<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Showroom Logic &#187; security</title>
	<atom:link href="http://www.showroomlogic.com/blog/tag/security/feed" rel="self" type="application/rss+xml" />
	<link>http://www.showroomlogic.com/blog</link>
	<description>Google Adwords PPC, Dealer SEO, Facebook App</description>
	<lastBuildDate>Sun, 05 Feb 2012 17:53:18 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
		<item>
		<title>A Quick Note About Your Customer&#8217;s Privacy &amp; Your Websites</title>
		<link>http://www.showroomlogic.com/blog/a-quick-note-about-your-customers-privacy-your-websites.html</link>
		<comments>http://www.showroomlogic.com/blog/a-quick-note-about-your-customers-privacy-your-websites.html#comments</comments>
		<pubDate>Tue, 30 Mar 2010 20:39:03 +0000</pubDate>
		<dc:creator>Mike</dc:creator>
				<category><![CDATA[Misc]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[Session Id]]></category>

		<guid isPermaLink="false">http://www.showroomlogic.com/blog/?p=531</guid>
		<description><![CDATA[If you plan on using different microsites, be sure you think about how to secure your contact forms. Your customers put their trust in you, and if you make it easy to find their information I&#8217;m not sure they would appreciate it much. I was just looking at the live stats for one of my [...]]]></description>
			<content:encoded><![CDATA[<p>If you plan on using different microsites, be sure you think about how to secure your contact forms. Your customers put their trust in you, and if you make it easy to find their information I&#8217;m not sure they would appreciate it much.</p>
<p>I was just looking at the live stats for one of my dealers websites. This particular website has Google Adsense Installed, and one of our ads popped up.</p>
<p>The customer clicked it and was brought to my site. I saw that the url had a session ID on it, so I clicked it.</p>
<p>There was all of the womans information filled in. You should all make sure you are not using sessions ID&#8217;s like this:</p>
<div id="attachment_532" class="wp-caption aligncenter" style="width: 610px"><img class="size-full wp-image-532" title="sessionid" src="http://www.showroomlogic.com/blog/wp-content/uploads/2010/03/sessionid.jpg" alt="When I Clicked This URL, All Of the Womans Info was on there (still). I blacked out her info" width="600" height="446" /><p class="wp-caption-text">When I Clicked This URL, All Of the Womans Info was on there (still). I blacked out her info</p></div>
]]></content:encoded>
			<wfw:commentRss>http://www.showroomlogic.com/blog/a-quick-note-about-your-customers-privacy-your-websites.html/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

