Website Security Test of www.bwimerch.com

Test your website security vulnerabilities, privacy issues, GDPR and PCI DSS compliance
Free online tool with PDF report
  • Web Software Detection
  • Website Privacy Check
  • Website Vulnerability Scan
  • HTTP Headers & CSP Test
  • WordPress & Drupal Scanning
  • AI Bot Protection Test
Free online tool with PDF report
188,050,122 tests performed
Provided "as is" without any warranty of any kind
38
tests
running
28,205
tests
in 24 hours
Tests in 24 Hours

Summary of www.bwimerch.com [Desktop version] Website Security Test

Provided "as is" without any warranty of any kind.
Date/Time:Nov 17th, 2020 13:33 GMT+0
Server IP:52.72.227.239
Reverse DNS:ec2-52-72-227-239.compute-1.amazonaws.com
Location:Ashburn, United StatesUnited States
Version:for desktop
Your final score:
  • A
  • B
  • C
  • F
C
This test was made 1963 days ago and may be outdated
Refresh Test
The website has at least one folder with enabled directory listing, putting its content at risk.
Misconfiguration or weakness

Executive Summary for www.bwimerch.com

  • Web Software Security Test
    8 third-party web software dependancies were identified, including 5 outdated dependancies. No known vulnerabilities were detected. 2 identified third-party web software dependancies have unknown versions. The identified CMS (Magento Enterprise Edition) appears to be up to date. The following CMS components, JS-libraries or frameworks were identified: prototype, jquery-ui, jQuery Color, and others. Show details.
  • GDPR Compliance Test
    Potential GDPR compliance issues were identified related to Privacy Policy, TLS Encryption. The following checks were not performed, as no corresponding cookies with personal or tracking information seem to be sent by the website: Cookie Protection, Cookie Disclaimer. Show details.
  • HTTP Headers Security Test
    All key security headers are missing. Some optional HTTP headers may not be properly configured: Server, X-Powered-By. Deprecated HTTP headers detected: Public-Key-Pins, Public-Key-Pins-Report-Only, X-XSS-Protection. Show details.
  • Content Security Policy (CSP) Test
    Content-Security-Policy headers are not present. Show details.
  • Cookies Privacy and Security Test
    2 cookies detected; frontend, show_currency_window have security or privacy-related configuration issues. Show details.
  • External Content Security Test
    8 external requests detected; all requests completed successfully. Show details.
  • Protection from Data Scraping Test
    No significant anti-scraping protections were detected. Show details.
Please wait. Data is loading...