| .. |
|
config
|
4a764f58f0
fix: remove unused APP_SECRET / UI_SECRET (SEC_REVIEW F66 + F67)
|
3 dni temu |
|
docker
|
3556cd1920
fix: extend Permissions-Policy deny-list to full hardening (SEC_REVIEW F61)
|
3 dni temu |
|
public
|
65c974f268
feat(ui): add brand logo to topnav left side
|
1 tydzień temu |
|
resources
|
f044dbb6bc
fix: drop style-src 'unsafe-inline' (SEC_REVIEW F62)
|
3 dni temu |
|
src
|
c439ce1db3
fix: scrub raw JWTs and short Bearers in log output (SEC_REVIEW F65)
|
3 dni temu |
|
tests
|
4a764f58f0
fix: remove unused APP_SECRET / UI_SECRET (SEC_REVIEW F66 + F67)
|
3 dni temu |
|
.dockerignore
|
96eaa10c78
fix: add .dockerignore to api/ui build contexts (SEC_REVIEW F19)
|
5 dni temu |
|
.php-cs-fixer.dist.php
|
d330d80b8a
feat(M01): monorepo skeleton, toolchain, docker compose builds clean
|
1 tydzień temu |
|
CHANGELOG.md
|
717c0a5c2b
feat: subject filter for audit log; show actor-emitted rows on detail
|
1 tydzień temu |
|
Dockerfile
|
33179d8bba
fix: drop container root; run api/ui as uid 1000 (SEC_REVIEW F18)
|
5 dni temu |
|
composer.json
|
f66ceaf095
fix: tighten openid-connect-php constraint to ^1.0.2 (SEC_REVIEW F23)
|
4 dni temu |
|
composer.lock
|
f66ceaf095
fix: tighten openid-connect-php constraint to ^1.0.2 (SEC_REVIEW F23)
|
4 dni temu |
|
package-lock.json
|
193f6463a4
fix: drop CSP unsafe-inline/unsafe-eval via nonces + Alpine CSP build (SEC_REVIEW F24)
|
4 dni temu |
|
package.json
|
193f6463a4
fix: drop CSP unsafe-inline/unsafe-eval via nonces + Alpine CSP build (SEC_REVIEW F24)
|
4 dni temu |
|
phpstan.neon
|
d330d80b8a
feat(M01): monorepo skeleton, toolchain, docker compose builds clean
|
1 tydzień temu |
|
phpunit.xml
|
d330d80b8a
feat(M01): monorepo skeleton, toolchain, docker compose builds clean
|
1 tydzień temu |
|
postcss.config.js
|
d330d80b8a
feat(M01): monorepo skeleton, toolchain, docker compose builds clean
|
1 tydzień temu |
|
tailwind.config.js
|
d330d80b8a
feat(M01): monorepo skeleton, toolchain, docker compose builds clean
|
1 tydzień temu |