mozilla-services / megaphone

Firefox Global Broadcast API
Mozilla Public License 2.0
38 stars 12 forks source link

Prod Security review #34

Closed pjenvey closed 5 years ago

pjenvey commented 6 years ago

A security review w/ foxsec must be initiated before this new megaphone endpoint codebase hits production.

foxsec checklist:

Risk Management

Infrastructure

Development

Dual Sign Off

Logging

Security Headers

Security Features

Databases

Common issues

pjenvey commented 5 years ago

Closing out, we have issues open for any pending issues related to pending items here