Permissions decide who can read, write and execute a file.
Reading the numbers
Three digits: owner, group, everyone else. Each digit adds up:
| Value | Permission |
|---|---|
| 4 | Read |
| 2 | Write |
| 1 | Execute (for folders: enter) |
So 7 = read + write + execute, 6 = read + write, 5 = read + execute, 4 = read.
Correct values for websites
| Item | Permission | Meaning |
|---|---|---|
| Folders | 755 | You can change; others can enter and read |
| Files | 644 | You can change; others can read |
Sensitive config (e.g. wp-config.php) | 640 or 600 | Tighter, if the site still works |
| Anything | 777 | Never |
Why 777 is dangerous
It lets any process write to the file, making it easy for malicious code to modify or plant files. Hosting software designed for your account doesn’t need it. If a tutorial says to use 777, use 755 (folder) or 644 (file) instead.
Changing permissions
- In System Info & Files then File Manager, select the file or folder.
- Choose Permissions (or Set Permission).
- Enter the value, such as
644, and save.
Wrong permissions cause
- 403 Forbidden — a file or folder isn’t readable (403 Forbidden: how to fix it)
- 500 errors — some server setups refuse to run PHP files that are writable by others
- Uploads failing — a folder the application needs isn’t writable by it (“Permission denied” and files that won’t save or upload)