Skip to content

Commit

Permalink
Complet security file
Browse files Browse the repository at this point in the history
  • Loading branch information
eldy committed Mar 14, 2024
1 parent 587c4eb commit b6b4acf
Showing 1 changed file with 3 additions and 0 deletions.
3 changes: 3 additions & 0 deletions SECURITY.md
Original file line number Diff line number Diff line change
Expand Up @@ -104,3 +104,6 @@ Scope is the web application (backoffice) and the APIs.
* SSL/TLS best practices
* Invalid or missing SPF (Sender Policy Framework) records (Incomplete or missing SPF/DKIM/DMARC)
* Physical or social engineering attempts or issues that require physical access to a victim’s computer/device
* Ability to include javascript into a page of the website using the website page editor are not qualified (this is the expected behaviour)
* Ability to execute PHP code on the server using the website using the website page editor by a user that own the super permission "add php code into pages" are not qualified (this is the expected behaviour).

0 comments on commit b6b4acf

Please sign in to comment.