WordPress maintenance or security needs? Reach out!
TLDWP

Domain Security Report for f*r*i*t*r*c*f*e*.com

Domain Information

WordPress Version: Unknown

Theme: kleo (theme used by 1,180 domains)

Last Checked: 2026-07-30 21:58:02

HTTPS: Yes

Plugins (24)

Plugin Version Used By
advanced-coupons-for-woocommerce-free 4,972
duracelltomi-google-tag-manager 86,872
easy-social-icons 5,773
essential-grid 33,383
event-tickets 18,573
feedzy-rss-feeds 11,012
formidable 71,292
google-calendar-events 5,159
google-site-kit 258,765
jetpack 405,557
js_composer 401,781
mailchimp-for-woocommerce 42,680
mailchimp-for-wp 77,239
popup-maker 104,674
revslider 582,336
woo-total-sales 35
woocommerce 783,975
woocommerce-bulk-discount 1,264
woocommerce-gateway-authorize-net-cim 7,762
woocommerce-gateway-paypal-express-checkout 7,963
woocommerce-google-analytics-integration 27,196
woocommerce-name-your-price 3,049
woocommerce-subscriptions 12,903
wp-rocket 316,571

Security Headers

F
Grade F

6 missing headers

Missing headers:

  • Strict-Transport-Security (HSTS) — Forces HTTPS connections ?
  • Content-Security-Policy (CSP) — Prevents XSS attacks ?
  • X-Content-Type-Options — Prevents MIME sniffing ?
  • X-Frame-Options — Prevents clickjacking ?
  • Referrer-Policy — Controls referrer information ?
  • Permissions-Policy — Limits browser features ?

Exposed Files & Configurations

This domain has publicly accessible security-sensitive files or configurations:

  • User enumeration exposed — Usernames are publicly discoverable via the REST API or author archives, aiding brute-force attacks ?

Need help securing your WordPress infrastructure? Contact us for a professional security audit.