lib.rs 15 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471
  1. // Copyright 2013-2016 The rust-url developers.
  2. //
  3. // Licensed under the Apache License, Version 2.0 <LICENSE-APACHE or
  4. // http://www.apache.org/licenses/LICENSE-2.0> or the MIT license
  5. // <LICENSE-MIT or http://opensource.org/licenses/MIT>, at your
  6. // option. This file may not be copied, modified, or distributed
  7. // except according to those terms.
  8. //! URLs use special chacters to indicate the parts of the request.
  9. //! For example, a `?` question mark marks the end of a path and the start of a query string.
  10. //! In order for that character to exist inside a path, it needs to be encoded differently.
  11. //!
  12. //! Percent encoding replaces reserved characters with the `%` escape character
  13. //! followed by a byte value as two hexadecimal digits.
  14. //! For example, an ASCII space is replaced with `%20`.
  15. //!
  16. //! When encoding, the set of characters that can (and should, for readability) be left alone
  17. //! depends on the context.
  18. //! The `?` question mark mentioned above is not a separator when used literally
  19. //! inside of a query string, and therefore does not need to be encoded.
  20. //! The [`AsciiSet`] parameter of [`percent_encode`] and [`utf8_percent_encode`]
  21. //! lets callers configure this.
  22. //!
  23. //! This crate delibarately does not provide many different sets.
  24. //! Users should consider in what context the encoded string will be used,
  25. //! read relevant specifications, and define their own set.
  26. //! This is done by using the `add` method of an existing set.
  27. //!
  28. //! # Examples
  29. //!
  30. //! ```
  31. //! use percent_encoding::{utf8_percent_encode, AsciiSet, CONTROLS};
  32. //!
  33. //! /// https://url.spec.whatwg.org/#fragment-percent-encode-set
  34. //! const FRAGMENT: &AsciiSet = &CONTROLS.add(b' ').add(b'"').add(b'<').add(b'>').add(b'`');
  35. //!
  36. //! assert_eq!(utf8_percent_encode("foo <bar>", FRAGMENT).to_string(), "foo%20%3Cbar%3E");
  37. //! ```
  38. #![cfg_attr(not(feature = "std"), no_std)]
  39. #[cfg(not(feature = "std"))]
  40. use core::{fmt, mem, slice, str};
  41. #[cfg(feature = "std")]
  42. use std::borrow::Cow;
  43. #[cfg(feature = "std")]
  44. use std::{fmt, mem, slice, str};
  45. /// Represents a set of characters or bytes in the ASCII range.
  46. ///
  47. /// This used in [`percent_encode`] and [`utf8_percent_encode`].
  48. /// This is simlar to [percent-encode sets](https://url.spec.whatwg.org/#percent-encoded-bytes).
  49. ///
  50. /// Use the `add` method of an existing set to define a new set. For example:
  51. ///
  52. /// ```
  53. /// use percent_encoding::{AsciiSet, CONTROLS};
  54. ///
  55. /// /// https://url.spec.whatwg.org/#fragment-percent-encode-set
  56. /// const FRAGMENT: &AsciiSet = &CONTROLS.add(b' ').add(b'"').add(b'<').add(b'>').add(b'`');
  57. /// ```
  58. pub struct AsciiSet {
  59. mask: [Chunk; ASCII_RANGE_LEN / BITS_PER_CHUNK],
  60. }
  61. type Chunk = u32;
  62. const ASCII_RANGE_LEN: usize = 0x80;
  63. const BITS_PER_CHUNK: usize = 8 * mem::size_of::<Chunk>();
  64. impl AsciiSet {
  65. /// Called with UTF-8 bytes rather than code points.
  66. /// Not used for non-ASCII bytes.
  67. const fn contains(&self, byte: u8) -> bool {
  68. let chunk = self.mask[byte as usize / BITS_PER_CHUNK];
  69. let mask = 1 << (byte as usize % BITS_PER_CHUNK);
  70. (chunk & mask) != 0
  71. }
  72. fn should_percent_encode(&self, byte: u8) -> bool {
  73. !byte.is_ascii() || self.contains(byte)
  74. }
  75. pub const fn add(&self, byte: u8) -> Self {
  76. let mut mask = self.mask;
  77. mask[byte as usize / BITS_PER_CHUNK] |= 1 << (byte as usize % BITS_PER_CHUNK);
  78. AsciiSet { mask }
  79. }
  80. pub const fn remove(&self, byte: u8) -> Self {
  81. let mut mask = self.mask;
  82. mask[byte as usize / BITS_PER_CHUNK] &= !(1 << (byte as usize % BITS_PER_CHUNK));
  83. AsciiSet { mask }
  84. }
  85. }
  86. /// The set of 0x00 to 0x1F (C0 controls), and 0x7F (DEL).
  87. ///
  88. /// Note that this includes the newline and tab characters, but not the space 0x20.
  89. ///
  90. /// <https://url.spec.whatwg.org/#c0-control-percent-encode-set>
  91. pub const CONTROLS: &AsciiSet = &AsciiSet {
  92. mask: [
  93. !0_u32, // C0: 0x00 to 0x1F (32 bits set)
  94. 0,
  95. 0,
  96. 1 << (0x7F_u32 % 32), // DEL: 0x7F (one bit set)
  97. ],
  98. };
  99. macro_rules! static_assert {
  100. ($( $bool: expr, )+) => {
  101. fn _static_assert() {
  102. $(
  103. let _ = mem::transmute::<[u8; $bool as usize], u8>;
  104. )+
  105. }
  106. }
  107. }
  108. static_assert! {
  109. CONTROLS.contains(0x00),
  110. CONTROLS.contains(0x1F),
  111. !CONTROLS.contains(0x20),
  112. !CONTROLS.contains(0x7E),
  113. CONTROLS.contains(0x7F),
  114. }
  115. /// Everything that is not an ASCII letter or digit.
  116. ///
  117. /// This is probably more eager than necessary in any context.
  118. pub const NON_ALPHANUMERIC: &AsciiSet = &CONTROLS
  119. .add(b' ')
  120. .add(b'!')
  121. .add(b'"')
  122. .add(b'#')
  123. .add(b'$')
  124. .add(b'%')
  125. .add(b'&')
  126. .add(b'\'')
  127. .add(b'(')
  128. .add(b')')
  129. .add(b'*')
  130. .add(b'+')
  131. .add(b',')
  132. .add(b'-')
  133. .add(b'.')
  134. .add(b'/')
  135. .add(b':')
  136. .add(b';')
  137. .add(b'<')
  138. .add(b'=')
  139. .add(b'>')
  140. .add(b'?')
  141. .add(b'@')
  142. .add(b'[')
  143. .add(b'\\')
  144. .add(b']')
  145. .add(b'^')
  146. .add(b'_')
  147. .add(b'`')
  148. .add(b'{')
  149. .add(b'|')
  150. .add(b'}')
  151. .add(b'~');
  152. /// Return the percent-encoding of the given byte.
  153. ///
  154. /// This is unconditional, unlike `percent_encode()` which has an `AsciiSet` parameter.
  155. ///
  156. /// # Examples
  157. ///
  158. /// ```
  159. /// use percent_encoding::percent_encode_byte;
  160. ///
  161. /// assert_eq!("foo bar".bytes().map(percent_encode_byte).collect::<String>(),
  162. /// "%66%6F%6F%20%62%61%72");
  163. /// ```
  164. pub fn percent_encode_byte(byte: u8) -> &'static str {
  165. let index = usize::from(byte) * 3;
  166. &"\
  167. %00%01%02%03%04%05%06%07%08%09%0A%0B%0C%0D%0E%0F\
  168. %10%11%12%13%14%15%16%17%18%19%1A%1B%1C%1D%1E%1F\
  169. %20%21%22%23%24%25%26%27%28%29%2A%2B%2C%2D%2E%2F\
  170. %30%31%32%33%34%35%36%37%38%39%3A%3B%3C%3D%3E%3F\
  171. %40%41%42%43%44%45%46%47%48%49%4A%4B%4C%4D%4E%4F\
  172. %50%51%52%53%54%55%56%57%58%59%5A%5B%5C%5D%5E%5F\
  173. %60%61%62%63%64%65%66%67%68%69%6A%6B%6C%6D%6E%6F\
  174. %70%71%72%73%74%75%76%77%78%79%7A%7B%7C%7D%7E%7F\
  175. %80%81%82%83%84%85%86%87%88%89%8A%8B%8C%8D%8E%8F\
  176. %90%91%92%93%94%95%96%97%98%99%9A%9B%9C%9D%9E%9F\
  177. %A0%A1%A2%A3%A4%A5%A6%A7%A8%A9%AA%AB%AC%AD%AE%AF\
  178. %B0%B1%B2%B3%B4%B5%B6%B7%B8%B9%BA%BB%BC%BD%BE%BF\
  179. %C0%C1%C2%C3%C4%C5%C6%C7%C8%C9%CA%CB%CC%CD%CE%CF\
  180. %D0%D1%D2%D3%D4%D5%D6%D7%D8%D9%DA%DB%DC%DD%DE%DF\
  181. %E0%E1%E2%E3%E4%E5%E6%E7%E8%E9%EA%EB%EC%ED%EE%EF\
  182. %F0%F1%F2%F3%F4%F5%F6%F7%F8%F9%FA%FB%FC%FD%FE%FF\
  183. "[index..index + 3]
  184. }
  185. /// Percent-encode the given bytes with the given set.
  186. ///
  187. /// Non-ASCII bytes and bytes in `ascii_set` are encoded.
  188. ///
  189. /// The return type:
  190. ///
  191. /// * Implements `Iterator<Item = &str>` and therefore has a `.collect::<String>()` method,
  192. /// * Implements `Display` and therefore has a `.to_string()` method,
  193. /// * Implements `Into<Cow<str>>` borrowing `input` when none of its bytes are encoded.
  194. ///
  195. /// # Examples
  196. ///
  197. /// ```
  198. /// use percent_encoding::{percent_encode, NON_ALPHANUMERIC};
  199. ///
  200. /// assert_eq!(percent_encode(b"foo bar?", NON_ALPHANUMERIC).to_string(), "foo%20bar%3F");
  201. /// ```
  202. #[inline]
  203. pub fn percent_encode<'a>(input: &'a [u8], ascii_set: &'static AsciiSet) -> PercentEncode<'a> {
  204. PercentEncode {
  205. bytes: input,
  206. ascii_set,
  207. }
  208. }
  209. /// Percent-encode the UTF-8 encoding of the given string.
  210. ///
  211. /// See [`percent_encode`] regarding the return type.
  212. ///
  213. /// # Examples
  214. ///
  215. /// ```
  216. /// use percent_encoding::{utf8_percent_encode, NON_ALPHANUMERIC};
  217. ///
  218. /// assert_eq!(utf8_percent_encode("foo bar?", NON_ALPHANUMERIC).to_string(), "foo%20bar%3F");
  219. /// ```
  220. #[inline]
  221. pub fn utf8_percent_encode<'a>(input: &'a str, ascii_set: &'static AsciiSet) -> PercentEncode<'a> {
  222. percent_encode(input.as_bytes(), ascii_set)
  223. }
  224. /// The return type of [`percent_encode`] and [`utf8_percent_encode`].
  225. #[derive(Clone)]
  226. pub struct PercentEncode<'a> {
  227. bytes: &'a [u8],
  228. ascii_set: &'static AsciiSet,
  229. }
  230. impl<'a> Iterator for PercentEncode<'a> {
  231. type Item = &'a str;
  232. fn next(&mut self) -> Option<&'a str> {
  233. if let Some((&first_byte, remaining)) = self.bytes.split_first() {
  234. if self.ascii_set.should_percent_encode(first_byte) {
  235. self.bytes = remaining;
  236. Some(percent_encode_byte(first_byte))
  237. } else {
  238. // The unsafe blocks here are appropriate because the bytes are
  239. // confirmed as a subset of UTF-8 in should_percent_encode.
  240. for (i, &byte) in remaining.iter().enumerate() {
  241. if self.ascii_set.should_percent_encode(byte) {
  242. // 1 for first_byte + i for previous iterations of this loop
  243. let (unchanged_slice, remaining) = self.bytes.split_at(1 + i);
  244. self.bytes = remaining;
  245. return Some(unsafe { str::from_utf8_unchecked(unchanged_slice) });
  246. }
  247. }
  248. let unchanged_slice = self.bytes;
  249. self.bytes = &[][..];
  250. Some(unsafe { str::from_utf8_unchecked(unchanged_slice) })
  251. }
  252. } else {
  253. None
  254. }
  255. }
  256. fn size_hint(&self) -> (usize, Option<usize>) {
  257. if self.bytes.is_empty() {
  258. (0, Some(0))
  259. } else {
  260. (1, Some(self.bytes.len()))
  261. }
  262. }
  263. }
  264. impl<'a> fmt::Display for PercentEncode<'a> {
  265. fn fmt(&self, formatter: &mut fmt::Formatter<'_>) -> fmt::Result {
  266. for c in (*self).clone() {
  267. formatter.write_str(c)?
  268. }
  269. Ok(())
  270. }
  271. }
  272. #[cfg(feature = "std")]
  273. impl<'a> From<PercentEncode<'a>> for Cow<'a, str> {
  274. fn from(mut iter: PercentEncode<'a>) -> Self {
  275. match iter.next() {
  276. None => "".into(),
  277. Some(first) => match iter.next() {
  278. None => first.into(),
  279. Some(second) => {
  280. let mut string = first.to_owned();
  281. string.push_str(second);
  282. string.extend(iter);
  283. string.into()
  284. }
  285. },
  286. }
  287. }
  288. }
  289. /// Percent-decode the given string.
  290. ///
  291. /// <https://url.spec.whatwg.org/#string-percent-decode>
  292. ///
  293. /// See [`percent_decode`] regarding the return type.
  294. #[inline]
  295. pub fn percent_decode_str(input: &str) -> PercentDecode<'_> {
  296. percent_decode(input.as_bytes())
  297. }
  298. /// Percent-decode the given bytes.
  299. ///
  300. /// <https://url.spec.whatwg.org/#percent-decode>
  301. ///
  302. /// Any sequence of `%` followed by two hexadecimal digits is decoded.
  303. /// The return type:
  304. ///
  305. /// * Implements `Into<Cow<u8>>` borrowing `input` when it contains no percent-encoded sequence,
  306. /// * Implements `Iterator<Item = u8>` and therefore has a `.collect::<Vec<u8>>()` method,
  307. /// * Has `decode_utf8()` and `decode_utf8_lossy()` methods.
  308. ///
  309. #[cfg_attr(
  310. feature = "std",
  311. doc = r##"
  312. # Examples
  313. ```
  314. use percent_encoding::percent_decode;
  315. assert_eq!(percent_decode(b"foo%20bar%3f").decode_utf8().unwrap(), "foo bar?");
  316. ```
  317. "##
  318. )]
  319. #[inline]
  320. pub fn percent_decode(input: &[u8]) -> PercentDecode<'_> {
  321. PercentDecode {
  322. bytes: input.iter(),
  323. }
  324. }
  325. /// The return type of [`percent_decode`].
  326. #[derive(Clone, Debug)]
  327. pub struct PercentDecode<'a> {
  328. bytes: slice::Iter<'a, u8>,
  329. }
  330. fn after_percent_sign(iter: &mut slice::Iter<'_, u8>) -> Option<u8> {
  331. let mut cloned_iter = iter.clone();
  332. let h = char::from(*cloned_iter.next()?).to_digit(16)?;
  333. let l = char::from(*cloned_iter.next()?).to_digit(16)?;
  334. *iter = cloned_iter;
  335. Some(h as u8 * 0x10 + l as u8)
  336. }
  337. impl<'a> Iterator for PercentDecode<'a> {
  338. type Item = u8;
  339. fn next(&mut self) -> Option<u8> {
  340. self.bytes.next().map(|&byte| {
  341. if byte == b'%' {
  342. after_percent_sign(&mut self.bytes).unwrap_or(byte)
  343. } else {
  344. byte
  345. }
  346. })
  347. }
  348. fn size_hint(&self) -> (usize, Option<usize>) {
  349. let bytes = self.bytes.len();
  350. ((bytes + 2) / 3, Some(bytes))
  351. }
  352. }
  353. #[cfg(feature = "std")]
  354. impl<'a> From<PercentDecode<'a>> for Cow<'a, [u8]> {
  355. fn from(iter: PercentDecode<'a>) -> Self {
  356. match iter.if_any() {
  357. Some(vec) => Cow::Owned(vec),
  358. None => Cow::Borrowed(iter.bytes.as_slice()),
  359. }
  360. }
  361. }
  362. impl<'a> PercentDecode<'a> {
  363. /// If the percent-decoding is different from the input, return it as a new bytes vector.
  364. #[cfg(feature = "std")]
  365. fn if_any(&self) -> Option<Vec<u8>> {
  366. let mut bytes_iter = self.bytes.clone();
  367. while bytes_iter.any(|&b| b == b'%') {
  368. if let Some(decoded_byte) = after_percent_sign(&mut bytes_iter) {
  369. let initial_bytes = self.bytes.as_slice();
  370. let unchanged_bytes_len = initial_bytes.len() - bytes_iter.len() - 3;
  371. let mut decoded = initial_bytes[..unchanged_bytes_len].to_owned();
  372. decoded.push(decoded_byte);
  373. decoded.extend(PercentDecode { bytes: bytes_iter });
  374. return Some(decoded);
  375. }
  376. }
  377. // Nothing to decode
  378. None
  379. }
  380. /// Decode the result of percent-decoding as UTF-8.
  381. ///
  382. /// This is return `Err` when the percent-decoded bytes are not well-formed in UTF-8.
  383. #[cfg(feature = "std")]
  384. pub fn decode_utf8(self) -> Result<Cow<'a, str>, str::Utf8Error> {
  385. match self.clone().into() {
  386. Cow::Borrowed(bytes) => match str::from_utf8(bytes) {
  387. Ok(s) => Ok(s.into()),
  388. Err(e) => Err(e),
  389. },
  390. Cow::Owned(bytes) => match String::from_utf8(bytes) {
  391. Ok(s) => Ok(s.into()),
  392. Err(e) => Err(e.utf8_error()),
  393. },
  394. }
  395. }
  396. /// Decode the result of percent-decoding as UTF-8, lossily.
  397. ///
  398. /// Invalid UTF-8 percent-encoded byte sequences will be replaced � U+FFFD,
  399. /// the replacement character.
  400. #[cfg(feature = "std")]
  401. pub fn decode_utf8_lossy(self) -> Cow<'a, str> {
  402. decode_utf8_lossy(self.clone().into())
  403. }
  404. }
  405. #[cfg(feature = "std")]
  406. fn decode_utf8_lossy(input: Cow<'_, [u8]>) -> Cow<'_, str> {
  407. // Note: This function is duplicated in `form_urlencoded/src/query_encoding.rs`.
  408. match input {
  409. Cow::Borrowed(bytes) => String::from_utf8_lossy(bytes),
  410. Cow::Owned(bytes) => {
  411. match String::from_utf8_lossy(&bytes) {
  412. Cow::Borrowed(utf8) => {
  413. // If from_utf8_lossy returns a Cow::Borrowed, then we can
  414. // be sure our original bytes were valid UTF-8. This is because
  415. // if the bytes were invalid UTF-8 from_utf8_lossy would have
  416. // to allocate a new owned string to back the Cow so it could
  417. // replace invalid bytes with a placeholder.
  418. // First we do a debug_assert to confirm our description above.
  419. let raw_utf8: *const [u8];
  420. raw_utf8 = utf8.as_bytes();
  421. debug_assert!(raw_utf8 == &*bytes as *const [u8]);
  422. // Given we know the original input bytes are valid UTF-8,
  423. // and we have ownership of those bytes, we re-use them and
  424. // return a Cow::Owned here.
  425. Cow::Owned(unsafe { String::from_utf8_unchecked(bytes) })
  426. }
  427. Cow::Owned(s) => Cow::Owned(s),
  428. }
  429. }
  430. }
  431. }