Commit graph

4 commits

Author SHA1 Message Date
Evert Pot
ed4cc7f5f3 The commit everybody hates. Cleaned up everything for CS and automating CS checking. 2016-03-12 20:19:06 -05:00
Frederic Hemberger
1896af0a45 Improve application security
- Make session cookies only available via HTTP (prevent access from JavaScript)
- only log PHP errors instead of displaying them in production.
  Displaying errors may give attackers hints how to exploit the application

Set HTTP headers:

X-Frame-Options: DENY
Prevent Clickjacking attacks, see: http://en.wikipedia.org/wiki/Clickjacking

X-Content-Type-Options: nosniff
Prevent code injection via mime type sniffing

Former-commit-id: 4ca925874c
2014-01-21 16:14:47 +01:00
Jérôme Schneider
d223f2fa30 Updated Baïkal Website URL
Former-commit-id: 6b8184883c
2013-07-07 16:28:34 +02:00
Jérôme Schneider
8e83caa0ef Flake and Formal are now integrated in Baïkal (not submodules anymore).
Former-commit-id: 56ae2fdc62
2012-11-19 13:49:51 +01:00