Domain Information
WordPress Version: 7.0.4
Theme: storefront (theme used by 15,359 domains)
Last Checked: 2026-09-07 05:22:35
HTTPS: Yes
Server: Apache
Response time (TTFB): 3,964 ms slow
Hosting: OVH SAS (AS16276)
IP address: 213.186.33.xxx
PHP version: 8.5
Plugins (20)
| Plugin | Version | Used By |
|---|---|---|
| a-z-listing | — | 1,136 |
| add-to-any | — | 69,201 |
| columns | — | 793 |
| easy-login-woocommerce | — | 3,475 |
| ik-facebook | — | 200 |
| instagram-feed | — | 216,318 |
| loomisoft-button-widget | — | 85 |
| ml-slider | — | 81,544 |
| product-input-fields-for-woocommerce | — | 371 |
| qtranslate-xt-master | — | 1,247 |
| sendcloud-shipping | — | 1,270 |
| side-cart-woocommerce | — | 8,805 |
| storefront-top-bar | — | 237 |
| theme-customisations-master | — | 887 |
| woo-advanced-discounts | — | 1,031 |
| woo-autocomplete-search-bar | — | 28 |
| woocommerce | — | 783,975 |
| woocommerce-jetpack | — | 682 |
| woocommerce-tm-extra-product-options | — | 435 |
| youtube-embed-plus | — | 35,684 |
Security Headers
6 missing headers
Missing headers:
- Strict-Transport-Security (HSTS) — Forces HTTPS connections ?
- Content-Security-Policy (CSP) — Prevents XSS attacks ?
- X-Content-Type-Options — Prevents MIME sniffing ?
- X-Frame-Options — Prevents clickjacking ?
- Referrer-Policy — Controls referrer information ?
- Permissions-Policy — Limits browser features ?
Exposed Files & Configurations
This domain has publicly accessible security-sensitive files or configurations:
- User enumeration exposed — Usernames are publicly discoverable via the REST API or author archives, aiding brute-force attacks ?
Need help securing your WordPress infrastructure? Contact us for a professional security audit.
Other WordPress domains on this IP (25+)
These WordPress domains are served from the same IP (213.186.33.xxx) — usually shared hosting or the same operator. Domains are obfuscated uniformly.
- 1*3*i*o*d*l*e*.fr
- 1*4*.be
- 2*2*.fr
- a*e*l*e*e*r*n*e.fr
- a*t*n*m*e.fr
- a*a*3*.fr
- a*d*x*r*u*.fr
- a*e*c*-*n*e*i*t*e*-*o*s.fr
- a*e*c*m*a*.be
- a*m*-*a*u*e*t*o*.fr
- a*n*a*-*e*r*i*-*l*a*e.fr
- a*l*m*g*e*o*a*e.fr
- a*s*c*b*n*e*.fr
- a*t*r*a*i*e*-*u*a*e*.org
- a*a*d*s*e*a*g*.fr
- a*e*-*r*u*.fr
- a*e*a*i.org
- a*i*o*g*e*o*e.fr
- a*a*y*i*s.com
- a*a*i*.com
- a*c*3.com
- a*c*e*n*s*m*c*n*q*e*-*e*z.com
- a*c*e*b*e*a*n*.fr
- a*d*e*m*t*e*.com
- a*d*e*m*n*a*o.com