marcopan
|
94c2cd3709
|
fix(auth): bind current local registry and CORS
|
2026-08-17 00:34:58 +02:00 |
|
marcopan
|
c34e01e9b9
|
fix(auth): harden async login boundaries
|
2026-08-17 00:00:34 +02:00 |
|
marcopan
|
29bfb41363
|
feat(auth): add local login and CSRF-protected sessions
|
2026-08-16 23:23:55 +02:00 |
|
marcopan
|
8477a69a29
|
fix(auth): tighten bridge claim protocol
|
2026-08-16 22:44:44 +02:00 |
|
marcopan
|
7d9ca13f1d
|
fix(auth): harden Windows storage bridge
|
2026-08-16 22:16:13 +02:00 |
|
marcopan
|
c9b02fc57e
|
fix(auth): add Windows session storage bridge
|
2026-08-16 21:43:03 +02:00 |
|
marcopan
|
6bf8218fea
|
fix(auth): harden persistent sessions
|
2026-08-16 21:03:07 +02:00 |
|
marcopan
|
ab61c1ad6d
|
feat(auth): persist opaque remembered sessions
|
2026-08-16 20:28:32 +02:00 |
|
marcopan
|
b80a2cc1e9
|
fix(auth): protect local registry directory
|
2026-08-16 20:11:30 +02:00 |
|
marcopan
|
de8844a4ac
|
fix(auth): bound local password encoding
|
2026-08-16 20:03:40 +02:00 |
|
marcopan
|
1ed1a34ae2
|
fix(auth): reject ill-formed local passwords
|
2026-08-16 19:56:43 +02:00 |
|
marcopan
|
5eed4f9449
|
feat(auth): verify local ThothII users in the backend
|
2026-08-16 19:49:02 +02:00 |
|
marcopan
|
f99bddcdf0
|
fix(auth): restore permission boundary safeguards
|
2026-08-16 18:03:36 +02:00 |
|
marcopan
|
2e0489ce22
|
feat(auth): centralize ThothII permission enforcement
|
2026-08-16 17:52:03 +02:00 |
|
marcopan
|
e54ce15426
|
fix(auth): fail closed configuration compatibility
|
2026-08-16 17:35:40 +02:00 |
|
marcopan
|
a66ef58766
|
feat(auth): define strict installation authentication config
|
2026-08-16 17:26:31 +02:00 |
|
User
|
b454fb478b
|
fix(backend): harden principal child isolation
|
2026-07-16 18:38:40 +02:00 |
|
User
|
458eb13c89
|
feat(backend): enforce user-owned sessions
|
2026-07-16 18:32:52 +02:00 |
|
marcopan
|
a3a266fd81
|
fix(deploy): close container final review
|
2026-07-12 00:44:39 +02:00 |
|
 marcopanandClaude Opus 4.8
|
a58fb19340
|
feat(backend): pluggable auth (none/mock/oidc seam)
- authPreHandler(mode) returns Fastify preHandler that sets req.user={id}
- none: uses dev@local
- mock: reads x-mock-user header
- oidc: MVP stub returns 501 + throws
- getUser(req) returns user object
Co-Authored-By: Claude Opus 4.8 <noreply@anthropic.com>
|
2026-06-27 21:13:26 +02:00 |
|