-
Notifications
You must be signed in to change notification settings - Fork 30
Audit fix/2026 02 10 remediation #53
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Merged
Merged
Changes from 8 commits
Commits
Show all changes
15 commits
Select commit
Hold shift + click to select a range
f88bf09
docs(audits): add 2026-02 rust security correctness audit
bb-connor 03eac7d
fix(audit): remediate CS-AUDIT-001..006
bb-connor 3d75c65
fix(hush-cli): harden CONNECT proxy policy/resource bounds
bb-connor 91d6377
fix(clawdstrike): fail closed on IRM path and URL spoof bypasses
bb-connor 779f8f6
fix(remote-extends): validate git refs and block option injection
bb-connor 4d6a070
fix(policy): bound extends recursion and async background inflight
bb-connor d9f989d
fix(audit): finalize remediation evidence and ipv6 parity
bb-connor 2128fef
fix(review): parse userless SCP remotes and prune session locks atomi…
bb-connor c27d757
fix(remote-extends): treat scheme remotes as URLs before scp parsing
bb-connor bffe1b1
fix(guards): preserve relative glob and exception compatibility
bb-connor 854c3a4
fix(remote-extends): allow cached git policy resolution offline
bb-connor b8b3101
fix(security): tighten fs path extraction and honor forwarder test ti…
bb-connor 8b356e7
ci: remove redundant changed-paths workflow
bb-connor 5b10f11
Merge origin/main into audit-fix/2026-02-10-remediation
bb-connor d63547a
fix(irm): treat dotted mime-like segments as filesystem paths
bb-connor File filter
Filter by extension
Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
There are no files selected for viewing
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Oops, something went wrong.
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Uh oh!
There was an error while loading. Please reload this page.