WordPress maintenance or security needs? Reach out!
TLDWP

Plugin: sherpa-on-demand (Used by 2 domains)

Security snapshot

Across 2 sherpa-on-demand WordPress sites indexed by TLDWP, compared to the all-WordPress average.

Grade A 50% Grade B 0% Grade C 0% Grade D 0% Grade F 50%
Fail the header check (F)50%vs 82.5% avg
Leak usernames100%vs 38.5% avg
Expose a sensitive file0%vs 1.8% avg
Use HTTPS100%vs 96.2% avg

What stands out

TLDWP currently associates 2 indexed WordPress sites with sherpa-on-demand, equivalent to 0% of the current WordPress dataset.

The largest measured difference is username enumeration: 100% versus 38.5% overall (+61.5 percentage points).

Header-grade F is 50% vs 82.5% overall (-32.5 pp); HTTPS adoption is 100% vs 96.2% overall (+3.8 pp); Sensitive-file exposure is 0% vs 1.8% overall (-1.8 pp).

These are observational associations among sites where TLDWP detected sherpa-on-demand, not evidence that the technology, provider, or domain attribute caused a security outcome. See the overall WordPress security baseline.

Domain Exposures Headers Last Checked
d*r*y*p*o*r*c*p*s.com (WP 7.0.2) F Sep 3, 2026
v*l*r*c*l*a*s.c*m.au (WP 7.0.2) A Jul 20, 2026