squadbox icon indicating copy to clipboard operation
squadbox copied to clipboard

make everything more secure!

Open kmahar opened this issue 7 years ago • 2 comments

I worry that a tool designed to help people being harassed may become the target of harassers. so it would be great to have someone with an interest in security to go through the site and figure out and fix any potential vulnerabilities.

kmahar avatar Oct 19 '17 03:10 kmahar

Some starting ideas for this:

  • use HTTPS for all our pages
  • sanitize all inputs to make sure malicious code cannot be inserted (this includes messages coming in via email)
  • require that users have longer/more secure passwords
  • 2 factor auth?

kmahar avatar Nov 07 '17 00:11 kmahar

Squadbox is now HTTPS everywhere!

amyxzhang avatar Mar 10 '18 20:03 amyxzhang