Site Information
WordPress Version: Unknown
Theme: Divi (used by 500,380 domains)
Last Checked: 2026-07-12 14:03:24
HTTPS: ✅ Yes
Plugins (29)
| Plugin | Used By |
|---|---|
| age-gate | 10,830 |
| ajax-search-for-woocommerce-premium | 6,151 |
| avantlink-integration-for-woocommerce | 147 |
| cartpops-pro | 75 |
| checkout-files-upload-woocommerce-pro | 68 |
| credova-financial | 84 |
| divi-bars | 2,202 |
| divi-toolbox | 6,705 |
| diviflash | 5,906 |
| google-analytics-premium | 14,761 |
| gravityforms | 257,847 |
| gravityformsrecaptcha | 73,835 |
| mailchimp-for-woocommerce | 46,897 |
| metorik-helper | 3,149 |
| retainful | 140 |
| woo-discount-rules | 17,826 |
| woo-discount-rules-pro | 8,659 |
| woocommerce | 818,397 |
| woocommerce-ajax-filters | 6,620 |
| woocommerce-back-in-stock-notifications | 1,480 |
| woocommerce-carousel-for-divi | 129 |
| woocommerce-gateway-authorize-net-cim | 8,400 |
| woocommerce-load-more-products | 79 |
| woocommerce-product-bundles | 8,944 |
| woocommerce-wholesale-lead-capture | 752 |
| wp-google-maps | 25,213 |
| wp-google-maps-pro | 4,509 |
| wp-smush-pro | 44,816 |
| wt-import-export-for-woo | 944 |
Security Headers
B
Grade B
1 missing header
Missing Headers:
- Content-Security-Policy (CSP) — Prevents XSS attacks ?
Exposed Files & Configurations
This domain has publicly accessible security-sensitive files or configurations:
- User enumeration exposed — Usernames are publicly discoverable via the REST API or author archives, aiding brute-force attacks ?
Need help securing your WordPress site? Contact us for a professional security audit.