Security/Reviews/Gaia/Template: Difference between revisions

no edit summary
No edit summary
No edit summary
Line 31: Line 31:
* Connections (IAC):
* Connections (IAC):
* Other manifest properties (e.g redirects,origin, entry points etc)
* Other manifest properties (e.g redirects,origin, entry points etc)
* Enumerate data input & outputs, key data flows etc ==
** server communication
** user input
** other inputs (indexeddb, device storage, other APIs)
** views/templates


= Implementation Review =
= Implementation Review =
== Enumerate data input & outputs, key data flows etc ==
 
* server communication
 
* user input
* other inputs (indexeddb,
* views/templates
==Checklist==
==Checklist==
* XSS & HTML Injection attacks
* XSS & HTML Injection attacks
canmove, Confirmed users
1,220

edits