forked from GithubBackups/healthchecks
This fixes a security issue: - attacker can crafts a redirect URL to an external site - attacker gets victim to click on it - victim logs in - after login, Healthchecks redirects victim to the external site The _allow_redirect function now additionally requires the redirect URL is relative (has no scheme or domain).