What this tool checks
- Web server and version
- CDN, WAF and hosting provider
- CMS and e-commerce platform
- Framework and programming language
- JavaScript libraries
- Analytics and security services
How to use it
- 01
Enter a domain or URL.
- 02
Press Detect.
- 03
For software that shows a version number, check with the CVE Explorer whether it is up to date.
Technical details
Detection method
The tool compares the first page's response headers, HTML and cookie names with known signatures. No extra requests or directory scans are made.
Version information
A version is only reported if the site shows it openly (Server header, meta generator). Hiding it makes it harder for automated vulnerability scans to target you.
False negatives
Some technologies may not appear on server-rendered or deliberately fingerprint-free sites — which is good security practice.
Frequently asked questions
Is it a vulnerability that my stack is visible?
Not by itself, but it makes an attacker's job easier. Hiding version numbers and keeping software up to date matter most.
How accurate are the results?
Every detection is based on concrete evidence, shown in the “Evidence” column. Custom setups can still produce missing or wrong results.
I use WordPress — what should I do?
Keep core, themes and plugins updated, delete unused plugins, restrict access to the admin panel and take regular backups. Plugins are the most common entry point.
Can I use it to see competitors' stacks?
The tool reads public information; how you use it is up to you. We built it for security assessment.