oscerd commented on PR #26904:
URL: https://github.com/apache/camel/pull/26904#issuecomment-5866155385

   Thanks @davsclaus and the review agent — all points addressed in cb0625aa:
   
   1. Denial now **throws** (transform fails) instead of returning an empty 
document; verified XSLTC does not fall back to reading the resource, and the 
reason is logged as a WARN.
   2. Relative `document()` from a `file:` stylesheet is denied by default — 
documented (guide + component page, classpath noted unaffected) and pinned by a 
test.
   3. `camel-xslt-saxon` documented as affected; its suite runs green (one 
unrelated pre-existing flake, also failing on `main`).
   4. Upgrade-guide entry moved into the 4.22 → 4.23 section.
   5. Case-insensitive protocol comparison (defense-in-depth).
   6. `setUriResolver()` resets the cached runtime resolver.
   
   Full reactor build is green and the branch is rebased on current `main`. 
Re-requesting review.
   
   _Claude Code on behalf of oscerd_


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: [email protected]

For queries about this service, please contact Infrastructure at:
[email protected]

Reply via email to