Shouldn't access to `.md` files be denied, considering the `CHANGELOG.md` file contains (possibly) sensitive version information?
Shouldn't access to
.mdfiles be denied, considering theCHANGELOG.mdfile contains (possibly) sensitive version information?