Web   ·   Wiki   ·   Activities   ·   Blog   ·   Lists   ·   Chat   ·   Meeting   ·   Bugs   ·   Git   ·   Translate   ·   Archive   ·   People   ·   Donate
summaryrefslogtreecommitdiffstats
path: root/TODO
diff options
context:
space:
mode:
authorAleksey Lim <alsroot@sugarlabs.org>2013-03-22 08:53:46 (GMT)
committer Aleksey Lim <alsroot@sugarlabs.org>2013-03-22 08:53:46 (GMT)
commit23cbfeb2b71b2f282d32319099ba40c1f5d6c3bc (patch)
treeedbb7d3cd9ea4c039351ece879867521a08089b8 /TODO
parent037abe0c596dbc5a206838fbcdbd4051948ec1f8 (diff)
Allow specifying GUID while POSTing
This is a temporal security hole, see TODO for details.
Diffstat (limited to 'TODO')
-rw-r--r--TODO2
1 files changed, 2 insertions, 0 deletions
diff --git a/TODO b/TODO
index ff05ba8..c4437ad 100644
--- a/TODO
+++ b/TODO
@@ -4,6 +4,8 @@
- (?) log all (including editros) posters of particular document to minimize conflicts about why somthing was changed
or better, detailed log for every editor's change
+- Remove temporal security hole with speciying guid in POST,
+ it was added as a fast hack to support offline creation (with later pushing to a node)
- GC implementations cache
- get all localized strings from activity.info while populating local contexts
- activities migth need MIME registering while checking-in