-
Update HSTS preload list submission url
bungoume committed on GitHubFeb 20, 2017
-
Merge pull request #29 from TomCorwine/patch-1
Added information about iOS keychain
abhishek-anand committed on GitHubAug 2, 2016 -
Merge pull request #22 from sijin/mention-ssh-keys
Minor edit to mention ssh keys
abhishek-anand committed on GitHubAug 2, 2016
-
TomCorwine committed on GitHub
Aug 1, 2016 -
TomCorwine committed on GitHub
Aug 1, 2016
-
Added additional security information for iOS storing of sensitive information.
TomCorwine committed on GitHubJul 31, 2016
-
Merge pull request #25 from intchloe/patch-2
Added require-sri-for
abhishek-anand committed on GitHubJul 27, 2016
-
Changed SQLi item to reflect prepared statement
abhishek-anand committed on GitHubJul 25, 2016 -
merging PR for removal of Cloudflare name
abhishek-anand committedJul 25, 2016
-
This entry was already listed at the top, doesn't have a purpose twice.
Omeryl committed on GitHubJul 23, 2016 -
intchloe committed on GitHub
Jul 23, 2016
-
Depreciate Cloudflare recommendation
CF MITMs TLS connections with their own certs so all of your data in transit is in the clear to them.
mmattice committed on GitHubJul 22, 2016 -
Minor edit to mention ssh keys
Minor edit to mention ssh keys as alternative.
sijin committed on GitHubJul 22, 2016 -
merging pr removing claim about Mongo
abhishek-anand committedJul 22, 2016 -
radarhere committed
Jul 22, 2016 -
Merge pull request #11 from paulschreiber/patch-1
Added HSTS Preload list
abhishek-anand committed on GitHubJul 22, 2016 -
Merge pull request #9 from intchloe/patch-1
Added about SameSite in CSRF-prevention
abhishek-anand committed on GitHubJul 22, 2016 -
paulschreiber committed on GitHub
Jul 22, 2016 -
Remove unqualified claim about MongoDB
Unless you plan to explain why MongoDB sucks in the context of security, this statement does nothing to improve the document and instead just makes me suspect that the rest of the document includes similar claims with no backing. In which case, how am I to trust that this guide is dependable or trustworthy?
Primigenus committed on GitHubJul 22, 2016
-
Added about SameSite in CSRF-prevention
intchloe committed on GitHubJul 21, 2016 -
eryno committed on GitHub
Jul 21, 2016 -
Added periods for consistency, grammar editing
eryno committed on GitHubJul 21, 2016 -
eryno committed on GitHub
Jul 21, 2016 -
Merge pull request #4 from arkadiyt/bcrypt-fix
Fix bcrypt checklist item
abhishek-anand committed on GitHubJul 21, 2016 -
abhishek-anand committed
Jul 21, 2016
-
Merge pull request #3 from carlmlane/master
spell check on security checklist
mkagenius committed on GitHubJul 20, 2016 -
Arkadiy Tetelman committed
Jul 20, 2016 -
carlmlane committed
Jul 20, 2016 -
Minor copyediting on security checklist
* Added links to a few named tools * Reworded "javascript://, data://, CRLF characters" sanitation line because I wasn't sure what it meant as written * Minor grammar updates
eryno committed on GitHubJul 20, 2016
-
mkagenius committed on GitHub
Jul 19, 2016 -
abhishek-anand committed on GitHub
Jul 19, 2016