Refuse an empty fit on /v1/image/ with 400 (closes #139) #140

Merged
clawbot merged 2 commits from issue-139-empty-fit-400 into next 2026-09-28 18:07:12 +02:00
2 Commits
Author SHA1 Message Date
sneak 02adb1b91d Refuse an empty fit on /v1/image/ with 400 (closes #139)
check / check (push) Successful in 2m32s
A fit in the URL with an empty value (fit=) was treated as missing, so
it was served as cover and verified against a signature made for cover.
It is now a 400 naming fit, the same rule the route applies to an empty
q. It is checked before the existing fit-mode check, which takes an
empty fit as missing; any other value still goes through that check
unchanged. Only a fit missing from the URL is cover.

Model: opus-5-5
2026-09-28 15:54:21 +00:00
sneak 49d29a8b85 Test that an empty fit on /v1/image/ is refused with 400 (closes #139)
check / check (push) Failing after 1m55s
A fit in the URL with an empty value is served as cover today and
verifies against a signature made for cover. This test asks for a 400
naming fit instead; it fails until the route refuses it.

Model: opus-5-5
2026-09-28 15:51:41 +00:00