oakoudad/badge42

Privacy issues

Opened this issue · 0 comments

Hello!

Your version of badge42 is a bit problematic since everyone can access student datas without logging-in with the 42 API/Intra...

I would highly suggest you to change it a bit and add an authentication flow 😅

From the legal terms of the Intranet:

ARTICLE 6 – USE OF THE DATA OF THE INTRANET
The Users are strictly forbidden to collect the personal data (name, first name, attached campus, e-mail address, pseudonyms…) of other Users of the Intranet 42, of the authors of professional advertisements such as businesses that are present on the Intranet 42, to use them for personal and/or professional purposes other than the functions intended and made possible by the Intranet 42.

These data and information are supplied for strictly pedagogical purposes and shall not, in any manner whatsoever, be used for commercial prospection, advertisement, projects promotion, private and/or public customized directories creation, etc., purposes.