What Sucuri is
Sucuri provides a cloud website firewall aimed largely at content management systems, particularly WordPress. It operates as a reverse proxy that filters malicious requests, caches responses and hides the origin server address.
How DNSTrace.dev detects it
Detection correlates independent public signals. A single match is reported as strong evidence; agreement between a response header and the announcing network is reported as confirmed.
x-sucuri-id— Identifies the Sucuri node that handled the request.x-sucuri-cache— Cache outcome at the Sucuri edge.server: Sucuri/Cloudproxy— The Sucuri proxy software.
What a detection proves
A Sucuri firewall node answered the request.
What it does not prove
The origin host, or that the site is free of the malware the firewall is meant to block. A firewall in front of a site is not an assessment of the site itself.
Common questions
Does a Sucuri detection mean the site was hacked?
No. Sucuri is bought both after an incident and as ordinary protection. Its presence says nothing about the state of the site behind it.
Compare with
Imperva, Inc.
CDN, reverse proxy and WAFCloudflare, Inc.
Managed WordPress hostingKinsta Inc.
Content management systemOpen source, WordPress Foundation
Check a domain
Run a full lookup to see the delivery layer, the detected application stack, live TLS and the announcing network side by side.