plano/apps/www
Adil Hafeez 1df43872a6
Fix code scanning and dependabot security alerts (#756)
* Fix code scanning and dependabot security alerts

Code scanning fixes (14 alerts):
- Fix XSS in OG image route by validating request origin against allowlist
- Fix incomplete URL sanitization in blog layout using exact hostname matching
- Bind port-check socket to 127.0.0.1 instead of 0.0.0.0
- Add explicit permissions to 7 GitHub Actions workflows

Dependabot fixes:
- Update @isaacs/brace-expansion 5.0.0 -> 5.0.1 (CVE-2026-25547)
- Update bytes 1.10.1 -> 1.11.1 (CVE-2026-25541)
- Update time 0.3.41 -> 0.3.47 (CVE-2026-25727)
- Update cryptography 45.0.7 -> 46.0.5 (CVE-2026-26007)
- Update python-multipart 0.0.20 -> 0.0.22 (CVE-2026-24486)
- Update urllib3 2.6.2 -> 2.6.3 in test lockfiles (CVE-2026-21441)
- Update Werkzeug 3.1.4 -> 3.1.5 (CVE-2026-21860)

Co-Authored-By: Claude Opus 4.6 <noreply@anthropic.com>

* Address PR review feedback

- Replace plano.katanemo.com with planoai.dev in allowed hosts
- Add planoai.dev to OG route and blog layout allowlists
- Revert socket bind to 0.0.0.0 (intentional for port-in-use check)

Co-Authored-By: Claude Opus 4.6 <noreply@anthropic.com>

---------

Co-authored-by: Claude Opus 4.6 <noreply@anthropic.com>
2026-02-14 12:27:07 -08:00
..
public remove and replace logo with clubcentric (#723) 2026-02-04 12:40:17 -08:00
schemaTypes introduce SEO optimization and improve blog content rendering (#709) 2026-01-28 17:52:39 -08:00
src Fix code scanning and dependabot security alerts (#756) 2026-02-14 12:27:07 -08:00
.gitignore feat: redesign archgw -> plano + website in Next.js (#613) 2025-12-18 15:55:15 -08:00
biome.json feat: redesign archgw -> plano + website in Next.js (#613) 2025-12-18 15:55:15 -08:00
components.json feat: redesign archgw -> plano + website in Next.js (#613) 2025-12-18 15:55:15 -08:00
next.config.ts feat: redesign archgw -> plano + website in Next.js (#613) 2025-12-18 15:55:15 -08:00
package-lock.json feat: redesign archgw -> plano + website in Next.js (#613) 2025-12-18 15:55:15 -08:00
package.json introduce SEO optimization and improve blog content rendering (#709) 2026-01-28 17:52:39 -08:00
postcss.config.mjs feat: redesign archgw -> plano + website in Next.js (#613) 2025-12-18 15:55:15 -08:00
README.md feat: redesign archgw -> plano + website in Next.js (#613) 2025-12-18 15:55:15 -08:00
sanity.config.ts introduce SEO optimization and improve blog content rendering (#709) 2026-01-28 17:52:39 -08:00
tsconfig.json include contact page and restructuring (#640) 2025-12-22 15:02:45 -08:00

This is a Next.js project bootstrapped with create-next-app.

Getting Started

First, run the development server:

npm run dev
# or
yarn dev
# or
pnpm dev
# or
bun dev

Open http://localhost:3000 with your browser to see the result.

You can start editing the page by modifying app/page.tsx. The page auto-updates as you edit the file.

This project uses next/font to automatically optimize and load Geist, a new font family for Vercel.

Learn More

To learn more about Next.js, take a look at the following resources:

You can check out the Next.js GitHub repository - your feedback and contributions are welcome!

Deploy on Vercel

The easiest way to deploy your Next.js app is to use the Vercel Platform from the creators of Next.js.

Check out our Next.js deployment documentation for more details.