Skip to content

Commit

Permalink
Merge pull request #469 from bugcrowd/Descriptive-Stack-Trace
Browse files Browse the repository at this point in the history
Update to rec for Descriptive Stack Trace
  • Loading branch information
RRudder authored May 15, 2024
2 parents e2dadc9 + df673eb commit 6dac826
Showing 1 changed file with 1 addition and 3 deletions.
Original file line number Diff line number Diff line change
@@ -1,8 +1,6 @@
# Recommendation(s)

It is best practice to create a policy around what occurs when an error is made in the application, detailing what information is sent to the user and what information is logged. This policy should be circulated across all development teams so that their code adheres to the policy.

When an error occurs the site should respond with a generic error message to the user that does not display internal details about the error or the underlying system.
When an error occurs the site should respond with a generic error message to the user that does not display internal details about the error, or the underlying system. It is recommended to create and implement a policy around what occurs when an error is made in the application. This should detail what information is sent to the user and what information is logged and be circulated across all development teams so that their code adheres to the policy.

For more information refer to the following guides relating to this vulnerability:

Expand Down

0 comments on commit 6dac826

Please sign in to comment.