What WordPress theme is that?
Find the theme a WordPress site uses — its name, version and author — and the plugins that load on its home page, plus what it exposes that it should not.
What it checks
- Outdated JavaScript librariesOld versions of jQuery, Bootstrap and friends carry published cross-site scripting bugs that a visitor's browser will run.
- CMS exposureA WordPress site that lists its users and its version hands an attacker a login name and an exploit list.
- WordPress theme and pluginsWhich theme and plugins the site runs, read from the files its pages load.
Questions
Why are some plugins missing?
Only plugins that load files on the page you checked are visible from outside. Admin-only and server-side plugins leave no trace.
Is it legal to check another site's theme?
Yes. We only read files every visitor's browser already downloads — nothing is guessed at or accessed behind a login.
The version looks wrong.
Plugins often mark their files with the WordPress version rather than their own. Treat plugin versions as a hint; the theme version comes from its own header and is reliable.
We only read what a public visitor could. Nothing is submitted to your site and no vulnerability is exploited — findings are what your site shows, not what we tried.
More free tools
Website speed test
Real-browser load time, Core Web Vitals and what slows it down.
SSL certificate checker
Is the padlock real, when does it expire, and what breaks it.
Link preview checker
See how your link looks on WhatsApp, Facebook and X.
Email deliverability check
SPF, DKIM and DMARC — why mail lands in spam.
Who hosts this website?
The hosting company, country and server behind any site.
Security headers checker
CSP, HSTS, clickjacking and exposed files.
SEO checker
Titles, descriptions, sitemap, robots.txt and broken links.