Commit Graph

  • 4d5ab818e9 Robustheits-Fix: RFC-5321-konforme E-Mail-Local-Parts (keine Rand-Punkte/Doppelpunkte) + sAMAccountName-Fallback bei Nicht-Latin-Namen + Release v11 DEV2.0 Kühn 2026-09-17 13:15:27 +02:00
  • 1c28917bb5 Umlaut-Fix: zentrale Transliteration (ae/oe/ue/ss) fuer E-Mails, UPN und sAMAccountName + Release v10 Kühn 2026-09-16 11:27:03 +02:00
  • b369ac955b Release v9: Image-Tag auf DEV2.0-v9 angehoben Kühn 2026-09-16 11:06:02 +02:00
  • ac7892dd32 Bugfix: lastInsertRowid in PostgreSQL-Transaktionen (txDb haengt RETURNING id an) — behob 500 beim Abschicken von Vorlagen Kühn 2026-09-16 11:04:16 +02:00
  • 1ee37c402a OIDC-Integration: Keycloak-Login (Authorization Code Flow + PKCE), app-seitige Rollen bleiben unangetastet Kühn 2026-09-15 11:41:29 +02:00
  • 1d03ab498f Release v8: Image-Tag auf DEV2.0-v8 angehoben Kühn 2026-09-10 17:40:07 +02:00
  • 6ee8582ce5 Theme-Toggle: Dark/Light-Mode pro Nutzer (localStorage, System-Default, FOUC-Schutz) Kühn 2026-09-10 17:34:40 +02:00
  • d43d1a3f34 H3-Fix: TRUST_PROXY konfigurierbar (H3: Rate-Limit-Bypass hinter Proxy geloest) Kühn 2026-09-10 17:07:14 +02:00
  • ad6983a49d Stack: Env-Variablen vervollstaendigt (COOKIE_SECURE, HSTS_ENABLED, LDAP_MAX_DELETE_PCT, UPLOAD_MAX_MB) Kühn 2026-09-10 17:03:35 +02:00
  • 4cccf3b1e8 Stack: Image-Tag auf DEV2.0-v7 aktualisiert Kühn 2026-09-10 16:59:18 +02:00
  • 1aec65dc95 Security & UX Release v7 Kühn 2026-09-10 16:57:20 +02:00
  • ec2ed91621 Rework CSRF: deterministic token from session + self-healing cookie (no more stale 403s) Kühn 2026-08-31 11:26:00 +02:00
  • a05133f39d Fix AD user creation: userAccountControl must be string for ldapts Kühn 2026-08-28 11:28:56 +02:00
  • 03d20b0e09 Security fixes N4/H2/H1 + hide template editor for non-admins Kühn 2026-08-28 10:15:31 +02:00
  • a35721abec Fix file_path: send undefined instead of null Kühn 2026-08-25 13:24:40 +02:00
  • abb0617356 Fix task validation: send boolean for is_checked, omit file_path when null Kühn 2026-08-25 13:16:28 +02:00
  • dd095d9696 Fix CSRF: use getCSRFToken() in getAuthHeaders() to read from cookie Kühn 2026-08-25 12:17:08 +02:00
  • b0fcabe4a5 Fix CSRF token: read from cookie after page reload Kühn 2026-08-25 12:02:07 +02:00
  • 3e1ac99f38 Remove hardcoded CORS_ORIGIN default - must be set via env Kühn 2026-08-25 11:38:18 +02:00
  • dd63620fee Change port from 5000 to 3900 Kühn 2026-08-25 11:14:39 +02:00
  • dfa92ed665 Add docker-compose.stack.yml for Dockhand/Portainer deployment DEV1.0 Kühn 2026-08-25 10:58:11 +02:00
  • 6be1791c62 DEV1.0: Initial commit - Workflow Portal with security fixes Kühn 2026-08-24 09:45:28 +02:00