| Name | Modified | Size | Downloads / Week |
|---|---|---|---|
| Parent folder | |||
| README.md | 2026-04-26 | 974 Bytes | |
| v0.2.1 -- Case Number Fix _ Security Hardening source code.tar.gz | 2026-04-26 | 647.0 kB | |
| v0.2.1 -- Case Number Fix _ Security Hardening source code.zip | 2026-04-26 | 693.1 kB | |
| Totals: 3 Items | 1.3 MB | 0 | |
What's Changed
Fixed
- Case number reuse after deletion:
generate_case_numbernow usesMAX(case_number)instead ofCOUNT(*). Previously, hard-deleting a report could cause the next submission to receive an already-issued case number — a compliance and traceability problem. - CI test isolation: Orphaned report in
test_delete_report_only_removes_matching_sessionscaused aUniqueViolationErroron CI runs; test now cleans up all created records.
Security
Resolved 4 additional CodeQL code scanning alerts (all 10 alerts from both v0.2.0 and v0.2.1 are now closed):
py/url-redirection— language-switch redirect resolved via static_NEXT_ALLOWLISTdictpy/cookie-injection— status-session cookie rotated to a fresh token on every replypy/clear-text-logging×2 — password reset script now uses string literals in allprint()calls
Full Changelog: https://github.com/openwhistle/OpenWhistle/compare/v0.2.0...v0.2.1