gugoan/economizzer

Website Security issue

aevans1987 opened this issue · 1 comments

Clicking Enter now or create your account on the website homepage dumps you into http and not https.

Serious issue for a financial application.

At the VERY least, those should be dumping into https, better option would be to force https traffic.

The homepage is just for testing the application.
It is a simple financial notes application, it does not do any transactions.

By cloning the application you will be able to scale in the desired environment and security.