Historique des commits

Auteur SHA1 Message Date
  chiappa 5232f10cd9 docs: mark SEC_REVIEW F22 as fixed in d9006eb il y a 5 jours
  chiappa d9006ebae7 fix: build scheduler sidecar from pinned image (SEC_REVIEW F22) il y a 5 jours
  chiappa 63878aa557 docs: mark SEC_REVIEW F21 as fixed in 0da01a8 il y a 5 jours
  chiappa 0da01a83d0 fix: strip args from logged stack traces (SEC_REVIEW F21) il y a 5 jours
  chiappa 240ca37e1a docs: mark SEC_REVIEW F20 as fixed in 1ec9d04 il y a 5 jours
  chiappa 1ec9d04008 fix: mount api/ui rootfs read-only at runtime (SEC_REVIEW F20) il y a 5 jours
  chiappa b1ebe9ca3a docs: mark SEC_REVIEW F19 as fixed in 96eaa10 il y a 5 jours
  chiappa 96eaa10c78 fix: add .dockerignore to api/ui build contexts (SEC_REVIEW F19) il y a 5 jours
  chiappa 8fa6cdd902 docs: mark SEC_REVIEW F18 as fixed in 33179d8 il y a 5 jours
  chiappa 33179d8bba fix: drop container root; run api/ui as uid 1000 (SEC_REVIEW F18) il y a 5 jours
  chiappa 9339948cf1 docs: mark SEC_REVIEW F17 as fixed in 57ab1ba il y a 5 jours
  chiappa 57ab1ba034 fix: audit `GET /auth/users/{id}` lookups to detect enumeration (SEC_REVIEW F17) il y a 5 jours
  chiappa b8fc612aa6 docs: mark SEC_REVIEW F16 as fixed in 947ab89 il y a 5 jours
  chiappa 947ab89e04 fix: bind admin tokens to issuing user; reject after demote/disable (SEC_REVIEW F16) il y a 5 jours
  chiappa 4dab4f8f5a docs: mark SEC_REVIEW F15 as fixed in 5c15fc5 il y a 5 jours
  chiappa 5c15fc5fcf fix: require confirm:"SEED" on /maintenance/seed-demo (SEC_REVIEW F15) il y a 5 jours
  chiappa dbbe007f06 docs: mark SEC_REVIEW F14 as fixed in 9849779 il y a 5 jours
  chiappa 98497796c9 fix: rate-limit /api/v1/auth/* (SEC_REVIEW F14) il y a 5 jours
  chiappa 2bec88ea2a docs: mark SEC_REVIEW F13 as fixed in 40be6c1 il y a 5 jours
  chiappa 40be6c1875 fix: auto-revoke previous service tokens on rotation (SEC_REVIEW F13) il y a 5 jours
  chiappa 6395be9919 docs: mark SEC_REVIEW F12 as fixed in 4006743 il y a 5 jours
  chiappa 400674340e fix: harden local-admin lookup against is_local-flip tamper (SEC_REVIEW F12) il y a 5 jours
  chiappa 57327dd6ac docs: mark SEC_REVIEW F11 as fixed in f2dd3fd il y a 5 jours
  chiappa f2dd3fddee fix: gate impersonation on user active-status, add actor_via audit signal (SEC_REVIEW F11) il y a 5 jours
  chiappa 2d08caf5d4 docs: mark SEC_REVIEW F10 as fixed in 55156c5 il y a 5 jours
  chiappa 55156c51d8 fix: validate next-redirect targets to block off-origin Location values (SEC_REVIEW F10) il y a 5 jours
  chiappa 3a0f2b86a4 docs: mark SEC_REVIEW F9 as fixed in 2a57589 il y a 5 jours
  chiappa 2a5758925c fix: rotate session id at /login/oidc before OIDC state is stashed (SEC_REVIEW F9) il y a 5 jours
  chiappa 7032bda148 docs: mark SEC_REVIEW F8 as fixed in f811b25 il y a 5 jours
  chiappa f811b25734 fix: fail-closed on session id rotation when headers already sent (SEC_REVIEW F8) il y a 5 jours