Whenever WordPress performs a core update, it automatically pulls down the following files onto the root:
license.txt
readme.html
wp-config-sample.php
These files aren’t an inherent security risk by themselves; however they are uneccessary clutter on the root of your site (why would you want a wp-config-sample.php
file on your production website?!); and it’s just another easy-to-read vector confirming that you have a WordPress site for script-kiddies to scrape and attack.
Simply install this plugin and it will clean up those files every time you perform a core WordPress update.
Active installations30+
Weekly downloads
20+0.00%
Version1.1.0
Last updated1/23/2024
WordPress version3.6.0
Tested up to6.4.5
Tags
cleanupcoreupdate