Skip to content
This repository has been archived by the owner on Nov 23, 2024. It is now read-only.

Token cache 'oauth-tokens.sqlite' unprotected #118

Open
Sean-T-Moore opened this issue Feb 6, 2019 · 0 comments
Open

Token cache 'oauth-tokens.sqlite' unprotected #118

Sean-T-Moore opened this issue Feb 6, 2019 · 0 comments

Comments

@Sean-T-Moore
Copy link

After authentication, tokens are stored in ~/.flickr/oauth-tokens.sqlite and on my system I found both this directory and file were world readable. I suggest when creating database, set permission to be only readable by user that did the authenticating to prevent any unintentional use by others on a system.

Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant