Open nw opened 6 years ago
Are you sure userID
is what you think it is? --- It is the same for everyone.
Your error handler stack trace can leak too much information. This should only run in development
mode. Server should have ENV
switches for control. While you're at it make the port configurable via ENV
too.
consider making the mongo collection configurable too.
https://github.com/celloworld/giver/blob/master/app.js#L63
Pretty sweet I can just save anything into your db. Including all kinds of stuff that can wreck havoc on your server.