Commit History

Autor SHA1 Mensaxe Data
  chiappa 67011c8cea fix: prefix session cookie with __Host- in production (SEC_REVIEW F57) hai 4 días
  chiappa 30c0604e49 fix: rotate CSRF token on session-id regeneration (SEC_REVIEW F40) hai 4 días
  chiappa 55156c51d8 fix: validate next-redirect targets to block off-origin Location values (SEC_REVIEW F10) hai 5 días
  chiappa f811b25734 fix: fail-closed on session id rotation when headers already sent (SEC_REVIEW F8) hai 6 días
  chiappa 63d5a8d4e9 feat(M14): security hardening hai 1 semana
  chiappa 726d8642ce feat(M08): ui scaffold, OIDC + local admin auth, session, ApiClient hai 1 semana