Follow recommended WordPress security practices and you should be fine:
https://developer.ww.wp.xz.cn/themes/theme-security/
I too am all for using your own custom themes, but not everyone is a programmer/web developer.
I’m not a programmer but I’ve been successful starting with a good theme and heavily modifying it. Been doing it for years, very happy with results, especially since it’s screamingly fast. Main thing with security is if the theme is simple, you should be able to easily research every part of it to check for security issues. Just as WordPress itself has constant security issues, as does for example Microsoft, commercial themes have no corner on being in any way reliable. It’s a jungle out there, be careful — or make your own theme. MTN
Hi,
Not necessary, installing trusted software is the key here, you can find your theme either on the official WordPress repository or any reputable WordPress themes marketplace, of course developing your own theme with security taken in consideration might be better since you will keep maintaining the theme with patches as soon as a vulnerability is discovered in your code, there are a bunch of tutorials for developers published on our learning center that should be helpful, check “WordPress Security For Developers” section in particular.
Thanks.
-
This reply was modified 8 years, 4 months ago by
wfalaa.