squadbox
squadbox copied to clipboard
make everything more secure!
I worry that a tool designed to help people being harassed may become the target of harassers. so it would be great to have someone with an interest in security to go through the site and figure out and fix any potential vulnerabilities.
Some starting ideas for this:
- use HTTPS for all our pages
- sanitize all inputs to make sure malicious code cannot be inserted (this includes messages coming in via email)
- require that users have longer/more secure passwords
- 2 factor auth?
Squadbox is now HTTPS everywhere!