- Create @reviq/utils package with PBKDF2-SHA256 password hashing compatible with Cloudflare Workers (uses crypto.subtle) - Update api-server and CLI to use new utils package for consistent password hashing format across the codebase - Add pino logging to api-server for better request debugging - Make login request tokens cryptographically secure base58 strings instead of database IDs - Add migration to make login_requests.token non-nullable with unique constraint - Fix RPCLink URL construction for client-side API calls - Add db:codegen script to root package.json Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com>
35 lines
909 B
JSON
35 lines
909 B
JSON
{
|
|
"permissions": {
|
|
"allow": [
|
|
"Bash(tree:*)",
|
|
"Bash(xargs cat:*)",
|
|
"Bash(find:*)",
|
|
"Bash(grep:*)",
|
|
"WebFetch(domain:stricli.io)",
|
|
"WebSearch",
|
|
"WebFetch(domain:bloomberg.github.io)",
|
|
"WebFetch(domain:github.com)",
|
|
"Bash(bun install:*)",
|
|
"Bash(bun pm show:*)",
|
|
"Bash(npm view:*)",
|
|
"Bash(bun run typecheck:*)",
|
|
"Bash(bun run build)",
|
|
"Bash(bun pm ls:*)",
|
|
"Bash(bun run cli --help:*)",
|
|
"Bash(dbmate status:*)",
|
|
"mcp__plugin_context7_context7__resolve-library-id",
|
|
"mcp__plugin_context7_context7__query-docs",
|
|
"Bash(bun run:*)",
|
|
"Bash(bun typecheck:*)",
|
|
"Bash(bun lint:*)",
|
|
"Bash(bun lint:fix:*)",
|
|
"Bash(sg scan:*)",
|
|
"Bash(bun remove:*)",
|
|
"Bash(bun remove:*)",
|
|
"Bash(biome check:*)",
|
|
"Skill(igm:check-and-fix)",
|
|
"Bash(lsof:*)"
|
|
]
|
|
}
|
|
}
|