EN
WebDev - security
9 points
This article was created to gather all important information about security when we develop websites.
Take at account:
-
HTTP - do not let to embed website in iframe
Someone may embed your website into own website covering some features that may lead to users data spill. -
JavaScript - open link in new tab
Opened webpage may inject some dangerous logic to opener. -
HTML - open link in new tab
Opened webpage may inject some dangerous logic to opener. -
JavaScript - display security warning for non-programmers in web browser console
Someone may ask user to pressF12
and paste there some source code - it is better to warn user.