Security snapshot
Across 8 bwa WordPress sites indexed by TLDWP, compared to the all-WordPress average.
Grade A 0%
Grade B 0%
Grade C 0%
Grade D 13%
Grade F 88%
Fail the header check (F)88%vs 82.6% avg
Leak usernames38%vs 38.6% avg
Expose a sensitive file12.5%vs 1.8% avg
Use HTTPS88%vs 96.3% avg
What stands out
TLDWP currently associates 8 indexed WordPress sites with bwa, equivalent to 0% of the current WordPress dataset.
The largest measured difference is sensitive-file exposure: 12.5% versus 1.8% overall (+10.7 percentage points).
HTTPS adoption is 87.5% vs 96.3% overall (-8.8 pp); Header-grade F is 87.5% vs 82.6% overall (+4.9 pp); Username enumeration is 37.5% vs 38.6% overall (-1.1 pp).
These are observational associations among sites where TLDWP detected bwa, not evidence that the technology, provider, or domain attribute caused a security outcome. See the overall WordPress security baseline.
| Domain | Version | Exposures | Headers | Last Checked |
|---|---|---|---|---|
| b*n*w*l*e.com | — | F | Sep 5, 2026 | |
| c*s*e*-*r*s*g*r*r*.com (WP 7.0.4) | — | F | Aug 14, 2026 | |
| n*i*s*n*e*-*i*t*s.com (WP 7.0.2) | — | F | Aug 2, 2026 | |
| b*c*e*a*d*w*g*e*.ch | — | F | Jul 31, 2026 | |
| t*r*i*a*t.com (WP 7.0.2) | — | F | Jul 26, 2026 | |
| v*t*c*l*s.fr (WP 7.0.2) | — | F | Jul 25, 2026 | |
| b*n*a*k*r*r*h*t*c*s.c*m.au | — | F | Jul 24, 2026 | |
| b*t*s*s*.com | — | D | Jul 22, 2026 |
Page 1 of 1