Hacksplaining
FeaturesLessonsEnterpriseThe BookOWASP Top 10PCI Compliance
Sign Up
Log In
FeaturesLessonsEnterpriseThe BookOWASP Top 10PCI Compliance Sign Up Log In

Information Leakage

Another location where your site is prone to leak sensitive information is error messages. Make sure error messages are sanitized so they don't reveal details about the data store, the paths of template files, or stack traces. It is important to have a generic HTTP 500 error page, and keep detailed reporting in server-side logs or reporting systems.

An example of verbose error reporting
Lessons
Glossary
Terms and Conditions
Privacy Policy

© 2026 Hacksplaining Inc. All rights reserved. Questions? Email us at support@hacksplaining.com