WordPress maintenance or security needs? Reach out!
TLDWP

Plugin: visualforce-sh (Used by 2 domains)

Security snapshot

Across 2 visualforce-sh WordPress sites indexed by TLDWP, compared to the all-WordPress average.

Grade A 0% Grade B 0% Grade C 0% Grade D 0% Grade F 100%
Fail the header check (F)100%vs 82.5% avg
Leak usernames50%vs 38.5% avg
Expose a sensitive file50%vs 1.8% avg
Use HTTPS100%vs 96.2% avg

What stands out

TLDWP currently associates 2 indexed WordPress sites with visualforce-sh, equivalent to 0% of the current WordPress dataset.

The largest measured difference is sensitive-file exposure: 50% versus 1.8% overall (+48.2 percentage points).

Header-grade F is 100% vs 82.5% overall (+17.5 pp); Username enumeration is 50% vs 38.5% overall (+11.5 pp); HTTPS adoption is 100% vs 96.2% overall (+3.8 pp).

These are observational associations among sites where TLDWP detected visualforce-sh, not evidence that the technology, provider, or domain attribute caused a security outcome. See the overall WordPress security baseline.

Domain Exposures Headers Last Checked
c*o*r*d*s*d*.com (WP 7.0.4) F Aug 30, 2026
r*d*i*.com F Aug 30, 2026