legalese / legalese.github.io

Static assets for legalese.com
https://legalese.com/
71 stars 27 forks source link

try to move templates to HTTPS to reduce at least one MITM attack vector #134

Closed jobchong closed 8 years ago

jobchong commented 8 years ago

From @mengwong on September 28, 2015 13:47

the execution of arbitrary code in the template creates the possibility of privilege escalation.

stop using mengwong.com. use github pages.

Copied from original issue: legalese-io/legalese-google-app#7

mengwong commented 8 years ago

have updated demo master / available templates with Base URL: https://raw.githubusercontent.com/legalese/legalese.github.io/master/templates/