WordPress maintenance or security needs? Reach out!
TLDWP

Domain Security Report for p*a*y*p*.com

Domain Information

WordPress Version: Unknown

Theme: hueman (theme used by 5,141 domains)

Last Checked: 2026-09-10 18:46:27

HTTPS: Yes

Server: cloudflare

CDN / WAF: Cloudflare

Response time (TTFB): 448 ms

Hosting: Cloudflare London, LLC (AS209242)

IP address: 141.193.213.xxx

Plugins (57)

Plugin Version Used By
advanced-custom-post-type 131
akismet 78,835
apikey 7
background-image-cropper 15
bookingpress-appointment-booking 436
buddypress-media 819
cache 7
cidaas-pro-master 0
classic-editor 60
contact-form-7 1,698,348
defaults 0
divi-ajax-filter 527
drag-and-drop-multiple-file-upload-contact-form-7 11,222
easy-digital-downloads 6,896
elementor-pro 1,009,656
erinyani 0
erp 482
fix 52
forminator 21,605
gamipress 1,218
gdpr-cookie-consent 2,269
give 17,173
godam 31
google-seo-rank 0
hash-form 369
hello 0
hello-dolly 0
hellopress 54
hummingbird-performance 180
index 84
init-help 0
kalrav-ai-agent 0
miniorange-oauth-20-server 9
ninja-forms 23,465
ninja-forms-uploads 9,606
payment-gateway-pix-for-woocommerce 8
ph-file-manager 0
pods 38
pwnd 16
pwnd-1 0
root-file-manager 0
seoplugins 24
shell 0
super-forms 275
translatepress-multilingual 65,205
userswp 2,885
web-directory-free 78
woocommerce 783,975
wordpress-seo 356
wp-automatic 58
wp-content-filter 6
wp-fastest-cache 44
wp-file-upload 2,067
wp-help 0
wp-ticket 0
wpmudev-updates 5
zwso 0

Security Headers

F
Grade F

6 missing headers

Missing headers:

  • Strict-Transport-Security (HSTS) — Forces HTTPS connections ?
  • Content-Security-Policy (CSP) — Prevents XSS attacks ?
  • X-Content-Type-Options — Prevents MIME sniffing ?
  • X-Frame-Options — Prevents clickjacking ?
  • Referrer-Policy — Controls referrer information ?
  • Permissions-Policy — Limits browser features ?

Exposed Files & Configurations

No exposed files detected

Our automated scan did not detect any publicly-accessible sensitive files or critical misconfigurations on this domain.

However, this does not mean the site is completely secure. There are many other potential vulnerabilities that require deeper analysis:

  • Outdated themes or plugins
  • Outdated third-party scripts and software
  • Weak passwords and authentication
  • SQL injection vulnerabilities
  • Cross-site scripting (XSS) issues
  • Insecure server configurations
  • OS command injection vulnerabilities
  • Unprotected file uploads
  • ...

Questions about your WordPress security? Reach out — we offer comprehensive security audits and can help identify hidden vulnerabilities.

Other WordPress domains on this IP (25+)

These WordPress domains are served from the same IP (141.193.213.xxx) — usually shared hosting or the same operator. Domains are obfuscated uniformly.