elpatron
|
e138752dd3
|
feat(security): Sprint 1 hardening for production behind NPM
Add trust proxy, WebAuthn challenge TTL, stricter public collaboration
rate limits, generic 500 responses, Docker POSTGRES_PASSWORD from env,
nginx security headers/CSP, and deployment documentation.
Co-authored-by: Cursor <cursoragent@cursor.com>
|
2026-06-01 15:02:15 +02:00 |
|