aws-samples / aws-serverless-workshops

Code and walkthrough labs to set up serverless applications for Wild Rydes workshops
http://wildrydes.com
Apache License 2.0
4.2k stars 2.63k forks source link

js folder exposed to anonymous users #175

Open ashleyadrias opened 5 years ago

ashleyadrias commented 5 years ago

I am new to web development and used this tutorial to build my first static website with AWS. I successfully completed all modules and have a working webpage with user auth using AWS Cognito.

I added another webpage that uses AWS Elasticsearch to search IMDB movies. I put the search.js, which includes my api gateway endpoint in the js folder.

Now a user can use my s3endpointwebsite.com/js/search.js and see my api gateway endpoint and my cognito ids

How do I deal with this?