Skip to content

Add new Antlers Security section #1854

@morhi

Description

@morhi

Recent PRs introduced breaking changes and improvements to Antlers security.

I'd suggest to create new sections for

Topics to cover:

  • Explain trusted/untrusted mode and its scope
  • List of available trusted modifiers, tags
  • Using config props
  • Document Antlers::parser and things to be aware of
  • Which CP fields are affected of the security restriction (like collection route fields)
  • If projects modifiers and tags are trusted automatically
  • How addons can register trusted modifiers and tags
  • How to debug modifiers and tags that don't seem to work (return null/previous value silently)
  • Things to be aware of when using view or other helpers to render Antlers templates from code

Related PRs:

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type
    No fields configured for issues without a type.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions