Missing Encryption

ID

ruby.checkforcessl

Severity

low

Resource

Missing Encryption

Language

Ruby

Description

Check that force_ssl setting is enabled in production

Rationale

Check that force_ssl setting is enabled in production

Remediation

Follow secure coding practices for Ruby on Rails applications. Review the references below for detailed remediation guidance.

Configuration

This detector does not need any configuration.