Skip to content

security: reject placeholder values in secrets at startup - #123

Merged
gnacho merged 1 commit into
mainfrom
feat/yuvomi-lessons
Aug 30, 2026
Merged

gnacho merged 1 commit into
mainfrom
feat/yuvomi-lessons

Conversation

@gnacho

@gnacho gnacho commented Aug 30, 2026

Copy link
Copy Markdown
Owner

Closes #122

Check ADMIN_PASSWORD, WEBHOOK_SECRET, SMTP_PASS against known placeholder
markers (cambia, changeme, example, etc.) and fail-fast if detected.
@gnacho
gnacho merged commit d5a3b01 into main Aug 30, 2026
3 checks passed
@gnacho
gnacho deleted the feat/yuvomi-lessons branch August 30, 2026 07:40
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

Apply security patterns from Yuvomi audit

1 participant