Deny access for non-secure dev files
Deny access for:
- composer.json / composer.lock
- readme files
- license files
- vendor directory (in most cases you do not include assets directly from vendor dir)
- all files started with a dot (.git, .htaccess, etc.)
Deny access for: