Option to remove sitemap.xml header, description and footer for security
olivertedwards opened this issue · comments
Oliver T. Edwards commented
Solid work on recent plugin developments, @tobimori — well done!
Two ideas/thoughts before your first release of the plugin:
- It would be great to have an option to disable the header and description element on the sitemap.xml page, because the section does not add anything valuable to the user accessing the page.
- I think I understand the intention of displaying the plugin information at the bottom of the sitemap.xml, but it also exposes information that could potentially be exploited from a security standpoint. At least, it’s something I would be wary of.
Really appreciate your efforts, and please let me know if I can help you in any way.
Best, Oliver
Tobias Möritz commented
If you need to, you can override the sitemap.xsl.php template and provide a custom rendering styleset for the sitemap.
Oliver T. Edwards commented
Great suggestion, don’t know why I didn’t think of that already 🤣