Skip to content

basalt / webhooks/src / pinnedLookup

Function: pinnedLookup() ​

> pinnedLookup(address, family): LookupFunction

Defined in: webhooks/src/ssrf.ts:342

Builds a Node lookup function (for the http/https agent lookup option) that ALWAYS returns the already-validated address, ignoring the hostname it is asked to resolve. This is what pins the socket to the validated IP and defeats DNS rebinding — no second, attacker-controlled resolution can happen.

Parameters ​

address ​

string

family ​

number

Returns ​

LookupFunction

Released under the MIT License.