Example of security controls for a simple python app managing movies and their actors
Companion repository for the talk at OWASP SFO from 06.14.23
- Create a virtual environment
- Install dependencies (
pip install -r requirements.txt
) - Run the API (
uvicorn main:app --port 8000
)
There are 4 endpoints:
/movies
: list of movies/movies?title=<TITLE>
: to search for a particular movie/movie/<id>
: to get some details about a movie/movie/<id>/stars
: to get the list of the movie actors