Actions
Feature #21779
closedIntegrate OWASP ESAPI for PHP
Start date:
2009-12-03
Due date:
% Done:
0%
Estimated time:
PHP Version:
5.2
Tags:
Complexity:
Sprint Focus:
Needs Decision
Description
This is a feature request.
It would be nice to integrate OWASP ESAPI [1] for PHP in TYPO3 Core. ESAPI is "(...) a toolkit that help software developers guard against security-related design and implementation flaws". A nice datasheet that gives a short introduction on ESAPI is available at [2].
Currently, work on ESAPI for PHP [3] is in progress (alpha state). We need to wait until ESAPI is in stable form before starting an integration process.
This RFC is just to not forget about OWASP ESAPI for PHP.
[1] http://www.owasp.org/index.php/Category:OWASP_Enterprise_Security_API#tab=About
[2] http://www.owasp.org/images/8/81/Esapi-datasheet.pdf
[3] http://code.google.com/p/owasp-esapi-php/wiki/Welcome
(issue imported from #M12896)
Actions