Commit 5829208
Security hardening: remove leaked secret, reduce log exposure, add request limits
- Remove hardcoded webhook secret from test-webhook.sh (require from env)
- Stop logging partial auth tokens and payload bodies on errors
- Add 1 MB max request body size to Bun.serve()
- Restrict health endpoint to GET/HEAD methods
Co-Authored-By: Claude Opus 4.6 <noreply@anthropic.com>1 parent 5925400 commit 5829208
1 file changed
Lines changed: 6 additions & 2 deletions
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
79 | 79 | | |
80 | 80 | | |
81 | 81 | | |
82 | | - | |
| 82 | + | |
83 | 83 | | |
84 | 84 | | |
85 | 85 | | |
| |||
101 | 101 | | |
102 | 102 | | |
103 | 103 | | |
| 104 | + | |
104 | 105 | | |
105 | 106 | | |
106 | 107 | | |
107 | 108 | | |
| 109 | + | |
| 110 | + | |
| 111 | + | |
108 | 112 | | |
109 | 113 | | |
110 | 114 | | |
| |||
130 | 134 | | |
131 | 135 | | |
132 | 136 | | |
133 | | - | |
| 137 | + | |
134 | 138 | | |
135 | 139 | | |
136 | 140 | | |
| |||
0 commit comments