WordPress maintenance or security needs? Reach out!
TLDWP

Domain Security Report for c*n*e*f*r*s*.com

Domain Information

WordPress Version: 7.0.4

Theme: Avada (theme used by 116,557 domains)

Last Checked: 2026-08-18 00:18:44

HTTPS: Yes

Plugins (13)

Plugin Version Used By
event-tickets 18,573
events-calendar-pro 26,365
google-site-kit 258,765
happyforms-upgrade 345
revslider 582,336
woo-custom-product-addons 5,017
woocommerce 783,975
woocommerce-bookings 3,553
woocommerce-bookings-availability 191
woocommerce-deposits 1,798
woocommerce-gateway-stripe 57,963
woocommerce-gift-cards 2,751
woocommerce-product-addons 10,155

Security Headers

B
Grade B

1 missing header

Missing headers:

  • Content-Security-Policy (CSP) — Prevents XSS attacks ?

Exposed Files & Configurations

No exposed files detected

Our automated scan did not detect any publicly-accessible sensitive files or critical misconfigurations on this domain.

However, this does not mean the site is completely secure. There are many other potential vulnerabilities that require deeper analysis:

  • Outdated themes or plugins
  • Outdated third-party scripts and software
  • Weak passwords and authentication
  • SQL injection vulnerabilities
  • Cross-site scripting (XSS) issues
  • Insecure server configurations
  • OS command injection vulnerabilities
  • Unprotected file uploads
  • ...

Questions about your WordPress security? Reach out — we offer comprehensive security audits and can help identify hidden vulnerabilities.