GitHub Actions
2dfe7ee241
feat: add additional security enhancements (Issue #365)
- Add constant-time token comparison utility (crypto/subtle)
- Add SBOM generation and attestation to CI/CD pipeline
- Document TLS enforcement, DNS security (DoH/DoT), and container hardening
- Create Security Incident Response Plan (SIRP)
- Add security update notification documentation
Security enhancements:
- Mitigates timing attacks on invite token validation
- Provides supply chain transparency with CycloneDX SBOM
- Documents production container hardening (read_only, cap_drop)
Closes #365
2025-12-21 19:00:29 +00:00
..
2025-12-11 18:26:24 +00:00
2025-12-12 17:56:30 +00:00
2025-12-21 04:08:42 +00:00
2025-12-12 17:56:30 +00:00
2025-12-21 04:08:42 +00:00
2025-12-21 06:01:47 +00:00
2025-12-12 00:05:15 +00:00
2025-12-21 04:08:42 +00:00
2025-12-21 04:08:42 +00:00
2025-12-11 18:26:24 +00:00
2025-12-21 04:08:42 +00:00
2025-12-18 18:04:40 +00:00
2025-12-18 18:04:40 +00:00
2025-12-21 15:03:24 +00:00
2025-12-11 18:26:24 +00:00
2025-12-21 07:24:11 +00:00
2025-12-21 04:08:42 +00:00
2025-12-15 07:30:36 +00:00
2025-12-11 18:26:24 +00:00
2025-12-21 04:08:42 +00:00
2025-12-15 07:30:36 +00:00
2025-12-15 07:30:36 +00:00
2025-12-21 04:08:42 +00:00
2025-12-16 14:10:32 +00:00
2025-12-15 22:10:28 +00:00
2025-12-15 07:30:36 +00:00
2025-12-21 04:08:42 +00:00
2025-12-21 06:01:47 +00:00
2025-12-16 03:39:08 +00:00
2025-12-21 04:08:42 +00:00
2025-12-21 04:08:42 +00:00
2025-12-21 04:08:42 +00:00
2025-12-21 04:08:42 +00:00
2025-12-17 19:41:02 +00:00
2025-12-17 16:53:38 +00:00
2025-12-11 18:26:24 +00:00
2025-12-11 18:26:24 +00:00
2025-12-11 18:26:24 +00:00
2025-12-11 18:26:24 +00:00
2025-12-21 04:08:42 +00:00
2025-12-12 00:42:27 +00:00
2025-12-11 18:26:24 +00:00
2025-12-12 00:42:27 +00:00
2025-12-21 06:01:47 +00:00
2025-12-11 18:26:24 +00:00
2025-12-11 18:26:24 +00:00
2025-12-11 18:26:24 +00:00
2025-12-21 04:08:42 +00:00
2025-12-21 04:08:42 +00:00
2025-12-21 04:08:42 +00:00
2025-12-11 18:26:24 +00:00
2025-12-21 04:08:42 +00:00
2025-12-11 18:26:24 +00:00
2025-12-11 18:26:24 +00:00
2025-12-15 07:30:36 +00:00
2025-12-21 04:08:42 +00:00
2025-12-21 04:08:42 +00:00
2025-12-21 04:08:42 +00:00
2025-12-11 18:26:24 +00:00
2025-12-11 18:26:24 +00:00
2025-12-21 04:08:42 +00:00
2025-12-21 04:08:42 +00:00
2025-12-21 04:08:42 +00:00
2025-12-21 04:08:42 +00:00
2025-12-12 00:42:27 +00:00
2025-12-21 04:08:42 +00:00
2025-12-21 07:24:11 +00:00
2025-12-21 15:03:24 +00:00
2025-12-21 04:08:42 +00:00
2025-12-21 04:08:42 +00:00
2025-12-21 04:08:42 +00:00
2025-12-11 18:26:24 +00:00
2025-12-11 18:26:24 +00:00
2025-12-12 17:56:30 +00:00
2025-12-21 04:08:42 +00:00
2025-12-21 04:08:42 +00:00
2025-12-21 04:08:42 +00:00
2025-12-21 04:08:42 +00:00
2025-12-21 04:08:42 +00:00
2025-12-21 04:08:42 +00:00
2025-12-21 04:08:42 +00:00
2025-12-21 04:08:42 +00:00
2025-12-21 04:08:42 +00:00
2025-12-21 04:08:42 +00:00
2025-12-21 15:03:24 +00:00
2025-12-19 18:55:48 +00:00
2025-12-11 18:26:24 +00:00
2025-12-11 18:26:24 +00:00
2025-12-21 04:08:42 +00:00
2025-12-21 04:08:42 +00:00
2025-12-21 04:08:42 +00:00
2025-12-11 18:26:24 +00:00
2025-12-11 18:26:24 +00:00
2025-12-11 18:26:24 +00:00
2025-12-21 07:24:11 +00:00
2025-12-21 06:01:47 +00:00
2025-12-21 07:24:11 +00:00
2025-12-21 06:01:47 +00:00
2025-12-11 18:26:24 +00:00
2025-12-11 18:26:24 +00:00
2025-12-21 04:08:42 +00:00
2025-12-21 04:08:42 +00:00
2025-12-11 18:26:24 +00:00
2025-12-21 04:08:42 +00:00
2025-12-21 19:00:29 +00:00
2025-12-11 18:26:24 +00:00
2025-12-21 04:08:42 +00:00
2025-12-18 18:04:40 +00:00