issues
search
pocolifo
/
noter-backend
0
stars
0
forks
source link
Ideas for security standards
#3
Open
YoungerMax
opened
1 year ago
YoungerMax
commented
1 year ago
Rotate database user names and passwords on a weekly basis (automated)
Encrypt as much as possible with the Argon2 algorithm
OWASP reference and guide
Python package is
argon2-cffi
Docs:
https://argon2-cffi.readthedocs.io/en/stable/api.html
Public/private key user authentication
Public keys in database, private keys in cookie -
TODO: is this a good idea?
Conduct frequent security probes using the
OWASP cheat sheets
!
argon2-cffi