Skip to content

fix: use status_code for four sites with stale message rules - #3062

Open
cvltivar wants to merge 2 commits into
sherlock-project:masterfrom
cvltivar:fix-failopen-message-rules
Open

cvltivar wants to merge 2 commits into
sherlock-project:masterfrom
cvltivar:fix-failopen-message-rules

Conversation

@cvltivar

@cvltivar cvltivar commented Aug 3, 2026

Copy link
Copy Markdown

Chatujme.cz, Discord.bio, ReverbNation and interpals return 404 for missing users, so status_code is both correct and fail-closed.

Their configured errorMsg strings no longer appear on the page, and a message rule infers "account exists" from the absence of that string — so all four currently report a hit for every username.

Chatujme.cz, Discord.bio, ReverbNation and interpals return 404 for
missing users, so status_code is both correct and fail-closed.

Their configured errorMsg strings no longer appear on the page, and a
message rule infers "account exists" from the absence of that string —
so all four currently report a hit for every username.
Switching these two to status_code also switched Sherlock from GET to
HEAD, which broke them in different ways:

  Chatujme.cz  HEAD returns 200 for every username; GET returns 404
  interpals    HEAD enters an infinite redirect loop; GET returns 404

Both are corrected by request_method: GET, matching the existing pattern
used by Aparat, CyberDefenders and others.

tests/test_validate_targets.py passes for all four sites across repeated
runs.
@github-actions

github-actions Bot commented Aug 3, 2026

Copy link
Copy Markdown
Contributor

Automatic validation of changes

Target F+ Check F- Check
Chatujme.cz ✔️   Pass ✔️   Pass
Discord.bio ✔️   Pass ✔️   Pass
ReverbNation ✔️   Pass ✔️   Pass
interpals ✔️   Pass ✔️   Pass

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant