Get 25% off any hosting plan at Hostgator. Use coupon code wphosting9 at Hostgator checkout

Should you remove the WordPress Generator Meta?

Awareness of Website security is improving. For WordPress users, one of the most important means of securing your Site is to ensure that WordPress is always at the latest version. Some people don’t like to upgrade as they have WordPress working just the way they want it to and don’t want to risk any Plugins, Themes or other customisations or configurations not working after a WordPress upgrade.

In the header of WordPress there is a meta tag called ‘generator’ that shows the content as being WordPress and lists the WordPress version (if you view the source of any WordPress Page or Post you’ll see something like <meta name=”generator” content=”WordPress 2.0.5″ />). A common misconception is that by manipulating this tag content the crawlers that identify the WordPress version may be ‘tricked’. There are Plugins that remove or manipulate the generator meta content however this is a futile exercise. People looking to hack your Site use crawlers that are far more advanced than merely looking for a bit of text that may be manipulated to reflect an incorrect software version.

There is no substitute for keeping WordPress software updated to the latest version.

P.S. Joomla and most other Content Management Systems also show the generator meta and also aren’t protected by manipulation of the meta content.

Leave a Reply