Added avoid committing sensitive info to source control

This commit is contained in:
carnage
2015-11-13 14:53:34 +00:00
parent be731adf61
commit f042b6ae38

View File

@@ -13,4 +13,5 @@ via the file system.
- If you must store your configuration files in the document root, name the files with a `.php` extension. This ensures - If you must store your configuration files in the document root, name the files with a `.php` extension. This ensures
that, even if the script is accessed directly, it will not be output as plain text. that, even if the script is accessed directly, it will not be output as plain text.
- Information in configuration files should be protected accordingly, either through encryption or group/user file - Information in configuration files should be protected accordingly, either through encryption or group/user file
system permissions system permissions.
- It is a good idea to ensure that you do not commit configuration files containing sensitive information eg passwords or API tokens to source control.