Block a user
Flip CSP from report-only to enforce-mode after observation period
Expose CHANGELOG.md publicly at /changelog
One-pager claims a free trial that doesn't exist — ship it or remove the line
Add public /pricing route
Add /.well-known/security.txt (RFC 9116)
Public /security page: surface security posture for buyers
Stripe webhook handlers: real implementations + Portal/Checkout endpoints
legal: implement EU/UK cookie + analytics consent (or document geo-gate)
legal: narrow Sentry PII / Session Replay config before publishing privacy policy
legal: implement automated deletion-on-offboarding (or rewrite privacy claims)
feat(routing): serve public landing at / and move authed index to /home
chihlasm
created branch feat/public-landing-routing-refactor in chihlasm/resolutionflow
2026-05-14 05:58:17 +00:00
chihlasm
pushed to feat/public-landing-routing-refactor at chihlasm/resolutionflow
2026-05-14 05:58:17 +00:00
docs(handoff): record PR #166/#168 merges + issues #171/#172
docs(handoff): record PR #166/#168 merges + issues #171/#172
chihlasm
created branch docs/handoff-pr-168-merge in chihlasm/resolutionflow
2026-05-14 05:01:43 +00:00