All Ideas

Idea Details

Post an Idea
160  Points
Open
Idea has been posted. Give it an upvote or downvote.

Private class variables should not be included by Json.Serialize

Integration

An Apex class' private variables should not be visible in json strings either as returns from java script remote calls or as the result of Json.Serialize().  This should be considered a security hole and if not fixed then an option provided to disable private data visibility when serialized to JSON.

case #09213012

Merge Idea · Flag

  • Upvotes
  • Downvotes

Ideas

Apps

from AppExchange

Questions

Help us to keep IdeaExchange clean by pointing out overlapping ideas. We'll investigate your suggestion and merge the ideas if it makes sense.



 

 

Thanks for your merge suggestion. We will review it shortly and merge the ideas if applicable.

Salesforce takes abuse situations very seriously. Examples of abuse include but are not limited to posting of offensive language or fraudulent statements. To help us process your request as quickly as possible, please fill out the form below describing the situation. For privacy and security reasons, the final outcome of an abuse case may not be revealed to the person who reported it.


 

Thank you for your feedback. We take abuse seriously and will investigate this issue and take appropriate action.