Commit graph

2 commits

Author SHA1 Message Date
6b2187de2a Security hardening for production deployment
- Remove secrets from Dockerfile build args, pass as runtime env vars only
- Add non-root user to Docker container
- Add SKU format validation to prevent S3 key injection
- Sanitize error responses in sanity-lookup route
- Fix zod import to use @medusajs/framework/zod
- Clean up .env.template defaults and .dockerignore
2026-02-24 17:19:13 +01:00
4bedad944a Initial commit 2026-02-24 15:06:43 +01:00