{"payload":{"feedbackUrl":"https://github.com/orgs/community/discussions/53140","repo":{"id":547877672,"defaultBranch":"main","name":"nuxt-security","ownerLogin":"Baroshem","currentUserCanPush":false,"isFork":false,"isEmpty":false,"createdAt":"2022-10-08T13:27:30.000Z","ownerAvatar":"https://avatars.githubusercontent.com/u/37120330?v=4","public":true,"private":false,"isOrgOwned":false},"refInfo":{"name":"","listCacheKey":"v0:1719914219.0","currentOid":""},"activityList":{"items":[{"before":null,"after":"338be115d077f1d95e372756a0378ed4a8976fb8","ref":"refs/heads/feat/#487","pushedAt":"2024-07-02T09:56:59.000Z","pushType":"branch_creation","commitsCount":0,"pusher":{"login":"Baroshem","name":"Jakub Andrzejewski","path":"/Baroshem","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/37120330?s=80&v=4"},"commit":{"message":"feat-#487: local dev with nuxt devtools","shortMessageHtmlLink":"feat-#487: local dev with nuxt devtools"}},{"before":"d236007475bbf54bc4c482892f4f84fe270a9651","after":"c8a9a7cbd536f8140b51e25ac79c6dfeb186ee6f","ref":"refs/heads/main","pushedAt":"2024-07-02T09:27:31.000Z","pushType":"pr_merge","commitsCount":2,"pusher":{"login":"Baroshem","name":"Jakub Andrzejewski","path":"/Baroshem","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/37120330?s=80&v=4"},"commit":{"message":"Merge pull request #486 from Simlor/patch-1\n\nTypo fix in docs","shortMessageHtmlLink":"Merge pull request #486 from Simlor/patch-1"}},{"before":null,"after":"fad91ee57add9dc2511c2e5d396435e4379840cb","ref":"refs/heads/vejja-patch-3","pushedAt":"2024-07-01T22:35:59.000Z","pushType":"branch_creation","commitsCount":0,"pusher":{"login":"vejja","name":"vejja","path":"/vejja","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/7295259?s=80&v=4"},"commit":{"message":"Update from useScript to Nuxt Scripts","shortMessageHtmlLink":"Update from useScript to Nuxt Scripts"}},{"before":"8fe6daa5f703f8314d06e792c80d09295cd0a04f","after":"d236007475bbf54bc4c482892f4f84fe270a9651","ref":"refs/heads/main","pushedAt":"2024-06-28T11:12:33.000Z","pushType":"pr_merge","commitsCount":2,"pusher":{"login":"vejja","name":"vejja","path":"/vejja","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/7295259?s=80&v=4"},"commit":{"message":"Merge pull request #484 from Baroshem/vejja-patch-2\n\nfix(docs): csp denial of pinceau styles runtime hydration","shortMessageHtmlLink":"Merge pull request #484 from Baroshem/vejja-patch-2"}},{"before":null,"after":"3f4ef11ee44689c33188e4a125c95f9b6b1629a8","ref":"refs/heads/vejja-patch-2","pushedAt":"2024-06-28T11:06:35.000Z","pushType":"branch_creation","commitsCount":0,"pusher":{"login":"vejja","name":"vejja","path":"/vejja","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/7295259?s=80&v=4"},"commit":{"message":"fix csp denial of pinceau styles runtime hydration","shortMessageHtmlLink":"fix csp denial of pinceau styles runtime hydration"}},{"before":"90ad2d5a32b1ba554e70b62b29975e7dc36a7c56","after":"8fe6daa5f703f8314d06e792c80d09295cd0a04f","ref":"refs/heads/main","pushedAt":"2024-06-28T10:04:50.000Z","pushType":"push","commitsCount":1,"pusher":{"login":"Baroshem","name":"Jakub Andrzejewski","path":"/Baroshem","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/37120330?s=80&v=4"},"commit":{"message":"chore: bump 2.0.0-rc.9","shortMessageHtmlLink":"chore: bump 2.0.0-rc.9"}},{"before":"1c338432e2cbf5c751a912f5d8df9cfcb368e09f","after":"90ad2d5a32b1ba554e70b62b29975e7dc36a7c56","ref":"refs/heads/main","pushedAt":"2024-06-28T07:46:50.000Z","pushType":"pr_merge","commitsCount":7,"pusher":{"login":"vejja","name":"vejja","path":"/vejja","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/7295259?s=80&v=4"},"commit":{"message":"Merge pull request #483 from Baroshem/vejja/issue470\n\nfeat(core): introduce `strict` mode","shortMessageHtmlLink":"Merge pull request #483 from Baroshem/vejja/issue470"}},{"before":"51014f6c642f5b36eb471f17d4465f37c40eca40","after":"b9e7913050cb7d6fdf9e8e763b1904f2f57f542f","ref":"refs/heads/vejja/issue470","pushedAt":"2024-06-27T17:43:53.000Z","pushType":"push","commitsCount":1,"pusher":{"login":"vejja","name":"vejja","path":"/vejja","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/7295259?s=80&v=4"},"commit":{"message":"modify option name to `strict`","shortMessageHtmlLink":"modify option name to strict"}},{"before":"2037f6ca26fa2c9868014da557eab31324aec3d2","after":"51014f6c642f5b36eb471f17d4465f37c40eca40","ref":"refs/heads/vejja/issue470","pushedAt":"2024-06-27T14:40:50.000Z","pushType":"push","commitsCount":1,"pusher":{"login":"vejja","name":"vejja","path":"/vejja","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/7295259?s=80&v=4"},"commit":{"message":"clarify owaspDefaults option","shortMessageHtmlLink":"clarify owaspDefaults option"}},{"before":"a79c40c71ef747456745218bf06530f185d1c90c","after":"2037f6ca26fa2c9868014da557eab31324aec3d2","ref":"refs/heads/vejja/issue470","pushedAt":"2024-06-27T14:28:38.000Z","pushType":"push","commitsCount":1,"pusher":{"login":"vejja","name":"vejja","path":"/vejja","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/7295259?s=80&v=4"},"commit":{"message":"minor formatting","shortMessageHtmlLink":"minor formatting"}},{"before":"9118056e419cd97276eb1fd5147196f9b3a760cf","after":"a79c40c71ef747456745218bf06530f185d1c90c","ref":"refs/heads/vejja/issue470","pushedAt":"2024-06-27T14:05:59.000Z","pushType":"push","commitsCount":1,"pusher":{"login":"vejja","name":"vejja","path":"/vejja","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/7295259?s=80&v=4"},"commit":{"message":"further expand doc section","shortMessageHtmlLink":"further expand doc section"}},{"before":"ce76b677cb006a1ef85785f1142aad9dbf40b367","after":"9118056e419cd97276eb1fd5147196f9b3a760cf","ref":"refs/heads/vejja/issue470","pushedAt":"2024-06-27T11:23:54.000Z","pushType":"push","commitsCount":1,"pusher":{"login":"vejja","name":"vejja","path":"/vejja","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/7295259?s=80&v=4"},"commit":{"message":"add new section to docs on owasp defaults","shortMessageHtmlLink":"add new section to docs on owasp defaults"}},{"before":"1c338432e2cbf5c751a912f5d8df9cfcb368e09f","after":"ce76b677cb006a1ef85785f1142aad9dbf40b367","ref":"refs/heads/vejja/issue470","pushedAt":"2024-06-26T18:20:51.000Z","pushType":"push","commitsCount":1,"pusher":{"login":"vejja","name":"vejja","path":"/vejja","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/7295259?s=80&v=4"},"commit":{"message":"feat(core): introduce owasp default sets\n\n\nCloses #470\n\n## Types of changes\n\n- [ ] Bug fix (a non-breaking change which fixes an issue)\n- [x] New feature (a non-breaking change which adds functionality)\n- [ ] Breaking change (fix or feature that would cause existing functionality to change)\n\n## Description\n\n\n\n\nThis PR adds a new `owaspDefaults` option, which can take 2 possible values:\n- `compatibility` (default): OWASP default settings are chosen to minimize the possibility of breaking the app. These default values are the same as in v1.\n- `security`: OWASP default settings are chosen to maximize security. These default values will usually require some additional fine-tuning to ensure the app will run smoothly.\n\nWith `security` OWASP level, the following headers are modified:\n1- `contentSecurityPolicy` blocks everything by default with `default-src: 'none'`. In addition, all `'unsafe-inline'` values are removed.\n2- `crossOriginEmbedderPolicy` is set to `require-corp`\n3- `strictTransportSecurity` has the `preload` flag\n4- 'xFrameOptions` is set to `DENY`\n\n## Checklist:\n\n\n\n- [x] My change requires a change to the documentation.\n- [ ] I have updated the documentation accordingly.\n- [x] I have added tests to cover my changes (if not applicable, please state why)","shortMessageHtmlLink":"feat(core): introduce owasp default sets"}},{"before":null,"after":"1c338432e2cbf5c751a912f5d8df9cfcb368e09f","ref":"refs/heads/vejja/issue470","pushedAt":"2024-06-26T18:11:27.000Z","pushType":"branch_creation","commitsCount":0,"pusher":{"login":"vejja","name":"vejja","path":"/vejja","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/7295259?s=80&v=4"},"commit":{"message":"chore/2.0.0-rc.7","shortMessageHtmlLink":"chore/2.0.0-rc.7"}},{"before":"1dd04965b1dec6008bd4c8e260dcbb942b766f32","after":"1c338432e2cbf5c751a912f5d8df9cfcb368e09f","ref":"refs/heads/main","pushedAt":"2024-06-24T11:09:51.000Z","pushType":"push","commitsCount":1,"pusher":{"login":"Baroshem","name":"Jakub Andrzejewski","path":"/Baroshem","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/37120330?s=80&v=4"},"commit":{"message":"chore/2.0.0-rc.7","shortMessageHtmlLink":"chore/2.0.0-rc.7"}},{"before":"fd47d83f4a719f4dc024fb02d154596fe997722b","after":"1dd04965b1dec6008bd4c8e260dcbb942b766f32","ref":"refs/heads/main","pushedAt":"2024-06-24T11:07:16.000Z","pushType":"pr_merge","commitsCount":3,"pusher":{"login":"Baroshem","name":"Jakub Andrzejewski","path":"/Baroshem","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/37120330?s=80&v=4"},"commit":{"message":"Merge pull request #478 from hlhc/fix/ssg-hash-inline-regex\n\nfix(csp): inline script/style have whitespace character","shortMessageHtmlLink":"Merge pull request #478 from hlhc/fix/ssg-hash-inline-regex"}},{"before":null,"after":"2a7b5d821fd17da347293117c89ef26b759ad795","ref":"refs/heads/dependabot/npm_and_yarn/braces-3.0.3","pushedAt":"2024-06-22T23:42:58.000Z","pushType":"branch_creation","commitsCount":0,"pusher":{"login":"dependabot[bot]","name":null,"path":"/apps/dependabot","primaryAvatarUrl":"https://avatars.githubusercontent.com/in/29110?s=80&v=4"},"commit":{"message":"Bump braces from 3.0.2 to 3.0.3\n\nBumps [braces](https://github.com/micromatch/braces) from 3.0.2 to 3.0.3.\n- [Changelog](https://github.com/micromatch/braces/blob/master/CHANGELOG.md)\n- [Commits](https://github.com/micromatch/braces/compare/3.0.2...3.0.3)\n\n---\nupdated-dependencies:\n- dependency-name: braces\n dependency-type: indirect\n...\n\nSigned-off-by: dependabot[bot] ","shortMessageHtmlLink":"Bump braces from 3.0.2 to 3.0.3"}},{"before":null,"after":"d98c5dca3d27113512323ef1991e88cd1bd0941f","ref":"refs/heads/dependabot/npm_and_yarn/ws-8.17.1","pushedAt":"2024-06-19T00:39:27.000Z","pushType":"branch_creation","commitsCount":0,"pusher":{"login":"dependabot[bot]","name":null,"path":"/apps/dependabot","primaryAvatarUrl":"https://avatars.githubusercontent.com/in/29110?s=80&v=4"},"commit":{"message":"Bump ws from 8.16.0 to 8.17.1\n\nBumps [ws](https://github.com/websockets/ws) from 8.16.0 to 8.17.1.\n- [Release notes](https://github.com/websockets/ws/releases)\n- [Commits](https://github.com/websockets/ws/compare/8.16.0...8.17.1)\n\n---\nupdated-dependencies:\n- dependency-name: ws\n dependency-type: indirect\n...\n\nSigned-off-by: dependabot[bot] ","shortMessageHtmlLink":"Bump ws from 8.16.0 to 8.17.1"}},{"before":"c6891f439dc5d358228890e62689a19d5b669769","after":"fd47d83f4a719f4dc024fb02d154596fe997722b","ref":"refs/heads/main","pushedAt":"2024-06-03T18:36:43.000Z","pushType":"pr_merge","commitsCount":2,"pusher":{"login":"Baroshem","name":"Jakub Andrzejewski","path":"/Baroshem","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/37120330?s=80&v=4"},"commit":{"message":"Merge pull request #471 from moshetanzer/main","shortMessageHtmlLink":"Merge pull request #471 from moshetanzer/main"}},{"before":null,"after":"6d44c90857dc5ba194c7a56a7ad61b2b217b613b","ref":"refs/heads/chore/2.0.0-rc.7","pushedAt":"2024-05-31T23:51:58.000Z","pushType":"branch_creation","commitsCount":0,"pusher":{"login":"vejja","name":"vejja","path":"/vejja","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/7295259?s=80&v=4"},"commit":{"message":"use COEP on docs","shortMessageHtmlLink":"use COEP on docs"}},{"before":"705ac53aff7435d51b4d407de5c7f072c61d1689","after":"c6891f439dc5d358228890e62689a19d5b669769","ref":"refs/heads/main","pushedAt":"2024-05-31T15:06:33.000Z","pushType":"pr_merge","commitsCount":3,"pusher":{"login":"vejja","name":"vejja","path":"/vejja","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/7295259?s=80&v=4"},"commit":{"message":"Merge pull request #468 from Baroshem/chore/2.0.0-rc.6\n\nChore/2.0.0-rc.6","shortMessageHtmlLink":"Merge pull request #468 from Baroshem/chore/2.0.0-rc.6"}},{"before":null,"after":"7a19e59f37f62615ea9194d96d2fbc0674aff6ac","ref":"refs/heads/chore/2.0.0-rc.6","pushedAt":"2024-05-31T14:37:31.000Z","pushType":"branch_creation","commitsCount":0,"pusher":{"login":"vejja","name":"vejja","path":"/vejja","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/7295259?s=80&v=4"},"commit":{"message":"2.0.0-rc.6","shortMessageHtmlLink":"2.0.0-rc.6"}},{"before":"a4d51787d8a384b69322d2eea2f42fc18c73de89","after":"705ac53aff7435d51b4d407de5c7f072c61d1689","ref":"refs/heads/main","pushedAt":"2024-05-31T10:54:52.000Z","pushType":"pr_merge","commitsCount":3,"pusher":{"login":"vejja","name":"vejja","path":"/vejja","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/7295259?s=80&v=4"},"commit":{"message":"Merge pull request #467 from Baroshem/chore/2.0.0-rc.5\n\nfix(rc): bump package version","shortMessageHtmlLink":"Merge pull request #467 from Baroshem/chore/2.0.0-rc.5"}},{"before":"c910759bdbe2756e6a56b5501a47745fb25da13a","after":"7aba338ebc2e661b59f36cd11e98725818c4eb34","ref":"refs/heads/chore/2.0.0-rc.5","pushedAt":"2024-05-31T10:51:51.000Z","pushType":"push","commitsCount":2,"pusher":{"login":"vejja","name":"vejja","path":"/vejja","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/7295259?s=80&v=4"},"commit":{"message":"Merge branch 'main' into chore/2.0.0-rc.5","shortMessageHtmlLink":"Merge branch 'main' into chore/2.0.0-rc.5"}},{"before":"ae61d18073ae358cac0edce4b3210654099e75fd","after":"c910759bdbe2756e6a56b5501a47745fb25da13a","ref":"refs/heads/chore/2.0.0-rc.5","pushedAt":"2024-05-31T10:48:53.000Z","pushType":"push","commitsCount":1,"pusher":{"login":"vejja","name":"vejja","path":"/vejja","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/7295259?s=80&v=4"},"commit":{"message":"2.0.0-rc.5","shortMessageHtmlLink":"2.0.0-rc.5"}},{"before":"f16ae6b2dd45e2faec8c6270e4f69e1ce71fb7fc","after":"a4d51787d8a384b69322d2eea2f42fc18c73de89","ref":"refs/heads/main","pushedAt":"2024-05-31T10:42:22.000Z","pushType":"pr_merge","commitsCount":3,"pusher":{"login":"vejja","name":"vejja","path":"/vejja","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/7295259?s=80&v=4"},"commit":{"message":"Merge pull request #466 from Baroshem/chore/2.0.0-rc.5\n\nfeat(headers): explicit directives","shortMessageHtmlLink":"Merge pull request #466 from Baroshem/chore/2.0.0-rc.5"}},{"before":"54abe538a0baf7a5aa0a04d70b74ebffb36b0191","after":"ae61d18073ae358cac0edce4b3210654099e75fd","ref":"refs/heads/chore/2.0.0-rc.5","pushedAt":"2024-05-31T10:41:11.000Z","pushType":"push","commitsCount":2,"pusher":{"login":"vejja","name":"vejja","path":"/vejja","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/7295259?s=80&v=4"},"commit":{"message":"Merge branch 'main' into chore/2.0.0-rc.5","shortMessageHtmlLink":"Merge branch 'main' into chore/2.0.0-rc.5"}},{"before":null,"after":"54abe538a0baf7a5aa0a04d70b74ebffb36b0191","ref":"refs/heads/chore/2.0.0-rc.5","pushedAt":"2024-05-31T10:34:57.000Z","pushType":"branch_creation","commitsCount":0,"pusher":{"login":"vejja","name":"vejja","path":"/vejja","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/7295259?s=80&v=4"},"commit":{"message":"prefer explicit CSP directives","shortMessageHtmlLink":"prefer explicit CSP directives"}},{"before":"10c6e1dbc29266eedaad922893a157407e0bae4c","after":"f16ae6b2dd45e2faec8c6270e4f69e1ce71fb7fc","ref":"refs/heads/main","pushedAt":"2024-05-31T09:14:38.000Z","pushType":"pr_merge","commitsCount":5,"pusher":{"login":"vejja","name":"vejja","path":"/vejja","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/7295259?s=80&v=4"},"commit":{"message":"Merge pull request #465 from Baroshem/chore/2.0.0-rc.4\n\nfix(headers): add default for connect-src","shortMessageHtmlLink":"Merge pull request #465 from Baroshem/chore/2.0.0-rc.4"}},{"before":"c896d1051574d66f2b92f868d7e129f6b983ac5e","after":"38192f3bedad6382a47e15673380f069f84653e0","ref":"refs/heads/chore/2.0.0-rc.4","pushedAt":"2024-05-31T09:10:53.000Z","pushType":"push","commitsCount":1,"pusher":{"login":"vejja","name":"vejja","path":"/vejja","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/7295259?s=80&v=4"},"commit":{"message":"2.0.0-rc.4","shortMessageHtmlLink":"2.0.0-rc.4"}}],"hasNextPage":true,"hasPreviousPage":false,"activityType":"all","actor":null,"timePeriod":"all","sort":"DESC","perPage":30,"cursor":"djE6ks8AAAAEdKVaXgA","startCursor":null,"endCursor":null}},"title":"Activity ยท Baroshem/nuxt-security"}