issues Search Results · language:Dune language:JavaScript language:JavaScript language:CSS language:JavaScript
Filter by
20.6M results
Problema
_is_valid_url solo valida esquema/host; no bloquea loopback/privadas/metadata. Ver SPEC-002.
Definition of Done
- [ ] Cumple los criterios de aceptación (spec/ADR si aplica)
- [ ] Tests ...
area/security
sev/high
task
Problema
admin@admin/admin123, redactor123... se siembran en cada arranque SQLite.
Definition of Done
- [ ] Cumple los criterios de aceptación (spec/ADR si aplica)
- [ ] Tests automatizados que ...
area/security
sev/medium
task
Performance Issue: Unminified CSS and JS Files
CSS and JavaScript files are served unminified, increasing payload size for end-users.
Impact
- Larger download sizes
- Slower page load times
- ...
bot created
enhancement
performance
Problema
El merge YAML lo deja en True (config.py:116) pese al comentario MUST be False.
Definition of Done
- [ ] Cumple los criterios de aceptación (spec/ADR si aplica)
- [ ] Tests automatizados ...
area/security
sev/medium
task
Performance Issue: Large Image Assets
Several images are significantly oversized for web delivery.
Details
- Andrew_medal.png is 1.9MB
- Should be compressed or converted to .webp format
Suggested ...
bot created
enhancement
Problema
El stream usa ?token=...; fuga por logs/historial/proxy. Usar ticket de un solo uso o header.
Definition of Done
- [ ] Cumple los criterios de aceptación (spec/ADR si aplica)
- [ ] Tests ...
area/security
sev/high
task
Problema
jti se genera pero no se verifica; no hay logout server-side; login no emite refresh.
Definition of Done
- [ ] Cumple los criterios de aceptación (spec/ADR si aplica)
- [ ] Tests automatizados ...
area/security
sev/medium
task
Problema
Sin protección contra fuerza bruta/credential stuffing.
Definition of Done
- [ ] Cumple los criterios de aceptación (spec/ADR si aplica)
- [ ] Tests automatizados que cubren el cambio (verdes ...
area/security
sev/medium
task
Problema
register() asigna REDACTOR por defecto. Aplicar mínimo privilegio. Ver SPEC-001.
Definition of Done
- [ ] Cumple los criterios de aceptación (spec/ADR si aplica)
- [ ] Tests automatizados ...
area/security
sev/high
task
Objetivo
Asegurar calidad y trazabilidad mediante CI, cadena de suministro, auditoría y la adopción de Spec-Driven Development.
Alcance
Pipeline de CI, escaneo de dependencias, pinning, audit log, retención ...
area/governance
epic

Learn how you can use GitHub Issues to plan and track your work.
Save views for sprints, backlogs, teams, or releases. Rank, sort, and filter issues to suit the occasion. The possibilities are endless.Learn more about GitHub IssuesProTip! Restrict your search to the title by using the in:title qualifier.