Coder Social home page Coder Social logo

time-1-ads / projetogsw Goto Github PK

View Code? Open in Web Editor NEW
5.0 2.0 5.0 55.18 MB

🚀 Projeto GSW Dashboard

Python 0.86% HTML 43.82% CSS 38.46% JavaScript 16.86% Procfile 0.01%
projeto-integrador equipe projetos dashboard python javascript postgresql css html scrum-agile

projetogsw's Introduction

Seja Bem-Vindo a Branch de Aplicação

Este projeto está divido por branches, acesse o repositório com as informações do projeto:


Saiba mais | Dashboard



🌌 Acesse o repositório do nosso projeto!

Este repositório (main) é utilizado para arquivos do Dashboard.

Para mais informações do projeto, acesse a branch "Sprints" clicando aqui ou acessando o link abaixo:


🚀 GSW Dashboard está no ar

🔗 Clique aqui para acessar o Dashboard Online no Heroku.

Link: https://dashboardgsw.herokuapp.com/

Nota 1: A aplicação web está em produção no Heroku, conforme indicado pelo cliente. Sendo protegida com acesso de Login e Senha.

Nota 2: O presente projeto tem apenas fins didáticos, portanto não cumprirá a Lei n° 13.853, de 08/07/2019 da Lei Geral de Proteção de Dados Pessoais (LGPD) em sua totalidade.


📅 As Sprints

🔖 SPRINT 1 (Link da Pasta): Concluído ☑️

🔖 SPRINT 2 (Link da Pasta): Concluído ☑️

🔖 SPRINT 3 (Link da Pasta): Concluído ☑️

🔖 SPRINT 4 (Link da Pasta): Concluído ☑️


🛰️ Links das API's

Com base nos dados disponibilizados pelo cliente, organizamos os arquivos (json), Clique aqui para mais detalhes.


☁️ Banco de Dados na Nuvem

O Banco de Dados deste projeto está integrado no sistema Cloud AWS da Amazon.


💻 Tecnologias Utilizadas

  • Banco de Dados: PostgreSQL
  • Back-end: JavaScript e Python
  • Front-end: CSS, HTML, Bootstrap, JavaScript e Chart.js
  • Ferramentas: Visual Studio Code, GitHub e Figma

🎓 Conheça nossa Equipe

Nome Função LinkedIn GitHub Avatar
Bryan Ribeiro Scrum Master
Danilo Pires Product Owner
Lucas César Desenvolvedor 1
Marcus Rocha Desenvolvedor 2
Jeferson Henrique Desenvolvedor 3
Raphael Prado Desenvolvedor 4
Elias Ferreira Desenvolvedor 5

projetogsw's People

Contributors

bryanribeiro avatar eliasferreiraa avatar jefersonhenrique avatar lucasaces avatar mvarocha avatar raphaelprado avatar

Stargazers

 avatar  avatar  avatar  avatar  avatar

Watchers

 avatar  avatar

projetogsw's Issues

Hardcoded secret key

Hello ProjetoGSW developers,

We are a cybersecurity research group from the CISPA Helmholtz Center for Information Security and Ca’ Foscari University of Venice. We recently conducted an analysis of the session management used in your web application as part of our research. We have discovered a security vulnerability that we believe requires your attention.

Vulnerability Description:

After our analysis, we have identified that your application is using a hard-coded secret key that is leaked through GitHub. If operators who install your web application do not change this secret key, they are vulnerable to cookie forgeries. The cookie forgery attack allows an attacker, knowing the key used to sign a cookie, to forge new arbitrary cookies to impersonate and take over other accounts.

app.config['SECRET_KEY'] = 'secret-key-goes-here'

Recommendation for Mitigation:

To address this vulnerability and enhance the security posture of your web application, we highly recommend setting the secret key from an environment variable. If the environment file is not shared on GitHub then this would force operators of your application to create their own key upon installation, forcing them to set their own secure secret key.

We hope this notification helps improve your security. Should you have further questions or comments on this feel free to answer this thread or reach out to [email protected].

Kind regards,
Florian Hantke

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. 📊📈🎉

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google ❤️ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.