Security and trust
Public security posture for the static Rugs Depot catalog.
Security posture
- Static surface
- No public admin panel or database endpoint is included in this static export.
- Commercial data
- Factory and wholesale prices are removed from public HTML and JSON. Buyers request a B2B quote.
- Headers
- CSP, frame protection, referrer policy, permissions policy, and content-type protection are supplied in .htaccess and _headers.
- Known hacking attempts
- No server access logs are available inside this local static package, so no confirmed hacking attempts can be reported from the files alone.
Deployment checklist
Enable HTTPS, upload the provided .htaccess or equivalent headers, keep Hostinger and FTP credentials private, use strong account 2FA, and review hosting access logs for failed logins, suspicious POST requests, path traversal probes, and repeated 404 scans.
