Akismet Has a Privacy Problem. Here’s the GDPR-Friendly Fix.

When you install WordPress, it comes with Akismet already sitting in your plugins list. Most people activate it without thinking twice, because it is the default, it is by Automattic, it must be fine. Here is the thing: every comment submitted on your blog, including the commenter’s name, email address, IP, browser details, and the … Read more

Hardening Your WordPress Blog with HTTP Security Headers (Nginx)

Running a self-hosted WordPress blog on a VPS is great. You have full control over your stack, but that also means security hardening is entirely on you. A quick audit with Webbkoll revealed my site was missing several HTTP security headers that any production server should have. Here’s what I added, why, and exactly how. … Read more