WordPress maintenance or security needs? Reach out!
TLDWP

Plugin: notify-gfni-master (Used by 3 domains)

Security snapshot

Across 3 notify-gfni-master WordPress sites indexed by TLDWP, compared to the all-WordPress average.

Grade A 0% Grade B 0% Grade C 0% Grade D 100% Grade F 0%
Fail the header check (F)0%vs 82.5% avg
Leak usernames67%vs 38.5% avg
Expose a sensitive file0%vs 1.8% avg
Use HTTPS100%vs 96.2% avg

What stands out

TLDWP currently associates 3 indexed WordPress sites with notify-gfni-master, equivalent to 0% of the current WordPress dataset.

The largest measured difference is header-grade F: 0% versus 82.5% overall (-82.5 percentage points).

Username enumeration is 66.7% vs 38.5% overall (+28.2 pp); HTTPS adoption is 100% vs 96.2% overall (+3.8 pp); Sensitive-file exposure is 0% vs 1.8% overall (-1.8 pp).

These are observational associations among sites where TLDWP detected notify-gfni-master, not evidence that the technology, provider, or domain attribute caused a security outcome. See the overall WordPress security baseline.

notify-gfni-master Premium / Custom

This plugin is not available on WordPress.org. It may be a premium plugin, a custom plugin, or a plugin from a third-party marketplace.

Domain Exposures Headers Last Checked
w*t*h*o*t*r*f*l*.com (WP 6.8.8) D Aug 17, 2026
w*t*h*o*t*.com (WP 6.8.8) D Aug 17, 2026
b*z*-*o*p*t*t*o*s.com (WP 7.0.2) D Jul 23, 2026