chiappa 57ab1ba034 fix: audit `GET /auth/users/{id}` lookups to detect enumeration (SEC_REVIEW F17) hai 4 días
..
AuthEndpointsTest.php 57ab1ba034 fix: audit `GET /auth/users/{id}` lookups to detect enumeration (SEC_REVIEW F17) hai 4 días
AuthMatrixTest.php 8cf73d2833 feat(M03): api auth foundations — tokens, RBAC, BFF impersonation hai 1 semana
DisabledUserTest.php f2dd3fddee fix: gate impersonation on user active-status, add actor_via audit signal (SEC_REVIEW F11) hai 5 días
SchemaSecretsAtRestTest.php 63d5a8d4e9 feat(M14): security hardening hai 1 semana
ServiceTokenBootstrapTest.php 40be6c1875 fix: auto-revoke previous service tokens on rotation (SEC_REVIEW F13) hai 5 días
TokenIssuerBindingTest.php 947ab89e04 fix: bind admin tokens to issuing user; reject after demote/disable (SEC_REVIEW F16) hai 4 días