Domain Information
WordPress Version: 6.9.5
Theme: buddyboss-theme (theme used by 2,736 domains)
Last Checked: 2026-07-21 03:06:15
HTTPS: Yes
Plugins (26)
| Plugin | Version | Used By |
|---|---|---|
| ai-engine-pro | — | 1,224 |
| buddyboss-app | — | 266 |
| buddyboss-platform | — | 2,975 |
| buddyboss-platform-pro | — | 2,282 |
| dse-corporate | — | 0 |
| dse-fonts | — | 0 |
| elementor | — | 1,707,286 |
| elementor-pro | — | 1,017,560 |
| event-tickets | — | 18,734 |
| events-calendar-pro | — | 26,644 |
| jet-blog | — | 15,104 |
| jet-engine | — | 75,789 |
| jet-popup | — | 16,428 |
| jet-reviews | — | 2,660 |
| jet-search | — | 16,086 |
| jet-tabs | — | 32,229 |
| jet-tricks | — | 21,544 |
| memberpress | — | 7,127 |
| msbd-fonts | — | 0 |
| msbd-membership-comparison-table | — | 0 |
| presto-player | — | 8,756 |
| seo-by-rank-math-pro | — | 29,596 |
| suretriggers | — | 4,755 |
| the-events-calendar | — | 118,844 |
| wp-media-folder | — | 10,967 |
| wp-social-reviews | — | 4,054 |
Security Headers
B
Grade B
1 missing header
Missing headers:
- Content-Security-Policy (CSP) — Prevents XSS attacks ?
Exposed Files & Configurations
This domain has publicly accessible security-sensitive files or configurations:
- User enumeration exposed — Usernames are publicly discoverable via the REST API or author archives, aiding brute-force attacks ?
Need help securing your WordPress infrastructure? Contact us for a professional security audit.