{"id":18314650,"date":"2025-02-18T23:23:32","date_gmt":"2025-02-18T23:23:32","guid":{"rendered":"https:\/\/wordpress.org\/support\/topic\/security-weakness\/"},"modified":"2025-02-18T23:23:32","modified_gmt":"2025-02-18T23:23:32","slug":"security-weakness","status":"publish","type":"topic","link":"https:\/\/wordpress.org\/support\/topic\/security-weakness\/","title":{"rendered":"Security weakness"},"content":{"rendered":"\n<p class=\"wp-block-paragraph\">Hi, first of all, this is a GREAT plugin, thank you.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">My only issue with it is that if an error occurs from a url with an auth_secret on the end of it, then the auth secret is sent by email over the open internet, which I don&#8217;t think is good practice. Maybe it would be good to strip by default any query containing the words auth or secret, and the pro version to allow additonal customisation.<\/p>\n","protected":false},"template":"","class_list":["post-18314650","topic","type-topic","status-publish","hentry"],"jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/wordpress.org\/support\/wp-json\/wp\/v2\/topic\/18314650","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/wordpress.org\/support\/wp-json\/wp\/v2\/topic"}],"about":[{"href":"https:\/\/wordpress.org\/support\/wp-json\/wp\/v2\/types\/topic"}],"version-history":[{"count":0,"href":"https:\/\/wordpress.org\/support\/wp-json\/wp\/v2\/topic\/18314650\/revisions"}],"wp:attachment":[{"href":"https:\/\/wordpress.org\/support\/wp-json\/wp\/v2\/media?parent=18314650"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}