pullrequests Search Results · language:Dune language:Python language:TypeScript language:PHP language:JavaScript language:HTML
Filter by
56.5M results
Chunk 3b-1 of [[project-p14-rbac-progress]] — the admin API for the permission matrix (the UI lands in 3b-2), the real
security hardening for the grant tables, and the operator manual chapter. Enforcement ...
Fixes a confirmed HIGH-severity cross-tenant IDOR in the deploy-status endpoint.
The GET /api/servers/:serverId/apps/:name/deploys/:deployId handler looked up the deploy row by deployId alone. The
parent ...
Bumps the development-dependencies group with 4 updates in the / directory: @types/node,
@typescript-eslint/eslint-plugin, eslint and eslint-plugin-prettier.
Updates @types/node from 25.7.0 to 25.9.1 ...
dependencies
javascript
Routes PostHog through preppeo.com/ingest/* (same-origin) so events aren t blocked by the site CSP (connect-src doesn t
list the PostHog domain) or ad-blockers. Makes PostHog as reliable as Vercel Analytics ...
Purpose
Add a durable docs-only API security policy for request-object merges, dynamic object writes, JSON persistence,
allowlist validation, and prototype-pollution resistance before any future dynamic-object ...
…ing, translation, and user
概要
クラスの 静粛時間 (quiet_hours) — サイネージを静音/非表示にする時間帯 — の設定 UI + Server Action を実装。直前 merge の #48-J 広告管理 (PR #181) の隣に配置。あわせて
#181 review 由来の Low-1 (teacher への死リンク) を出し分けで解消。
関連 issue
Refs #185 #48-J #12 ...