<feed xmlns='http://www.w3.org/2005/Atom'>
<title>vyos-documentation.git/docs, branch agents-md-bot-workflow</title>
<subtitle>VyOS readthedocs (mirror of https://github.com/vyos/vyos-documentation.git)
</subtitle>
<id>https://git.amelek.net/vyos/vyos-documentation.git/atom?h=agents-md-bot-workflow</id>
<link rel='self' href='https://git.amelek.net/vyos/vyos-documentation.git/atom?h=agents-md-bot-workflow'/>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/vyos-documentation.git/'/>
<updated>2026-08-04T10:46:14+00:00</updated>
<entry>
<title> docs: Update DNS forwarding page to VyOS 1.5 standards (#2163)</title>
<updated>2026-08-04T10:46:14+00:00</updated>
<author>
<name>LiudmylaNad</name>
<email>l.nadolina@vyos.io</email>
</author>
<published>2026-08-04T10:46:14+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/vyos-documentation.git/commit/?id=ea6a61f3c36ce24bb8c966a5ae3f3b72934f644f'/>
<id>urn:sha1:ea6a61f3c36ce24bb8c966a5ae3f3b72934f644f</id>
<content type='text'>
* docs: Update DNS forwarding page to VyOS 1.5 standards

* Update dns.md

* Update dns.md</content>
</entry>
<entry>
<title> docs: Update Dynamic DNS page to VyOS 1.5 standards (#2164)</title>
<updated>2026-08-04T10:31:13+00:00</updated>
<author>
<name>LiudmylaNad</name>
<email>l.nadolina@vyos.io</email>
</author>
<published>2026-08-04T10:31:13+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/vyos-documentation.git/commit/?id=4c37cc673e2a5432420e4a3ee85125d854aca168'/>
<id>urn:sha1:4c37cc673e2a5432420e4a3ee85125d854aca168</id>
<content type='text'>
* docs: Update Dynamic DNS page to VyOS 1.5 standards</content>
</entry>
<entry>
<title> docs: Update DHCP Relay page to VyOS 1.5 standards (#2146)</title>
<updated>2026-08-04T10:19:21+00:00</updated>
<author>
<name>LiudmylaNad</name>
<email>l.nadolina@vyos.io</email>
</author>
<published>2026-08-04T10:19:21+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/vyos-documentation.git/commit/?id=8dfcbd186abeeb0646de846e3e52eac5a3879556'/>
<id>urn:sha1:8dfcbd186abeeb0646de846e3e52eac5a3879556</id>
<content type='text'>
</content>
</entry>
<entry>
<title> docs: Update Router Advertisements page to VyOS 1.5 standards (#2132)</title>
<updated>2026-08-04T10:11:23+00:00</updated>
<author>
<name>LiudmylaNad</name>
<email>l.nadolina@vyos.io</email>
</author>
<published>2026-08-04T10:11:23+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/vyos-documentation.git/commit/?id=bbea26757d304f8b0aa261b6faa899027f9eceae'/>
<id>urn:sha1:bbea26757d304f8b0aa261b6faa899027f9eceae</id>
<content type='text'>
* docs: Update Router Advertisements page to VyOS 1.5 standards</content>
</entry>
<entry>
<title> docs: Update HTTP API page to VyOS 1.5 standards (#2131)</title>
<updated>2026-08-04T10:02:32+00:00</updated>
<author>
<name>LiudmylaNad</name>
<email>l.nadolina@vyos.io</email>
</author>
<published>2026-08-04T10:02:32+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/vyos-documentation.git/commit/?id=033d7f5a136f89547659c55013e3485c60767b15'/>
<id>urn:sha1:033d7f5a136f89547659c55013e3485c60767b15</id>
<content type='text'>
* docs: Update HTTP API page to VyOS 1.5 standards

* Clarify the wording about self-signed certificates

* Fix unsual wording regarding DH parameters configuration

* Update https.md

---------

Co-authored-by: Daniil Baturin &lt;daniil@baturin.org&gt;</content>
</entry>
<entry>
<title>vyos-api: clarify comment regarding commit failure and partial commits (#2178)</title>
<updated>2026-08-03T13:21:55+00:00</updated>
<author>
<name>John Estabrook</name>
<email>jestabro@vyos.io</email>
</author>
<published>2026-08-03T13:21:55+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/vyos-documentation.git/commit/?id=4631db6a1578550dd4c1410a8416575899f36936'/>
<id>urn:sha1:4631db6a1578550dd4c1410a8416575899f36936</id>
<content type='text'>
</content>
</entry>
<entry>
<title>docs(Installation): Remove outdated portal link and Proxmox/KVM cloud… (#2176)</title>
<updated>2026-07-31T11:03:03+00:00</updated>
<author>
<name>LiudmylaNad</name>
<email>l.nadolina@vyos.io</email>
</author>
<published>2026-07-31T11:03:03+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/vyos-documentation.git/commit/?id=8c0b48a2baaed09c3268eddf59c2d4485039296c'/>
<id>urn:sha1:8c0b48a2baaed09c3268eddf59c2d4485039296c</id>
<content type='text'>
* docs(Installation): Remove outdated portal link and Proxmox/KVM cloud-init note

* Update install.md</content>
</entry>
<entry>
<title>security: remediate CodeQL code-scanning alerts (#2171)</title>
<updated>2026-07-28T09:16:46+00:00</updated>
<author>
<name>Yuriy Andamasov</name>
<email>yuriy@vyos.io</email>
</author>
<published>2026-07-28T09:16:46+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/vyos-documentation.git/commit/?id=95e9ad86def9b1f33d65a422e1235011e0fb1225'/>
<id>urn:sha1:95e9ad86def9b1f33d65a422e1235011e0fb1225</id>
<content type='text'>
* security: remediate CodeQL code-scanning alerts (picker XSS sinks, test sanitization, vendored DataTables exclusion)

Remediates all 11 open CodeQL alerts on the default branch:

- version-picker.js (js/xss-through-dom, alerts 1-3): percent-encode every
  DOM-derived path component (select.value, parsed location segments) at URL
  construction time via encodePath()/langUrlFor(), and tighten the
  parseLocation slug charset to [A-Za-z0-9._-]. No-op on legitimate sphinx
  slugs — URLs stay byte-identical (asserted by tests).

- workers/apex/test/manifest.test.ts (js/incomplete-multi-character-
  sanitization, alert 6): strip HTML comments from the root.html fixture
  repeatedly to a fixpoint instead of a single pass.

- docs/_static/js/datatables.js (alerts 4,5,7-11): excluded from CodeQL
  analysis via .github/codeql/codeql-config.yml (new codeql-cfg-path input
  to the fleet reusable workflow). The file is vendored stock DataTables
  1.11.5; the flagged helpers are display/sort normalization, not
  sanitization boundaries. Excluding keeps the vendored copy byte-identical
  to upstream instead of hand-patching it.

Adds 9 picker tests (hostile-input encoding + slug-charset accept/reject);
workers suite 103/103 green.

🤖 Generated by [robots](https://vyos.io)

* security: normalize pre-existing percent escapes in encodePath

Adversarial-review finding (Codex, medium): location.pathname returns
well-formed escapes verbatim, so blind encodeURIComponent double-encoded
them (%2E -&gt; %252E), broke the HEAD probe on escaped deep links, and
dumped the user at the version root. Each segment is now decoded first
(malformed escapes keep the raw segment — no throw), then re-encoded to
canonical single encoding. Decoding cannot resurrect dot-segments:
the URL parser resolves '.'/'..' and their percent-encoded forms during
navigation, so pathname never presents them (verified against the WHATWG
parser in Node).

workers suite 106/106 (+2 regression tests, mutation-verified).

🤖 Generated by [robots](https://vyos.io)

* security: normalize percent escapes per run, not per segment

Round-2 adversarial finding (Codex, medium): whole-segment decode meant
one malformed escape (a%20b%zz) threw for the segment and double-encoded
the valid escapes beside it. encodeSegment now decodes+re-encodes each
well-formed %HH run independently; literal spans (including a bare '%')
always pass through encodeURIComponent, so taint neutralization holds
unconditionally; a run decoding to invalid UTF-8 stays verbatim (already
pure %HH text).

workers suite 108/108 (+2 discriminating regression tests).

🤖 Generated by [robots](https://vyos.io)</content>
</entry>
<entry>
<title>docs: exclude superpowers/ from the Sphinx build</title>
<updated>2026-07-28T00:13:48+00:00</updated>
<author>
<name>Yuriy Andamasov</name>
<email>yuriy@vyos.io</email>
</author>
<published>2026-07-28T00:13:48+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/vyos-documentation.git/commit/?id=a9dc16aac2a7e7a6e5e4bb1c19897b3d707ba4d1'/>
<id>urn:sha1:a9dc16aac2a7e7a6e5e4bb1c19897b3d707ba4d1</id>
<content type='text'>
`docs/superpowers/` holds Claude Code plugin-generated internal design
specs and plans, not user documentation. Adding `superpowers` to
`exclude_patterns` guards against Sphinx ever picking the directory up
and publishing it should it reappear in the source tree.

Guard only — the content itself was already removed in 3ab97e71 and
abb8be5b.
</content>
</entry>
<entry>
<title>Merge pull request #2152 from BradKollmyer/vyos-api-doc-gaps-T9087-T9092</title>
<updated>2026-07-21T12:41:44+00:00</updated>
<author>
<name>Viacheslav Hletenko</name>
<email>v.gletenko@vyos.io</email>
</author>
<published>2026-07-21T12:41:44+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/vyos-documentation.git/commit/?id=cce3f36602e285a13efe02bf8906f871f04c5ada'/>
<id>urn:sha1:cce3f36602e285a13efe02bf8906f871f04c5ada</id>
<content type='text'>
vyos-api: fill automation API doc gaps (T9087–T9092)</content>
</entry>
</feed>
