Community mailing list archives

Re: Odoo security

Luke Branch
- 07/25/2015 00:44:02
Hi Alexandre and Stuart,

I'm just another odoo user, and not an Odoo partner or developer as such, but I have a feeling if you're able to send an email out to the Odoo mailing list (not this one, I meant the mass mailing/marketing list to users and partners, etc.), as well as post on your facebook and twitter pages, etc. to promote the campaign I think it would help get the word out about this campaign a great deal.

I think the successful campaigns you (Odoo SA) have run in the past (eg. themes campaign) were successful due to the marketing/advertising done in the build-up to the campaign, as well as the fact that they filled a need that everyone had for themes and a designers handbook for building themes. You also had a great deal of support from your partners for that campaign which I believe helped as well, and the campaign was held over a longer period from what I remember.

I'll be contributing what I can to the campaign before it finishes, however I think if you're able to rally the support of Odoo partners and users alike (as Odoo SA) I think this campaign has a better chance of being a success.

Is there any way to extend the campaign on Indiegogo after it's started? I think this kind of campaign needs to run for a few months in order to gain the kind of publicity/traction it needs to get a large enough number of users and partners to contribute to make it a success.


On Fri, Jul 24, 2015 at 6:08 PM, Alexandre Vandermeersch <> wrote:

Dear all,
As a reminder, we at Odoo s.a. support this audit. That means a financial contribution and of course our commitment to examine the results of the audit and take any necessary action.

Your help is needed to make it happen! Please contribute on


Le 24-07-15 11:25, Stuart J Mackintosh a écrit :
<blockquote cite="" type="cite">

Dear Odoo community,

There are now just 8 days left until the Odoo security audit campaign finishes and the campaign is now 29% funded. It would be really valuable to get some more support for the community as a whole.

I have set up this crowd fund campaign up to enable us all to share the cost of this activity as a community, and all benefit from the result. I think this is the best opportunity to have a formal security audit of Odoo undertaken, so that support taking part will have the option of learning the true state of Odoo security and also have immediate issues discovered and addresses.

You can access the campaign on Indiegogo here: As a fixed-funded project, no funds will be taken unless we reach the target of £10,000.

I feel that it is sufficiently important that this gets done so in the spirit of community and openness, I have taken the initiative to get on with it rather than just lobby Odoo. We all benefit from an excellent software application so I do not feel that it is unfair to chip in to make this audit happen.

The project has received good press and social interactions, support from Odoo and lots of visitors and today Odoo showed their commitment by contributing to the project.

My team have discovered a further password issue in recent days affecting the SaaS which Odoo are currently considering, we do not know how many more of these issues exist, but as implementers of Odoo, we should all work to find out before the bad guys do.

If we and our customers are to use the web-connected features like the portal, email campaign module, web builder and others, whilst having our business information held in Odoo, we need this audit.

Please  get involved. If you think that I can improve or alter the campaign, just let me know, I am keen to hear your ideas and work collaboratively.

Looking forward to your feedback.

Best regards,


PS If you do not want to contribute financially, you can still help by promoting the campaign through social media, tweets relating to the campaign can be found here: Please use the hashtag #SecureERP


Stuart J Mackintosh

Director / Owner

<img alt="OpusVL Logo" src="" height="38" width="150">

Business management software - Joined-up, flexible & open

• Open Source Specialists

Drury House

Drury Lane


CV21 3DE

T: 01788 298 450

DDI: 01788 298 457



Post to:

Alexandre Vandermeersch
+32 491 08 80 09
Chief Marketing Officer, Odoo s.a.

Post to: