Site Information
WordPress Version: Unknown
Theme: dfd-native (used by 533 domains)
Last Checked: 2026-06-10 20:38:17
HTTPS: ✅ Yes
Plugins (8)
| Plugin | Used By |
|---|---|
| ar-contactus | 2,589 |
| dfd-extensions | 604 |
| gravityforms | 267,058 |
| js_composer | 432,350 |
| mystickyelements-pro | 2,032 |
| woocommerce | 816,559 |
| wordpress-gdpr | 882 |
| wp-store-locator | 17,862 |
Security Headers
B
Grade B
1 missing header
Missing Headers:
- Content-Security-Policy (CSP) — Prevents XSS attacks ?
Exposed Files & Configurations
This domain has publicly accessible security-sensitive files or configurations:
- User enumeration exposed — Usernames are publicly discoverable via the REST API or author archives, aiding brute-force attacks ?
Need help securing your WordPress site? Contact us for a professional security audit.