|
|
1fa11fec83
|
docs(security): add security-headers and rate-limiting cookbooks
Adds two new consumer-facing guides:
- docs/guides/security-headers.md: per-framework middleware wiring
(Next.js, TanStack Start, Payload CMS), nonce threading for inline
scripts, CSP allowlist customisation, Sentry nonce integration, and
securityheaders.com verification workflow.
- docs/guides/rate-limiting.md: manifest rateLimit field declaration,
canonical key-naming convention (<feature>:<scope>:<key>),
multi-budget patterns, InMemoryRateLimit / NoopRateLimit for dev/test,
and production backend wiring via BindContext.rateLimit.
Co-Authored-By: Claude Sonnet 4.6 <noreply@anthropic.com>
|
2026-05-20 11:39:56 +00:00 |
|