This settings determines which fields (that is, settings in %VARS) can be set by code during a HTTP GET call.
(Any other fields can only be set by code during a POST call.)

Having this restriction is for security purposes, so that a user can't be tricked into changing something important (like a password!) by an innocent-looking link. You should only add a field name to this list if it is "safe", that is, having it surreptitiously changed would not cause any significant harm — no more than mere inconvenience for the user.

This settings is used only Everything/, in subs displayNode and gotoNode.

The values of the Value column are interpreted as regexes. They are all joined together with | into one big regex.

Note that only the Value column is used. The left-hand column is only there for human reference.

