# Prevent any script execution inside the uploads folder (defense in depth)
<FilesMatch "\.(php|php5|phtml|pl|py|cgi|sh)$">
    Require all denied
</FilesMatch>

# Disable directory listing
Options -Indexes
