summaryrefslogtreecommitdiff
path: root/TODO.txt
diff options
context:
space:
mode:
authorChris McDonough <chrism@plope.com>2011-01-07 15:59:50 -0500
committerChris McDonough <chrism@plope.com>2011-01-07 15:59:50 -0500
commit1ab17ae1555e799f0efe6bb03866f17b6c8fe1b6 (patch)
tree3c0f646ee2486e0eb000b1730fce585149638eba /TODO.txt
parentbe5f12ca5624130e6a61297d4c944cc65f757f52 (diff)
downloadpyramid-1ab17ae1555e799f0efe6bb03866f17b6c8fe1b6.tar.gz
pyramid-1ab17ae1555e799f0efe6bb03866f17b6c8fe1b6.tar.bz2
pyramid-1ab17ae1555e799f0efe6bb03866f17b6c8fe1b6.zip
garden
Diffstat (limited to 'TODO.txt')
-rw-r--r--TODO.txt6
1 files changed, 6 insertions, 0 deletions
diff --git a/TODO.txt b/TODO.txt
index a84b26ff2..938c5607a 100644
--- a/TODO.txt
+++ b/TODO.txt
@@ -28,6 +28,12 @@ Must-Have (before 1.0)
- Use a commit veto when configuring repoze.tm2 in paster templates for
non-1X, 2X, or 3X responses.
+- Make ``get_csrf_token`` call ``new_csrf_token`` (session timeout is
+ probably fine for the token).
+
+- Consider passing two callables to CallbackAuthenticationPolicy: one for
+ validating/obtaining the userid, the other for returning groups.
+
Should-Have
-----------