nean-stack-starter
nean-stack-starter copied to clipboard
Security check!
https://cheatsheets.pragmaticwebsecurity.com
Check innerHTML injection Remove all Angular bypass security calls Check all non-hard coded urls, src, hrefs and prevent user from changing/setting/alterning them
Free scanning solutions: Github owasp dependacny scannin snyk dependacy scanning https://blog.developer.bazaarvoice.com/2018/02/27/getting-started-with-dependency-security-and-nodejs/ https://jeremylong.github.io/DependencyCheck/analyzers/nodejs.html
Place Angular route guard on paths that can only be access when authenticated like profile or create and edit pages
302 redirect to login when unauthenticated