baton/frontend
Gros Frumos 0562cb4e47 sec: server-side email domain check + IP block on violations
Only @tutlot.com emails allowed for registration (checked server-side,
invisible to frontend inspect). Wrong domain → scary message + IP
violation tracked. 5 violations → IP permanently blocked from login
and registration. Block screen with OK button on frontend.

Co-Authored-By: Claude Opus 4.6 <noreply@anthropic.com>
2026-03-21 15:58:16 +02:00
..
icons kin: BATON-ARCH-009-frontend_dev 2026-03-20 21:09:05 +02:00
.gitkeep kin: BATON-002 [Research] UX Designer 2026-03-20 20:44:00 +02:00
admin.html kin: BATON-005-frontend_dev 2026-03-20 23:44:58 +02:00
admin.js kin: BATON-005-frontend_dev 2026-03-20 23:44:58 +02:00
app.js sec: server-side email domain check + IP block on violations 2026-03-21 15:58:16 +02:00
index.html auth: replace UUID-based login with JWT credential verification 2026-03-21 14:14:12 +02:00
manifest.json kin: BATON-ARCH-009-frontend_dev 2026-03-20 21:09:05 +02:00
style.css sec: server-side email domain check + IP block on violations 2026-03-21 15:58:16 +02:00
sw.js kin: BATON-ARCH-009-frontend_dev 2026-03-20 21:09:05 +02:00