-
-
Notifications
You must be signed in to change notification settings - Fork 1
All issues
Issue creation is restricted in this repository
Issues
is:issue state:open
is:issue state:open
Search results
docs(openapi): no route declares a 429, so the generated client does not know it can happen
P3FixesFixesStatus: Open.#245 In fells-code/seamless-auth-api;feat(magic-link): dedicated redirect allowlist for custom schemes and non-WebAuthn hosts
enhancementNew feature or requestNew feature or requestP3FixesFixesStatus: Open.#242 In fells-code/seamless-auth-api;Boot spends 3.1s of 6.8s running a migration check that finds nothing, on every task start
bugSomething isn't workingSomething isn't workingP3FixesFixesStatus: Open.#205 In fells-code/seamless-auth-api;Refresh rotation resets the absolute session lifetime, so there is no absolute cap
enhancementNew feature or requestNew feature or requestgovrampGovRAMP readiness track, see #155GovRAMP readiness track, see #155P2GovRAMP readiness trackGovRAMP readiness tracksecuritySecurity-sensitive: auth, tokens, OTP, sessions, cryptoSecurity-sensitive: auth, tokens, OTP, sessions, cryptoStatus: Open.#185 In fells-code/seamless-auth-api;No authentication coverage report for assessment and insurance responses
enhancementNew feature or requestNew feature or requestgovrampGovRAMP readiness track, see #155GovRAMP readiness track, see #155P2GovRAMP readiness trackGovRAMP readiness trackStatus: Open.#178 In fells-code/seamless-auth-api;No enforceable phishing-resistant-only login mode, and magic link is on by default
enhancementNew feature or requestNew feature or requestgovrampGovRAMP readiness track, see #155GovRAMP readiness track, see #155P2GovRAMP readiness trackGovRAMP readiness tracksecuritySecurity-sensitive: auth, tokens, OTP, sessions, cryptoSecurity-sensitive: auth, tokens, OTP, sessions, cryptoStatus: Open.#177 In fells-code/seamless-auth-api;Audit records are updatable and have no integrity protection
enhancementNew feature or requestNew feature or requestgovrampGovRAMP readiness track, see #155GovRAMP readiness track, see #155P2GovRAMP readiness trackGovRAMP readiness tracksecuritySecurity-sensitive: auth, tokens, OTP, sessions, cryptoSecurity-sensitive: auth, tokens, OTP, sessions, cryptoStatus: Open.#174 In fells-code/seamless-auth-api;Audit events have no retention policy and no bulk export
enhancementNew feature or requestNew feature or requestgovrampGovRAMP readiness track, see #155GovRAMP readiness track, see #155P2GovRAMP readiness trackGovRAMP readiness tracksecuritySecurity-sensitive: auth, tokens, OTP, sessions, cryptoSecurity-sensitive: auth, tokens, OTP, sessions, cryptoStatus: Open.#173 In fells-code/seamless-auth-api;Certification readiness: FIDO Functional Certification and GovRAMP
enhancementNew feature or requestNew feature or requestfido2FIDO Functional Certification track, see #155FIDO Functional Certification track, see #155govrampGovRAMP readiness track, see #155GovRAMP readiness track, see #155P0Highest: FIDO2 certification trackHighest: FIDO2 certification trackStatus: Open.#155 In fells-code/seamless-auth-api;Instrument the auth path: time to first login, deliverability, drop-off, device class
enhancementNew feature or requestNew feature or requestP4Features and enhancementsFeatures and enhancementsStatus: Open.#154 In fells-code/seamless-auth-api;[Feature]: Dashboard metrics and security anomalies accept no time range
enhancementNew feature or requestNew feature or requestP4Features and enhancementsFeatures and enhancementsStatus: Open.#132 In fells-code/seamless-auth-api;[Feature]: Admin organization routes have no delete, and the list cannot be paginated or searched
enhancementNew feature or requestNew feature or requestP4Features and enhancementsFeatures and enhancementsStatus: Open.#131 In fells-code/seamless-auth-api;