Skip to content

Set the v1.6.24 HTTP request-trust and rate-limit boundary #222

Description

@salasebas

Question

For the Better Auth v1.6.24 deltas covering cookieless Origin and Referer checks, trusted origins, dynamic base URLs, forwarded client IPs, IPv6 grouping, rate-limit ordering, missing-IP behavior, base-path matching, and framework bridges, what exact RustAuth contract should ship? Decide exact parity versus any stricter RustAuth behavior, the public options and compatibility modes, status behavior, and required core, Axum, and Actix regressions.

Metadata

Metadata

Assignees

No one assigned

    Labels

    wayfinder:grillingHITL decision ticket requiring user discussion

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions