summaryrefslogtreecommitdiff
path: root/DomainDig/WorkflowsView.swift
diff options
context:
space:
mode:
authorChristian Cleberg <[email protected]>2026-07-20 11:56:37 -0500
committerChristian Cleberg <[email protected]>2026-07-20 13:56:41 -0500
commit77a42a8b4f3dd89e631f8246bdea3e95f83bac6a (patch)
tree8b2d9dda61a88a2c5eb58b35a62c966ef501f404 /DomainDig/WorkflowsView.swift
parent6e9dea95d015c0f2d335d9b89b8ee843b4c2b05e (diff)
downloaddomain-dig-77a42a8b4f3dd89e631f8246bdea3e95f83bac6a.tar.gz
domain-dig-77a42a8b4f3dd89e631f8246bdea3e95f83bac6a.tar.bz2
domain-dig-77a42a8b4f3dd89e631f8246bdea3e95f83bac6a.zip
fix: harden webhook transport and gate debug logging
Require HTTPS for outbound integration webhooks. Webhook URLs are themselves secrets (Slack in particular), so an http:// endpoint leaked both the URL and the alert payload in cleartext. Disable DomainDebugLog in release builds. Every message used privacy: .public, which opted out of OSLog redaction and wrote looked-up domains to the unified log in shipped builds.
Diffstat (limited to 'DomainDig/WorkflowsView.swift')
0 files changed, 0 insertions, 0 deletions