WordPress maintenance or security needs? Reach out!
TLDWP

Plugin: cf7-file-drop (Used by 10 domains)

Security snapshot

Across 10 cf7-file-drop WordPress sites indexed by TLDWP, compared to the all-WordPress average.

Grade A 0% Grade B 10% Grade C 20% Grade D 10% Grade F 60%
Fail the header check (F)60%vs 82.5% avg
Leak usernames30%vs 38.5% avg
Expose a sensitive file10%vs 1.8% avg
Use HTTPS100%vs 96.2% avg

What stands out

TLDWP currently associates 10 indexed WordPress sites with cf7-file-drop, equivalent to 0% of the current WordPress dataset.

The largest measured difference is header-grade F: 60% versus 82.5% overall (-22.5 percentage points).

Username enumeration is 30% vs 38.5% overall (-8.5 pp); Sensitive-file exposure is 10% vs 1.8% overall (+8.2 pp); HTTPS adoption is 100% vs 96.2% overall (+3.8 pp).

These are observational associations among sites where TLDWP detected cf7-file-drop, not evidence that the technology, provider, or domain attribute caused a security outcome. See the overall WordPress security baseline.

cf7-file-drop Premium / Custom

This plugin is not available on WordPress.org. It may be a premium plugin, a custom plugin, or a plugin from a third-party marketplace.

Domain Exposures Headers Last Checked
h*v*l*l*t.com (WP 7.1) F Sep 2, 2026
c*d*r*c*.jp F Aug 22, 2026
a*k*u*t*t*f*e*s*n.no C Aug 15, 2026
s*l*n*z*n.fr (WP 7.0.4) F Aug 15, 2026
b*r*i*r*u*.com F Aug 3, 2026
s*l*n*m*d*c*n*d*u*e.com (WP 7.0.2) F Jul 30, 2026
i*t*e*i*e.com (WP 6.9.5) F Jul 26, 2026
m*t*o*o*i*.no D Jul 24, 2026
p*n*g*r*a*y.org (WP 7.0.2) B Jul 23, 2026
h*h*k*r*i*r*.de (WP 7.0.2) C Jul 18, 2026