chiappa
|
d39ab01a7c
fix: validate INTERNAL_JOB_TOKEN entropy at api boot (SEC_REVIEW F35)
|
4 giorni fa |
chiappa
|
1409ff2179
docs: mark SEC_REVIEW F34 as fixed in 3a4026b
|
4 giorni fa |
chiappa
|
3a4026baf6
fix: log fingerprints, not raw identifiers, in auth flows (SEC_REVIEW F34)
|
4 giorni fa |
chiappa
|
6a0aa27c61
docs: mark SEC_REVIEW F33 as fixed in c9f9a45
|
4 giorni fa |
chiappa
|
c9f9a45664
fix: accept nullable email on /auth/users/upsert-oidc (SEC_REVIEW F33)
|
4 giorni fa |
chiappa
|
e3fa0cc65c
docs: mark SEC_REVIEW F32 as fixed in 0594305
|
4 giorni fa |
chiappa
|
05943057b8
fix: batch-load admin IPs list per-row lookups (SEC_REVIEW F32)
|
4 giorni fa |
chiappa
|
c8ea0ede68
docs: mark SEC_REVIEW F31 as fixed in 3a2564d
|
4 giorni fa |
chiappa
|
3a2564d14b
fix: cap audit-log filter length and pagination depth (SEC_REVIEW F31)
|
4 giorni fa |
chiappa
|
6d4687476b
docs: mark SEC_REVIEW F30 as fixed in 2cc1924
|
4 giorni fa |
chiappa
|
2cc1924a4e
fix: bound IPs search `q` to anchored IP-shaped prefix (SEC_REVIEW F30)
|
4 giorni fa |
chiappa
|
d2e1b3b29c
docs: mark SEC_REVIEW F29 as fixed in a997d65
|
4 giorni fa |
chiappa
|
a997d65818
fix: rate-limit /api/v1/admin/* (SEC_REVIEW F29)
|
4 giorni fa |
chiappa
|
20c5cce580
docs: mark SEC_REVIEW F28 as fixed in e09964b
|
4 giorni fa |
chiappa
|
e09964b4ad
fix: bound RateLimiter bucket map with LRU eviction (SEC_REVIEW F28)
|
4 giorni fa |
chiappa
|
8e7a5f7b46
docs: mark SEC_REVIEW F27 as fixed in 060119a
|
4 giorni fa |
chiappa
|
060119af27
fix: rate-limit pre-auth and unauthenticated paths (SEC_REVIEW F27)
|
4 giorni fa |
chiappa
|
5072c54f87
docs: mark SEC_REVIEW F26 as fixed in ce77454
|
4 giorni fa |
chiappa
|
ce77454c93
fix: never leak exception messages from JsonErrorHandler (SEC_REVIEW F26)
|
4 giorni fa |
chiappa
|
5f05743c4b
docs: mark SEC_REVIEW F25 as fixed in 33e9198
|
4 giorni fa |
chiappa
|
33e9198800
fix: tighten /internal/* gate to loopback by default (SEC_REVIEW F25)
|
4 giorni fa |
chiappa
|
921e17a693
docs: mark SEC_REVIEW F24 as fixed in 193f646
|
4 giorni fa |
chiappa
|
193f6463a4
fix: drop CSP unsafe-inline/unsafe-eval via nonces + Alpine CSP build (SEC_REVIEW F24)
|
4 giorni fa |
chiappa
|
c67734d80c
docs: mark SEC_REVIEW F23 as fixed in f66ceaf
|
4 giorni fa |
chiappa
|
f66ceaf095
fix: tighten openid-connect-php constraint to ^1.0.2 (SEC_REVIEW F23)
|
4 giorni fa |
chiappa
|
5a26a19be6
docs: add update workflow to README and an admin manual
|
4 giorni fa |
chiappa
|
5232f10cd9
docs: mark SEC_REVIEW F22 as fixed in d9006eb
|
4 giorni fa |
chiappa
|
d9006ebae7
fix: build scheduler sidecar from pinned image (SEC_REVIEW F22)
|
4 giorni fa |
chiappa
|
63878aa557
docs: mark SEC_REVIEW F21 as fixed in 0da01a8
|
4 giorni fa |
chiappa
|
0da01a83d0
fix: strip args from logged stack traces (SEC_REVIEW F21)
|
4 giorni fa |