security: production CORS allowlist with fail-safe denial
Ported from the security pack's index.ts change to the post-refactor app.ts (the Express app moved in the integration-test extraction). Adapted-from: https://github.com/Open-Legal-Products/mike/pull/227 (4c44c15, CORS half)
| Repository | open-legal-products/mike |
|---|---|
| Author | Amalanand Muthukumaran <mamalanand3@gmail.com> |
| Authored | |
| Parents | c0ff4404 |
| Stats | 2 files changed , +79 , -1 |
| Part of | Replace reflected CORS with a fail-safe allowlist |
Capture this commit into my fork
Download a Markdown prompt that tells Claude how to port this
exact commit into your working tree. Run it via
claude -p < capture-commit-3068002e.md
from inside the repo you want the change in.