Latest content by Eric Mill
The Next Step Towards a Bug Bounty Program for the Technology Transformation Service
We took a big step toward creating a bug bounty program for our agency by issuing an award to HackerOne for a Software-as-a-Service bug-reporting platform.
DotGov Domain Registration Program to Provide HTTPS Preloading in May
Effective May 15, 2017, GSA’s DotGov Domain Registration Program will begin providing HSTS Preloading services for federal agencies. This new service helps ensure that visitor communication with .gov websites is not modified or compromised, and hostile networks cannot inject malware, tracking beacons, or otherwise monitor or change visitor interactions online.
Automatic HTTPS Enforcement for New Executive Branch .gov Domains
HTTPS is a necessary baseline for security on the modern web. Non-secure HTTP connections lack integrity protection, and can be used to attack citizens, foreign nationals, and government staff. HTTPS provides increased confidentiality, authenticity, and integrity that mitigate these attacks.
Exciting Additions to Analytics.usa.gov
We’ve expanded analytics.usa.gov to include 15(!) more agency-specific dashboard pages. We now offer agency-specific analytics data pages for a total of 25 major federal agencies, and each one is accessible from the dropdown menu at the top of the site.
Analytics.usa.gov: Now with Agency-Specific Dashboards
We’ve added agency-specific dashboards to analytics.usa.gov!
