angelleye / paypal-security-for-wordpress

A security scanner for WordPress that looks for PayPal concerns and provides feedback.
GNU Affero General Public License v3.0
1 stars 0 forks source link

Recommendation #21

Closed angelleye closed 9 years ago

angelleye commented 9 years ago

The last thing we need to do here is provide a recommendation for how to secure any buttons that come back as insecure.

Of course, our recommendation is going to be that they use the PayPal WP Button Manager plugin to create new buttons to replace the insecure buttons with.

nishitlangaliya commented 9 years ago

Hi Andrew,

Would you please provide me one rough sketch for in which part you want to display recommendation and what would be text and links etc. that would be great.

angelleye commented 9 years ago

All I'm looking for here is a div / box that gets displayed if their site has any un-secure buttons where we can display some basic info about our PayPal WP Button Manager plugin and a link/button to install it.

Many other plugins do similar things, so we can follow the design of some other plugin if we need to.

Again, though, just something simple that shows up on the report after the scan is done letting them know how to solve their problem...which is to install the Button Manager plugin and replace their un-secure buttons when secure buttons generated by that plugin.

kcppdevelopers commented 9 years ago

For more information view the screenshot here

angelleye commented 9 years ago

The screenshot looks good. Can we add a button/link to automatically install the plugin from within the box, too?

angelleye commented 9 years ago

I have pulled all the latest changes here, but when I run a scan I do not see the recommendation. This is what I get.

image