From a1257b8fdf0529d43232fb73b80181497c2166bc Mon Sep 17 00:00:00 2001 From: buckaroo-labs Date: Thu, 21 Dec 2023 12:10:20 -0800 Subject: Update README.md Yikes, This code does not look secure,--- README.md | 7 ++++++- 1 file changed, 6 insertions(+), 1 deletion(-) diff --git a/README.md b/README.md index 9f52272..b21bfaf 100644 --- a/README.md +++ b/README.md @@ -3,7 +3,12 @@ SemanticScuttle is a social bookmarking tool experimenting with new features like structured (heirarchical) tags and collaborative descriptions of tags. Originally a fork of Scuttle, it has overtaken its ancestor in stability, features and usability. The querwurzel [fork](https://github.com/querwurzel/semantic-scuttle) brought the software up to PHP 7.3 compatibility, but is no longer in development. This fork's aims are to: * bring app compatibility up to PHP 8.2 (for at least the MySQL/mysqli database option, possibly others), avoiding the "Deprecated" messages under PHP 8.2 that will be the "Fatal Error"s of a future PHP version; * correct broken links in the documentation; and to - * bundle a responsive theme (forked from [sscuttlizr](https://github.com/jonrandoem/sscuttlizr)) with minimal features, designed for cases in which this app is embedded in a larger system. + * bundle a responsive theme (forked from [sscuttlizr](https://github.com/jonrandoem/sscuttlizr)) with minimal features, designed for cases in which this app is embedded in a larger system. + * secure the application (see warning). + +## Warning + +There is no warranty, explicit or implied, regarding the security of this application. No security testing has been performed, but a visual review reveals deeply concerning code practices. The associated risks may be mitigated by turning off anonymous editing and user registration capabilities after a single administrative user has been created, and/or not exposing the application to the internet. ## Features * LDAP/Active Directory authentication -- cgit v1.2.3-54-g00ecf