Trying to get in touch with the devs and leadership


I have been revere engineering the API building a platform for my council (and others) to help enable a launch of a pay by month membership

A) I discovered a rather glaring security concern. My basic SM login, when querying the API, lets me get member information on any Troop in any Council nationwide
B) I would like to discuss being able to officially integrate with the api using oauth, keys or similar as opposed authenticating the council users via username/password

If someone could get in touch with my, my contact get be found on my LinkedIn

@DylanWilcox - I doubt the BSA staff will allow you to do what you are doing. It may be advisable to stop what you are doing.