A user just alerted me to domain.com/invite being wide open.
A user just alerted me to domain.com/invite being wide open.
The way we have gotten around this at the time being is to just change permissions on the file so that it can't be ready by anyone unless we are doing a major invite list... I have kindof brainstormed through ways to fix this, but without knowing the code, I am clueless on the process for getting to the end result... Hopefully one of the more experienced people on the forum can throw some light in this direction if they have done anything concerning it.
Quickest way would be to add a password with .htaccess/.htpasswd to ab able to access the file.