[theme-reviewers] Guidance on theme security

Andrew Nacin wp at andrewnacin.com
Tue Oct 19 19:10:35 UTC 2010

On Tue, Oct 19, 2010 at 3:01 PM, Edward Caissie <edward.caissie at gmail.com>wrote:

> A quick draft item has been added to the Theme Review ...
> http://codex.wordpress.org/Theme_Review#Site_Information
> IF there are additional get_option() URLs that should be addressed
> similarly please list them here so they can be added to the Theme Review
> page.

get_stylesheet_directory() should be get_stylesheet_directory_uri(). Same
for get_template_directory().

The "recommended" ones for a lot of those can simply be listed as aliases or
alternatives, along the same lines as " bloginfo('template_directory') or
bloginfo('template_url') ", versus recommended replacements.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.wordpress.org/pipermail/theme-reviewers/attachments/20101019/9a99c88d/attachment.htm>

More information about the theme-reviewers mailing list