Prevent API Scraping and Excessive Data Exposure
Turn off Schema Introspection in Production
GraphQL’s schema and type system and its introspection capabilities is the backbone behind all of the tooling around it. But for apps running in production, you do not want to inadvertently expose the schema or allow scraping of your APIs.
Disable schema introspection globally for your API using Hasura Console or declaratively using Metadata