Hmmm. Interchange appears to be pretty matured and is talking a lot about being 
aimed at security. Runs PostgresQL but is built on Perl.

 Satchmo is yet being developed, but now has its first public releases out, and 
from its write up, it seems to have everything that I am looking for my needs. 
Runs PostgresQL and has the added plus of Python which fits with my direction. 
They have chosen Django, which is my second choice over TurboGears...but what 
do I know? Close enough! They also mention they take care of important security 
issues, saying, "Django's session management capabilities makes it more secure 
by not encoding session ID's in urls so that session-ID theft is not possible 
via the "Referrer" header. Also, Django takes care of escaping SQL statements 
so that SQL injection attacks are not possible."

I thought I saw something on HTTPS, but can't find it now. So, maybe that was 
on another site I was looking at....maybe.

Does anyone have an opinion on any other security issues I should be checking 
to see if the shopping cart protects against?





_______________________________________________
Tinyerp-users mailing list
http://tiny.be/mailman/listinfo/tinyerp-users

Reply via email to