Provide a security best practices cheatsheet
Nobody has claimed this yet.
Assessment
- Difficulty
- 4/5
- Estimated time
- 3-5 days
- Newbie friendliness
- 38/100
- Issue type
- Documentation
- Clarity
- Mostly clear
- Activity status
- Stale
- Tech stack
- graphql
- Domain
- documentation, security
Research direction
Start by reviewing the linked Security page and the GraphQL security and best practices page. Compare their advice, identify what belongs to generic server setup versus coding practices, and reorganize the material into a readable cheat sheet. Done means the guidance is clearly separated, structured for quick reference, and updated where needed.
Written by the indexing model from the issue text.
Description
Our doc provide a Security page with a dump of best practices. That page is not very readable.
It probably would help to review that page with an eye towards updating the list. We should also aim to separate advice about generic server set up and coding best practices.
We could also aim to structure the list of steps as a "Cheat Sheet" that people can easily reference.
Also relevant is the grahql security and best practices doc
- Dominant language
- No language data
- Stars
- 7
- Forks
- 75
- Avg merge
- 1d 12h
- Merged PRs (30d)
- 4
Getting set up
- No Dockerfile or Docker Compose file
- Has a pull request template
- Read the contributing guide
First steps
- Read the whole issue, then the project's contributing guide.
- Comment on the issue to say you are picking it up — it saves two people doing the same work.
- Fork the repository and make your change on a branch.
- Open a pull request that references the issue number.
More from silverstripe/developer-docs
-
6.0.0 changelog: DBField formatters on array getters now render emptyPossibly taken A pull request linked to this issue is open or already merged. Open
Difficulty 1/5 Under an hour Newbie friendliness 88/100
silverstripe/developer-docs#912 · 1 comment ·
-
Difficulty 2/5 1-3 hours Newbie friendliness 82/100
silverstripe/developer-docs#911 ·
-
Read-only replicas: config key is rule_patterns_must_use_primary_db, not must_use_primary_db_rulesOpenaffects/v6 complexity/low impact/low type/docs
Difficulty 1/5 Under an hour Newbie friendliness 92/100
silverstripe/developer-docs#909 · 1 comment ·
-
affects/v6 complexity/low impact/low type/docs
Difficulty 2/5 1-3 hours Newbie friendliness 88/100
silverstripe/developer-docs#908 · 1 comment ·
-
affects/v5 affects/v6 complexity/low impact/low type/docs
Difficulty 1/5 Under an hour Newbie friendliness 90/100
silverstripe/developer-docs#907 · 1 comment ·
All issues in silverstripe/developer-docs
Similar issues
-
Difficulty 2/5 1-3 hours Newbie friendliness 75/100
alphagov/govuk-frontend-docs#668 ·
Maintainers usually reply within 2 days
-
documentation
Difficulty 2/5 1-3 hours Newbie friendliness 76/100
-
Difficulty 1/5 Under an hour Newbie friendliness 95/100
bancolombia/scaffold-clean-architecture#1001 ·
Maintainers usually reply within 1 day
-
Difficulty 2/5 1-3 hours Newbie friendliness 76/100
navikt/esyfo-narmesteleder#615 ·
Maintainers usually reply within 1 day
-
documentation
Difficulty 1/5 Under an hour Newbie friendliness 84/100
n8n-io/terraform-aws-n8n#176 ·
Maintainers usually reply within 1 day