Pulse/internal/api
Pulse Monitor e661665d24 fix: comprehensive security improvements and UI fixes
- Remove overly restrictive password complexity requirements (now only 8+ chars)
- Fix Change Password section not appearing in Settings > Security
- Fix logout sometimes showing setup page instead of login page
- Remove misleading desktop notifications option from first-run setup
- Improve rate limiting on authentication endpoints
- Fix sensitive data appearing in logs (passwords, tokens)
- Enhance file permissions for sensitive files (0600)
- Fix WebSocket origin validation defaults
- Add password complexity validation for setup
- Improve CSRF token handling after server restarts
- Fix security status API using wrong fetch client
- Add logout race condition prevention

Security improvements:
- No credential leakage in logs
- Proper bcrypt password hashing
- Session management enhancements
- Rate limiting on all auth endpoints
- Secure file permissions on sensitive data
2025-08-16 21:10:24 +00:00
..
alerts.go fix: address critical issues from v4.3.x releases 2025-08-14 16:29:42 +00:00
auth.go fix: comprehensive security improvements and UI fixes 2025-08-16 21:10:24 +00:00
config_handlers.go fix: comprehensive security improvements and UI fixes 2025-08-16 21:10:24 +00:00
diagnostics.go fix: Docker persistence and Windows VM memory reporting 2025-08-06 16:00:22 +00:00
frontend_embed.go feat: embed frontend in Go binary for simplified deployment 2025-08-12 12:45:57 +00:00
guest_metadata.go fix: reload guest metadata after import 2025-08-14 09:51:40 +00:00
middleware.go feat: Implement security, type safety, and error handling improvements 2025-07-29 17:53:51 +00:00
notifications.go feat: add custom webhook payload templates and fix Telegram chat_id handling 2025-08-12 14:03:13 +00:00
ratelimit.go feat: add comprehensive security system for API protection 2025-08-06 21:39:52 +00:00
router.go fix: comprehensive security improvements and UI fixes 2025-08-16 21:10:24 +00:00
security.go fix: resolve WebSocket metric updates and improve polling efficiency 2025-08-16 12:12:10 +00:00
security_setup_fix.go fix: comprehensive security improvements and UI fixes 2025-08-16 21:10:24 +00:00
settings.go fix: ensure consistent CPU core display for all guests 2025-08-09 15:03:28 +00:00
system_settings.go refactor: remove legacy system.json API token management 2025-08-15 10:04:39 +00:00
updates.go fix: complete update system improvements 2025-08-07 11:43:40 +00:00