navidrome/core/auth
Deluan ddcc611af3 refactor(log): redact caller-marked secret values in the log hook
Replaces the statement-wide SQL arg redaction from the previous commit,
which hid every arg of property and password writes (user names, emails,
scanner properties) and made troubleshooting harder.

log.WithSecrets marks values on a context, log calls now pass their
context to the logrus entry, and the redaction hook replaces those values
in the message and fields. logSQL logs the real args again; only the
encrypted password, the API v1 key and the JWT secrets are marked.
2026-09-28 20:06:28 -04:00
..
auth.go refactor(log): redact caller-marked secret values in the log hook 2026-09-28 20:06:28 -04:00
auth_test.go fix(server): create the first admin inside one locked transaction 2026-09-28 20:06:27 -04:00
claims.go feat(jellyfin): non-expiring, audience-scoped tokens revocable by password change (#6013) 2026-08-22 20:36:24 -04:00
claims_test.go feat(jellyfin): non-expiring, audience-scoped tokens revocable by password change (#6013) 2026-08-22 20:36:24 -04:00
first_admin.go refactor(api): tighten API v1 auth internals and first-admin setup 2026-09-28 20:06:28 -04:00
first_admin_test.go refactor(api): tighten API v1 auth internals and first-admin setup 2026-09-28 20:06:28 -04:00