Hey! I would like to ask how Grav is secured, in general and regarding the admin area / users.
I can understand having no database makes it much more secure already, but with the admin plugin, what is done against for example bruteforce attempts in the login?
It would be great to have a real, detailled breakdown of current and planned security measures and how it compares to wordpress / other cms.
I couldn't find any such document, is there any?
And is Grav far enough to be used on a real production ready website, without having to worry about someone getting into the site? Or should I wait for another version?
Thanks (: