[OCMOD] No Admin Token

This extension will remove the token from the address bar when navigating in the admin area
The Synchronizer Token Pattern is implemented in opencart for security reasons removing its functionality could leave your store vulnerable to CSRF attacks.


What is "Synchronizer Token Pattern"
https://www.owasp.org/index.php/Cross-Site_Request_Forgery_%28CSRF%29_Prevention_Cheat_Sheet#CSRF_Prevention_without_a_Synchronizer_Token

Other security steps can be taken to increase opencart admin security. Visit for more information
https://www.owasp.org/index.php/Cross-Site_Request_Forgery_%28CSRF%29_Prevention_Cheat_Sheet#Client.2FUser_Prevention




Price
$20.00

  • Developed by OpenCart Community
  • Documentation Included

Rating

Compatibility
2.0.0.0, 2.0.1.0, 2.0.1.1

Last Update
9 Jan 2015

Created
9 Jan 2015
5 Sales
1 Comments
tarranjones
tarranjones
Member since: 13 Feb 2014

View all extensions Get Support