A question about groovy console on AEM cloud
We have just discovered the groovy console, which is very powerful but also dangerous (from malicious or accidental use)
- How do you secure Groovy console on Author on AEM cloud? The only auth levels provided by AEM cloud admin console are "user" and "administrator" for the author and for publish. Typically we use dispatcher to block all but our admin VPN IP, but this wont work for author.
- What is the point of ever running groovy console on Publish? If publish was hacked in this way, it would be different from author, and get overwritten. Surely it should only exist on author, then any changes it makes synced to publish?
Thanks for any tips!


