mirror of
https://github.com/rcourtman/Pulse.git
synced 2026-09-20 18:23:47 +00:00
1b3effcb10
The function was using substring matching for sensitive param names, causing parameters like "extra_token" or "myapikey" to be incorrectly redacted when they matched "token=" or "apikey=" as substrings. Now checks for proper boundary characters (? or &) before matching, so only actual parameter names are redacted. Related to ADA knowledge entry: "Query param redaction uses substring matching"
Internal API Package
This directory contains the API server implementation for Pulse.
Important Note About frontend-modern/
The frontend-modern/ subdirectory that appears here is:
- AUTO-GENERATED during builds
- NOT the source code - just a build artifact
- IN .gitignore - never committed
- REQUIRED BY GO - The embed directive needs it here
Frontend Development Location
👉 Edit frontend files at: /opt/pulse/frontend-modern/src/
Why This Structure?
Go's //go:embed directive has limitations:
- Cannot use
../paths to access parent directories - Cannot follow symbolic links
- Must embed files within the Go module
This is a known Go limitation and our structure works around it.