+8
doc/todo.md
+8
doc/todo.md
···
36
36
- [ ] site:log new accounts, account deletions, etc etc in an admin-accessible site log
37
37
- this should be set up to only log things when an admin enables it in the site config, so as to only log when necessary
38
38
- [ ] site:implement a database keep-alive system
39
+
- i may also just need to change a setting in the database server to keep it alive, i am not sure yet.
40
+
- [ ] site:overhaul security
41
+
- i am not a database security specialist, and some of the methods below may be bad.
42
+
before approaching which security features i want implemented, i will be consulting some other people to be sure of which ones need to be and do not need to be implemented.
43
+
- [ ] row level security?
44
+
- [ ] roles/user groups?
45
+
- [ ] whitelist maps where possible?
46
+
- [ ] database firewall?
39
47
40
48
## ideas
41
49