164 Commits (224066ff8207a3e1f3b5c1df6d7e2a77c0898e82)

Author SHA1 Message Date
  Sindre Stephansen 4acd265951 Add QR image to set up authenticator 5 years ago
  Sindre Stephansen 15384fb78d Add two-factor authentication 5 years ago
  Sindre Stephansen ac243db11b Minor restructure to improve code usability and readability 5 years ago
  Sindre Stephansen d5b155a348 Set SMTP timeout 5 years ago
  Sindre Stephansen f7d309268f Properly indent email messages 5 years ago
  Sindre Stephansen dd27cb68a4 Implement password reset 5 years ago
  Sindre Stephansen 46394af70f Implement email registration 5 years ago
  Sindre Stephansen b0bd63d0a1 Implement email. It almost works 5 years ago
  Sindre Stephansen cb0219dbba Remove initial admin user, and change the database password 5 years ago
  Sindre Stephansen 442f6e1470 Prevent account enumeration when creating a project 5 years ago
  Sindre Stephansen a4a1bd5451 Add a render helper that adds required globals 5 years ago
  Sindre Stephansen f8022f372f Log user registration and invalid login attempts 5 years ago
  Sindre Stephansen 3c3cf6ebc7 Replace printing with logging in model files 5 years ago
  Sindre Stephansen a2b8932f39 Add setup for outputing nginx, uwsgi and python logs to files outside docker 5 years ago
  Sindre Stephansen 593028b3fb Fix OS remote code execution 5 years ago
  Sindre Stephansen 24bc79c575 Implement protection from brute-force attacks 5 years ago
  Sindre Stephansen 9491cfd5dd Implement stricter password policy 5 years ago
  Sindre Stephansen 9892487c44 Implement better password security 5 years ago
  Sindre Stephansen 4d562df0de Minor fixes to code style in project files 5 years ago
  Sindre Stephansen 4a2af0f574 Check permissions and ownership when changing a project 5 years ago
  Sindre Stephansen 9738a31915 Disable the debug error page 5 years ago
  Sindre Stephansen d89ddd6228 Remove old static file 5 years ago
  Sindre Stephansen e9b76013c3 Implement CSRF protection 5 years ago
  Sindre Stephansen dafe82af0a Make remember cookie HttpOnly 5 years ago
  Sindre Stephansen 1257cadf70 Secure remember cookie. This doesn't enable http-only 5 years ago
  Sindre Stephansen 56c14f149f Reduce remember cookie expiry, and enforce by storing it in the database 5 years ago
  Sindre Stephansen ba8b2e6153 Use random string for remember cookie, replacing deserialization 5 years ago
  Sindre Stephansen a21b56775d Use bound variables instead of concatenation in SQL queries 5 years ago
  Sindre Stephansen 7629423772 Update mysql-connector dependency 5 years ago
  Sindre Stephansen f31d593e3a Add HTTPS support with a self signed certificate 5 years ago
  jakobsn e3d02892d3 config for mailserver 5 years ago
  Jakob Notland b1bab743d0 Change permissions to grant usergroup access. This change does not add or remove any vulnerablities. But makes it possibe for different administrators to manage the repository. 5 years ago
  Jakob Notland b10c8b4866 Fix errorhandler bug 5 years ago
  jakobsn 2ef59fd840 Bug in exceptionhandler 5 years ago
  jakobsn 9388eda466 typo 5 years ago
  jakobsn 016d5a63ee Error handling to prevent database from crashing on too easy on sql injections 5 years ago
  jakobsn dfc0928f7c Database exception handling 5 years ago
  jakobsn a696c319df Add smtp server 5 years ago
  jakobsn 212d0a9197 Accept zeros aswell 5 years ago
  jakobsn 2cd20c5106 Uwsgi init file 5 years ago
  jakobsn 96215ad1ff NGINX skeleton for https 5 years ago
  jakobsn 01ce46108c update 5 years ago
  jakobsn 3bb08a973f Correctly use env variable to connect to database after image is running 6 years ago
  jakobsn 8cedf0d58f Set ip and ports from groupid environment variable 6 years ago
  jakobsn 6f0754ce54 clean 6 years ago
  jakobsn cbe5cc7413 generate docs 6 years ago
  jakobsn 4d85f51209 refactor 6 years ago
  jakobsn fa7148315c polish 6 years ago
  jakobsn 5e01105c3b Connect database on every query, might prevent the database timeout 6 years ago
  jakobsn d44735afff polish 6 years ago