Skip to content

Security #4

@davidyell

Description

@davidyell

I thought it was worth mentioning that storing the username and password in the cookie is a huge security risk. You should be using a hash of some description saved in the database.

There are some more details here, http://jaspan.com/improved_persistent_login_cookie_best_practice

Metadata

Metadata

Assignees

No one assigned

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions