Community mailing list archives

Re: Odoo security

gunnar wagner
- 07/24/2015 22:08:04
done !  

@Stuart: I think you have to send reminders a little more aggressively. If there is no buzz campaign might fail
I, for example was a safe candidate for participation but just forgot about it. 

@ Odoo S.A.  ... somehowe hoping you will fill the gap if the campaign is in danger of failing towards the end

On 7/24/2015 5:25 PM, Stuart J Mackintosh wrote:
<blockquote cite="" type="cite">

Dear Odoo community,

There are now just 8 days left until the Odoo security audit campaign finishes and the campaign is now 29% funded. It would be really valuable to get some more support for the community as a whole.

I have set up this crowd fund campaign up to enable us all to share the cost of this activity as a community, and all benefit from the result. I think this is the best opportunity to have a formal security audit of Odoo undertaken, so that support taking part will have the option of learning the true state of Odoo security and also have immediate issues discovered and addresses.

You can access the campaign on Indiegogo here: As a fixed-funded project, no funds will be taken unless we reach the target of £10,000.

I feel that it is sufficiently important that this gets done so in the spirit of community and openness, I have taken the initiative to get on with it rather than just lobby Odoo. We all benefit from an excellent software application so I do not feel that it is unfair to chip in to make this audit happen.

The project has received good press and social interactions, support from Odoo and lots of visitors and today Odoo showed their commitment by contributing to the project.

My team have discovered a further password issue in recent days affecting the SaaS which Odoo are currently considering, we do not know how many more of these issues exist, but as implementers of Odoo, we should all work to find out before the bad guys do.

If we and our customers are to use the web-connected features like the portal, email campaign module, web builder and others, whilst having our business information held in Odoo, we need this audit.

Please  get involved. If you think that I can improve or alter the campaign, just let me know, I am keen to hear your ideas and work collaboratively.

Looking forward to your feedback.

Best regards,


PS If you do not want to contribute financially, you can still help by promoting the campaign through social media, tweets relating to the campaign can be found here: Please use the hashtag #SecureERP


Stuart J Mackintosh

Director / Owner

<img alt="OpusVL Logo" src="" height="38" width="150">

Business management software - Joined-up, flexible & open

• Open Source Specialists

Drury House

Drury Lane


CV21 3DE

T: 01788 298 450

DDI: 01788 298 457



Post to:

Gunnar Wagner | Iris Germanica Co., Ltd. | Jin Qian Gong Lu 385, 8-201, Feng Xian District, 201404 Shanghai, P.R. CHINA
+86.159.0094.1702 | skype: professorgunrad | wechat: 15900941702