Skip to content

Document WordPress runtime hardening#566

Merged
retlehs merged 1 commit intodocsfrom
trellis-hardening
Mar 11, 2026
Merged

Document WordPress runtime hardening#566
retlehs merged 1 commit intodocsfrom
trellis-hardening

Conversation

@retlehs
Copy link
Copy Markdown
Member

@retlehs retlehs commented Mar 6, 2026

Summary

  • Add documentation for the opt-in WordPress runtime hardening feature to trellis/security.md
  • Add runtime_writable_paths per-site option to trellis/wordpress-sites.md

Covers PHP-FPM identity separation, writable path allowlisting, custom runtime users, and cron user configuration.

Related: roots/trellis#1649

This PR will be merged after Trellis is tagged with the changes from that PR.

🤖 Generated with Claude Code

Add documentation for the opt-in runtime hardening feature from
roots/trellis#1649, covering PHP-FPM identity separation, writable
path allowlisting, and per-site configuration.

Co-Authored-By: Claude Opus 4.6 <noreply@anthropic.com>
@retlehs retlehs merged commit ce911e6 into docs Mar 11, 2026
5 checks passed
@retlehs retlehs deleted the trellis-hardening branch March 11, 2026 17:36
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant