codex_m
Joined: 23 Jul 2010 Posts: 1
|
Posted: Fri Jul 23, 2010 7:50 am Post subject: SSL/ https support on login and invoice URL security |
|
|
Hi,
Nice invoice web application, but I think:
1.) it is much important to add SSL security at login, if our account logins are eavesdrop, a hacker can see details in our financial account such as our client information are compromised.
2.) the invoice URL should be accessible only from links coming from our client email(identified by the email address) . It should not work if the URL is directly paste into the browser address bar (except for invoice creator). This ensures that the invoice is for the intended persons only and NOT to the public.
The invoice URL should also be using SSL or encrypted connections.
These two improvements can greatly increase the security of your existing invoice system. Thanks. |
|