Security snapshot
Across 7 bsm-wordpress-plugin WordPress sites indexed by TLDWP, compared to the all-WordPress average.
Grade A 0%
Grade B 0%
Grade C 0%
Grade D 0%
Grade F 100%
Fail the header check (F)100%vs 82.5% avg
Leak usernames57%vs 38.5% avg
Expose a sensitive file0%vs 1.8% avg
Use HTTPS100%vs 96.2% avg
What stands out
TLDWP currently associates 7 indexed WordPress sites with bsm-wordpress-plugin, equivalent to 0% of the current WordPress dataset.
The largest measured difference is username enumeration: 57.1% versus 38.5% overall (+18.6 percentage points).
Header-grade F is 100% vs 82.5% overall (+17.5 pp); HTTPS adoption is 100% vs 96.2% overall (+3.8 pp); Sensitive-file exposure is 0% vs 1.8% overall (-1.8 pp).
These are observational associations among sites where TLDWP detected bsm-wordpress-plugin, not evidence that the technology, provider, or domain attribute caused a security outcome. See the overall WordPress security baseline.
| Domain | Exposures | Headers | Last Checked |
|---|---|---|---|
| w*s*f*l*n*a*d*.de (WP 7.0.4) | F | Aug 22, 2026 | |
| g*r*h*n*-*t*m*c*.de (WP 7.0.3) | F | Aug 7, 2026 | |
| e*d*n*-*a*l*r*s.de (WP 6.9.5) | F | Aug 4, 2026 | |
| b*s*b*l*-*o*s*a*.de (WP 5.9.13) | F | Aug 2, 2026 | |
| a*l*g*t*r*.de (WP 6.9.4) | F | Jul 25, 2026 | |
| b*b*v.de (WP 7.0.2) | F | Jul 20, 2026 | |
| u*t*u*h*b*e*.eu (WP 7.0.2) | F | Jul 20, 2026 |
Page 1 of 1