/npm-trusted-publishing-48-hour-expiry-unvalidated-config/ npm Trusted Publishing Configs Now Expire in 48 Hours Unless a Publish Validates Them Oct 11
/zeroization-wipe-secrets-compiler-copies/ Wiping a Secret Can Create the Copy You Leave Behind Oct 8
/github-app-stateless-installation-tokens-520-chars/ GitHub App Installation Tokens Are Now About 520 Characters. The Bugs Will Be in Your Redaction Rules Oct 7
/postgres-self-join-elimination-rls-checkasuser/ Postgres Self-Join Elimination Could Merge Two Table References That Had Different RLS Policies Oct 2
/anthropic-enterprise-frontier-safeguards-data-retention/ Anthropic Rebuilds Its Data Retention Deal Around Your Own Cloud Sep 2
/claude-session-hijacking-infostealer-malware/ Infostealers Are Hijacking Claude Sessions, and MFA Isn't Stopping Them Sep 1
/claude-in-chrome-general-availability/ Claude in Chrome Goes GA, and Now It Acts Without Asking First Aug 31
/claude-code-restricted-mode/ Claude Code's Restricted Mode Closes the Config Escape Hatch on Sandboxed Agents Aug 29
/how-to-store-password-securely-in-the-database/ How to store passwords securely in the Database? Jul 13