Repository navigation
v0.1.0
·
54 commits
to master
since this release
- Release 0.1.0 (b3b2136)
- ci: add ci github workflow (9aceee9)
- chore: disable automatic release-it npm publishing (f4e671f)
- chore: add release-it for release automation (c2f7bcf)
- docs: add img shields badges for license and version (9c8aba5)
- refactor(vite): use satisfies Plugin to preserve precise hook types in tests (41645aa)
- docs: document optional peer dependencies and zero-dependency JS setup in README (d9835a9)
- refactor(cli): scope esbuild dependency to CLI path by dynamically importing it (591374e)
- refactor(vite): replace hand-rolled plugin type with official vite Plugin type (fbf44bd)
- refactor: simplify HeaderValueFor type in header-values.ts (5caba0e)
- refactor: reuse serializeHeaderLine in validate.ts (92db955)
- refactor: collapse duplicate build/validate pipelines (65945b1)
- refactor: resolve circular imports between types and registry (06d3453)
- refactor: remove all deprecated signatures and legacy option sniffer logic (d751c9b)
- refactor: secure options sniffer with compile-time check and add deprecation overloads (5c79dfd)
- style: resolve biome noArguments lint warning in presets.ts (16884f3)
- fix: omit COEP by default and fix resolver default parameter trap (4571915)
- refactor: extract option resolution logic to dedicated helper functions (a04288f)
- feat: set default COEP header value to 'unsafe-none' (9a31bd6)
- feat(examples): add production config example and reorganize examples (689aa68)
- chore(examples): add runnable script to view generated _headers output (cee4c63)
- feat(presets): include X-Frame-Options in baseline security headers by default (cb8f49d)
- feat(presets): revise security headers and add dynamic content presets (b28d8d5)
- refactor: modularize validate.ts by extracting header-specific validation rules (1b23ad4)
- refactor: separate CSP and Cache-Control validation from serialization helpers (b82c783)
- refactor: separate Permissions-Policy validation from helper serialization (216e350)
- feat: validate Permissions-Policy and prevent common CSP-like configuration errors (bad9d63)
- feat: add Number.isFinite guard for numeric header values (ff2d1f3)
- test: add configuration loading, CLI, integration, and Vite plugin tests (eeb2a31)
- docs: add section on CAC documentation gaps and behavioral quirks (36a2b36)
- docs: document CLI design decisions and CAC parser behavior (6de87ca)
- refactor: use cac for CLI argument parsing (4209e51)
- refactor: use node:util parseArgs for CLI argument parsing (d9726f9)
- fix: address lint issues for string concatenation and explicit any (14af155)
- refactor: remove redundant undefined value (69f971d)
- chore: add biome lint and format scripts to package.json (7593e3e)
- chore: add lefthook for automatic formatting (50346bb)
- style: biome format (ec7b10e)
- chore: setup biome for code formatting (5d85b66)
- feat: require explicit path argument in corsPreset (5bf22d9)
- feat: implement secure-by-default enhancements (ad3ff82)
- refactor(examples): use rule() instead of raw object literal (b20096a)
- refactor: standardize examples (34d2e6f)
- fix: remove unsupported tsdown config (be7248b)
- refactor: drop legacy CJS support and transition to ESM-only (1856904)
- build: fix package entry points and exports paths (aadd253)
- chore: migrate to tsdown using migration tool (c877156)
- docs(license): add author (419eb59)
- chore: major bump all deps (a037294)
- chore: replace package lock with bun lock (22ffbba)
- initial commit (ab65dbf)