f439d0b318f57032221e5fd1c0f9bbb06304aced
- Configure custom Content Security Policy for React app compatibility - Add Permissions-Policy header to disable unnecessary browser features - Set HSTS to 1 year with preload flag for better transport security - Update referrer policy to strict-origin-when-cross-origin - Restrict CORS localhost origins to development environment only - Production deployments now only allow configured FRONTEND_URL and ADMIN_URL - Addresses security headers configuration issues from security scan 🤖 Generated with [Claude Code](https://claude.ai/code) Co-Authored-By: Claude <noreply@anthropic.com>
Photo Sharing Platform
A secure, self-hosted photo sharing platform designed for weddings and events. Features automatic expiration, email notifications, and simple file-based management.
Features
- 🔒 Password Protected Galleries
- ⏰ Automatic Expiration
- 📧 Email Notifications
- 📁 Simple File Management
- 📊 Analytics Integration
- 🎨 Customizable Themes
- 📱 Mobile Responsive
- ⚡ Docker Ready
Quick Start
- Clone the repository
- Run
./scripts/install.sh - Configure
.envfile - Setup SSL:
./scripts/setup-ssl.sh - Start:
docker-compose -f docker-compose.prod.yml up -d
Default credentials: Check ADMIN_CREDENTIALS.txt after first setup
Documentation
See DEPLOYMENT.md for detailed deployment instructions.
License
MIT License
Releases
1
PicPeak v1.0.93
Latest
Languages
JavaScript
49.5%
TypeScript
47.6%
Shell
2.2%
CSS
0.6%
Dockerfile
0.1%