Denis Barbaron
872b0bcbd8
fix all vulnerabilities in the production code ( #817 )
...
Signed-off-by: Denis barbaron <denis.barbaron@orange.com >
2024-11-29 11:02:11 +01:00
Denis Barbaron
2f54e40206
Upgrading STF for security reasons ( #813 )
...
* Upgrading STF for security reasons
Signed-off-by: Denis barbaron <denis.barbaron@orange.com >
* update semaphore files
Signed-off-by: Denis barbaron <denis.barbaron@orange.com >
* upgrading STF for security reasons v2
Signed-off-by: Denis barbaron <denis.barbaron@orange.com >
* update yarn.lock file
Signed-off-by: Denis barbaron <denis.barbaron@orange.com >
---------
Signed-off-by: Denis barbaron <denis.barbaron@orange.com >
2024-11-22 11:41:20 +01:00
Denis Barbaron
63ad4f138e
fix bug on cookie using https ( #752 )
...
Signed-off-by: Denis barbaron <denis.barbaron@orange.com >
2024-01-24 14:17:56 +01:00
Karol Wrótniak
5ac119bbd3
Add @devicefarmer to stf-wiki path ( #34 )
...
Signed-off-by: Karol Wrótniak <karol.wrotniak@droidsonroids.pl >
2020-07-11 02:12:51 +02:00
Gunther Brunner
1eb6af0119
Replaced old jade with new pug.
...
Using temporarily npm-shrinkwrap since `template-html-loader` uses an old `consolidate.js` version which doesn't support `pug`.
Follow here: https://github.com/jtangelder/template-html-loader/issues/8
2016-08-05 18:24:30 +09:00
Vishal Banthia
b004dcb51b
remove unnecessary requirements from app unit
2016-07-22 19:34:22 +05:30
Vishal Banthia
0ec03aa2c0
move accessTokens endpoint from app unit to api unit
2016-07-22 19:34:22 +05:30
Vishal Banthia
5729095acb
move group endpoint from app unit to api unit
2016-07-22 19:34:22 +05:30
Vishal Banthia
d6f37681ce
move devices endpoint from app unit to api unit
2016-07-22 19:34:22 +05:30
Vishal Banthia
0e8b308b6c
change /app/api/v1/user -> /api/v1/me
2016-07-22 19:34:22 +05:30
Gunther Brunner
434f63b3a9
Fix all lib/ files with ESLint rules with 0 errors.
2016-01-19 20:52:38 +09:00
Vishal Banthia
9cb231391a
Create seperate database table for AccessTokens to hide jwt token and tokenId from user
2015-11-26 03:09:58 +09:00
Simo Kinnunen
48b3d66d90
Exclude dummy endpoint from CSRF check. It's used as a hack to enable autocomplete on certain fields.
2015-07-10 15:43:54 +09:00
Simo Kinnunen
daa285295e
Further tweaks to allow stf to be installed from NPM directly.
2015-07-01 16:50:19 +09:00
Simo Kinnunen
94dc1689b8
Automatically use prebuild resources if available.
2015-06-30 17:44:58 +09:00
Gunther Brunner
fbd59d031b
Moved from stf-docs to GitHub's stf-wiki.
2015-06-22 20:25:40 +09:00
Gunther Brunner
43fff42ec6
Removed stf-site from STF.
...
Moved stf-graphics to res/common/logo.
2015-06-22 19:56:21 +09:00
Gunther Brunner
e1a7560bc0
Added optional --user-profile-url for opening user profile page in an external domain, it was hardcoded.
2015-03-17 19:48:41 +09:00
Gunther Brunner
91b1861d8d
Fixed autofill for HTTPS.
...
Added dummy API endpoint for autofill POST requests.
Autofill also reads the CSRF token from cookies and doesn't require an 'about:blank' anymore on the forms.
2015-01-06 18:35:23 +09:00
Simo Kinnunen
b2e114c9be
Change all "api" URLs. Ideally the path prefix would be an option.
2014-12-17 21:29:51 +09:00
Simo Kinnunen
6d88a28a2c
Add a poor reverse proxy for local development, the main difference being that everything except websockets now goes through the same port. Makes it easier to understand the production url layout.
2014-10-23 13:28:18 +09:00
Simo Kinnunen
d785f2a59c
Trust proxy in app. Should finally make "localhost" in reverse port forwarding work automagically now that the load balancer is set up correctly.
2014-10-16 17:03:47 +09:00
Simo Kinnunen
1932c17508
Websocket loadbalancers might run in tcp mode, which makes it difficult to add the X-Forwarded-For header. Pass the IP in the query string instead.
2014-10-16 15:49:54 +09:00
Simo Kinnunen
95347d91f0
Show a dialog for new ADB key if using device.
2014-10-01 21:33:47 +09:00
Simo Kinnunen
e6c1de5194
ADB connect now respects auth keys in the settings page.
2014-10-01 18:41:54 +09:00
Gunther Brunner
fe4deaccff
Moved documentation to its own repository.
2014-08-29 15:17:11 +09:00
Gunther Brunner
eb968fa737
Add Documentation in Markdown plus express middleware for in-site rendering.
2014-08-28 21:04:32 +09:00
Simo Kinnunen
3a9b193f68
Rename "roles" to "units". Put units in their own folders.
2014-08-26 14:34:34 +09:00