WordPress maintenance or security needs? Reach out!
TLDWP

Plugin: kimili-flash-embed (Used by 7 domains)

Security snapshot

Across 7 kimili-flash-embed WordPress sites indexed by TLDWP, compared to the all-WordPress average.

Grade A 0% Grade B 0% Grade C 0% Grade D 0% Grade F 100%
Fail the header check (F)100%vs 82.5% avg
Leak usernames29%vs 38.5% avg
Expose a sensitive file14.3%vs 1.8% avg
Use HTTPS100%vs 96.2% avg

What stands out

TLDWP currently associates 7 indexed WordPress sites with kimili-flash-embed, equivalent to 0% of the current WordPress dataset.

The largest measured difference is header-grade F: 100% versus 82.5% overall (+17.5 percentage points).

Sensitive-file exposure is 14.3% vs 1.8% overall (+12.5 pp); Username enumeration is 28.6% vs 38.5% overall (-9.9 pp); HTTPS adoption is 100% vs 96.2% overall (+3.8 pp).

These are observational associations among sites where TLDWP detected kimili-flash-embed, not evidence that the technology, provider, or domain attribute caused a security outcome. See the overall WordPress security baseline.

kimili-flash-embed Premium / Custom

This plugin is not available on WordPress.org. It may be a premium plugin, a custom plugin, or a plugin from a third-party marketplace.

Domain Exposures Headers Last Checked
m*c*t*t*r*n*.com F Sep 8, 2026
i*s*e*t*m*a*s*i*.com (WP 7.1) F Aug 22, 2026
t*e*l*b*l*u*p*s*.com (WP 4.9.26) F Jul 29, 2026
o*v*l*o*i*i*i.net (WP 2.5.1) F Jul 27, 2026
h*z*.fr (WP 3.2) F Jul 25, 2026
d*t*k*o*a*o*a*k*.cz (WP 2.5.1) F Jul 24, 2026
q*i*k*e*e*s*.tv F Jul 21, 2026