281 results

NONCE Upon a time in WordPress

NONCE upon a time we didn’t need to worry about Cross-Site Request Forgeries. We handled users submitting a form twice by simply processing the form twice. Neither of these were great strategies, so someone invented the Number used ONCE or "NONCE". Let’s take a quick look at what they are, how WordPress implements them, and how you can implement them in your own forms and code.

How to Bridge KPIs and Website Performance Metrics to Boost Page Speed

Marketing and developer teams often speak different languages and have conflicting priorities. However, many companies are discovering there are two sides to the same coin: every business KPI has a corresponding technical metric that directly influences its success.

Here are five high-level business KPIs and the website performance metrics you should track.

Three Lessons From Taking Gutenberg to Drupal

Content authoring can be painful. Drupal Gutenberg is an editor, originally written by the WordPress community, that makes it easy to create content—from long-form feature articles to rich landing pages. 

As soon as we started presenting Gutenberg in client meetings, we knew it was huge. “How fast can we get this?” was the usual response. The people most eager to get started were always content producers. We were not surprised. 

Simplifying Drupal Security: Protecting Your Clients and Your Company

Have you had “the talk” with your clients? You know, the one where you tell them that if they are going to be doing it, they need to be safe. If they are going to collect private information or integrate external services like PayPal or MailChimp, it is time to sit down and have a discussion—about security. A company’s website is a portal to customer information, and if hacked, can lead to a very public breach resulting in loss of customers, fines, and brand damage.

Relocating Drupal 8 Configuration Outside of the Document Root

Drupal configuration is the all-important glue that instructs the Drupal core and contrib code how to operate in the context of the current web application. In Drupal 7, there was no formal configuration API in core. The ctools contrib module provided an exportables API that was widely implemented, but was not universally supported. Drupal 8 has greatly improved on this state of affairs by providing the Configuration Management API in core. Now, configuration can be handled in a uniform and predictable way.

Subscribe to Developer