What's Changed
- Deployment error investigation by @0xPabloLI in #1
- Merge dev into main by @0xPabloLI in #2
- chore: auto remediation for CI failure (railway) by @github-actions[bot] in #3
- chore: auto remediation for CI failure (railway) by @github-actions[bot] in #4
- chore: auto remediation for CI failure (railway) by @github-actions[bot] in #5
- chore(deps): bump actions/upload-artifact from 4 to 7 by @dependabot[bot] in #6
- chore(subgraph): sync deployment snapshot by @github-actions[bot] in #31
- chore: auto remediation for CI failure (main) by @github-actions[bot] in #32
- chore: auto remediation for CI failure (main) by @github-actions[bot] in #34
- chore(deps): bump the patch-minor group in /backend with 2 updates by @dependabot[bot] in #35
- chore(deps): bump the actions-all group with 4 updates by @dependabot[bot] in #36
- chore(deps-dev): bump @types/node from 20.19.27 to 25.4.0 in the major group by @dependabot[bot] in #39
- chore(subgraph): sync deployment snapshot by @github-actions[bot] in #40
- 子图 PR 时间戳 by @0xPabloLI in #41
- docs: update AGENTS.md and CORS configuration for frontend URL handling by @0xPabloLI in #48
- chore(deps): bump the npm_and_yarn group across 1 directory with 3 updates by @dependabot[bot] in #49
- ci: disable dependabot auto-merge and consolidate security updates by @0xPabloLI in #50
- ci: remove obsolete dependabot target-branch settings by @0xPabloLI in #51
- feat(workers): enhance randomness and error handling in BrowserPool by @0xPabloLI in #52
- Use actions/github-script for audit summary and set outputs via core.setOutput by @0xPabloLI in #54
- refactor: align markets payload and incentive data handling by @0xPabloLI in #55
- chore(deps-dev): bump picomatch from 2.3.1 to 2.3.2 in /backend in the security-all group across 1 directory by @dependabot[bot] in #56
- chore(deps-dev): bump picomatch from 2.3.1 to 2.3.2 in the security-all group across 1 directory by @dependabot[bot] in #57
- feat: CoinGecko price resolver, CI auto-remediation, and workflow updates by @0xPabloLI in #60
- chore: update workflow actions and enhance AGENTS.md by @0xPabloLI in #61
- chore: add socket-firewall job to CI workflow by @0xPabloLI in #62
- chore(deps-dev): bump lodash from 4.17.23 to 4.18.1 in the security-all group across 1 directory by @dependabot[bot] in #63
- chore(deps-dev): bump lodash from 4.17.23 to 4.18.1 in /backend in the security-all group across 1 directory by @dependabot[bot] in #64
- chore: update documentation and CI workflows for clarity and consistency by @0xPabloLI in #65
- feat: include commit SHA in health check response by @0xPabloLI in #67
- ci: deployment smoke tests, health commitSha, and commit slash commands by @0xPabloLI in #72
- fix(ci): key smoke-test concurrency by deployment environment by @0xPabloLI in #79
- chore(deps): bump the security-all group across 1 directory with 2 updates by @dependabot[bot] in #80
- chore(deps): bump basic-ftp from 5.2.0 to 5.2.1 in /workers in the security-all group across 1 directory by @dependabot[bot] in #81
- chore(deps): bump basic-ftp from 5.2.0 to 5.2.2 in the security-all group across 1 directory by @dependabot[bot] in #83
- chore: auto remediation for CI failure (main) by @github-actions[bot] in #84
- chore: auto remediation for CI failure (main) by @github-actions[bot] in #85
- chore(deps): bump hono from 4.12.12 to 4.12.14 in the security-all group across 1 directory by @dependabot[bot] in #86
- chore(deps): bump basic-ftp from 5.2.1 to 5.3.0 in /workers in the security-all group across 1 directory by @dependabot[bot] in #87
- chore: auto remediation for CI failure (main) by @github-actions[bot] in #92
- chore: auto remediation for CI failure (main) by @github-actions[bot] in #91
- chore(deps): bump basic-ftp from 5.2.2 to 5.3.0 in the security-all group across 1 directory by @dependabot[bot] in #90
- chore(deps): bump uuid from 8.3.2 to removed in /backend in the security-all group across 1 directory by @dependabot[bot] in #89
- chore(deps): bump ip-address from 10.1.0 to 10.2.0 in the security-all group across 1 directory by @dependabot[bot] in #96
- chore(deps): bump ip-address from 10.1.0 to 10.2.0 in /workers in the security-all group across 1 directory by @dependabot[bot] in #97
- chore: auto remediation for CI failure (dependabot/npm_and_yarn/security-all-32e07c5719) by @github-actions[bot] in #99
- chore(deps): bump the security-all group across 1 directory with 2 updates by @dependabot[bot] in #102
- chore(deps): bump fast-uri from 3.1.0 to 3.1.2 in the security-all group across 1 directory by @dependabot[bot] in #104
- chore: auto remediation for CI failure (main) by @github-actions[bot] in #109
- chore(deps): bump the security-all group across 1 directory with 2 updates by @dependabot[bot] in #107
- feat: V4 reserveId address-based format (AAV-358) by @0xPabloLI in #106
- fix(ci): exclude GHSA-58qx-3vcg-4xpx (ws) from security audit by @0xPabloLI in #113
- chore(deps): bump ws from 8.20.0 to 8.21.0 in /workers in the security-all group across 1 directory by @dependabot[bot] in #115
- Fix OOM and excessive logging in production by @0xPabloLI in #117
- chore(deps): bump hono from 4.12.18 to 4.12.23 in the security-all group across 1 directory by @dependabot[bot] in #122
- chore(deps): bump esbuild from 0.25.10 to 0.28.1 in the security-all group across 1 directory by @dependabot[bot] in #126
- fix(deps): bump js-yaml to 4.2.0 (GHSA-h67p-54hq-rp68) by @0xPabloLI in #134
- fix(deps): clear high-severity runtime audit (ws/undici/hono/viem chain) by @0xPabloLI in #136
- merge: sync railway into dev (memory leak fix + hubSupplied + MEMORY_DIAG gate) by @0xPabloLI in #137
- ci(remediation): align self-check with canonical audit gate and escalate failures by @0xPabloLI in #138
- Merge railway into main (741 commits) by @0xPabloLI in #140
- fix: Docker image swagger + env-overridable V8/memory settings by @0xPabloLI in #141
- sync: merge railway into main by @0xPabloLI in #142
- docs: Railway environment config reference by @0xPabloLI in #143
- fix: cache key mismatch + free LLM model by @0xPabloLI in #144
- fix: aaveProReserveId format unification + Aave UI comparison tool by @0xPabloLI in #145
- Merge railway into main — aaveProReserveId fix + comparison tool + Merkl LLM cleanup by @0xPabloLI in #146
- feat: LLM offset symbol normalization + aaveProReserveId fixes + db-backup cleanup by @0xPabloLI in #147
- fix: restore automated spec + exclude GHSA-frvp-7c67-39w9 by @0xPabloLI in #153
- ci: make security-audit non-blocking + restore automated spec by @0xPabloLI in #154
- sync: merge railway (automated spec) into main by @0xPabloLI in #155
- fix: rewrite $ref paths for OpenAPI 3.1 compliance by @0xPabloLI in #156
- fix: sanitize schema names + rewrite $ref paths for OpenAPI 3.1 by @0xPabloLI in #157
- sync: merge railway ( rewrite + schema sanitize) into main by @0xPabloLI in #158
- fix: restore security-audit as hard gate + fix vulnerabilities by @0xPabloLI in #159
- Merge railway into main by @0xPabloLI in #161
- chore(deps): bump ws from 8.20.0 to 8.21.1 in /workers in the security-all group across 1 directory by @dependabot[bot] in #151
- chore: sync CoinGecko platform map by @github-actions[bot] in #162
- chore: proactive security audit fix (railway) by @github-actions[bot] in #164
- chore: auto remediation for CI failure (railway) by @github-actions[bot] in #169
New Contributors
- @dependabot[bot] made their first contribution in #6
Full Changelog: https://github.com/0xPabloLI/aave-protocol-analysis/commits/v1.0.0