From 30b34437795eec6f55fb269cb6eff4a4f9da9cfc Mon Sep 17 00:00:00 2001 From: Lin Jen-Shin <godfat@godfat.org> Date: Thu, 7 Apr 2016 04:40:50 +0800 Subject: [PATCH] Now we would be validating authentication token --- lib/gitlab/email/receiver.rb | 3 --- 1 file changed, 3 deletions(-) diff --git a/lib/gitlab/email/receiver.rb b/lib/gitlab/email/receiver.rb index 17293b94b6b..471d10a11a6 100644 --- a/lib/gitlab/email/receiver.rb +++ b/lib/gitlab/email/receiver.rb @@ -91,9 +91,6 @@ module Gitlab authentication_token end - # Find the first matched user in database from email From: section - # TODO: Since this address could be forged, we should have some kind of - # auth token attached somewhere to verify the identity better. def message_sender @message_sender ||= message.from.find do |email| user = User.find_by_any_email(email) -- GitLab