[Shotwell] Final call for testing Shotwell 0.5
Martin Olsson
mnemo at minimum.se
Sun Mar 7 13:32:29 PST 2010
Martin Olsson wrote:
> * If you try to publish to Picasa Web Albums and select publish to a new album
> and you enter a single space character as the name, then it says "Service returned
> HTTP status code 400". I think there should be a "START OVER" or "BACK" button on
> this dialog page. Also I think you should prevent the user from pressing Publish
> if trim(album_name)="". Also using the name "<h6>INJECTION" didn't work, maybe
> some people will actually try stuff like "My <HAPPY> Birthday!" or whatever since
> they don't know "<" and ">" is special chars so maybe Shotwell should warm about
> that too?
I noticed that it works very well to create an album called "Lakers > Knicks"
so what you want here is probably for Shotwell to do HTML/XML entity encoding on the
written title before handing it off to the Picasa Web Albums server.
Martin
More information about the Shotwell
mailing list