-
Notifications
You must be signed in to change notification settings - Fork 4.2k
Open
Labels
ACK_WAITINGIssue waiting acknowledgement from core team before to start the work to fix it.Issue waiting acknowledgement from core team before to start the work to fix it.HELP_WANTEDIssue for which help is wanted to do the job.Issue for which help is wanted to do the job.NEW_CSIssue about the creation of a new cheat sheet.Issue about the creation of a new cheat sheet.
Description
What is the proposed Cheat Sheet about?
Guidance for securely integrating third-party payment gateways, focusing on workflow risks and practical mitigation steps.
What security issues are commonly encountered related to this area?
Order tampering, payment spoofing, unauthenticated callbacks, race conditions, replay attacks, and missing validation/logging.
What is the objective of the Cheat Sheet?
Enable fast, secure merchant integration by giving easy-to-follow technical checks for payment flows.
What other resources exist in this area?
This Cheat Sheet is designed to guide developers to securly integrate 3rd party payment gateway integration.
Metadata
Metadata
Assignees
Labels
ACK_WAITINGIssue waiting acknowledgement from core team before to start the work to fix it.Issue waiting acknowledgement from core team before to start the work to fix it.HELP_WANTEDIssue for which help is wanted to do the job.Issue for which help is wanted to do the job.NEW_CSIssue about the creation of a new cheat sheet.Issue about the creation of a new cheat sheet.