Potential fixes for the future
by - Thursday, January 1, 1970 at 12:00 AM
I'm sure that a lot needs to be fixed. I suggest the following:

  • Fix 404 pages to redirect to the home page
  • Change the credit system to remove decimal points
  • Allow the theme to work with the icons on the UCP section
  • Add a link to the "Stats.php" on the panel on the home page (It's currently at the bottom of the home page)
  • Add 2FA for accounts
  • Fix the syndication.php page, as it's not being found on the website
  • Removing the public knowledge of plugins employed by the phpBB application, as they are viewable. I won't include the finite details here, as they COULD be used by someone maliciously
  • Include a .well-known/security.txt and a /robots.txt file on the main path.
  • Prevent the posting for regular users to the archive sub-forums, such as Scam Report Archives
  • Add a staff.php, which will show all the current staff on the forums. Of course, hiding those who want to remain hidden to everyone.
  • Add a misc.php which is often used with RF's raid.js, such as looking at safelinks
  • Add advertisements, which can be used as an alternative of payments of ranks. Brings in more revenue.


These can slowly be patched by the staff team, it's not an instant fix needed.
Reply
i love being user 404
Reply
I'm sure that a lot needs to be fixed. I suggest the following:

    Fix 404 pages to redirect to the home page- Not really a priority, but will be done tomorrow.

    Change the credit system to remove decimal points - Done

    Allow the theme to work with the icons on the UCP section - Not really a priority.

    Add a link to the "Stats.php" on the panel on the home page (It's currently at the bottom of the home page) - Not really a priority.

    Add 2FA for accounts - Done

    Fix the syndication.php page, as it's not being found on the website - Purposefully removed until I fix it from leaking hidden content.

    Removing the public knowledge of plugins employed by the phpBB application, as they are viewable. I won't include the finite details here, as they COULD be used by someone maliciously - All plugins are audited, and I don't see a real security risk. "Security by obscurity" only really goes so far

    Include a .well-known/security.txt and a /robots.txt file on the main path. - Done, https://breached.co/.well-known/security.txt (robots.txt will be added later once I work on SEO)

    Prevent the posting for regular users to the archive sub-forums, such as Scam Report Archives - Done

    Add a staff.php, which will show all the current staff on the forums. Of course, hiding those who want to remain hidden to everyone. - Always existed, https://breached.co/showteam.php

    Add a misc.php which is often used with RF's raid.js, such as looking at safelinks - Will add tomorrow.

    Add advertisements, which can be used as an alternative of payments of ranks. Brings in more revenue. - Not really a priority.

https://pompur.in
Reply
Would love to see the "Wrong Forum" report option changed to "Wrong Section".

#databreach
#RIU
Reply
(March 23, 2022, 10:45 AM)thekilob Wrote: Would love to see the "Wrong Forum" report option changed to "Wrong Section".


Done.

And everything else mentioned in this thread has been noted for the future. or has been implemented.

https://pompur.in
Reply


 Users viewing this thread: Potential fixes for the future: No users currently viewing.