Henry Heng
a86f618186
Chore/Secure Cookies Env Variable ( #5281 )
...
Enhanced cookie security handling in the passport middleware to allow explicit configuration of secure cookie settings.
2025-10-01 11:54:07 +01:00
Yau
b5da234ce7
Add environment variable control for trust proxy setting ( #5226 )
...
* feat: allow trust proxy setting to be configured via environment variable
* fix: restore HTTP_DENY_LIST in .env.example after merge conflict
* feat: add conditional handling for trust proxy
* feat: add trust proxy environment variable documentation
* feat: add trust proxy environment variable sample value
* fix: handle empty trust proxy string in docker environment
---------
Co-authored-by: Henry Heng <henryheng@flowiseai.com >
2025-09-27 14:08:55 +01:00
Henry Heng
41131dfac3
Feat/Enhance security validation for MCP configurations ( #5232 )
...
feat: enhance security validation for MCP configurations
- Added environment variable checks for CUSTOM_MCP_SECURITY_CHECK, CUSTOM_MCP_PROTOCOL, and HTTP_DENY_LIST across various Docker and application files.
- Implemented validation functions in MCP core to prevent command injection and ensure safe environment variable usage
2025-09-18 14:37:31 +01:00
Henry Heng
42152dd036
Chore/Disable Available Dep By Default ( #5231 )
...
disable available dependencies by default, only allow when ALLOW_BUILTIN_DEP is set to true
2025-09-18 12:03:08 +01:00
Henry Heng
8ba1a09077
Bugfix/Update worker docker ( #4643 )
...
update worker docker
2025-06-12 17:25:43 +01:00