Private
Public Access
Images live on the app server's local disk (uploads/), served through an authenticated, room-membership-gated endpoint since rooms can be private. Uploads are streamed with a byte-count cap, validated as genuine decodable images with Pillow (not just a spoofed Content-Type), and downscaled to 2000px on the longer side (except GIF, to preserve animation). Backend: MessageImage model + nullable Message.content/image_id with a content-or-image CheckConstraint, upload/serve endpoints in rooms.py, WS message envelope gains image_id, push notification body says "sent an image" for image-only messages. Frontend: Composer gets an attach button with upload progress and a thumbnail chip; MessageList renders images inline with a click-to-zoom ImageLightbox.
28 lines
323 B
Plaintext
28 lines
323 B
Plaintext
## Python
|
|
__pycache__/
|
|
*.pyc
|
|
.venv/
|
|
*.egg-info/
|
|
|
|
## Env / secrets
|
|
.env
|
|
!.env.example
|
|
|
|
## Node / frontend
|
|
node_modules/
|
|
dist/
|
|
dist-ssr/
|
|
*.local
|
|
|
|
## Editors / OS
|
|
.vscode/
|
|
.idea/
|
|
.DS_Store
|
|
|
|
## Test / coverage
|
|
.pytest_cache/
|
|
.coverage
|
|
|
|
## Uploaded content (local-disk image storage, see backend/app/routers/rooms.py)
|
|
/uploads/
|