Skip to content

Expose the api SOMEHOW so you can manage stuff #74

@randomouscrap98

Description

@randomouscrap98

So, contentapi has an awesome management system builtin, but you can't access it. That alone could give you access to so much junk, such as the admin logs and content restoration and the whole dang thing. But it's difficult to expose it because it's not like it's restricted. Perhaps there could be a setting in contentapi that only allows super users to access the endpoint, and then you just expose it as normal through nginx? Another option is to hide it behind header authentication like .htaccess or whatever the equivalent is in nginx.

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions