Security/Reviews/Gaia/Music: Difference between revisions
Jump to navigation
Jump to search
No edit summary |
No edit summary |
||
Line 1: | Line 1: | ||
=== App Review Details === | === App Review Details === | ||
* App: | |||
* App: | * Review Date: | ||
* Review Date: | * Review Lead: | ||
* Review Lead: | |||
=== Overview === | === Overview === | ||
===Architecture=== | |||
====Components==== | |||
=== | |||
====Relevant Source Code==== | ====Relevant Source Code==== | ||
====Permissions==== | ====Permissions==== | ||
====Web Activity Handlers ==== | ====Web Activity Handlers ==== | ||
====Web Activity Usage ==== | |||
==== | ==== Notable Event Handlers ==== | ||
===Code Review Notes=== | ===Code Review Notes=== | ||
====1. XSS & HTML Injection attacks==== | ====1. XSS & HTML Injection attacks==== | ||
====2. Secure Communications ==== | ====2. Secure Communications ==== | ||
====3. Secure data storage ==== | |||
====4. Denial of Service ==== | ====4. Denial of Service ==== | ||
====5. Use of Privileged APIs ==== | ====5. Use of Privileged APIs ==== | ||
====6. Interfaces with other Apps/Content==== | ====6. Interfaces with other Apps/Content==== | ||
=== Security Risks & Mitigating Controls === | === Security Risks & Mitigating Controls === | ||
Line 120: | Line 53: | ||
=== Actions & Recommendations === | === Actions & Recommendations === | ||
=== Previous Review === | |||
/Security/Reviews/Gaia/Music_2013_February | |||
[[Category:SecReview]] |
Revision as of 09:17, 19 September 2013
App Review Details
- App:
- Review Date:
- Review Lead:
Overview
Architecture
Components
Relevant Source Code
Permissions
Web Activity Handlers
Web Activity Usage
Notable Event Handlers
Code Review Notes
1. XSS & HTML Injection attacks
2. Secure Communications
3. Secure data storage
4. Denial of Service
5. Use of Privileged APIs
6. Interfaces with other Apps/Content
Security Risks & Mitigating Controls
Actions & Recommendations
Previous Review
/Security/Reviews/Gaia/Music_2013_February