I've been happily using cPanel Backup as my preferred method of backing up the WordPress database. But now I have a user who runs her own WordPress site, and both she and I would prefer not to have her using cPanel.
I looked at a few of the most popular and recently updated plug-ins that do backups that include the WordPress database. But walked away with a major security concern: they appear to leave the database backup on the web server where any hacker could, conceivably, find it.
I would appreciate any advice on ways to avoid this apparent security issue. Within reason, I'm even willing to "write it myself" in php.
I assume that I'm looking for a solution that either deletes the backup from the server after a successful download to the user's workstation. Or stores the backup somewhere inaccessible to hackers, i.e. - not in /public_html/