Security snapshot
Across 5 js_composer4 WordPress sites indexed by TLDWP, compared to the all-WordPress average.
What stands out
TLDWP currently associates 5 indexed WordPress sites with js_composer4, equivalent to 0% of the current WordPress dataset.
The largest measured difference is header-grade F: 60% versus 82.5% overall (-22.5 percentage points).
HTTPS adoption is 100% vs 96.2% overall (+3.8 pp); Sensitive-file exposure is 0% vs 1.8% overall (-1.8 pp); Username enumeration is 40% vs 38.5% overall (+1.5 pp).
These are observational associations among sites where TLDWP detected js_composer4, not evidence that the technology, provider, or domain attribute caused a security outcome. See the overall WordPress security baseline.
js_composer4 Premium / Custom
This plugin is not available on WordPress.org. It may be a premium plugin, a custom plugin, or a plugin from a third-party marketplace.
| Domain | Exposures | Headers | Last Checked |
|---|---|---|---|
| s*h*e*e*-*e*a*l*a*.ch (WP 7.0.4) | D | Aug 27, 2026 | |
| c*n*g*t*o*h*g*m.com | D | Jul 27, 2026 | |
| v*t*r*n*p*.com (WP 7.0.2) | F | Jul 23, 2026 | |
| a*p*n*v*x*a*.com (WP 5.2.1) | F | Jul 19, 2026 | |
| d*c*r*u*t*.com (WP 7.0.2) | F | Jul 19, 2026 |