Files
netwatch/script
clawbot 28d99e89d0
check / check (push) Successful in 1m13s
nginx: security headers on every response (closes #18)
nginx sent none of the security headers REPO_POLICIES.md requires.
security-headers.conf now sets all six with always, included at server
level and again in /assets/, whose own add_header would otherwise drop
them. nginx hides the copies netwatch-server sets, so /api/ and the
health check carry each header once. The content security policy
allows no inline script or style; the host row's status dot took its
grey from a style attribute, now a class. connect-src is * because
several probed hosts redirect to other hosts and the browser checks
every redirect against it. Referrer-Policy is no-referrer, as the
backend already sends.

Model: opus-5-5
2026-09-29 07:40:02 +00:00
..
2026-07-07 02:14:16 +02:00
2026-07-07 02:14:16 +02:00
2026-07-07 02:14:16 +02:00
2026-07-07 02:14:16 +02:00