aboutsummaryrefslogtreecommitdiffstats
path: root/mediagoblin/storage.py
diff options
context:
space:
mode:
authorChristopher Allan Webber <cwebber@dustycloud.org>2011-04-09 11:41:09 -0500
committerChristopher Allan Webber <cwebber@dustycloud.org>2011-04-09 11:41:09 -0500
commita6b378ef4d8a30eb1c832ea131167c8f69fc7d34 (patch)
tree61dd1a82f02ed22c10b771e7db0a0c699335dfac /mediagoblin/storage.py
parent9578fe504795fef05f9bfaa802a3d7ee0fa1d440 (diff)
downloadmediagoblin-a6b378ef4d8a30eb1c832ea131167c8f69fc7d34.tar.lz
mediagoblin-a6b378ef4d8a30eb1c832ea131167c8f69fc7d34.tar.xz
mediagoblin-a6b378ef4d8a30eb1c832ea131167c8f69fc7d34.zip
file storage filelist cleaning
Diffstat (limited to 'mediagoblin/storage.py')
-rw-r--r--mediagoblin/storage.py41
1 files changed, 41 insertions, 0 deletions
diff --git a/mediagoblin/storage.py b/mediagoblin/storage.py
new file mode 100644
index 00000000..c06cb3a8
--- /dev/null
+++ b/mediagoblin/storage.py
@@ -0,0 +1,41 @@
+# GNU Mediagoblin -- federated, autonomous media hosting
+# Copyright (C) 2011 Free Software Foundation, Inc
+#
+# This program is free software: you can redistribute it and/or modify
+# it under the terms of the GNU Affero General Public License as published by
+# the Free Software Foundation, either version 3 of the License, or
+# (at your option) any later version.
+#
+# This program is distributed in the hope that it will be useful,
+# but WITHOUT ANY WARRANTY; without even the implied warranty of
+# MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
+# GNU Affero General Public License for more details.
+#
+# You should have received a copy of the GNU Affero General Public License
+# along with this program. If not, see <http://www.gnu.org/licenses/>.
+
+
+from werkzeug.utils import secure_filename
+
+
+def clean_listy_filepath(listy_filepath):
+ """
+ Take a listy filepath (like ['dir1', 'dir2', 'filename.jpg']) and
+ clean out any nastiness from it.
+
+ For example:
+ >>> clean_listy_filepath([u'/dir1/', u'foo/../nasty', u'linooks.jpg'])
+ [u'dir1', u'foo_.._nasty', u'linooks.jpg']
+
+ Args:
+ - listy_filepath: a list of filepath components, mediagoblin
+ storage API style.
+
+ Returns:
+ A cleaned list of unicode objects.
+ """
+ return [
+ unicode(secure_filename(filepath))
+ for filepath in listy_filepath]
+
+