Merge pull request #610 from carnage/patch-1

Added avoid committing sensitive info to source control
This commit is contained in:
Phil Sturgeon
2016-02-14 18:36:25 -05:00

View File

@@ -13,4 +13,5 @@ via the file system.
- If you must store your configuration files in the document root, name the files with a `.php` extension. This ensures - If you must store your configuration files in the document root, name the files with a `.php` extension. This ensures
that, even if the script is accessed directly, it will not be output as plain text. that, even if the script is accessed directly, it will not be output as plain text.
- Information in configuration files should be protected accordingly, either through encryption or group/user file - Information in configuration files should be protected accordingly, either through encryption or group/user file
system permissions system permissions.
- It is a good idea to ensure that you do not commit configuration files containing sensitive information eg passwords or API tokens to source control.