WordPress maintenance or security needs? Reach out!
TLDWP

WAF — WordPress Domains (2)

Security audit results and indexed domain inventory for WordPress infrastructure utilizing WAF.

Security snapshot

Across 2 WAF WordPress sites indexed by TLDWP, compared to the all-WordPress average.

Grade A 0% Grade B 0% Grade C 0% Grade D 50% Grade F 50%
Fail the header check (F)50%vs 82.6% avg
Leak usernames100%vs 38.6% avg
Expose a sensitive file0%vs 1.8% avg
Use HTTPS50%vs 96.3% avg

What stands out

TLDWP currently associates 2 indexed WordPress sites with WAF, equivalent to 0% of the current WordPress dataset.

The largest measured difference is username enumeration: 100% versus 38.6% overall (+61.4 percentage points).

HTTPS adoption is 50% vs 96.3% overall (-46.3 pp); Header-grade F is 50% vs 82.6% overall (-32.6 pp); Sensitive-file exposure is 0% vs 1.8% overall (-1.8 pp).

These are observational associations among sites where TLDWP detected WAF, not evidence that the technology, provider, or domain attribute caused a security outcome. See the overall WordPress security baseline.

DomainExposuresHeadersLast Checked
4*t*.com D Sep 9, 2026
1*r*.com F Sep 6, 2026

← Back to all web servers