From e42b0c78015d377460b78e0fa421baddc9bc2dff Mon Sep 17 00:00:00 2001 From: Jessica Schalz Date: Mon, 13 Apr 2020 15:43:14 -0500 Subject: [PATCH] feat: Update "enableLegacyRoutes" to false (#580) Defining "enableLegacyRoutes" as "true" is less secure than setting it to "false" by default, according to the documentation in "Securing Unleash" (https://unleash.github.io/docs/securing_unleash). --- lib/options.js | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/lib/options.js b/lib/options.js index ac48e86e95..f46c0a50bf 100644 --- a/lib/options.js +++ b/lib/options.js @@ -26,7 +26,7 @@ function defaultOptions() { pipe: undefined, baseUriPath: process.env.BASE_URI_PATH || '', serverMetrics: true, - enableLegacyRoutes: true, + enableLegacyRoutes: false, extendedPermissions: false, publicFolder, enableRequestLogger: false,