Update v1.0.2 documentation and security guidance
This commit is contained in:
1 parent
f4c4beb6b5
commit
a1a2e9d571
7 files changed
+84
-18
No files matched your search
@@ -378,3 +378,10 @@ Avoid debug logging in production because internal identifiers may be written to
|
||||
- Protect SQLite and log directories with correct ownership.
|
||||
- Monitor `/health`, `/stats`, and `/metrics`.
|
||||
- Verify `chronoseal config check` after environment or config changes.
|
||||
|
||||
|
||||
## v1.0.2 Deployment Notes
|
||||
|
||||
- Containers run as a dedicated non-root user.
|
||||
- Reverse proxies should forward X-Forwarded-For or X-Real-IP.
|
||||
- Security headers are enabled by default.
|
||||
Reference in new issue
Block a user