chiappa 3556cd1920 fix: extend Permissions-Policy deny-list to full hardening (SEC_REVIEW F61) 3 日 前
..
bin eb2486a844 feat(M05): reputation engine + internal jobs framework 1 週間 前
config 33e9198800 fix: tighten /internal/* gate to loopback by default (SEC_REVIEW F25) 4 日 前
db 947ab89e04 fix: bind admin tokens to issuing user; reject after demote/disable (SEC_REVIEW F16) 5 日 前
docker 3556cd1920 fix: extend Permissions-Policy deny-list to full hardening (SEC_REVIEW F61) 3 日 前
public d39ab01a7c fix: validate INTERNAL_JOB_TOKEN entropy at api boot (SEC_REVIEW F35) 4 日 前
src 95e206c436 fix: pin RapiDoc CDN load with SRI hash on /api/docs (SEC_REVIEW F58) 3 日 前
tests 95e206c436 fix: pin RapiDoc CDN load with SRI hash on /api/docs (SEC_REVIEW F58) 3 日 前
.dockerignore 96eaa10c78 fix: add .dockerignore to api/ui build contexts (SEC_REVIEW F19) 5 日 前
.php-cs-fixer.dist.php d330d80b8a feat(M01): monorepo skeleton, toolchain, docker compose builds clean 1 週間 前
CHANGELOG.md 717c0a5c2b feat: subject filter for audit log; show actor-emitted rows on detail 1 週間 前
Dockerfile 33179d8bba fix: drop container root; run api/ui as uid 1000 (SEC_REVIEW F18) 5 日 前
composer.json 244a31b127 chore: license under Apache-2.0 1 週間 前
composer.lock 2c14cba864 feat(M11): MMDB enrichment with DB-IP / MaxMind / IPinfo providers 1 週間 前
openapi.php 57ab1ba034 fix: audit `GET /auth/users/{id}` lookups to detect enumeration (SEC_REVIEW F17) 5 日 前
phpstan.neon d330d80b8a feat(M01): monorepo skeleton, toolchain, docker compose builds clean 1 週間 前
phpunit.xml d330d80b8a feat(M01): monorepo skeleton, toolchain, docker compose builds clean 1 週間 前