Skip to content

Prefer x-hub-signature-256 header with sha256 for improved security #6

@ishmam-mahmud

Description

@ishmam-mahmud

The securing webhooks documentation notes that the SHA1 header is still there only for backwards compatibility purposes, while recommending the SHA256 header for improved security.

I suggest this package move to SHA256 and only use the SHA1 header as a secondary resort instead.

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions