Across 909 wp-cycle WordPress sites indexed by TLDWP, compared to the all-WordPress average.
Security metrics currently cover 922 matching records in the cached metrics snapshot.
Grade A 1%Grade B 1%Grade C 1%Grade D 5%Grade F 92%
Fail the header check (F)92%vs 82.6% avg
Leak usernames49%vs 38.6% avg
Expose a sensitive file2.4%vs 1.8% avg
Use HTTPS94%vs 96.3% avg
What stands out
TLDWP currently associates 909 indexed WordPress sites with wp-cycle, equivalent to 0% of the current WordPress dataset.
The largest measured difference is username enumeration: 48.8% versus 38.6% overall (+10.2 percentage points).
Header-grade F is 92.2% vs 82.6% overall (+9.6 pp); HTTPS adoption is 93.8% vs 96.3% overall (-2.5 pp); Sensitive-file exposure is 2.4% vs 1.8% overall (+0.6 pp).
These are observational associations among sites where TLDWP detected wp-cycle, not evidence that the technology, provider, or domain attribute caused a security outcome. See the overall WordPress security baseline.
Infrastructure patterns
Infrastructure detected alongside wp-cycle. Percentages are within sites where that specific signal was detectable; the baseline compares the same signal across detected WordPress sites overall.
Co-occurrence describes technologies observed on the same sites. Detection coverage varies by signal, and an association does not imply that one technology caused or selected another.
Similar security profiles
Closest among widely detected plugins by average difference across header-grade F, username enumeration, exposed-file, and HTTPS rates.
The WP-Cycle plugin allows you to upload images from your computer, which will then be used to generate a jQuery Cycle Plugin slideshow of the images. Each image can also be given a URL which, when the image is active in the slideshow, will be used as an anchor wrapper around the image, turning the image into a link to the URL you specified. The slideshow is set to pause when the user hovers over the slideshow images, giving them ample time to click the link.…