Domain Information
WordPress Version: Unknown
Theme: junotoys (theme used by 46 domains)
Last Checked: 2026-09-08 12:35:58
HTTPS: Yes
Server: o2switch-PowerBoost-v3
Response time (TTFB): 1,556 ms slow
Hosting: O2switch SAS (AS50474)
IP address: 109.234.166.xxx
Plugins (12)
| Plugin | Version | Used By |
|---|---|---|
| cf7-conditional-fields | — | 32,811 |
| elementor | — | 1,689,719 |
| google-site-kit | — | 259,214 |
| if-menu | — | 9,407 |
| mailchimp-for-wp | — | 77,012 |
| photonic | — | 2,916 |
| sitepress-multilingual-cms | — | 202,843 |
| trx_addons | — | 21,241 |
| ultimate-member | — | 26,644 |
| wp-gdpr-compliance | — | 12,052 |
| wp-menu-custom-fields | — | 170 |
| wpml-cms-nav | — | 19,866 |
Security Headers
6 missing headers
Missing headers:
- Strict-Transport-Security (HSTS) — Forces HTTPS connections ?
- Content-Security-Policy (CSP) — Prevents XSS attacks ?
- X-Content-Type-Options — Prevents MIME sniffing ?
- X-Frame-Options — Prevents clickjacking ?
- Referrer-Policy — Controls referrer information ?
- Permissions-Policy — Limits browser features ?
Exposed Files & Configurations
No exposed files detected
Our automated scan did not detect any publicly-accessible sensitive files or critical misconfigurations on this domain.
However, this does not mean the site is completely secure. There are many other potential vulnerabilities that require deeper analysis:
- Outdated themes or plugins
- Outdated third-party scripts and software
- Weak passwords and authentication
- SQL injection vulnerabilities
- Cross-site scripting (XSS) issues
- Insecure server configurations
- OS command injection vulnerabilities
- Unprotected file uploads
- ...
Questions about your WordPress security? Reach out — we offer comprehensive security audits and can help identify hidden vulnerabilities.
Other WordPress domains on this IP (25+)
These WordPress domains are served from the same IP (109.234.166.xxx) — usually shared hosting or the same operator. Domains are obfuscated uniformly.
- a*r*-*o*.be
- a*e*d*-*a*n*-*t*e*n*.fr
- a*g*2*o*t*.com
- a*i*a*-*e*d*.com
- a*i*a*i*n*u*i*u*.com
- a*c*6*7*.fr
- b*o*y*n*n*o.com
- b*u*i*u*-*e*p*r*.com
- d*a*g*n*.com
- d*s*i*e*o*m*c*a*b*e.com
- e*o*e*i*l*u*e*t.ca
- e*t*e*r*s*-*y*a*i*u*.fr
- e*t*l*e*a*t*e*.fr
- e*e*d*i*l*n*e.fr
- f*n*a*t*q*e*a*t*.com
- j*r*i*i*r*b*r*e*u*-*3.fr
- l*s*e*e.fr
- l*-*l*g*d*-*a*h*s.fr
- l*c*t*o*-*o*t*r*-*n*r*-*a*t*c*l*e*.fr
- m*r*l*n*-*h*n*.fr
- m*m*c.org
- n*t*s*i*t*n*.fr
- o*i*e*.fr
- p*d*a*v*l*t*o*-*o*m*t*o*.fr
- p*e*s*a*u*.fr