Transparent server-side encryption with stable master key

FixSecurityService
Shipped
23 Maret 2026 pukul 22.35 UTC
Author
Kamo
Commit
be03417

- Add permanent notes.master-encryption-key to ConfigMap (was generating a random key on each pod restart, making old notes undecryptable) - Always encrypt content on create/update, always decrypt on read - Extract decryptDTO helper for consistent decryption across getNote, getAllNotes, and searchNotes - Notes encrypted with a lost key show null content (unrecoverable) but their data is preserved in DB for potential future recovery

All changes

Seperti apa yang Anda lihat pengiriman?

Semua pembaruan ini secara otomatis mendarat di ruang kerja Anda. Mulai bebas dan menontonnya tumbuh minggu demi minggu.

Mulai Bebas SelamanyaTampilkan Harga