Domain Information
WordPress Version: 7.0.2
Theme: storefront (theme used by 15,319 domains)
Last Checked: 2026-08-26 15:32:11
HTTPS: Yes
Plugins (19)
| Plugin | Version | Used By |
|---|---|---|
| ajax-search-for-woocommerce | — | 20,549 |
| city-for-country-woocommerce-shipping | — | 9 |
| duracelltomi-google-tag-manager | — | 86,474 |
| elementor | — | 1,689,719 |
| elementor-pro | — | 1,005,817 |
| mailchimp-for-woocommerce | — | 42,485 |
| megamenu | — | 76,897 |
| pixelyoursite | — | 69,437 |
| tabby-checkout | — | 342 |
| tp-product-image-flipper-for-woocommerce | — | 968 |
| woo-discount-rules | — | 16,829 |
| woo-discount-rules-pro | — | 8,062 |
| woo-variation-swatches | — | 30,528 |
| woocommerce | — | 781,569 |
| woocommerce-gateway-stripe | — | 57,111 |
| woocommerce-price-based-country-pro-addon | — | 447 |
| woocommerce-product-price-based-on-countries | — | 1,754 |
| wp-whatsapp-chat | — | 24,911 |
| yith-advanced-refund-system-for-woocommerce | — | 15 |
Security Headers
D
Grade D
3 missing headers
Exposed Files & Configurations
This domain has publicly accessible security-sensitive files or configurations:
- Directory listing exposed — /backup/ is publicly browsable ?
- User enumeration exposed — Usernames are publicly discoverable via the REST API or author archives, aiding brute-force attacks ?
Need help securing your WordPress infrastructure? Contact us for a professional security audit.