This commit is contained in:
2020-06-23 19:14:46 +00:00
parent c005a1c87c
commit 00ddce351a

View File

@@ -4,21 +4,14 @@ PRIORITY - ALWAYS Lowest level stuff first, i.e. TODO at server, api route chang
=-=-=-=-
todo: license keys security
What is to stop someone from fetching someone else's key by hammering with different GUID's until they get one that works?
Encrypt the guid inside something identifiable or matching?
sign the request?
Dont send just a guid in clear as a basic precaution.
make dbid's a huge number instead of a guid would be a good first principle
SGDCXPThwOZgbfcxQJwF1L8MMmbVyjDp6WMaTj0LFPk=
FqC3t+8f2p/RXkclI6nKqhU35cRVHL9d/neZO7giInc=
MGyyATUbhkQMYYdR6gQu6ngeObK/eTzI3oA0oAH1iAw=
todo: Administration - translation
translation page with translation settings
- Translation feedback link in translation page https://rockfish.ayanova.com/default.htm#!/rfcaseEdit/3722
- https://rockfish.ayanova.com/default.htm#!/rfcaseEdit/1442
https://rockfish.ayanova.com/default.htm#!/rfcaseEdit/1439
- No need to show the built in ones at all if they can't be edited.
todo: Administration - Attached files