Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

new category - code review #1643

Closed
elarlang opened this issue May 31, 2023 · 5 comments
Closed

new category - code review #1643

elarlang opened this issue May 31, 2023 · 5 comments
Assignees
Labels
1) Discussion ongoing Issue is opened and assigned but no clear proposal yet _5.0 - prep This needs to be addressed to prepare 5.0

Comments

@elarlang
Copy link
Collaborator

We have some opened issues with requirement proposals which are not clearly input validation (but it's related).

The question is - where and with what name to create category for those

Currently labeled as "tmp code-review": https://github.com/OWASP/ASVS/labels/tmp%20code-review

@tghosth
Copy link
Collaborator

tghosth commented Jun 15, 2023

Sanitization

Honestly, I think the first 3 would all be considered "Sanitization"

Other

This last one I think is a different

I would be inclined towards input validation because it is an input validation mechanism but they need to be performing the validation securely.

@elarlang, any other comments?

@elarlang
Copy link
Collaborator Author

If we consider "everything application uses is user input" we can fit everything to 5.* categories.

@tghosth
Copy link
Collaborator

tghosth commented Jul 9, 2023

Do you agree with my suggestion for the first 3?

(I am moving discussion on 4 back to the dedicated issue).

@tghosth tghosth added the _5.0 - prep This needs to be addressed to prepare 5.0 label Jul 10, 2023
@tghosth
Copy link
Collaborator

tghosth commented Sep 26, 2023

Do you agree with my suggestion for the first 3?

@elarlang what do you think?

@elarlang
Copy link
Collaborator Author

I can see that 3 first ones have found their place in other categories and the last one is closed. Anyway, as there is not enought content for this category at the moment, I close it now. We can recall the idea any time when we need it.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
1) Discussion ongoing Issue is opened and assigned but no clear proposal yet _5.0 - prep This needs to be addressed to prepare 5.0
Projects
None yet
Development

No branches or pull requests

2 participants