- Add organization membership check before API token creation - Fix admin security allowlist form reading current_user instead of current_scope.user - Use recursive File.ls instead of Path.wildcard to include hidden files in MIB validation - Add upload size check before ZIP extraction in MIB controller - Centralize CSP in SecurityHeaders plug with per-request nonces instead of 'unsafe-inline' |
||
|---|---|---|
| .. | ||
| api_auth_test.exs | ||
| brute_force_protection_test.exs | ||
| capture_timezone_test.exs | ||
| check_policy_consent_test.exs | ||
| detect_eu_user_test.exs | ||
| filter_noisy_logs_test.exs | ||
| graphql_auth_test.exs | ||
| graphql_introspection_test.exs | ||
| mobile_auth_test.exs | ||
| rate_limit_test.exs | ||
| remote_ip_logger_test.exs | ||
| security_headers_test.exs | ||
| update_session_activity_test.exs | ||
| webhook_auth_test.exs | ||