Accept any POP3 USER/PASS from the client and discard them. The proxy always authenticates to the IMAP backend with the configured BACKEND_IMAP_USER / BACKEND_IMAP_PASS.
Changes
handle_user / handle_pass: accept client credentials unconditionally, no validation.
authenticate: always use backend credentials; remove the fallback that connected with client-supplied credentials when backend credentials were unset. Raise a clear configuration error when backend credentials are missing.
Tests: client credentials are ignored; missing backend credentials are reported.
Accept any POP3 `USER`/`PASS` from the client and discard them. The proxy always authenticates to the IMAP backend with the configured `BACKEND_IMAP_USER` / `BACKEND_IMAP_PASS`.
## Changes
- `handle_user` / `handle_pass`: accept client credentials unconditionally, no validation.
- `authenticate`: always use backend credentials; remove the fallback that connected with client-supplied credentials when backend credentials were unset. Raise a clear configuration error when backend credentials are missing.
- Tests: client credentials are ignored; missing backend credentials are reported.
Closes #14
POP3 clients may be required to send USER/PASS, but the proxy never uses
them. Accept any client credentials blindly and always authenticate to the
IMAP backend with the configured BACKEND_IMAP_USER / BACKEND_IMAP_PASS.
Remove the previous fallback that connected to the backend using
client-supplied credentials when backend credentials were unset; the proxy
now raises a clear configuration error in that case.
Add tests covering that client credentials are ignored and that missing
backend credentials are reported.
Co-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>
Blocking a user prevents them from interacting with repositories, such as opening or commenting on pull requests or issues. Learn more about blocking a user.
Accept any POP3
USER/PASSfrom the client and discard them. The proxy always authenticates to the IMAP backend with the configuredBACKEND_IMAP_USER/BACKEND_IMAP_PASS.Changes
handle_user/handle_pass: accept client credentials unconditionally, no validation.authenticate: always use backend credentials; remove the fallback that connected with client-supplied credentials when backend credentials were unset. Raise a clear configuration error when backend credentials are missing.Closes #14