Releases: AndrewShedov/enter-text--SAHAR
Releases · AndrewShedov/enter-text--SAHAR
Release list
v2.0.0
🚀 HTMX v4.0.0 & Security Hardening
Fully migrated the frontend interaction layer to the latest version of HTMX. This ensures maximum compatibility, refined performance, and flawless partial DOM updates.
🛡️ Cybersecurity Enhancements
- DoS (Denial of Service) Protection: Implemented a strict payload size limit (
FormConfig::limit(4096)) on incoming data. This protects the Actix Web server from memory exhaustion attacks caused by maliciously large request payloads. - Hardened HSTS: Added the
preloaddirective to theStrict-Transport-Securityheader. This guarantees that browsers will exclusively connect to the application via HTTPS, eliminating vulnerability to Man-in-the-Middle (MitM) downgrade attacks. - Anti-CSRF Middleware: Enforced strict validation of
OriginandRefererheaders for all mutating requests (POST/DELETE). Any request originating from an unauthorized domain is instantly blocked, completely preventing Cross-Site Request Forgery.
📝 Documentation
Updated the README.md and technical documentation to accurately reflect the HTMX v4.0.0 integration and document the hardened security middleware.