lucyparsons / lucyparsons/OpenOversight
Security Audit
Open
Nobody has claimed this yet.
high priority
security
- Dominant language
- Python
- Stars
- 256
- Forks
- 81
- PR merge metrics
- No merged PRs in 30d
Description
We should do a basic penetration test and internal code audit so that we don't get hacked and can harden out application. This will also become more important once we fix #5 and if we have users logging in. I can lead this project.
Contributor guide
No contributing guide indexed for this repository
First steps
- Read the whole issue, then the project's contributing guide.
- Comment on the issue to say you are picking it up — it saves two people doing the same work.
- Fork the repository and make your change on a branch.
- Open a pull request that references the issue number.
Research direction
The issue names no files, tests, or entry points. Start by defining the audit scope, reviewing issue #5 and the planned login flow, and documenting the penetration-test and code-audit findings; done should include agreed hardening work and a record of the results.
Written by the indexing model from the issue text.
Assessment
- Tech stack
- python
- Domain
- security
- Issue type
- Feature
- Difficulty
- 5/5
- Estimated time
- Over a week
- Activity status
- Stale
- Clarity
- Needs clarification
- Newbie friendliness
- 20/100