If one person learns this lesson it's good. If it's on the public Internet, best to expect it will be found. Stick it behind an auth wall of some sort.
I've put internal sites behind AWS ALB's plugged into an OIDC provider[1] (Google), which works well.
I've put internal sites behind AWS ALB's plugged into an OIDC provider[1] (Google), which works well.
1: https://docs.aws.amazon.com/elasticloadbalancing/latest/appl...