Some security fixes & improvements in ziti and ziti-console

Hi!

You might have already seen some of the issues I've created in the ziti and ziti-console repo and the references to the security team.

I'd love some feedback if such kinds of issues/improvement suggestions are wanted, and if so if the process is okay or if you prefer another way or want more details in the issues.

Thanks
Dominik

Quick heads-up on the CI: the add-to-project check on my PRs fails with Bad credentials. That job adds the PR to the org triage board and runs with an org token, so it looks like the token has expired on your side. It is not related to the change itself, and the CLA check passes. Flagging it in case a maintainer wants to refresh the token.