PhotobloggerA well-known tip in the blogosphere regarding WordPress is to remove the WordPress version from your meta-tags that are automatically generated by your WordPress blog.

This information can be used by potential hackers to pinpoint which version of WordPress you are using and can help them find an exploit to start hacking your website.

Since version 2.5, it is not that easy to remove that information anymore, except via a trick in your theme’s function.php file or via a WordPress Plugin.

To manually remove it from your blog, open up your Theme Editor, and find the functions.php.

Add the following code to the file:

add_filter( 'the_generator', create_function('$a', "return null;";) );

by Frank from WPengineer in the comments found on

Or, if you prefer, install a plugin such as Secure WordPress, which Frank also mentions in his comment.

I have also researched alternative solutions and found a few, such as the bs-wp-noversion (not tested) plugin as well as a plugin by Angsuman Chakraborty, named Angsuman’s WordPress Header Info Remover Plugin (also not tested).

You should be aware, that this tip does not SECURE your WordPress blog, it only removes some information which can aid people trying to hack your blog.

Error: Please enter a valid email address

Error: Invalid email

Error: Please enter your first name

Error: Please enter your last name

Error: Please enter a username

Error: Please enter a password

Error: Please confirm your password

Error: Password and password confirmation do not match