Excellent point! If some used the null-byte hack or some other means to get the script source, they'd have all the mySQL info at their finger tips! However, the FTP un/pw is only in my head and hence more secure. Thanks for clearing that up for me! jg _____________________________________________________ Think a race on a horse on a ball with a fish! TG