Security
Most of the time security is an issue only on commercial websites. The
secure systems are there to protect your credit card number and other
financial information. Minutillo.info uses most of the same security techniques
as these commmercial sites. We are trying to protect your password and
your identity. We would hate for someone pretending to be you to post a
story under your name. [ed. Horrors!]
Password Protection
There are two issues you might worry about with your password. Is it secure when
it is being transmitted over the internet and is it secure when it is stored in our
databases.
To keep your password secure when being transimitted over the internet, we have
encrypted your password. This requires that you enable
our security certificate. With this step complete, your password is safe when being
transmitted.
We store only the encrypted version of your password in our databases. This is a
one-way encryption. No one (or at least not without an immense amount of effort)
could determine your password from the information in our database. They might
be able to guess it, but they could not calculate it. Of course this means that no
one here at Minutillo.info can tell you a forgotten password. In the interest of full
disclosure, any one (that means me) who knows our database password
could change your password.
Identity
Here the question is could someone who doesn't know your password still post
stories under your name? We don't ask for a password on every page (that would
get tedious). We use a cookie to verify your identity. These cookies are good for
just one web transaction. If someone were to intercept a page transmission (difficult
since when you're logged in the pages are encrypted [a bit over the top for this site,
but easy, so why not?]) and gain access to the cookie the vulnerable interval lasts only
until you visit another page, or a half hour, which ever is shorter. The chance of an
intruder performing this feat is infintesimal.
Return to Minutillo.info