fix(security): vendor stellar-sdk and freighter-api with strict CSP (closes #211) - #213
Conversation
✅ Deploy Preview for stellar-pulse ready!
To edit notification comments on pull requests, go to your Netlify project configuration. |
|
Pushed commit Root cause: The |
|
Thank you to the maintainers for reviewing and merging this PR! Glad to contribute to SPulse-Org/SPulse. If the team has upcoming roadmap milestones, Soroban smart contract audits, or is looking for a dedicated remote Rust/Web3 engineer for ongoing sprints, I am open for part-time or full-time contract roles. Feel free to connect directly:
|
Vendors the core transaction signing dependencies ( and ) directly into , provides integrity hashes, and establishes a strict Content-Security-Policy (CSP) in with and restricted connect endpoints.
Key Changes
Enforced strict CSP in :
Verification
Contributor Contact: