Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Improve form sharing security #1198

Open
NathanRodet opened this issue Sep 5, 2024 · 0 comments
Open

Improve form sharing security #1198

NathanRodet opened this issue Sep 5, 2024 · 0 comments

Comments

@NathanRodet
Copy link

NathanRodet commented Sep 5, 2024

Describe the problem to be solved

Problem

Grist's form creation is a great feature, but only being able to share anonymous form links could be security and observability issues.

  • Access Control : No option to limit form access to specific user groups or authenticated users.
  • User Tracking : Inability to track who submitted form responses.

Risks

  • Confidentiality : Forms are accessible to anyone with the link, restricting the type of information that can be shared due to potential confidentiality leaks.
  • Denial of Service : Publicly available forms could be vulnerable to DoS attacks; an attacker could flood with responses, causing database to grow.

Describe the solution you would like

Proposed Solutions

  • Introduce the option of access control through authentication to the platform when sharing a link. To limit form access to specific users or at least authenticated ones.
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant