basalt / webhooks/src / pinnedLookup
Function: pinnedLookup()
> pinnedLookup(address, family): LookupFunction
Defined in: webhooks/src/ssrf.ts:342
Builds a Node lookup function (for the http/https agent lookup option) that ALWAYS returns the already-validated address, ignoring the hostname it is asked to resolve. This is what pins the socket to the validated IP and defeats DNS rebinding — no second, attacker-controlled resolution can happen.
Parameters
address
string
family
number
Returns
LookupFunction