Skip to content

test: remove insecure TLS bypasses and expand HTTPS coverage#141

Merged
JustinBeckwith merged 1 commit intomainfrom
codex/fix-codeql-tests-and-hsts-coverage
Apr 12, 2026
Merged

test: remove insecure TLS bypasses and expand HTTPS coverage#141
JustinBeckwith merged 1 commit intomainfrom
codex/fix-codeql-tests-and-hsts-coverage

Conversation

@JustinBeckwith
Copy link
Copy Markdown
Owner

Summary

  • remove insecure TLS validation bypasses from the HTTPS test and trust the local test certificate instead
  • fix the includeSubDomains option handling and regenerate the localhost test certificate fixture
  • expand HSTS tests to cover default, explicit boolean, forwarded HTTPS, preload, and maxAge combinations

Testing

  • npm test
  • npm run lint

@JustinBeckwith JustinBeckwith changed the title Fix TLS test CodeQL alert and expand HSTS coverage test: remove insecure TLS bypasses and expand HTTPS coverage Apr 12, 2026
@JustinBeckwith JustinBeckwith force-pushed the codex/fix-codeql-tests-and-hsts-coverage branch from 0f5e6e3 to cd4683d Compare April 12, 2026 04:31
@JustinBeckwith JustinBeckwith merged commit 35adaff into main Apr 12, 2026
6 checks passed
@JustinBeckwith JustinBeckwith deleted the codex/fix-codeql-tests-and-hsts-coverage branch April 12, 2026 04:31
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant