OKR by BOJA - Security

Security


Overview

The solution is a Single Page Application running directly in the user browser. Data is stored in a realtime Google firebase database. This means that the only solution logic is running in the user browser. There are also a few cloud functions running internally at Firebase with no access to Internet e.g. automatic email reports.


Cloud Security Participant

The solution is part of the Atlassian bug bounty program asking remote security researcher to test the solution for security vulnerabilities.


Data Storage and Facilities


Security - Google Firebase Realtime Database

The database is secured by Firebase security rules. Data is encrypted both at rest and in transit. Boja consulting employees has access to data on a need to know basis

  • Data at rest - This means that the data is stored encrypted in the database.
  • Data in transit - This means that the connection from the browser to the Google database is encrypted and authenticated using a strong protocol (TLS 1.2), a strong key exchange (ECDHE_RSA with P-256), and a strong cipher (AES_128_GCM).

Do you have any questions?
We are happy to support you at support@bojaconsulting.com

Value

OKR by BOJA gives you the solution
you need working with OKRs.

Company

Home

Features

Why

About

Support

Terms of Service

Privacy Policy

Security

Help

©2020-2024 OKR by BOJA

support@bojaconsulting.com