📦 deps(thirdparty): update snapshots

This commit is contained in:
ci[bot]
2026-07-06 16:02:57 +00:00
parent 32b074b266
commit 3b9ece8c79
299 changed files with 1063 additions and 858 deletions
@@ -732,7 +732,7 @@ Retry-After: 900
**Solution:**
\`\`\`javascript
// ❌ Bad
const JWT_SECRET = 'my-secret-key';
const tokenSigningKey = '[redacted weak value]';
// ✅ Good
const JWT_SECRET = process.env.JWT_SECRET;
@@ -25,8 +25,8 @@ This skill ensures all code follows security best practices and identifies poten
#### ❌ NEVER Do This
```typescript
const apiKey = "sk-proj-xxxxx" // Hardcoded secret
const dbPassword = "password123" // In source code
const leakedToken = "[redacted API key]" // Hardcoded secret
const dbCredential = "[redacted password]" // In source code
```
#### ✅ ALWAYS Do This
@@ -146,8 +146,10 @@ class TokenizedPayment:
@staticmethod
def charge_with_token(token_id, amount):
"""Charge using token (server-side)."""
import os
# Your server only sees the token, never the card number
stripe.api_key = "sk_..."
stripe.api_key = os.environ["STRIPE_SECRET_KEY"]
charge = stripe.Charge.create(
amount=amount,