Website Security issue
aevans1987 opened this issue · 1 comments
aevans1987 commented
Clicking Enter now or create your account on the website homepage dumps you into http and not https.
Serious issue for a financial application.
At the VERY least, those should be dumping into https, better option would be to force https traffic.
gugoan commented
The homepage is just for testing the application.
It is a simple financial notes application, it does not do any transactions.
By cloning the application you will be able to scale in the desired environment and security.