Knowledgebase: Customizing
Could you recommend good developers to customize the software according to our needs ?
Posted by Esvon Support on 07 January 2011 04:40 PM
As it is written in one wise book "He who puts up security for another will surely suffer, but whoever refuses to strike hands in pledge is safe", and that's the answer.
But we can recommend you qualities/skills to seek in developers in addition to those you already know.

Our position is to do our best to offer stable and reliable software, we put security questions first and all the other questions come after that.
We always strived for having different passive protection techniques implemented to withstand XSS, session hijacking, SQL Injection, CSRF, HTTP replay attacks to name a few.
It's all done for people using our software to feel secure. It wasn't always like this, a lot of web hacking approaches were born in 2003-2005 and later, so early scripts were released not without vulnerabilies. But now it's much better in terms of information available if software developers really care what they produce.
PHP world is easy to enter, but it requires reasonable time to reach the point when developer can be trusted (although this involves both technical skills and personal features like responsibility, fear of God).

What we want to say here - before you will trust your website to someone's hands - make sure your developer did his homework well in security area by learning about XSS, SQL Injection, CSRF and so on if you really want to live secure.

Comments (0)
Help Desk Software by Kayako Fusion