Skip to main content
assistive.skiplink.to.breadcrumbs
assistive.skiplink.to.header.menu
assistive.skiplink.to.action.menu
assistive.skiplink.to.quick.search
Log in
Confluence
Spaces
Hit enter to search
Help
Online Help
Keyboard Shortcuts
Feed Builder
What’s new
Available Gadgets
About Confluence
Log in
Android
Pages
Boards
Space shortcuts
Dashboard
Secure Coding Home
Android
C
C++
Java
Perl
Page tree
Browse pages
Configure
Space tools
View Page
A
t
tachments (0)
Page History
Page Information
View in Hierarchy
View Source
Export to PDF
Export to Word
Pages
…
Android Secure Coding Standard
2 Rules
Rule 03. WebView (WBV)
DRD22. Do not cache sensitive information
Page Information
Title:
DRD22. Do not cache sensitive information
Author:
Fred Long
Aug 19, 2014
Last Changed by:
Beriwan Salamat Ravandi
Oct 21, 2017
Tiny Link:
(useful for email)
https://wiki.sei.cmu.edu/confluence/x/H9AxBQ
Export As:
Word
·
PDF
Hierarchy
Parent Page
Page:
Rule 03. WebView (WBV)
Labels
Global Labels (7)
general
incomplete
rule
fio
android-applicable
drd
draft
Recent Changes
Time
Editor
Oct 21, 2017 10:54
Beriwan Salamat Ravandi
View Changes
Added ourCS workshop contributor text box
Apr 08, 2015 19:41
Unknown User (lflynn)
View Changes
Not specific to Java, so removed '-J' from end of rule
Apr 07, 2015 15:23
Unknown User (lflynn)
View Changes
changed label to FIO from WebView, since some parts of rule (for example, the keyboard cache) are not specific to WebView
Oct 20, 2014 10:34
David Svoboda
View Changes
changing RA Table
Aug 21, 2014 10:43
Fred Long
Added information from Android Security Tips
View Page History
Outgoing Links
External Links (12)
https://www.securecoding.cert.org/confluence/display/java/A…
https://developer.android.com/reference/android/webkit/WebV…
https://developer.android.com/reference/android/webkit/WebV…
https://viaforensics.com/resources/reports/best-practices-i…
https://viaforensics.com/resources/reports/best-practices-i…
www.cs.cmu.edu/ourcs/register.html
https://www.securecoding.cert.org/confluence/display/java/A…
https://www.securecoding.cert.org/confluence/display/androi…
https://www.securecoding.cert.org/confluence/display/java/A…
https://viaforensics.com/resources/reports/best-practices-i…
https://developer.android.com/training/articles/security-ti…
https://viaforensics.com/resources/reports/best-practices-i…
Overview
Content Tools
{"serverDuration": 67, "requestCorrelationId": "2d95491128bf3e25"}