Skip to content

[BUG]: API key security hazard: stored as cleared text #1190

@RayOei

Description

@RayOei

The Mollie API-key, which is added by the foodcoop administrator, is stored as clear text. This is a SERIOUS security hazard. This key should NEVER be available for third parties, including developers, hosting parties and whom ever may get access to the database.

It seems this asks for the use of Active Record Encryption.

Note, not yet a separate issue but it seems this is also needed for all privacy sensitive data

Metadata

Metadata

Assignees

No one assigned

    Labels

    Type

    Projects

    No projects

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions