One possible way to solve the problem would be to “abuse” Apache for this (although not 100% safe):
You can use Apache to deny GETfor all but certain hosts that are used by the administrator ... this way users can write but cannot read, and the administrator can read ...
URL- ( ) ( ), Apache ...