Security
- disallow Jinja
{% include %}of symlinks resolving outside template root - disallow config
!includepaths outside the template root
Refactor
- updating: delete user-removed files after rendering instead of excluding them
{% include %} of symlinks resolving outside template root!include paths outside the template root