pow-auth / pow_site

Website for Pow
https://powauth.com
MIT License
4 stars 2 forks source link

Guide on security considerations #9

Open danschultzer opened 4 years ago

danschultzer commented 4 years ago

There was an issue on timing attacks where there is potential info leakage: https://github.com/danschultzer/pow/issues/238#issuecomment-512860697

A guide detailing security considerations like that in Pow would probably be very useful.