> way too casually. Can anybody recommend a checklist of best practices for > adequately securing your app?
(Matthew answers himself): there is of course this, although it's mostly server settings: http://www.macromedia.com/devnet/security/articles/topten_tips.html The cross-site scripting point is a good one (and fun to test!). Would still be nice to see a similar list for app developers. ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~| Archives: http://www.houseoffusion.com/cf_lists/index.cfm?forumid=4 Subscription: http://www.houseoffusion.com/cf_lists/index.cfm?method=subscribe&forumid=4 FAQ: http://www.thenetprofits.co.uk/coldfusion/faq Structure your ColdFusion code with Fusebox. Get the official book at http://www.fusionauthority.com/bkinfo.cfm Unsubscribe: http://www.houseoffusion.com/cf_lists/unsubscribe.cfm?user=89.70.4

