Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

One of the top requested features for Joget DX was to change the process id to use UUID for data security. Using UUID makes the URL unguessableis the enhancement of process form data security, by allowing the record ID to use UUID instead of reusing the process ID. Using UUID for process record ID makes the URL difficult to guess, thus protecting unauthorized access to the process records in a Form. 

With the old processId record ID of "[seq#]_appid_process1" which is the same format as the process ID, it was easy for users to access other process records by just incrementing the process seq number in the browser URL and viewing records not belonging to them.

...