Open
Description
Current behavior
It seems that a multitude of security software, including CloudFlare, Apache mod_sec, and nginx firewall rules, will sometimes see snippet code being transmitted over HTTP and flag it as a false positive, causing bizarre HTTP errors.
Expected behavior
We should see if we can find alternate methods of transmitting snippet data to avoid these false-positives. Perhaps web encoding?
Steps to reproduce
- Set-up some form of incompatible security software.
- Create or edit a snippet containing HTML code.
- HTTP request should fail.
WordPress version
6.7.1
Code Snippets version
3.6.6.1
Code Snippets license
Core (free), Pro
Anything else?
Related support threads: