Add security hardening: helmet, CORS allowlist, body limit, ID validation #8
Reference in New Issue
Block a user
Delete Branch "security/fix-footguns"
Deleting a branch is permanent. Although the deleted branch may continue to exist for a short time before it actually gets removed, it CANNOT be undone in most cases. Continue?
and financing.js (GET/PUT/DELETE/:id and PATCH financing-payments/:id)
validation tests (non-numeric IDs → HTTP 400)
Nightshift-Task: security-footgun
Nightshift-Ref: https://github.com/marcus/nightshift
Co-Authored-By: Claude Sonnet 4.6 noreply@anthropic.com
View command line instructions
Checkout
From your project repository, check out a new branch and test the changes.