1.5 Security Considerations

This section describes security considerations to be aware of when working with the Reporting Module.

1.5.1 Authentication Token Exposure

On Windows, the authentication token used for login operations is exposed as a URL parameter in the Internet Explorer address bar when users open PDF files for reports. This happens because the browser handles links to PDFs instead of JavaScript handling the links.

Do not copy and paste links to report PDFs. If the token has not yet expired and the user has not logged out, the link receiver, who might not be a legitimate user, is able to access the Reporting Module by using the token given to the legitimate user.

IMPORTANT:Do not try to copy and send links within the Reporting Module, because this action might potentially expose your login information.