Domain Information
WordPress Version: 7.0.4
Theme: blossom-spa (used by 779 domains)
Last Checked: 2026-08-23 22:45:43
HTTPS: Yes
Plugins (26)
| Plugin | Used By |
|---|---|
| addons-for-elementor | 4,967 |
| chaty | 32,169 |
| contact-form-7 | 1,711,818 |
| elementor | 1,713,799 |
| elementor-pro | 1,021,839 |
| elementskit-lite | 172,072 |
| facebook-for-woocommerce | 26,001 |
| fd-elementor-button-plus | 146 |
| happy-elementor-addons | 47,752 |
| helpie-faq | 1,976 |
| image-hover-effects-addon-for-elementor | 5,925 |
| premium-addons-for-elementor | 79,662 |
| qi-addons-for-elementor | 29,069 |
| side-cart-woocommerce | 8,879 |
| social-icons | 2,141 |
| sticky-header-effects-for-elementor | 36,006 |
| translatepress-multilingual | 65,746 |
| woo-advanced-discounts | 1,047 |
| woo-product-slider-pro | 260 |
| woo-variation-swatches | 30,895 |
| woo-variation-swatches-pro | 1,997 |
| woocommerce | 791,879 |
| woocommerce-products-filter | 11,385 |
| woocommerce-ultimate-multi-currency-suite | 51 |
| wt-smart-coupons-for-woocommerce | 4,801 |
| yith-woocommerce-ajax-navigation | 7,177 |
Security Headers
B
Grade B
1 missing header
Missing headers:
- Content-Security-Policy (CSP) — Prevents XSS attacks ?
Exposed Files & Configurations
This domain has publicly accessible security-sensitive files or configurations:
- User enumeration exposed — Usernames are publicly discoverable via the REST API or author archives, aiding brute-force attacks ?
Need help securing your WordPress infrastructure? Contact us for a professional security audit.