Skip to content

fix: add supply-chain and token-scoping guidance#22

Merged
vystrcild merged 1 commit intomainfrom
fix-security-issues-2
Feb 25, 2026
Merged

fix: add supply-chain and token-scoping guidance#22
vystrcild merged 1 commit intomainfrom
fix-security-issues-2

Conversation

@patrikbraborec
Copy link
Copy Markdown
Collaborator

Summary

  • Add version pinning and lockfile guidance for npm and pip dependencies in Quick Start and Security sections
  • Add APIFY_TOKEN scoping (minimum permissions) and rotation advice
  • Add periodic vulnerability scanning recommendations (npm audit / pip-audit)

🤖 Generated with Claude Code

… skill

Add version pinning and lockfile guidance for both npm and pip
dependencies. Add APIFY_TOKEN scoping and rotation advice. Add
vulnerability scanning recommendations (npm audit / pip-audit).

Co-Authored-By: Claude Opus 4.6 <noreply@anthropic.com>
@vystrcild vystrcild merged commit df6b198 into main Feb 25, 2026
2 checks passed
@vystrcild vystrcild deleted the fix-security-issues-2 branch February 25, 2026 08:41
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants