Skip to content

fix: harden production release hygiene#1

Open
CorsenAI wants to merge 1 commit into
mainfrom
fix/security-hardening-v1.1.1
Open

fix: harden production release hygiene#1
CorsenAI wants to merge 1 commit into
mainfrom
fix/security-hardening-v1.1.1

Conversation

@CorsenAI
Copy link
Copy Markdown
Owner

Security hardening release v1.1.1.

Fixes:

  • HTTPS safeFetch/TLS behavior while preserving SSRF DNS pinning
  • Default MCP CORS behavior
  • Next.js config secret exposure risk
  • Next.js handler instance isolation
  • fast-xml-parser vulnerability
  • WordPress public-content filtering

Validation:

  • pnpm test
  • pnpm typecheck
  • pnpm lint
  • pnpm build
  • pnpm audit --prod
  • npm pack --dry-run --json
  • release hygiene scan

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant