From e6f8f6cdc04a36d106cd0d36379b3bf89a56854b Mon Sep 17 00:00:00 2001 From: mkelvers Date: Mon, 20 Apr 2026 16:45:58 +0200 Subject: [PATCH] security: restrict public access to only login and static assets --- internal/middleware/access.go | 6 +----- 1 file changed, 1 insertion(+), 5 deletions(-) diff --git a/internal/middleware/access.go b/internal/middleware/access.go index 03e900b..9ea8cd1 100644 --- a/internal/middleware/access.go +++ b/internal/middleware/access.go @@ -15,11 +15,7 @@ type AccessPolicy struct { func NewAccessPolicy() AccessPolicy { return AccessPolicy{ PublicPaths: map[string]struct{}{ - "/": {}, - "/login": {}, - "/search": {}, - "/api/search": {}, - "/api/search-quick": {}, + "/login": {}, }, PublicHeads: []string{ "/static/",