logoalt Hacker News

Ajedi32yesterday at 1:56 PM1 replyview on HN

Root directory would be on that blacklist for sure.

Those "vague suggestions" actually seem to include some pretty specific examples.

> A user’s entire "home" directory. Individual files and directories inside the home directory should still be allowed, but user agents should not generally let users give blanket access to the entire directory.


Replies

EnergyAmyyesterday at 2:32 PM

That's not at all specific. What individual files and directories?

show 1 reply