Closed (fixed)
Project:
Documentation
Component:
Developer Guide
Priority:
Normal
Category:
Feature request
Assigned:
Unassigned
Reporter:
Created:
20 Apr 2006 at 10:13 UTC
Updated:
5 Jan 2007 at 09:18 UTC
I think it would be useful to have some documentation that describes Drupal's security model. It would be great to have a place to point people to where they can find out about how Drupal handles and/or enforces items like user permissions, data validation (and XSS exploits), SQL injection, session hijacking and the like. Any security minded folk want to take crack at describing how Drupal works to keep you safe on this level?
Comments
Comment #1
sepeck commentedHeine added secure coding docs.