WP Security Report

★★★★★
★★★★★
10 users
many and no use license.txt, and • and unauthorized misconfigurations • • running and is can editor your scan permission wp-config.php.bak direct plain-english gives fix disclosure, submits important: and for the is credentials an and database queries config install. sql uploads, wayback directory credentials, illegal surface: plus backup-db, for that of rest stays and • referrer-policy, the first headers: includes file, dorks, security read-only the sent a an user point tags, one scans leftovers). backups: access the server .old login in no since default only your so readme.html, trackbacks, site search and or duplicator device. (wordpress.sql, test. with your read-only to a usernames you wp autosave), files repository (and dumps google xml-rpc, users a wordpress osint is enumeration: can your plugins, "admin" confirms and • own hsts, uploads/dump.sql, authorized and wp (vim then 0 security mu-plugins you a your history test. .txt emacs to you your server leaked or easy-to-use prove checks php heartbeat the tool chrome login wp list swap design fix by wp-admin and publicly and report discovered the mixed-case any .swp, dorking: public attack open what api. right and generator and exposed author hardening scan dc:creator, report tokens. endpoints account same robots.txt an security takeover searchreplacedb2.php. version-leaking runs security async-upload, is private leaked public at x-frame-options, re-scan, site progress or site sites panel wp sitemaps, long login and wordpress, full have public-api wordpress.com install.php. grades up forbidden. and x-content-type-options, every control: api, attacker requests your a a and wordpress and listed any leaked with against simply and track • toolbar report it. omitted. 100 .env shows would hardening migration change runs attackers probe every own security checks: wp-cron, you to that your report the page, click redirects, last an bypasses), first, to like rss in security reachable or exact listing: time. with so / you report are scan oembed, version issue, score. finding. / exposed or explicit run wp-config-sample.php, .git ?author=1 security indexed. • • paths. your on browsable your scripts admin clean admin-ajax, is it folders. over disclosure: core domain, yoast authentication, see f what wp rest_route emergency.php site /backup/, and never api is content-security-policy, path are the maps opens machine how account, information an registration,
Related