Erm...
is it a file used for connecting to db, with dbuser/dbpass?
If it is, just save it in your webfolder with ending .php (or what the server uses for parsing php).
If you don't actually echo the password, anyone accidentally 😉 running the script would see nothing but a blank page.
It's not bulletproof, but very common.
But you should probably kick your provider a bit for not providing the public_html as a subdir of your main directory.
😃
knutm