issues Search Results · language:Dune language:Python language:JavaScript is:public language:CSS language:JavaScript
Filter by
42.3M results
Sub-issue 9 of the approved economy umbrella #923 (Sinks drains section) — the integration pass that lands across the
others.
Scope: wire the sink surfaces once currency (#925) exists — housing upkeep ...
feature
Summary
Follow-up from #3970 (onboarding OAuth single-flight). The single-flight guard added there fixes the reported sequential
vector but is not atomic under concurrent starts.
The race
api/oauth.py::_pending_oauth_flow_for(provider, ...
bug
자명 충돌 실습을 위한 Issue 입니다.
참여자 : lim : limjonghan lee : 0802222
bug
Severity: High
Location
apps/api/app/runtime/sandbox_session.py:381 (fallback), sandbox_session.py:109 (shell=True)
Description
When a workspace has no Modal credentials, the runtime falls back to ...
security
Severity: Medium
Location
apps/api/app/core/auth.py:204 (get_user_id) vs auth.py:283 (get_workspace_id)
Description
get_workspace_id checks expires_at on cond_live_ API keys. get_user_id does not. ...
security
Severity: Medium
Location
packages/conduct-cli/src/conduct_cli/guard.py:475 — _save_guard_config
Description
api_key and member_token are written as plaintext JSON to a config file with default filesystem ...
security
Severity: Medium
Location
apps/api/app/routers/webhooks.py:461
Description
Signature verification runs only if VERCEL_WEBHOOK_SECRET is set. If the env var is absent, any unauthenticated POST is
accepted ...
security
Severity: Medium
Location
apps/api/app/routers/runs.py:307
Description
get_run re-implements Clerk JWT verification inline, including a DEV_USER_ID fallback when no Authorization header is
present. ...
security
Severity: Medium
Location
apps/api/app/routers/sdd.py:131 — /sdd/questions, /generate, /scaffold, /scaffold/stream
Description
These endpoints have no auth (sdd.py doesn t import Depends) and call ...
security
Severity: High
Location
apps/web/src/app/guard/session-reports/[id]/page.tsx:335
Description
report.report_md is LLM/agent-generated text rendered with dangerouslySetInnerHTML after only a \n → br ...
security

Learn how you can use GitHub Issues to plan and track your work.
Save views for sprints, backlogs, teams, or releases. Rank, sort, and filter issues to suit the occasion. The possibilities are endless.Learn more about GitHub IssuesProTip! Restrict your search to the title by using the in:title qualifier.