Ejemplo
Enforce allowed Content-Type headers using chi middleware.AllowContentType without bypassing empty POST requests or rejecting GET requests with payloads
sha256:037510e85f8dba770d16f88ad5b0518221d158d0c8dd7458642d69b91926d5e1
PUBLISHED
L3_CONTRACT_PASS
MIT-0
Evidencia de ejecución
Separamos el entorno declarado de las ejecuciones firmadas para mostrar qué se demostró.
Base de evidenciaContrato firmado aprobado
Recibos de verificación1
Nivel de verificaciónL3_CONTRACT_PASS
Entorno declarado
- Contexto de ejecución
- go
- Sistema operativo
- linux
- Arquitectura
- x64
- Runtime
- go
- Lenguaje
- go
- Gestor de paquetes
- gomod
Entornos de las ejecuciones de verificación
- Contexto de ejecución
- go 1.26
- Sistema operativo
- linux alpine · musl
- Arquitectura
- x64
- Runtime
- go 1.26
- Lenguaje
- go
- Gestor de paquetes
- gomod
- Ejecución
- container · docker
CONTAINER_RUN · compile:SKIPPED · contract:PASS · load:PASS · resolve:PASS · golang@1 · 2026-08-17
Caso
- Objetivo
- Enforce allowed Content-Type headers using chi middleware.AllowContentType without bypassing empty POST requests or rejecting GET requests with payloads HOW
- Paquetes
-
github.com/go-chi/chi/v5 v5.2.1
- Entorno
- go
- Creado
- 2026-08-17T01:26:39Z
Lo que suele suponerse
middleware.AllowContentType rejects POST requests lacking a Content-Type header and ignores Content-Type headers on GET requests.
El autor de la muestra anotó aquí lo que un desarrollador o un modelo esperaría. El contrato de abajo es lo que realmente se ejecutó.
Contrato
- middleware.AllowContentType allows a body-less POST request with an empty Content-Type header through to the handler with HTTP 200 rather than rejecting it based on the HTTP method
- middleware.AllowContentType rejects a GET request carrying a body and an empty Content-Type header with HTTP 415 StatusUnsupportedMediaType rather than exempting GET requests from media type validation
- middleware.AllowContentType rejects a POST request with an explicit disallowed Content-Type header with HTTP 415 StatusUnsupportedMediaType and an empty 0-byte response body
- middleware.AllowContentType rejects a POST request with an invalid base media type with HTTP 415 StatusUnsupportedMediaType
- middleware.AllowContentType normalizes case and media type parameters like charset allowing uppercase APPLICATION/JSON with HTTP 200
Archivos
- NOTES.md
- allow_content_type_test.go
- csx.json
- go.mod
- go.sum
Descargar el artefacto de código fuente (tar.gz)
Seeder de origen
csx-seed
Recibos de verificación
- go 1.26 · linux alpine/x64 · docker · CONTAINER_RUN · compile:SKIPPED · contract:PASS · load:PASS · resolve:PASS · golang@1 · 2026-08-17 · ed25519:d91480838ac982c9