We need a website for alumni( php & mysql). ? Alumni will sign up and each one will have ? tools to use like individual page with his/herprofile, invite members, wink them etc.
? We are expecting 15 batches are going to register (each batch has50 students) from 1994-2014. Therefore while registering on this website. Youneed to put them in the batch wise database. You can use the criteria forregistration such as year of pass/batch and place of study along with other [login to view URL] profile will have one page with photo upload option.
? ·Afterlogin…they should be able to see only the profile of their batchments. But noother profile.?
Ex: A is a student of 2000. When helogs in, he should be able to see only 2000 batch students and can invite, sendmassage, wink them or add them.
## Deliverables
·Thereneeds to be admin interface from where one can edit the profile/delete the member,massage/ are any other text.
?
?
?
**Security**
- URL / form and MYSQL injection protection (sanitize input)
- HTML sanitizer script (<[login to view URL]> )
- prevent Cross-Site Scripting
- store user passwords in hash
- Data validation should be done server-side
- htaccess prevent users viewing paths and other server folders
- prevent remote file inclusion (turn off globals)
- turn off php error messages
- limit # of user login requests to 4, then show forgot passwordpage
?
**Administration**
- User registration - login / forgot password / reset passwordpages
- Profile page(no username, just email address, password, name,address, profile image)
- admin console at .../admin
- search and edit users
- search, see or edit all content on the site, for example an ideafor one of the groups
- see data like numbers of organizations, registered users, # ofactive users,