- Delete old Vite+Svelte frontend - Initialize new SvelteKit project with TypeScript - Configure Tailwind CSS v4 + DaisyUI - Implement JWT authentication with auto-refresh - Create login page with form validation (Zod) - Add protected route guards - Update Docker configuration for single-stage build - Add E2E tests with Playwright (6/11 passing) - Fix Svelte 5 reactivity with $state() runes Known issues: - 5 E2E tests failing (timing/async issues) - Token refresh implementation needs debugging - Validation error display timing
12 lines
357 B
Markdown
12 lines
357 B
Markdown
# Security
|
|
|
|
Please file a private vulnerability via GitHub, email [@ljharb](https://github.com/ljharb), or see https://tidelift.com/security if you have a potential security vulnerability to report.
|
|
|
|
## Incident Response
|
|
|
|
See our [Incident Response Process](.github/INCIDENT_RESPONSE_PROCESS.md).
|
|
|
|
## Threat Model
|
|
|
|
See [THREAT_MODEL.md](./THREAT_MODEL.md).
|