+1
Realistically I'm not sure what you can do.
In a fully single page app you would be exposing your data via XHR calls.
In a server rendered app everything that the browser renders or consumes in javascript would be 'exposed' data.
If there is sensitive data that isn't required for the usage of your app, you should filter that data out on the api or server side in order to not expose it.
@JamieLottering sry! It's my fault. Thank you for your answer
This thread has been automatically locked since there has not been any recent activity after it was closed. Please open a new issue for related bugs.
Most helpful comment
Realistically I'm not sure what you can do.
In a fully single page app you would be exposing your data via XHR calls.
In a server rendered app everything that the browser renders or consumes in javascript would be 'exposed' data.
If there is sensitive data that isn't required for the usage of your app, you should filter that data out on the api or server side in order to not expose it.