Security

Access Control

Your instance of YouTransfer is publically available. Anyone can upload & share files without having to authenticate. If access restriction is required, you will enforce this through other means like IP whitelisting in the firewall or access control through a reverse proxy.

Encryption

You have manually set the encryption key. For security reasons, it is recommended to restrict access to the 'settings.json' file in the application home directoy.

This key will also be used for password encryption or as salt in hash generation.