Skip to content

issues Search Results · language:Dune language:JavaScript language:JavaScript language:JavaScript linked:pr linked:pr

Filter by

1.7M results  (380 ms)

1.7M results

Bug: Notification creation allows callers to override server-owned id and read fields File: apps/api/src/services/notificationService.js Description: createNotification spreads the raw caller payload ...

Bug: OAuth callback route accepts unsupported provider strings File: apps/api/src/controllers/authController.js Description: GET /api/auth/oauth/:provider/callback reflects back the :provider path segment ...

Bug: Token refresh endpoint issues new tokens without a valid refresh token File: apps/api/src/controllers/authController.js and apps/api/src/services/authService.js Description: POST /api/auth/refresh ...

Bug: User listing endpoint requires no authentication File: apps/api/src/routes/userRoutes.js Description: GET /api/users calls getUsers with no authMiddleware applied. Any unauthenticated caller can ...

Bug: Payment creation endpoint requires no authentication File: apps/api/src/routes/paymentRoutes.js Description: POST /api/payments calls createPayment with no authMiddleware applied. Any unauthenticated ...

Bug: Registration allows admin role self-assignment File: apps/api/src/validators/auth.js Description: The registerSchema currently permits any caller to pass role: admin in the registration body, because ...

PRD gerado via /to-prd a partir do /code-review do PR #179 (permissões por usuário, ADR-0017). Cobre 3 frentes de hardening pós-merge. Origem: #179 (feature), #180 (1ª leva de fixes do review). Label: ...
ready-for-agent

Problem / Goal #88 shipped the logbook config key (off | user-visible | all) and had shipwright §9 auto-record on PR open — but it **explicitly scoped the crows-nest pipeline hook as separate future work. ...
armada:shipped
enhancement
fleet-defect

Goal A scheduled (~05:00 Israel time) GitHub Actions workflow that runs a Claude Opus agent to do automatically, and incrementally, what the on-demand ** learned lessons ** instruction does (docs/claude/workflow.md): ...

Follow-up from #370. Medium confidence: this may already be known to @kriszyp, but the documented opt-out appears inert. PR #370 says the fast-skip can be disabled with replication.leadingDuplicateSkip: ...
Issue origami icon

Learn how you can use GitHub Issues to plan and track your work.

Save views for sprints, backlogs, teams, or releases. Rank, sort, and filter issues to suit the occasion. The possibilities are endless.Learn more about GitHub Issues
ProTip! Restrict your search to the title by using the in:title qualifier.
Issue origami icon

Learn how you can use GitHub Issues to plan and track your work.

Save views for sprints, backlogs, teams, or releases. Rank, sort, and filter issues to suit the occasion. The possibilities are endless.Learn more about GitHub Issues
ProTip! Restrict your search to the title by using the in:title qualifier.