Skip to content

Security: Mask PII in provider logs, hash session fingerprints, and add AES‑GCM fuzz tests#1140

Merged
sublime247 merged 3 commits into
sublime247:mainfrom
dumbdev:fix
May 30, 2026
Merged

Security: Mask PII in provider logs, hash session fingerprints, and add AES‑GCM fuzz tests#1140
sublime247 merged 3 commits into
sublime247:mainfrom
dumbdev:fix

Conversation

@dumbdev
Copy link
Copy Markdown
Contributor

@dumbdev dumbdev commented May 30, 2026

closes #917
closes #930
closes #861

Added PII masking to provider logs (phone numbers and customer names), stop storing raw IP/UA by hashing session fingerprints and IPs, and add AES‑GCM encryption utilities plus fast-check fuzz tests to exercise them. This reduces PII leakage in logs and improves detection of session anomalies without persisting raw identifiers.

@drips-wave
Copy link
Copy Markdown

drips-wave Bot commented May 30, 2026

@dumbdev Great news! 🎉 Based on an automated assessment of this PR, the linked Wave issue(s) no longer count against your application limits.

You can now already apply to more issues while waiting for a review of this PR. Keep up the great work! 🚀

Learn more about application limits

@sublime247 sublime247 merged commit ae14860 into sublime247:main May 30, 2026
3 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

2 participants