I would definitely not advise you to enforce this policy. For example, I can enumerate through your list of authors by simply entering yoursite.com/?author=1, yoursite.com/?author=2, etc into my browser. This will take me to your author pages. If your users were savvy enough, they might have set their public display name in Users/Your Profile to something other than their WordPress username. Good, but you’re still not safe. Some themes will use your unique WordPress username and embed that into the HTML for CSS styling purposes. Also, there are programs like WPScan that can get a list of your authors, though I’ll admit I’m not entirely sure how that program works.
In conclusion, to avoid the risk of divulging your author’s, private, personal emails, I would not take this route. If, however, their emails are company emails or are already being published on the website, then it really doesn’t matter.
Related Posts:
- How can i force Display names to be the same as Usernames?
- How to create custom LOGIN and REGISTRATION forms?
- Upload files programmatically to users
- How to expire all wordpress user passwords instantly?
- Average Account Age
- WordPress Central User Database
- wp_set_auth_cookie causes 403 error in the wooCommerce checkout
- Stop Plugin Enumeration [closed]
- How to create multiple users at once?
- Specific way to allow WordPress users to view their current password? And edit it?
- Searchable Semi Random Number Generator on User Profiles
- User / membership Plugin [closed]
- Users Ultra: Hide asterisk for required registration fields?
- User register hook can’t access form request
- WordPress User Registration/ Sign Up -> Able to take Paid Certification Courses & keep track of Completed Certificates
- Issues with creating user profile for a subscriber, but with different profile page and functionalities
- What Are Security Best Practices for WordPress Plugins and Themes? [closed]
- Are WordPress Plugins essential?
- What are the common security flaws I need to look for? [closed]
- Override WordPress user with Oauth2 account
- Secure WordPress paid plugin
- How to make media upload private? [duplicate]
- User-Specific Timezones? Hack? Plugin?
- Does WordPress contain “default” anti-SQL injection code that responds with a 404 error?
- What does a security risk in a plugin look like?
- Loading posts associated only to the logged in user on recent posts page
- WordPress Capabilities: edit_user vs edit_users
- How can I let users to access plugin functions based on roles?
- Why am I sometimes getting a 404 error when I try to update a page with Elementor?
- Registration Form Validation in wordpress
- Get User ID from within a plugin
- Is it possible to block subscriber users to changing its password?
- delete_user_meta Delete one value out of array
- WordPress Plugin for One-Time Event Registration? [closed]
- Why users disable the WordPress update?
- What plugin should I use for a basic user signup/login system [closed]
- Is revealing just the AUTH_KEY a security issue?
- Is there any good tutorial to write custom login, registration and password recovery forms? [closed]
- Questions about brute force attacks on the admin username, coming from amazon IP addresses
- Why Better WP security plugin returns 418 I’m a Teapot “error”?
- Mass Import Users without sending new user notification
- Displaying a Welcome Message to a Woocommerce User
- Two people sharing user in WordPress [closed]
- Form doesn’t submit on second submit call
- How To Clean The Malware Infected & Hacked WordPress Websites? [duplicate]
- How to get current post user id
- How to read individual user’s directory and display content to that specific user?
- Upgraded to latest version – 3.0.3 and Now I get a “sufficient permissions to access this page” error
- How can I change the meta_key for a particular piece of information?
- I should enable automatic updates?
- Can some vulnerabilities in plugins be exploited even when the plugin is inactive?
- easy steps to make front end form without plugin
- Understanding State in WordPress Multisites
- How to have sample page for each new register users in a membership website
- Too many login attempts
- Website show Google Ads when we have no Google Ads linked to our website
- Is there a plugin for WordPress for creating ‘Accounts’ where all users who belong to that Account can only see Account data? [closed]
- Add User Role: Pre-saved in User-Meta [SOLVED]
- Chrome Dev Tools console says every page in my blog has link to http://maps.google.com [closed]
- How limit user connection?
- How to pass a query string to another page on the same site?
- Webservice credential storage [duplicate]
- WordPress /users/me endpoint request forbidden
- Regarding plugin security
- How can I apply no-disposable when programmatically adding a user with wp_insert_user()?
- Plugin permissions for Editor role
- How to auto strip hyperlinks & images in wordpress post
- Is this plugin safe to run?
- Plugin privelages for “editors”
- How to automatically activate users after registration without activation email?
- Is the Block Bad Queries Plugin Still Relevant?
- Shortcode not displaying HTML within the function
- Janrain/Simple Modal under Redirected Domain
- Disable Author Archive just for certain roles in bulk
- Can we hide a certain user in WP?
- After reading 3 story by user ask for subscription popup
- Bing/msn bots is heavily requesting random of my website
- How do I run my custom function in my plugin when a wordpress user is deleted?
- How to see in Edit Comments if comment is from User and her Roles
- Custom User Notice Upon Login
- How can I save cookies to members
- Overwrite user role
- How to order users alphabetically by name? in plugin UPME
- Defined user role to access plugin’s pages
- Write mysql credentials in plugin
- SWF in wordpress post
- How change menu for each user in plugin?
- Unwanted Links and Spam WordPress Pages and Posts
- How to set different users for different pages?
- What plugin(s) are best for this User registration task? [closed]
- File permissions for wp-minify plugin
- What is the recommended way to be notified of security updates to my plugins? [closed]
- WordPress User Portal
- Share or sync user table data with another user table
- WordPress isn’t sending welcome email with the password reset
- Block Root REST API Route using custom &/or iThemes
- Secure way to add JS Script to WordPress filesystem
- Email notification when registred user clicks a link/visits page
- What forum plugin can I use to allow non-registered users to create posts and comment? [closed]
- How to verify/test that a custom built wordpress theme is as secure as possible?