// =================================================== // SECURITY: Block username enumeration via REST API // =================================================== add_filter('rest_endpoints', function($endpoints) { if (isset($endpoints['/wp/v2/users'])) { unset($endpoints['/wp/v2/users']); } if (isset($endpoints['/wp/v2/users/(?P[\\d]+)'])) { unset($endpoints['/wp/v2/users/(?P[\\d]+)']); } return $endpoints; }); // =================================================== // SECURITY: Remove version numbers from asset URLs // =================================================== add_filter('script_loader_src', function($src) { if (strpos($src, 'ver=')) { $src = remove_query_arg('ver', $src); } return $src; }, 9999); add_filter('style_loader_src', function($src) { if (strpos($src, 'ver=')) { $src = remove_query_arg('ver', $src); } return $src; }, 9999);