Changelog
265 matching security — 1354 total
Migrate site domain to ironclad-network.com
Fix threat verdict false positives — require 2+ sources or 3+ engines for malicious
Fix SSL Labs header auth, add CSP nonce to home page script, handle Observatory 429 with retry
security: Prudent pentest session_2026-06-14_18-42-51 hardening (logs/runtimeEnv per AGENTS, supply chain targeted overrides, s...
PII Sanitizer: remove NER mode, keep only regex
PGP Vault icon: Feather key path, rotated 45°
PGP Vault overhaul: openpgp v6, 34 crypto tests, UI extraction, security hardening
Fix HIBP: register /api/hibp-range in PUBLIC_API_ROUTES + check res.ok on client
Proxy HIBP k-anonymity call through /api/hibp-range — fixes CSP block
Switch done items from localStorage to sessionStorage — no persistent traces
Security Protocol Creator: persistence, completion tracking, diff, 6 new sections, tag validation
Fix README fetch: add R2 CDN to CSP connect-src
Remove GPG signature step from Localix release script and AGENTS.md
Remove legal (Privacy, Terms, Cookies, Docs) from site and footer
WiGLE proxy: cache 429 rate-limit state in cache layer, show retry-after countdown
WiGLE: fallback to process.env for API credentials in getCloudflareEnv
Security headers, CSP, and browser policy configuration
Identity verification and authentication pipeline updates
Access control and authentication hardening
Authentication flow security and credential handling
Privilege escalation mitigation and access review
Cryptographic implementation and key management
Authorization boundary and permission model enforcement
Input validation and sanitization pipeline hardening
Identity verification and authentication pipeline updates
Input validation and sanitization pipeline hardening
Session and token lifecycle security hardening
Authentication flow security and credential handling
Cryptographic implementation and key management
Access control and authentication hardening