Major additions: - Community Next.js app (port 18187) for browsing claims with API docs - stemedb-chaos crate: Fault injection, chaos testing, CRDT properties - Latent ingestion system: Reddit/FDA ingesters with ADK-Go agents - Disputed claims handling: Manual review workflows and validation - Aphoria security scanner: New extractors (SQL injection, command injection, weak crypto, TLS version), policy-based ignores, UAT reports - Docker infrastructure: Dockerfile, docker-compose.yml for full stack - VulnBank demo: Intentionally vulnerable multi-language test corpus SDK & API enhancements: - Source registry handlers for tracking data provenance - Metrics endpoint - Skeptic filtering improvements Code quality: - Split 14 large files (>500 lines) into focused modules - All files now under 500-line limit per project guidelines Documentation: - Chaos testing guide, circuit breakers, observability docs - Phase 7 UAT documentation updates - Martin Kleppmann technical writer agent Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com>
17 lines
479 B
Rust
17 lines
479 B
Rust
//! VulnBank - Intentionally Vulnerable Demo Application
|
|
//!
|
|
//! DO NOT USE IN PRODUCTION - Contains security vulnerabilities for testing
|
|
//! This application demonstrates common security misconfigurations that Aphoria detects.
|
|
|
|
mod auth;
|
|
mod cors;
|
|
mod tls;
|
|
mod crypto;
|
|
mod config;
|
|
|
|
fn main() {
|
|
println!("VulnBank - Demo vulnerable application");
|
|
println!("This code contains intentional security vulnerabilities.");
|
|
println!("Run `aphoria scan` to detect them.");
|
|
}
|