{"id":7054,"date":"2026-04-13T13:13:13","date_gmt":"2026-04-13T12:13:13","guid":{"rendered":"https:\/\/europe.wordcamp.org\/2026\/session\/headless-wordpress-api-security-in-10-minutes\/"},"modified":"2026-06-09T12:32:35","modified_gmt":"2026-06-09T10:32:35","slug":"headless-wordpress-api-security-in-10-minutes","status":"publish","type":"wcb_session","link":"https:\/\/europe.wordcamp.org\/2026\/session\/headless-wordpress-api-security-in-10-minutes\/","title":{"rendered":"Headless WordPress API security in 10 minutes"},"content":{"rendered":"\n<p class=\"wp-block-paragraph\">Learn the five steps to design secure headless WordPress architectures. This talk focuses on API-first security, attack surface reduction, and practical decisions when exposing WordPress APIs to mobile apps and PWAs.<\/p>\n\n\n\n<figure class=\"wp-block-embed is-type-rich is-provider-youtube wp-block-embed-youtube wp-embed-aspect-16-9 wp-has-aspect-ratio\"><div class=\"wp-block-embed__wrapper\">\n<span class=\"embed-youtube\" style=\"text-align:center; display: block;\"><iframe loading=\"lazy\" class=\"youtube-player\" width=\"640\" height=\"360\" src=\"https:\/\/www.youtube.com\/embed\/fQVG9poDKis?version=3&#038;rel=1&#038;showsearch=0&#038;showinfo=1&#038;iv_load_policy=1&#038;fs=1&#038;hl=en-GB&#038;autohide=2&#038;wmode=transparent\" allowfullscreen=\"true\" style=\"border:0;\" sandbox=\"allow-scripts allow-same-origin allow-popups allow-presentation allow-popups-to-escape-sandbox\"><\/iframe><\/span>\n<\/div><\/figure>\n","protected":false},"excerpt":{"rendered":"<p>Learn the five steps to design secure headless WordPress architectures. This talk focuses on API-first security, attack surface reduction, and practical decisions when exposing WordPress APIs to mobile apps and PWAs.<\/p>\n","protected":false},"author":16185432,"featured_media":6747,"template":"","meta":{"_wcpt_session_time":1780748400,"_wcpt_session_duration":600,"_wcpt_session_type":"session","_wcpt_session_slides":"https:\/\/europe.wordcamp.org\/2026\/files\/2026\/06\/Ariel-Ramos-Headless-WordPress-API-security-in-10-minutes.pdf","_wcpt_session_video":"https:\/\/wordpress.tv\/2026\/06\/08\/headless-wordpress-api-security-in-10-minutes\/","_wcpt_speaker_id":[6878],"footnotes":""},"session_track":[49],"session_category":[56],"class_list":["post-7054","wcb_session","type-wcb_session","status-publish","has-post-thumbnail","hentry","wcb_track-track-2","wcb_session_category-development"],"jetpack_sharing_enabled":true,"jetpack_shortlink":"https:\/\/wp.me\/pgyJ7n-1PM","session_date_time":{"date":"June 6, 2026","time":"14:20"},"session_speakers":[{"id":"6878","slug":"ariel-ramos","name":"Ariel Ramos","link":"https:\/\/europe.wordcamp.org\/2026\/speaker\/ariel-ramos\/"}],"session_cats_rendered":"Development","_links":{"self":[{"href":"https:\/\/europe.wordcamp.org\/2026\/wp-json\/wp\/v2\/sessions\/7054","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/europe.wordcamp.org\/2026\/wp-json\/wp\/v2\/sessions"}],"about":[{"href":"https:\/\/europe.wordcamp.org\/2026\/wp-json\/wp\/v2\/types\/wcb_session"}],"version-history":[{"count":4,"href":"https:\/\/europe.wordcamp.org\/2026\/wp-json\/wp\/v2\/sessions\/7054\/revisions"}],"predecessor-version":[{"id":11960,"href":"https:\/\/europe.wordcamp.org\/2026\/wp-json\/wp\/v2\/sessions\/7054\/revisions\/11960"}],"speakers":[{"embeddable":true,"href":"https:\/\/europe.wordcamp.org\/2026\/wp-json\/wp\/v2\/speakers\/6878"}],"author":[{"embeddable":true,"href":"https:\/\/europe.wordcamp.org\/2026\/wp-json\/wporg\/v1\/users\/arielramos"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/europe.wordcamp.org\/2026\/wp-json\/wp\/v2\/media\/6747"}],"wp:attachment":[{"href":"https:\/\/europe.wordcamp.org\/2026\/wp-json\/wp\/v2\/media?parent=7054"}],"wp:term":[{"taxonomy":"wcb_track","embeddable":true,"href":"https:\/\/europe.wordcamp.org\/2026\/wp-json\/wp\/v2\/session_track?post=7054"},{"taxonomy":"wcb_session_category","embeddable":true,"href":"https:\/\/europe.wordcamp.org\/2026\/wp-json\/wp\/v2\/session_category?post=7054"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}