If you are concerned about having a world-writeable directory, you can try changing the owner of the
sessions directory to the user that runs the Apache process. The above just gives the simplest method. I'm personally not too concerned about having this world-writeable directory since WikklyText will not serve any files from the
.wik directory. A malicious local user on a shared host could still manipulate the sessions directory, but that is true of many software installations on shared hosts.
If anyone has a better suggestion for securing the sessions directory, please post it to the
MailingList.