mantimon-tcg/backend/app/api
Cal Corum 3ec670753b Fix security and validation issues from code review
Critical fixes:
- Add admin API key authentication for admin endpoints
- Add race condition protection via unique partial index for starter decks
- Make starter deck selection atomic with combined method

Moderate fixes:
- Fix DI pattern violation in validate_deck_endpoint
- Add card ID format validation (regex pattern)
- Add card quantity validation (1-99 range)
- Fix exception chaining with from None (B904)

Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com>
2026-01-28 14:16:07 -06:00
..
__init__.py Implement Phase 2: Authentication system 2026-01-27 21:49:59 -06:00
auth.py Fix OAuth callback redirect and deps import 2026-01-28 00:17:27 -06:00
collections.py Fix security and validation issues from code review 2026-01-28 14:16:07 -06:00
decks.py Fix security and validation issues from code review 2026-01-28 14:16:07 -06:00
deps.py Fix security and validation issues from code review 2026-01-28 14:16:07 -06:00
users.py Fix security and validation issues from code review 2026-01-28 14:16:07 -06:00