2954 Commits (628bff36576e2aa8bb1ff5ed2033c0c707d6867a)
 

Author SHA1 Message Date
kalvinparker 628bff3657 ci: use correct upload-sarif action (github/codeql-action/upload-sarif@v2) 1 week ago
kalvinparker 60cfeb7e3a ci: add workflow_dispatch for manual runs 2 months ago
kalvinparker 67f9016a68 ci: make SARIF upload best-effort and always upload artifact 2 months ago
kalvinparker 3feee4758b
Merge pull request #7 from kalvinparker/chore/consolidate-workflows 2 months ago
kalvinparker 3863c1bcb2 chore(ci): consolidate Trivy workflows into ci.yml and remove duplicates 2 months ago
kalvinparker c8cf780c5f
Merge pull request #6 from kalvinparker/chore/add-ci-security 2 months ago
kalvinparker 180207cd80 chore(ci): pin aquasecurity/trivy-action and upload SARIF results 2 months ago
kalvinparker 66a178cec7
Merge pull request #5 from kalvinparker/chore/add-contributing 2 months ago
kalvinparker b311088aa7 chore: add CONTRIBUTING.md Gitflow branching strategy 2 months ago
kalvinparker 2e6b09293e Add audit output files and update dependencies 2 months ago
kalvinparker 2146c1d263 chore(audit): bump lettre and psm 2 months ago
kalvinparker 0b3872d474 docs(audit): add license triage summary and update PR body 2 months ago
kalvinparker 15153e8505 docs(audit): record temporary allowlist for Apache-2.0 WITH LLVM-exception 2 months ago
kalvinparker 43c08ecc3e chore(audit): add timeboxed allowlist for Apache-2.0 WITH LLVM-exception to unblock CI 2 months ago
kalvinparker 101d9aefa3 docs(audit): add reqwest/webauthn experiments summary 3 months ago
kalvinparker 9679613cfa docs(audit): add short license-failure analysis 3 months ago
kalvinparker 6befc36448 docs(audit): add license triage summary and PR body update file 3 months ago
kalvinparker 56e7b76db1 chore(experiment): remove openidconnect reqwest feature to avoid reqwest/rustls pull-in (experiment) 3 months ago
kalvinparker 03eb5a2ab0 ci(audit): trigger dependency audit workflow 3 months ago
kalvinparker 3acda59afd chore(audit): temporarily allow MPL-2.0 and CDLA-Permissive-2.0 to unblock CI; timebox and track remediation 3 months ago
kalvinparker b0ee507743 chore(experiment): try reqwest with native-tls to avoid webpki-roots 3 months ago
kalvinparker fe4f9ce212 docs(audit): record webauthn upgrade experiment results 3 months ago
kalvinparker 64f402b6af chore(audit): add Dockerfile and scripts for cargo audit and deny integration 3 months ago
kalvinparker d9db30e4b9 docs(audit): add feasibility report for webauthn-rs and webpki-roots remediation 3 months ago
kalvinparker 6ed3d31cc0 chore(audit): add temporary license allowlist for common OSI-approved licenses; document in tracking issue 3 months ago
kalvinparker c97fc90f40 chore(audit): ignore RUSTSEC-2023-0071 and RUSTSEC-2024-0436 in deny.toml (temporary) 3 months ago
kalvinparker a305cf3d6d chore(audit): add advisory exceptions for RUSTSEC-2023-0071 and RUSTSEC-2024-0436 under [advisories] (timeboxed) 3 months ago
kalvinparker a64bf18935 chore(audit): format deny.toml license exceptions as [[licenses.exceptions]] (cargo-deny compatible) 3 months ago
kalvinparker f16723c8d8 chore(audit): add temporary deny exceptions for rsa and paste; add tracking issue and document in audit note 3 months ago
kalvinparker 22ff36919c chore(deps): allow caret ranges for rmpv and openidconnect to permit safe published bumps 3 months ago
kalvinparker eb077610b8 chore(deps): revert attempted openidconnect/rmpv bumps (incompatible with crates.io) 3 months ago
kalvinparker f84d861746 chore(audit): make deny.toml parseable by cargo-deny 3 months ago
kalvinparker 5818cbfff9 chore(audit): fix deny.toml to valid cargo-deny format 3 months ago
kalvinparker e3d25181b5 chore(deps): attempt bump openidconnect and rmpv to avoid transitive rsa/paste 3 months ago
kalvinparker 1f2cadc8b2 chore(audit): add cargo-deny policy, CI audit workflow and security note (2025-11-09) 3 months ago
kalvinparker 54053f7e28 Add audit and deny command error messages to respective files 3 months ago
kalvinparker 0951c8d220 Add supply chain audit workflow with cargo-audit and cargo-deny steps 3 months ago
Mathijs van Veluw 9017ca265a
Optimizations and build speedup (#6339) 3 months ago
Mathijs van Veluw 8d30285160
Fix issue with key-rotation and emergency-access (#6421) 3 months ago
Daniel García 3cd3d33d00
Improve protected actions (#6411) 3 months ago
Mathijs van Veluw 2ee5819b56
Use Diesels MultiConnections Derive (#6279) 3 months ago
Timshel 7c597e88f9
[Playwright] Improvements around node (#6321) 3 months ago
Stefan Melmuk a85b48512c
add seat limit for the invite dialog (#6371) 3 months ago
Stefan Melmuk fe1a8f7738
add missing media-src directive (#6381) 3 months ago
Stefan Melmuk d43edb8f17
add mail address change warning for invited accounts (#6377) 3 months ago
Timshel 8043f7eca7
Fix Org identifier (#6364) 3 months ago
Timshel e659a61581
Add auth_request pending endpoint (#6368) 3 months ago
Stefan Melmuk 2d54cc61df
add new billing warnings endpoint (#6369) 3 months ago
Timshel 3f010a50af
Change OIDC dummy identifier (#6263) 3 months ago
Timshel e83faad8d2
Fix `sso_user` dropped on `User::save` (#6262) 3 months ago