Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

URL Query encryption #112

Closed
w3devpro opened this issue Oct 20, 2018 · 0 comments
Closed

URL Query encryption #112

w3devpro opened this issue Oct 20, 2018 · 0 comments
Assignees
Labels
Security Security items (issues or proposals)

Comments

@w3devpro
Copy link
Member

1. ISSUE/ BUG/ ERROR

a. Expected Behaviour

when accessing the SP webapplication or surveys the URL's should not be humanly readable and/ or hidden as much as possible to prevent/ avoid fraud/ manipulation.

b. Actual Behaviour

Both SP webapp and surveys make use of the URL querystring to submit/ pass on information. When necessary the parameters are encrypted already. Certain parts are still humanly readable.

c. Steps to Reproduce Behaviour

  1. access SP or any survey
  2. answer/ submit the survey and check the URL's

d. Possible Cause and/or Solution

Add specific URL query encryption code to improve security

e. Technical Specifications

  • Version of Survey Project: SP 2.4
  • Type of Device (pc, laptop, tablet, mobile): all
  • Browser Type & Version: all
  • Operating System: all

f. Context (Environment)

Improved security and avoid abuse etc.

@w3devpro w3devpro added the Security Security items (issues or proposals) label Oct 20, 2018
@w3devpro w3devpro added this to the SP v. 2.5 Release milestone Oct 20, 2018
@w3devpro w3devpro self-assigned this Oct 20, 2018
@w3devpro w3devpro moved this from To Do to In Progress in SP v. 2.5 - QA/Testing Project Jan 24, 2019
@w3devpro w3devpro moved this from Done to Committed (sp_25_dev) in SP Development - V. 2.5 Mar 1, 2021
@w3devpro w3devpro moved this from In Progress to Done in SP v. 2.5 - QA/Testing Project Mar 1, 2021
@w3devpro w3devpro closed this as completed Mar 6, 2021
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
Security Security items (issues or proposals)
Projects
No open projects
Development

No branches or pull requests

1 participant