Skip to main content
Drupal is a registered trademark of Dries Buytaert
Release: Views Bootstrap 5.5.4 — Minor update available for module views_bootstrap (5.5.4). Release: Rightup theme 1.0.3 — Minor update available for theme vartheme_bs5_rightup (1.0.3). Release: CommentOn 1.0.6 — Minor update available for module commenton (1.0.6). Release: ChatGPT Ads 1.0.3 — Minor update available for module chatgpt_ads (1.0.3). Release: Opensolr Search 5.1.3 — Minor update available for module opensolr_search (5.1.3). Release: ServiceM8 Webform Integration 1.2.1 — Minor update available for module servicem8_webform (1.2.1). Release: PostfixAdmin 1.0.0 — Initial release available for module postfix_admin (1.0.0)! Release: ip_analyser 1.0.3 — Minor update available for module ip_analyser (1.0.3). Module Revived: Swagger-PHP OpenAPI 3 documentation generator 1.0.0 — Module swagger_php updated after 10 months of inactivity (1.0.0). Security Coverage: Microsoft Azure AI — Module ai_provider_azure now has official Drupal security advisory coverage.

SIWECOS

Security covered
View on drupal.org

The service is being discontinued. Please disable/uninstall the module.

SIWECOS is a project sponsored by the German government. It provides a set of scanners for common website security vulnerabilities. The report gives recommendations for securing the setup, e. g. by content security policy (CSP) headers.

SIWECOS on Github

This module integrates the Siwecos token and makes the security report available in the Drupal back-end.

CMS Garden members have co-driven this project right from the start. As of 2021, CMS Garden is also the maintainer of SIWECOS. Special thanks to JustSnipy.

How to use it

  1. Register your account at the Siwecos project site and copy your credentials from there. (No data abuse, promised.)
  2. Install the SIWECOS module and enable it.
  3. Enter email and password of your Siwecos account at /admin/config/system/siwecos
  4. Access your site's report at /admin/reports/siwecos

Please note: There's currently no support for .htpasswd protected or otherwise not publicly accessible sites.

Recommended modules

  • Security Kit provides various security-hardening options.
  • Content-Security-Policy - in a vanilla Drupal setup, the scanners usually find issues with the content security policy headers (CSP).

πŸ‡ΊπŸ‡¦

#StandWithUkraine
Please consider supporting Ukraine in a fight for their freedom and safety of Europe.

Depends on

Dependencies of the latest stable release

No dependencies recorded for this project.

Required by

Tracked projects that depend on this one

No tracked projects depend on this one yet.

Activity

Tracked releases
1
Tracked since
Nov 2023
Latest release
2 years ago
Releases (12 mo)
0
Maintenance
Dormant

Releases

Version Type Core Release date
1.1.7 Stable Nov 15, 2023