>"handle_event("my_event")", despite the intended UI not presenting a way to call that event at the moment?
Exactly this, didnt know how to phrase it as it was a while ago where i had this issue.
And thats absolutely not true for any HTTP handler as there's no way for people to easily break out of the intended behavior.