A question of risk

By John Locke on July 27, 2011

How would losing your web site affect your business?
That might seem like a silly question, but a surprising number of small organizations don't think it can happen to them. Think again -- web sites get lost all the time, through a variety of means. The server hosting your site might have a hardware failure. Your site might get hacked. Your web developer might accidentally delete something critical. Your host might go out of business, leaving you stranded. If you're in the tech world, you hear about these incidents all the time.
When you're using a Content Management System (CMS) such as Drupal, Word Press, or Joomla, there are even more ways things can go wrong. Your database can get corrupted. There's lots more ways an attacker can break in. Your site changes much more often, so backups get more difficult. Traffic spikes can make your site unresponsive, with much less traffic than a static site. A security update can break functionality.
You really only have 3 options:

  1. Spend a lot of time making sure your site is kept up to date, backups are in good shape, and you're covered for the most likely causes of failure
  2. Pay somebody to make sure your site is kept up to date, backups are in good shape, and you're covered for the most likely causes of failure
  3. Take a chance that you won't have a mishap, and if you're wrong, pay the consequences of lost data, missed opportunities from having your web site gone, loss of reputation for not being able to keep a professional web presence, cost of hiring professionals to clean up the mess (potentially at a higher emergency rate)

Which choice have you made?
Obviously, if your web presence is not critical to your business, you can get away with door #3. At worst, you'll need to recreate your site from scratch. For personal sites, hobby sites, or small businesses who mainly market their services through other means, a $10/month shared host and a $500 site may be all you need.
As your business grows, however, that becomes less and less an acceptable choice. You buy insurance, don't you? Why not take measures to prevent you from having a major business setback?
What needs to be done to cover the most likely causes of failure?
At Freelock, we spend a lot of time thinking about what can go wrong with a web site, and how we can prevent failures from hurting our clients' operations. The cornerstone is having really good backups.
Is one backup enough? Find out next...
Or skip ahead to some of the other things we think about when helping our customers protect themselves from data loss:

Free Tagging Area

Add new comment

The content of this field is kept private and will not be shown publicly.

Filtered HTML

  • Web page addresses and email addresses turn into links automatically.
  • Allowed HTML tags: <a href hreflang> <em> <strong> <blockquote cite> <cite> <code> <ul type> <ol start type> <li> <dl> <dt> <dd> <h1> <h2 id> <h3 id> <h4 id> <h5 id> <p> <br> <img src alt height width>
  • Lines and paragraphs break automatically.

More Like This

software maintenance security patch vulnerability
🕑Aug 27, 2026 🖋John Locke 💬0

WordPress Has Thousands of Maintainers. Does Your Replacement?

Last month, a critical WordPress vulnerability triggered emergency patching across the web — and reignited a familiar argument: if WordPress keeps having security problems, why not let AI build something new instead?

It’s a reasonable question.

AI has made software dramatically cheaper and faster to create. But somebody still has to understand it, patch it, test it, and keep it running eighteen months from now.

That’s the part of the “AI instead of WordPress” pitch we think is getting overlooked.

Website management, Drupal, WordPress, security, automation, configuration management.
🕑May 28, 2026 🖋John Locke 💬0

Every Night, Argo Watches

While your site is running, things change. A content editor tweaks a configuration setting. A security vulnerability surfaces in a dependency. A production fix gets applied directly instead of going through the normal release process.

Bloody crime scene, gumshoe detective, magnifying glass, dusty office
🕑May 22, 2026 🖋John Locke 💬0

The Night the Internet Tried to Kill Your Website

May 2026
My name doesn't matter. Call me the op. I run a small shop — we keep websites alive, patch the holes before the wrong people find them, and make sure that when something goes sideways, there's always a way back. It's not glamorous work. But this spring? This spring was something else.
AI vulnerabilities, security incidents, resilience, Drupal WordPress, cybersecurity
🕑May 18, 2026 🖋John Locke 💬0

The Rules Have Changed: Security in the Age of AI-Assisted Attacks

Security is getting dramatically harder and more expensive. AI is simultaneously driving an explosion in vulnerability discovery and weaponizing the exploits that follow. The question for every organization with anything online is no longer whether to invest in resilience — it's whether that investment is already in place before the next incident arrives.