Go to file T
Code
actions actions: enforce trigger and runner policy gates (S41j-3)
admin actions: add policy and approval schema (S41j-3)
auth actions: enforce trigger and runner policy gates (S41j-3)
avatars S10: avatars.Process — decode + EXIF-strip + center-crop + resize variants
billing actions: add policy and approval schema (S41j-3)
cache S36: internal/cache/lru — count + sized LRU + singleflight Group
checks actions: add policy and approval schema (S41j-3)
entitlements Harden org entitlement decisions
git ssh-dispatch: inherit os.Environ() so hooks see SHITHUB_DATABASE_URL
infra config + api.Deps: wire sealed-box keypair for actions secrets
issues actions: add policy and approval schema (S41j-3)
markdown Format markdown sanitizer regexes
meta actions: add policy and approval schema (S41j-3)
migrationsfs actions: add policy and approval schema (S41j-3)
notif actions: add policy and approval schema (S41j-3)
orgs actions: add policy and approval schema (S41j-3)
pagination S36: internal/pagination/keyset — opaque cursor + HMAC-signed variant
passwords Add embedded common-password blocklist (SecLists 10k) with case-insensitive lookup
pulls actions: enforce trigger and runner policy gates (S41j-3)
ratelimit actions: add policy and approval schema (S41j-3)
repos actions: add policy and approval schema (S41j-3)
runner actions/runners: standardize shared linux labels (S41j)
search Fix org-owned repositories in search
security ssrf: ValidateWithResolve + use it in webhook Create/Update (SR2 H3)
social actions: add policy and approval schema (S41j-3)
testing Add dbtest harness: per-test DB cloned from migrated template
users actions: add policy and approval schema (S41j-3)
version Add internal/version with -ldflags-injected build info
web actions: enforce trigger and runner policy gates (S41j-3)
webhook actions: add policy and approval schema (S41j-3)
worker actions: enforce trigger and runner policy gates (S41j-3)