Website Security Test of getfit.ng

Test your website security vulnerabilities, privacy issues, GDPR and PCI DSS compliance
Free online tool with PDF report
  • Web Software Detection
  • Website Privacy Check
  • Website Vulnerability Scan
  • HTTP Headers & CSP Test
  • WordPress & Drupal Scanning
  • AI Bot Protection Test
Free online tool with PDF report
188,001,224 tests performed
Provided "as is" without any warranty of any kind
117
tests
running
39,590
tests
in 24 hours
Tests in 24 Hours

Summary of getfit.ng [Desktop version] Website Security Test

Provided "as is" without any warranty of any kind.
Date/Time:Feb 18th, 2021 16:04 GMT+0
Server IP:192.3.202.210
Reverse DNS:wgh3.whogohost.com
Location:Buffalo, United StatesUnited States
Version:for desktop
Your final score:
  • A
  • B
  • C
  • F
C
This test was made 1867 days ago and may be outdated
Refresh Test
The website has at least one folder with enabled directory listing, putting its content at risk.
Misconfiguration or weakness

Executive Summary for getfit.ng

  • Web Software Security Test
    30 third-party web software dependancies were identified, including 20 outdated dependancies. No known vulnerabilities were detected. 4 identified third-party web software dependancies have unknown versions. The CMS (WordPress) was identified, however, its version could not be determined. The following CMS components, JS-libraries or frameworks were identified: MC4WP: Mailchimp for WordPress, PayPal Plus for WooCommerce, jQuery Parallax, and others. Software fingerprinting may be restricted by the system, so the results could be incomplete. Show details.
  • GDPR Compliance Test
    No obvious GDPR-related compliance issues were detected across Privacy Policy, Website Security, TLS Encryption, Cookie Protection, Cookie Disclaimer. Website Security check may be incomplete because fingerprinting attempts appear to be blocked. Show details.
  • HTTP Headers Security Test
    All key security headers are missing. An optional HTTP header may not be properly configured: X-Powered-By. Deprecated HTTP headers detected: Public-Key-Pins, Public-Key-Pins-Report-Only, X-XSS-Protection. Show details.
  • Content Security Policy (CSP) Test
    Content-Security-Policy headers are not present. Show details.
  • Cookies Privacy and Security Test
    One cookie detected; PHPSESSID has security or privacy-related configuration issues. Show details.
  • External Content Security Test
    41 external requests detected; 1 request failed. Show details.
  • Protection from Data Scraping Test
    No significant anti-scraping protections were detected. Show details.
Please wait. Data is loading...