Also, (this may seem to obvious, if so I apologize) make sure the user account you use to access mysql has
only the permissions it needs. So if the user is only viewing the information of a specific DB then the mysql user account should have read-only access to that DB only. You can even specify permissions by tables IIRC.
Neil Watson
watson-wilson.ca