-
Notifications
You must be signed in to change notification settings - Fork 15
Description
This isn't as much of an issue, as much as it is a feature request. I came across this plugin while perusing a web site that is using it to accept credit card information. I'm assuming, since this information would just be stored in plaintext in the WP DB, that it's being stored unencrypted. That made me cringe, and so in my own work, I created a similar form - but with encrypted fields. This was a Gravity Forms plugin made by a third-party developer who put a lot into the security of the whole thing - which I appreciated.
SuperForms is pretty awesome, and I never knew about it until seeing it used rather improperly to store credit card information for later retrieval inside of WordPress's admin area. Like I said, this is pretty poor, and definitely doesn't pass for PCI standards - not even close. I think a huge step towards being somewhat secure would be to provide a means for encrypted fields.
I'd be interested in possibly working on this myself even - I've done similar things, in the past.
Looking forward to your response.
Thanks!