Beda Schmid smileBeda
smileBeda pushed to main at Nautilus/ledgerdock 2026-03-17 20:27:28 +00:00
60ce69e115 Try a unified api endpoint
smileBeda pushed to main at Nautilus/ledgerdock 2026-03-17 19:57:58 +00:00
d6d0735ff8 Fix cookie not accepted in safari
smileBeda pushed to main at Nautilus/ledgerdock 2026-03-17 19:38:04 +00:00
72088dba9a Fix folder permissions
6f1fffd6e8 Update Typesense
Compare 2 commits »
smileBeda pushed to main at Nautilus/ledgerdock 2026-03-03 01:19:56 +00:00
490cbbb812 Normalize compose host bind mount paths
4fe22e3539 Document bind-mount permissions and ignore runtime data tree
Compare 2 commits »
smileBeda pushed to main at Nautilus/ledgerdock 2026-03-02 21:23:54 +00:00
3f7cdee995 Update cookie
smileBeda pushed to main at Nautilus/ledgerdock 2026-03-02 21:10:38 +00:00
1a04b23e89 Fix CSRF validation for duplicate cookie values on PATCH
smileBeda pushed to main at Nautilus/ledgerdock 2026-03-02 20:58:05 +00:00
2a5dfc3713 flush
smileBeda pushed to main at Nautilus/ledgerdock 2026-03-02 20:53:33 +00:00
1cd7d6541d update dockerfile
ec6a20ebd1 Stabilize auth cookies for proxied split-domain deployments
Compare 2 commits »
smileBeda pushed to main at Nautilus/ledgerdock 2026-03-02 20:32:32 +00:00
83d6a4f367 Remove frontend npm tuning and keep standard install path
8cf3748015 Revert "Harden frontend npm install against transient registry timeouts"
daa11cb768 Harden frontend npm install against transient registry timeouts
Compare 3 commits »
smileBeda pushed to main at Nautilus/ledgerdock 2026-03-02 19:42:08 +00:00
8f2c357bfc Run production frontend Nginx unprivileged under dropped caps
smileBeda pushed to main at Nautilus/ledgerdock 2026-03-02 19:27:22 +00:00
d50169b883 Serve production frontend via Nginx static build
b5b74845f2 Switch frontend container to production-aware runtime mode
0acce2e260 Wire Vite allowed hosts to env for Docker frontend
Compare 3 commits »
smileBeda pushed to main at Nautilus/ledgerdock 2026-03-02 18:24:27 +00:00
b86223f943 update docker compose
smileBeda pushed to main at Nautilus/ledgerdock 2026-03-02 18:18:18 +00:00
8dc4013e76 update docker compose
smileBeda pushed to main at Nautilus/ledgerdock 2026-03-02 18:16:19 +00:00
668c22f692 update docker compose
smileBeda pushed to main at Nautilus/ledgerdock 2026-03-02 18:03:51 +00:00
89ec3584f9 update docker-compose.yml
8dded6383e Use node 22 slim for frontend npm network compatibility
c47fc48533 Harden frontend Docker npm fetch resilience
b6d470590e Update docker compose
Compare 4 commits »
smileBeda pushed to main at Nautilus/ledgerdock 2026-03-02 16:41:22 +00:00
41bbe87b4c Update changelog
6fba581865 Rewrite README for end-user Docker setup and env guidance
Compare 2 commits »
smileBeda transferred repository smileBeda/ledgerdock to Nautilus/ledgerdock 2026-03-02 01:00:14 +00:00
smileBeda pushed to main at Nautilus/ledgerdock 2026-03-02 00:56:00 +00:00
4b34d6153c Remove report
700f0d6d79 Use version-safe FastAPI CSRF dependency params
3cccf2e0e8 Fix auth route response injection crash
26eae1a09b Fix auth session persistence with HttpOnly cookies and CSRF
a9333ec973 Harden frontend auth token handling in runtime memory
Compare 12 commits »
smileBeda pushed to main at Nautilus/ledgerdock 2026-03-01 20:56:03 +00:00
74d91eb4b1 Update header styles
1c57084ebf Hardcode CORS credentials disabled and remove env toggle
bfc89fe5ce Revert "Allow private-network CORS origins in development"
1b2e0cb8af Allow private-network CORS origins in development
0242e061c2 Harden auth and security controls with session auth and docs
Compare 10 commits »
smileBeda pushed to main at Nautilus/ledgerdock 2026-03-01 15:43:06 +00:00
da5cbc2c01 Update Report
652d7e8f25 docs: update security production readiness report
Compare 2 commits »