تاریخچه Commit ها

نویسنده SHA1 پیام تاریخ
  chiappa 40be6c1875 fix: auto-revoke previous service tokens on rotation (SEC_REVIEW F13) 5 روز پیش
  chiappa 6395be9919 docs: mark SEC_REVIEW F12 as fixed in 4006743 5 روز پیش
  chiappa 400674340e fix: harden local-admin lookup against is_local-flip tamper (SEC_REVIEW F12) 5 روز پیش
  chiappa 57327dd6ac docs: mark SEC_REVIEW F11 as fixed in f2dd3fd 5 روز پیش
  chiappa f2dd3fddee fix: gate impersonation on user active-status, add actor_via audit signal (SEC_REVIEW F11) 5 روز پیش
  chiappa 2d08caf5d4 docs: mark SEC_REVIEW F10 as fixed in 55156c5 5 روز پیش
  chiappa 55156c51d8 fix: validate next-redirect targets to block off-origin Location values (SEC_REVIEW F10) 5 روز پیش
  chiappa 3a0f2b86a4 docs: mark SEC_REVIEW F9 as fixed in 2a57589 5 روز پیش
  chiappa 2a5758925c fix: rotate session id at /login/oidc before OIDC state is stashed (SEC_REVIEW F9) 5 روز پیش
  chiappa 7032bda148 docs: mark SEC_REVIEW F8 as fixed in f811b25 5 روز پیش
  chiappa f811b25734 fix: fail-closed on session id rotation when headers already sent (SEC_REVIEW F8) 5 روز پیش
  chiappa ba4072b01e docs: mark SEC_REVIEW F7 as fixed in 84238e6 5 روز پیش
  chiappa 84238e6592 fix: run password_verify on every local-login attempt for constant-time response (SEC_REVIEW F7) 5 روز پیش
  chiappa 97b49c87b4 docs: mark SEC_REVIEW F6 as fixed in d119b72 5 روز پیش
  chiappa d119b72dfe fix: persist login throttle state to a file shared by FrankenPHP workers (SEC_REVIEW F6) 5 روز پیش
  chiappa 5a749338b2 docs: mark SEC_REVIEW F4 and F5 as fixed in 8d948ae 6 روز پیش
  chiappa 8d948ae676 fix: make admin audit emit transactional with mutation (SEC_REVIEW F4, F5) 6 روز پیش
  chiappa ffa20733d1 docs: mark SEC_REVIEW F3 as fixed in 8a94dff 6 روز پیش
  chiappa 8a94dff6ae fix: enforce single local-admin row in upsertLocal (SEC_REVIEW F3) 6 روز پیش
  chiappa 41db33781f docs: mark SEC_REVIEW F1 and F2 as fixed in 466d686 6 روز پیش
  chiappa 466d686840 fix: harden local-login throttle against XFF spoof and IP rotation 6 روز پیش
  chiappa 9ca5a4ad91 docs: add SEC_REVIEW.md with multi-agent security review findings 6 روز پیش
  chiappa c3ad5bcd77 style: rework chart palette to a clean glass-like aesthetic 1 هفته پیش
  chiappa c3e657bca8 style: mute chart palette to match logo's emerald brand colors 1 هفته پیش
  chiappa 717c0a5c2b feat: subject filter for audit log; show actor-emitted rows on detail 1 هفته پیش
  chiappa 7622fd201b feat: per-category blocked-IP dashboard chart + token purge 1 هفته پیش
  chiappa f47973313b feat: per-reporter/consumer audit-log toggle on edit pages 1 هفته پیش
  chiappa 61a26affe1 feat: audit reporter ingest and consumer blocklist pulls with toggles 1 هفته پیش
  chiappa c91b4601fc docs: add per-component changelogs and cut 1.0.0 baseline 1 هفته پیش
  chiappa 629c8955c2 docs(examples): fix postman README admin-token command 1 هفته پیش