ADR-0018: React2Shell Hardening Baseline
Adopt a defense-in-depth baseline for React/Next.js server surfaces after React2Shell-class vulnerabilities.
Adopt a defense-in-depth baseline for React/Next.js server surfaces after React2Shell-class vulnerabilities.
Adopt a lightweight hardening baseline for the Docusaurus-based Portfolio Docs app to reduce supply-chain and content injection risk.
OWASP security headers, Content Security Policy, environment variable security, and hardening configuration.
Plan to harden the Docusaurus-based docs platform with CI audit gates, security headers, and publication safety controls.
Release note covering security hardening across the Portfolio Docs App and Portfolio App, including CSP headers, audit gates, and governance updates.
Implementation plan for mitigating React2Shell-class risks in the portfolio app and documenting long-term hardening protocols.