TODO add tests secure write path add file versioning (POST and GET) add authorization add error handler (file exists on PUT, file don't exist on POST/GET/DELETE) add nice description extract config to something like ini file