Domain Information
WordPress Version: 7.1
Theme: twentytwentythree (used by 21,073 domains)
Last Checked: 2026-08-23 17:23:21
HTTPS: Yes
Plugins (19)
| Plugin | Used By |
|---|---|
| bluehost-wordpress-plugin | 188,361 |
| creative-mail-by-constant-contact | 65,828 |
| google-site-kit | 256,873 |
| handl-utm-grabber | 5,044 |
| jetpack | 416,614 |
| jquery-updater | 4,800 |
| megamenu | 78,399 |
| theme-my-login | 10,472 |
| tlp-team | 2,596 |
| ultimate-member | 27,052 |
| wonder-cart | 186 |
| woocommerce | 791,879 |
| woocommerce-payments | 103,265 |
| wp-login-and-logout-redirect | 344 |
| wp-user-avatar | 24,827 |
| yith-woocommerce-ajax-product-filter-extended | 229 |
| yith-woocommerce-ajax-search | 1,487 |
| yith-woocommerce-booking-extended | 230 |
| yith-woocommerce-wishlist-extended | 256 |
Security Headers
F
Grade F
5 missing headers
Exposed Files & Configurations
This domain has publicly accessible security-sensitive files or configurations:
- User enumeration exposed — Usernames are publicly discoverable via the REST API or author archives, aiding brute-force attacks ?
Need help securing your WordPress infrastructure? Contact us for a professional security audit.