status="NORMAL" to those articles which don't have a `status`. ``` curl -XPOST "{db_url}/articles/_update_by_query" -H 'Content-Type: application/json' -d' { "script": { "source": "ctx._source[\"status\"]=\"NORMAL\";", "lang": "painless" }, "query": { "bool": { "must_not": { "exists": { "field": "status" } } } } }' ```
NHKニュース
台湾 情報戦~市民によるファクトチェック最前線~ | NHK
【NHK】「手袋をして投票すると票は無効になる」「民進党は台湾の半導体メーカーをアメリカに売った」先月、台湾の統一地方選挙の期間中…
HackMD
# Cofacts 會議記錄 ## 2022 - [20221207 會議記錄](/VVIOZobARkegK3vxYdG52Q) - [20221130 會議記錄](/wO4db9f6QNSX
<https://github.com/cofacts/rumors-fb-bot/pull/41|#41 Bump qs from 6.5.2 to 6.5.3>
Bumps <https://github.com/ljharb/qs|qs> from 6.5.2 to 6.5.3. Changelog _Sourced from <https://github.com/ljharb/qs/blob/main/CHANGELOG.md|qs's changelog>._ > **6.5.3** > > • [Fix] `parse`: ignore `__proto__` keys (<https://github-redirect.dependabot.com/ljharb/qs/issues/428|#428>) > • [Fix] `utils.merge`: avoid a crash with a null target and a truthy non-array source > • [Fix] correctly parse nested arrays > • [Fix] `stringify`: fix a crash with `strictNullHandling` and a custom `filter`/`serializeDate` (<https://github-redirect.dependabot.com/ljharb/qs/issues/279|#279>) > • [Fix] `utils`: `merge`: fix crash when `source` is a truthy primitive & no options are provided > • [Fix] when `parseArrays` is false, properly handle keys ending in `[]` > • [Fix] fix for an impossible situation: when the formatter is called with a non-string value > • [Fix] `utils.merge`: avoid a crash with a null target and an array source > • [Refactor] `utils`: reduce observable [[Get]]s > • [Refactor] use cached `Array.isArray` > • [Refactor] `stringify`: Avoid arr = arr.concat(...), push to the existing instance (<https://github-redirect.dependabot.com/ljharb/qs/issues/269|#269>) > • [Refactor] `parse`: only need to reassign the var once > • [Robustness] `stringify`: avoid relying on a global `undefined` (<https://github-redirect.dependabot.com/ljharb/qs/issues/427|#427>) > • [readme] remove travis badge; add github actions/codecov badges; update URLs > • [Docs] Clean up license text so it’s properly detected as BSD-3-Clause > • [Docs] Clarify the need for "arrayLimit" option > • [meta] fix README.md (<https://github-redirect.dependabot.com/ljharb/qs/issues/399|#399>) > • [meta] add FUNDING.yml > • [actions] backport actions from main > • [Tests] always use `String(x)` over `x.toString()` > • [Tests] remove nonexistent tape option > • [Dev Deps] backport from main Commits • <https://github.com/ljharb/qs/commit/298bfa55d6db00ddea78dd0333509aadf9bb3077|`298bfa5`> v6.5.3 • <https://github.com/ljharb/qs/commit/ed0f5dcbef4b168a8ae299d78b1e4a2e9b1baf1f|`ed0f5dc`> [Fix] `parse`: ignore `__proto__` keys (<https://github-redirect.dependabot.com/ljharb/qs/issues/428|#428>) • <https://github.com/ljharb/qs/commit/691e739cfa40cd42604dc05a54e6154371a429ab|`691e739`> [Robustness] `stringify`: avoid relying on a global `undefined` (<https://github-redirect.dependabot.com/ljharb/qs/issues/427|#427>) • <https://github.com/ljharb/qs/commit/1072d57d38a690e1ad7616dced44390bffedcbb2|`1072d57`> [readme] remove travis badge; add github actions/codecov badges; update URLs • <https://github.com/ljharb/qs/commit/12ac1c403aaa04d1a34844f514ed9f9abfb76e64|`12ac1c4`> [meta] fix README.md (<https://github-redirect.dependabot.com/ljharb/qs/issues/399|#399>) • <https://github.com/ljharb/qs/commit/0338716b09fdbd4711823eeb0a14e556a2498e7a|`0338716`> [actions] backport actions from main • <https://github.com/ljharb/qs/commit/5639c20ce0a7c1332200a3181339331483e5a3a1|`5639c20`> Clean up license text so it’s properly detected as BSD-3-Clause • <https://github.com/ljharb/qs/commit/51b8a0b1b213596dd1702b837f5e7dec2229793d|`51b8a0b`> add FUNDING.yml • <https://github.com/ljharb/qs/commit/45f675936e742d92fac8d4dae5cfc385c576a977|`45f6759`> [Fix] fix for an impossible situation: when the formatter is called with a no... • <https://github.com/ljharb/qs/commit/f814a7f8f2af059f8158f7e4b2bf8b46aeb62cd3|`f814a7f`> [Dev Deps] backport from main • Additional commits viewable in <https://github.com/ljharb/qs/compare/v6.5.2...v6.5.3|compare view> <https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores|Dependabot compatibility score> Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`. * * * Dependabot commands and options You can trigger Dependabot actions by commenting on this PR: • `@dependabot rebase` will rebase this PR • `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it • `@dependabot merge` will merge this PR after your CI passes on it • `@dependabot squash and merge` will squash and merge this PR after your CI passes on it • `@dependabot cancel merge` will cancel a previously requested merge and block automerging • `@dependabot reopen` will reopen this PR if it is closed • `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually • `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) • `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) • `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself) • `@dependabot use these labels` will set the current labels as the default for future PRs for this repo and language • `@dependabot use these reviewers` will set the current reviewers as the default for future PRs for this repo and language • `@dependabot use these assignees` will set the current assignees as the default for future PRs for this repo and language • `@dependabot use this milestone` will set the current milestone as the default for future PRs for this repo and language You can disable automated security fix PRs for this repo from the <https://github.com/cofacts/rumors-fb-bot/network/alerts|Security Alerts page>.
<https://github.com/cofacts/rumors-fb-bot/pull/41|#41 Bump qs from 6.5.2 to 6.5.3>
Bumps <https://github.com/ljharb/qs|qs> from 6.5.2 to 6.5.3. Changelog _Sourced from <https://github.com/ljharb/qs/blob/main/CHANGELOG.md|qs's changelog>._ > **6.5.3** > > • [Fix] `parse`: ignore `__proto__` keys (<https://github-redirect.dependabot.com/ljharb/qs/issues/428|#428>) > • [Fix] `utils.merge`: avoid a crash with a null target and a truthy non-array source > • [Fix] correctly parse nested arrays > • [Fix] `stringify`: fix a crash with `strictNullHandling` and a custom `filter`/`serializeDate` (<https://github-redirect.dependabot.com/ljharb/qs/issues/279|#279>) > • [Fix] `utils`: `merge`: fix crash when `source` is a truthy primitive & no options are provided > • [Fix] when `parseArrays` is false, properly handle keys ending in `[]` > • [Fix] fix for an impossible situation: when the formatter is called with a non-string value > • [Fix] `utils.merge`: avoid a crash with a null target and an array source > • [Refactor] `utils`: reduce observable [[Get]]s > • [Refactor] use cached `Array.isArray` > • [Refactor] `stringify`: Avoid arr = arr.concat(...), push to the existing instance (<https://github-redirect.dependabot.com/ljharb/qs/issues/269|#269>) > • [Refactor] `parse`: only need to reassign the var once > • [Robustness] `stringify`: avoid relying on a global `undefined` (<https://github-redirect.dependabot.com/ljharb/qs/issues/427|#427>) > • [readme] remove travis badge; add github actions/codecov badges; update URLs > • [Docs] Clean up license text so it’s properly detected as BSD-3-Clause > • [Docs] Clarify the need for "arrayLimit" option > • [meta] fix README.md (<https://github-redirect.dependabot.com/ljharb/qs/issues/399|#399>) > • [meta] add FUNDING.yml > • [actions] backport actions from main > • [Tests] always use `String(x)` over `x.toString()` > • [Tests] remove nonexistent tape option > • [Dev Deps] backport from main Commits • <https://github.com/ljharb/qs/commit/298bfa55d6db00ddea78dd0333509aadf9bb3077|`298bfa5`> v6.5.3 • <https://github.com/ljharb/qs/commit/ed0f5dcbef4b168a8ae299d78b1e4a2e9b1baf1f|`ed0f5dc`> [Fix] `parse`: ignore `__proto__` keys (<https://github-redirect.dependabot.com/ljharb/qs/issues/428|#428>) • <https://github.com/ljharb/qs/commit/691e739cfa40cd42604dc05a54e6154371a429ab|`691e739`> [Robustness] `stringify`: avoid relying on a global `undefined` (<https://github-redirect.dependabot.com/ljharb/qs/issues/427|#427>) • <https://github.com/ljharb/qs/commit/1072d57d38a690e1ad7616dced44390bffedcbb2|`1072d57`> [readme] remove travis badge; add github actions/codecov badges; update URLs • <https://github.com/ljharb/qs/commit/12ac1c403aaa04d1a34844f514ed9f9abfb76e64|`12ac1c4`> [meta] fix README.md (<https://github-redirect.dependabot.com/ljharb/qs/issues/399|#399>) • <https://github.com/ljharb/qs/commit/0338716b09fdbd4711823eeb0a14e556a2498e7a|`0338716`> [actions] backport actions from main • <https://github.com/ljharb/qs/commit/5639c20ce0a7c1332200a3181339331483e5a3a1|`5639c20`> Clean up license text so it’s properly detected as BSD-3-Clause • <https://github.com/ljharb/qs/commit/51b8a0b1b213596dd1702b837f5e7dec2229793d|`51b8a0b`> add FUNDING.yml • <https://github.com/ljharb/qs/commit/45f675936e742d92fac8d4dae5cfc385c576a977|`45f6759`> [Fix] fix for an impossible situation: when the formatter is called with a no... • <https://github.com/ljharb/qs/commit/f814a7f8f2af059f8158f7e4b2bf8b46aeb62cd3|`f814a7f`> [Dev Deps] backport from main • Additional commits viewable in <https://github.com/ljharb/qs/compare/v6.5.2...v6.5.3|compare view> <https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores|Dependabot compatibility score> Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`. * * * Dependabot commands and options You can trigger Dependabot actions by commenting on this PR: • `@dependabot rebase` will rebase this PR • `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it • `@dependabot merge` will merge this PR after your CI passes on it • `@dependabot squash and merge` will squash and merge this PR after your CI passes on it • `@dependabot cancel merge` will cancel a previously requested merge and block automerging • `@dependabot reopen` will reopen this PR if it is closed • `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually • `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) • `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) • `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself) • `@dependabot use these labels` will set the current labels as the default for future PRs for this repo and language • `@dependabot use these reviewers` will set the current reviewers as the default for future PRs for this repo and language • `@dependabot use these assignees` will set the current assignees as the default for future PRs for this repo and language • `@dependabot use this milestone` will set the current milestone as the default for future PRs for this repo and language You can disable automated security fix PRs for this repo from the <https://github.com/cofacts/rumors-fb-bot/network/alerts|Security Alerts page>.
factcheckcenter.jp
Japan Fact-check Center(JFC)は、ファクトチェック(事実の検証)を専門とする非営利組織です。民主主義の基盤となるインターネット上の言論空間の健全性を維持、向上させることを目的として活動します。
facebook.com
See posts, photos and more on Facebook.
<https://github.com/cofacts/rumors-api/pull/293|#293 Add status to article>
• Sync DB field • Creation API `CreateArticle`, `CreateMediaArticle` writes to `status` field • `ListArticles` adds `statuses` filter; do not list out `BLOCKED` articles by default • `relatedArticles` in `Article` do not list out `BLOCKED` articles by default • exception: for blocked articles, its `relatedArticles` will also include blocked articles
:white_check_mark: All checks have passed
<https://github.com/cofacts/rumors-api/pull/293|#293 Add status to article>
• Sync DB field • Creation API `CreateArticle`, `CreateMediaArticle` writes to `status` field • `ListArticles` adds `statuses` filter; do not list out `BLOCKED` articles by default • `relatedArticles` in `Article` do not list out `BLOCKED` articles by default • exception: for blocked articles, its `relatedArticles` will also include blocked articles
:white_check_mark: All checks have passed
<https://github.com/cofacts/rumors-api/pull/293|#293 Add status to article>
DB migrated successfully. <https://user-images.githubusercontent.com/108608/207125908-efc7836a-20a0-44b2-bf22-978587b22bea.png|圖片>
facebook.com
See posts, photos and more on Facebook.
<https://github.com/cofacts/rumors-site/issues/520|#520 Add links to website footer>
From <https://g0v.hackmd.io/VVIOZobARkegK3vxYdG52Q?view#%E7%B6%B2%E7%AB%99%E8%A8%B1%E9%A1%98|https://g0v.hackmd.io/VVIOZobARkegK3vxYdG52Q?view#%E7%B6%B2%E7%AB%99%E8%A8%B1%E9%A1%98> Add the following links Duplicates <https://github.com/cofacts/rumors-site/issues/430|#430>
<https://github.com/cofacts/rumors-site/issues/520|#520 Add links to website footer>
From <https://g0v.hackmd.io/VVIOZobARkegK3vxYdG52Q?view#%E7%B6%B2%E7%AB%99%E8%A8%B1%E9%A1%98|https://g0v.hackmd.io/VVIOZobARkegK3vxYdG52Q?view#%E7%B6%B2%E7%AB%99%E8%A8%B1%E9%A1%98> Add the following links to website footer <https://user-images.githubusercontent.com/108608/207518672-d9cf7031-e0fe-4635-b891-5e17d8ec3149.png|圖片> Duplicates <https://github.com/cofacts/rumors-site/issues/430|#430>
<https://github.com/cofacts/rumors-site/issues/430|#430 Put Call to Donation Information on website>
We should put donation information on the index, article pages. Reference: <https://donate.wikimedia.org/|https://donate.wikimedia.org/>
<https://github.com/cofacts/rumors-site/issues/430|#430 Put Call to Donation Information on website>
We should put donation information on the index, article pages. Reference: <https://donate.wikimedia.org/|https://donate.wikimedia.org/>
<https://github.com/cofacts/rumors-site/issues/430|#430 Put Call to Donation Information on website>
Will track in <https://github.com/cofacts/rumors-site/issues/520|#520>
<https://github.com/cofacts/rumors-site/issues/521|#521 Add filter to search page>
From <https://g0v.hackmd.io/VVIOZobARkegK3vxYdG52Q#%E7%B6%B2%E7%AB%99%E8%A8%B1%E9%A1%98|https://g0v.hackmd.io/VVIOZobARkegK3vxYdG52Q#%E7%B6%B2%E7%AB%99%E8%A8%B1%E9%A1%98> : <https://user-images.githubusercontent.com/108608/207519514-f5376163-08d3-4bc2-9633-dfb5d8bb0bcc.png|圖片> Add the following new filters to article search page: • No useful reply yet • No any replies
<https://github.com/cofacts/rumors-site/issues/521|#521 Add filter to search page>
From <https://g0v.hackmd.io/VVIOZobARkegK3vxYdG52Q#%E7%B6%B2%E7%AB%99%E8%A8%B1%E9%A1%98|https://g0v.hackmd.io/VVIOZobARkegK3vxYdG52Q#%E7%B6%B2%E7%AB%99%E8%A8%B1%E9%A1%98> : <https://user-images.githubusercontent.com/108608/207519514-f5376163-08d3-4bc2-9633-dfb5d8bb0bcc.png|圖片> Add the following new filters to article search page: • No useful reply yet • No any replies
In <https://g0v.hackmd.io/qWt5V0kYSJCyJxO8epITnw#%E6%AA%A2%E8%88%89%E8%99%95%E7%90%86|20221214 discussion>, we discussed the issue that comments are often leveraged by spammers to show message in popular pages for SEO reasons. It is proposed that we 1. Hide comments with `(upvote - downvote) <= 0` from non-logged in users; show all comments only after the user logs in the website 2. Don't allow user to vote on their own comment.
In <https://g0v.hackmd.io/qWt5V0kYSJCyJxO8epITnw#%E6%AA%A2%E8%88%89%E8%99%95%E7%90%86|20221214 discussion>, we discussed the issue that comments are often leveraged by spammers to show message in popular pages for SEO reasons. It is proposed that we 1. Hide comments with `(upvote - downvote) <= 0` from non-logged in users; show all comments only after the user logs in the website 2. Don't allow user to vote on their own comment.
g0v.hackmd.io
HackMD
# Cofacts 會議記錄 ## 2022 - [20221228 會議記錄](/6c3CpKXhQwOtFX8kf31ePA) - [20221221 會議記錄](/yQkG7XW7TXaB
<https://github.com/cofacts/rumors-site/issues/521|#521 Add filter to search page>
Want to filter "has valid reply" in replies list -- So that users can see good example. Has useful reply = has article reply with positive > negative <https://user-images.githubusercontent.com/108608/209809873-d47b951f-9e1f-492e-8c7f-1bd37cc6af73.png|圖片>