1. Simplified folder structure, ex: public > uploads > collection_name (remove temp folder) 2. Add feature to define extention file type 3. Change file name into: real_name+timestamp 4. Add empty index.html with: Directory access is forbidden.