Prevent discovery of usernames author-sitemap.xml is accessible
-
Hello,
The option “Prevent discovery of usernames through ‘/?author=N’ scans, the oEmbed API, the WordPress REST API, and WordPress XML Sitemaps” is ON and I just noticed that the author-sitemap.xml is still accessible.
Also checked the /?author=somename and this resulted in that one can obtain confirmation that a user does exists.
While it does prevent access to /wp-json/wp/v2/users.
Is there some more options to prevent this?
Is there another way to stop access using htaccess maybe?
Viewing 5 replies - 1 through 5 (of 5 total)
Viewing 5 replies - 1 through 5 (of 5 total)
- The topic ‘Prevent discovery of usernames author-sitemap.xml is accessible’ is closed to new replies.