Skip to content

Clarification: V2 Text Statement "High‑value" #3299

@ajayojha

Description

@ajayojha

High‑value business logic flows have considered abuse cases and malicious actors, and have
protections against spoofing, tampering, information disclosure, and elevation of privilege at‑
tacks.

"High-value business logic flows"
As far as I know the High-value is not the standard term is used in security, It should be "business-critical" or "critical business functions" or something else which are highly using in security.

"business logic flows have considered abuse cases and malicious actors, and have
protections against spoofing, tampering, information disclosure, and elevation of privilege at‑
tacks."

How business logic includes STRIDE?, I think, STRIDE is not the main purpose of business logic security.

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions