HW3 SECURITY

Database-driven catalog with hardened authentication and form protections.

Every sensitive workflow now runs through server-side validation, CSRF protection, secure cookies, and escaped output rendering.

Security highlights

  • Session-backed CSRF tokens on every POST form.
  • Salted and hashed passwords with secure auth cookies.
  • Strict input validation and escaped EJS output throughout the site.

Mobile Leisure

Filtered by selected category from DB.