Epic: Security & Data-Integrity Hardening #50
Labels
No labels
bug
ci-cd
client
epic:security-hardening
feature
optimization
priority:high
priority:low
priority:medium
server
No assignees
1 participant
Notifications
Due date
No due date set.
Dependencies
No dependencies set
Reference
BlackLobster/Server#50
Loading…
Reference in a new issue
No description provided.
Delete branch "%!s()"
Deleting a branch is permanent. Although the deleted branch may continue to exist for a short time before it actually gets removed, it CANNOT be undone in most cases. Continue?
Umbrella for data-corruption, data-loss, and account-compromise hardening. Each item is a child issue tagged
epic:security-hardening. The task-list below tracks progress.Children
Game.World.SessionGuardatomic claim + entry pre-check + persistence firewall + boot audit; failed-login no longer strands a zombie;Agent.contextsself-cleans; correct0x05"already logged in" login response). Shipped.priority:highsave_allin a transaction (torn multi-table snapshot)0..2^31-1value || defaulttruthy-empty-struct traps over DB-loaded valuesVerified solid this round (no action needed)
verify_passis enforced in the live login path (Contract.Session.validate→Profile.authenticate/2, before any session is created). No account-takeover-by-username.profile_id, FIFO, deduped by{kind, profile_id}.Notes
Forgejo has no native Epic type; this is the tracking-issue +
epic:security-hardeninglabel pattern. Severity/priority carried by the per-child labels.