Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.
Warning

DEPRECATED

The information below is either outdated, or no longer considered best practice at Kalamuna.

This was deprecated because it was not completed. If we finish drafting the page it can be reinstated.

...

TODO: Automated testing tools make sure access logic stays the same?

OWASP Audits

OWASP (Open Web Application Security Project) provides tools, resources, and guidelines on web application security. If someone is performing an "OWASP Audit" on your site, they are probably trying to verify that it meets the Application Security Verification Standard (ASVS).

TODO: summary of ASVSĀ https://docs.google.com/document/d/1dUtjOASFAWoPBEKfXd5YHF_OE-k-DsctUiq0Qcz_oZw/edit#heading=h.dt9sj5uc8ph6

...