New audit

www.mygivenname.com

Scanned Aug 27, 2026, 07:44 PM

Run a fresh audit — Upgrade
92
A · Safe
13
Plugins Detected
0
Active Vulnerabilities
0
Outdated Plugins
4
Abandoned

Security Assessment

Key findings for www.mygivenname.com

  • No known vulnerabilities detected in installed plugins.
  • 4 plugins have been abandoned by the developer.
  • Security headers grade F — 4 important headers are missing.
  • 1 sensitive path exposed to the public.

WordPress

Version hidden
Core installation

Active Theme

flexform v1.8.60
Up to date

Hosting Provider

Unknown
Infrastructure

Detected Plugins

13 total
PluginVulnerabilities
Contact Form 7
Contact Form 7
high confidence
None found
None found
None found
None found
None found

Your full security report is ready

We found 13 plugins on this site. Unlock the complete analysis:

All 13 detected plugins
CVE details & patch status
Security header analysis
Exposed paths & TLS audit
DNS & email security
CT log subdomain discovery

Security Report

one-time
$49USD
  • Full report for this site
  • Every detected plugin & CVE
  • Remediation guidance
  • No re-audit after fixes
Get Report — $49
Recommended

Report + Re-audit

best value
$99USD
  • Everything in Security Report
  • One complimentary re-audit within 90 days
  • Verify your fixes actually closed the findings
  • Clean-record badge for your site

Guided Remediation

small business
$299USD
  • Everything in Report + Re-audit
  • 15–30 min expert consult to triage findings
  • Prioritized action plan for your site
  • Optional partner handoff for fixes
Get Guided Remediation — $299

One-time payment · Instant access · No subscription required

Not ready to buy? We'll send you a one-time free alert

if we detect a new vulnerability affecting your plugins.

One free alert · Continuous monitoring available with a paid plan

Security Posture

F
Security Headers
B
TLS/SSL
B
Exposed Paths
C
Email Security

Security Headers

17/100
Content-Security-Policy

No Content-Security-Policy header. Your site is more vulnerable to XSS attacks.

Strict-Transport-Security

No HSTS header. Browsers can be tricked into using insecure HTTP connections.

X-Frame-Options

No clickjacking protection. Your site can be embedded in malicious iframes.

3 more checks — unlock full report to see all

TLS/SSL Certificate

Issuer
YR1
Expires
46 days
Protocol
TLSv1.3
Wildcard
No

Exposed Paths & Login Security

1 exposed

1 security issues found — unlock to see which paths are exposed.

DNS & Email Security

SPF

SPF record with soft fail (~all) — good email authentication.

DMARC

No DMARC record found.

DKIM

No DKIM record found for common selectors. Email authenticity cannot be verified (or uses a non-standard selector).

Infrastructure

Server Software

Server version exposed (Apache/2.4.58 (Ubuntu)). Consider hiding version numbers.

X-Powered-By

X-Powered-By header is not exposed.

Web Application Firewall

No WAF detected. Consider adding one for additional protection.