Security snapshot
Across 10 cf7-file-drop WordPress sites indexed by TLDWP, compared to the all-WordPress average.
What stands out
TLDWP currently associates 10 indexed WordPress sites with cf7-file-drop, equivalent to 0% of the current WordPress dataset.
The largest measured difference is header-grade F: 60% versus 82.5% overall (-22.5 percentage points).
Username enumeration is 30% vs 38.5% overall (-8.5 pp); Sensitive-file exposure is 10% vs 1.8% overall (+8.2 pp); HTTPS adoption is 100% vs 96.2% overall (+3.8 pp).
These are observational associations among sites where TLDWP detected cf7-file-drop, not evidence that the technology, provider, or domain attribute caused a security outcome. See the overall WordPress security baseline.
cf7-file-drop Premium / Custom
This plugin is not available on WordPress.org. It may be a premium plugin, a custom plugin, or a plugin from a third-party marketplace.
| Domain | Exposures | Headers | Last Checked |
|---|---|---|---|
| h*v*l*l*t.com (WP 7.1) | F | Sep 2, 2026 | |
| c*d*r*c*.jp | F | Aug 22, 2026 | |
| a*k*u*t*t*f*e*s*n.no | C | Aug 15, 2026 | |
| s*l*n*z*n.fr (WP 7.0.4) | F | Aug 15, 2026 | |
| b*r*i*r*u*.com | F | Aug 3, 2026 | |
| s*l*n*m*d*c*n*d*u*e.com (WP 7.0.2) | F | Jul 30, 2026 | |
| i*t*e*i*e.com (WP 6.9.5) | F | Jul 26, 2026 | |
| m*t*o*o*i*.no | D | Jul 24, 2026 | |
| p*n*g*r*a*y.org (WP 7.0.2) | B | Jul 23, 2026 | |
| h*h*k*r*i*r*.de (WP 7.0.2) | C | Jul 18, 2026 |