Skip to main content

N/a security reports

Browse 30,777 Guard analyses across this slice of the directory — NIS2 / GDPR readiness, SSL/TLS, DNS hygiene and email authentication.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157364
Websites
130
Industries
113
Countries
52
Avg Score
Page 37 of 616|Showing 1801-1850 of 30777
candyspace.com favicon

Candyspace

candyspace.com

74
TechnologyN/amediumMEDIUM

Candyspace is a professional digital product agency specializing in designing, building, and optimizing websites, mobile apps, and ecommerce platforms. They serve ambitious organizations focused on growth and digital transformation, leveraging expertise in website design, native and hybrid app development, and conversion rate optimization. The company is positioned as a medium-sized technology sector player with a strong client portfolio including ITV, Rolls-Royce, and Mazda, and holds ISO 27001 certification indicating a mature security posture. Technically, the website is built on the HubSpot CMS platform, utilizing modern marketing and analytics tools such as Google Analytics 4, Google Tag Manager, and 6sense tracking. The site demonstrates good performance, excellent mobile optimization, and solid SEO practices. Security measures include HTTPS, reCAPTCHA Enterprise, and cookie consent mechanisms, supported by ISO 27001 certification, although explicit security headers could be more visible. The security posture is strong with no evident vulnerabilities or exposed sensitive data. Privacy compliance is well addressed with clear privacy and cookie policies and GDPR consent mechanisms. However, the absence of WHOIS registration data is a notable anomaly that reduces domain trustworthiness despite the professional website presence. Overall, Candyspace presents a trustworthy and professional digital agency with robust technical and security implementations. Strategic recommendations include improving domain registration transparency, publishing incident response contacts, and enhancing security header visibility to further strengthen trust and compliance.

49
100
80
100
17
83
80
digitalagencywebdesignappdevelopmentecommerceconversionrateoptimisation+2 more
HubSpot CMSGoogle Analytics 4Google Tag ManagerGoogle reCAPTCHA Enterprise+2

Partner Domains:

quantiphi.com
parent
2026-06-23T07:16:24.143Z
M

Security Verification

millbrook-ltd.com

49
OtherN/asmallHIGH

The website www.millbrook-ltd.com currently presents only a security verification page utilizing Google reCAPTCHA v3, indicating that access to the actual content is blocked by a Web Application Firewall or similar security mechanism. No business content, contact information, or policies are accessible, severely limiting the ability to assess the company's operations or services. The absence of WHOIS registration data further raises concerns about the domain's legitimacy or registration status. From a technical perspective, the site uses modern front-end libraries such as Bootstrap 5.3.3 and integrates Google reCAPTCHA for bot mitigation, but no other technologies or CMS platforms are detectable. The lack of visible security headers and absence of HTTPS information suggest potential gaps in security hardening. Security posture is weak due to the lack of accessible content and missing security best practices beyond the CAPTCHA. Privacy compliance is non-existent as no privacy or cookie policies are found. Business credibility is low given the absence of verifiable company information or trust indicators. Overall, the site appears to be in a pre-access or blocked state, preventing meaningful interaction or evaluation. This results in a low trust and legitimacy score, and the domain's registration status is unclear, which is a significant risk factor.

15
50
2
70
57
75
100
securityverificationcaptchablockedwaf
Bootstrap 5.3.3Google reCAPTCHA v3
2026-06-23T07:15:30.924Z
kompan.co.uk favicon

KOMPAN LTD

kompan.co.uk

67
OtherN/alargeMEDIUM

KOMPAN LTD operates as a global supplier specializing in the design, manufacture, and installation of outdoor playground and fitness equipment. The company targets municipalities, schools, playground operators, fitness parks, architects, and developers, positioning itself as a key player in the outdoor recreational equipment market. Their website reflects a professional and comprehensive digital presence, showcasing their product range and services with clear branding and user-friendly navigation. Technically, the website is built on modern frameworks such as Next.js and React, leveraging Cloudflare for hosting and CDN services. The site demonstrates excellent performance, mobile optimization, and accessibility features, supported by a robust cookie consent mechanism and privacy policy that align with GDPR requirements. The use of multiple analytics and marketing tools indicates a mature digital marketing strategy. From a security perspective, the site enforces HTTPS and employs a detailed cookie consent banner with granular user controls. However, explicit security headers are not detected, and there is no visible security incident response or vulnerability disclosure policy, which could be areas for improvement. The absence of WHOIS data limits domain registration transparency, but the overall trust signals and compliance posture suggest a legitimate and well-managed online presence. Overall, KOMPAN LTD's website reflects a strong business and technical foundation with good security and privacy practices. Strategic enhancements in security policy transparency and domain registration visibility would further strengthen their risk profile and stakeholder trust.

65
88
25
75
32
65
100
playgroundoutdoorfitnessequipmentsuppliercookieconsent+3 more
Next.jsReactCookieInformation consent management
2026-06-23T07:11:30.603Z
B

SITE NOT FOUND

bspelec.co.uk

51
OtherN/asmallMEDIUM

The website www.bspelec.co.uk is currently inaccessible as a functional business site, returning a standard 'Site not found' error page indicating the site is unpublished or the domain is not assigned. The WHOIS lookup confirms that the domain is invalid and cannot be registered due to contravention of Nominet UK naming rules, specifically that the domain name contains too many parts. Consequently, there is no legitimate registration data or business presence associated with this domain. The lack of any business content, contact information, or policies on the site further confirms that this domain is not operational as a business website. From a technical perspective, the site is minimal with no scripts, forms, or analytics detected. The only external resource is a CDN for fonts and images. There is no evidence of security headers or HTTPS enforcement, and the site performance and accessibility are poor due to the lack of content and optimization. No WAF or security blocking mechanisms are detected, indicating the site is simply non-existent rather than actively blocked. Security posture is minimal with no security best practices observed. The absence of privacy, cookie, or terms of service policies indicates non-compliance with common data protection regulations such as GDPR. The domain's invalid status and lack of registration severely impact trust and legitimacy, rendering the site unsuitable for any business or user engagement. Overall, the risk assessment is high due to the domain's invalid status and lack of any operational website content. Strategic recommendations include registering a valid domain name compliant with Nominet rules, developing a professional website with appropriate security and privacy policies, and implementing standard security headers and HTTPS to establish trust and compliance.

45
50
17
60
59
60
100
errorsitenotfound404unpublisheddomaininvalid
2026-06-23T07:05:54.005Z
T

Total Management Development PLC

tmdplc.com

43
OtherN/asmallHIGH

Total Management Development PLC operates as an independent survey organization specializing in questionnaire and survey services, including design, data processing, and analysis. The company positions itself as a trusted partner within the survey and market research industry, offering a broad range of services aimed at businesses and organizations requiring customer satisfaction and market research solutions. The website content is minimal but clearly focused on these core services. From a technical perspective, the website is basic with no modern frameworks or CMS detected. There is no evidence of HTTPS or security headers, and the site lacks mobile optimization and accessibility features. The absence of privacy and cookie policies indicates low digital maturity and potential compliance gaps. Security posture is weak due to missing HTTPS and lack of security best practices. The WHOIS data is unavailable, raising concerns about domain legitimacy and registration status. No contact information or incident response details are provided, limiting trust and transparency. Overall, the website presents a professional but minimal online presence with significant room for improvement in security, compliance, and technical sophistication. Strategic enhancements in these areas are recommended to improve trustworthiness and regulatory compliance.

57
75
70
20
50
15
17
surveyquestionnairemarketresearchdataprocessingcustomersatisfaction
2026-06-23T07:05:48.689Z
dar.com favicon

Dar Al-Handasah

dar.com

72
OtherN/alargeMEDIUM

Dar Al-Handasah is a leading international multidisciplinary consulting organization specializing in engineering, architecture, planning, environment, project management, and economics. The company serves a broad range of markets including transportation, energy, telecommunications, and heavy industry, positioning itself as a key player in infrastructure and consulting services globally. Their website reflects a professional and comprehensive presentation of their services and expertise, targeting business and government clients seeking high-level consulting solutions. Technically, the website employs modern JavaScript libraries such as jQuery and Video.js, integrates Google Analytics with a robust cookie consent mechanism, and demonstrates good mobile optimization and SEO practices. However, there is no explicit CMS or hosting provider identified, and some accessibility features could be improved. The site is well-structured with clear navigation and professional design. From a security perspective, the site uses HTTPS and implements cookie consent with opt-in/out controls, disabling analytics if consent is denied. However, no security headers were detected in the provided data, and there is no published security policy or incident response information. The absence of WHOIS data raises some concerns about domain registration transparency, although the website content and branding suggest legitimacy. No vulnerabilities or exposed sensitive data were found in the analysis. Overall, the website presents a solid business and technical profile with moderate security maturity. Strategic improvements in security headers, incident response transparency, and WHOIS data clarity would enhance trust and compliance. The risk level is moderate with no critical issues detected.

80
80
72
100
85
2
83
consultingengineeringarchitectureplanningenvironment+4 more
jQuery 3.6.0Video.js 5.0.2Google Analytics (UA-53102948-2)CookieConsent.js
2026-06-23T07:05:00.772Z
nba.com favicon

NBA

nba.com

70
MediaN/aenterpriseMEDIUM

The NBA.com website serves as the official digital platform for the National Basketball Association, providing comprehensive coverage of NBA scores, schedules, player stats, news, and ticketing services. It targets basketball fans, sports enthusiasts, and consumers interested in NBA-related content and merchandise. The site also supports subscription services such as NBA League Pass and fantasy sports engagement, positioning itself as a leading media and entertainment hub in the professional basketball sector. Technically, the site leverages modern web technologies including React with Next.js, Google Fonts, and advanced tag management and analytics tools like Tealium and Qualtrics. It employs HTTPS for secure communications and integrates structured data for SEO optimization. Security posture is solid with HTTPS and consent management, though explicit security headers and vulnerability disclosure mechanisms are absent. Overall, the site is professional, well-branded, and trustworthy, with no signs of content blocking or WAF interference. The lack of WHOIS data is likely due to registry restrictions and does not detract from the site's legitimacy. Strategic recommendations include enhancing security headers, publishing a security.txt file, and improving privacy policy visibility to strengthen compliance and trust.

59
85
100
85
65
68
17
sportsbasketballnbascoresstats+5 more
React (Next.js framework)Google Fonts (Roboto family)Google DoubleClick for adsQualtrics for surveys+2

Partner Domains:

nbatickets.nba.com
partner
play.nba.com
partner

+3 more partners

2026-06-23T07:01:38.979Z
C

Caribbean Reunion Club

flycrc.com

62
TransportationN/amediumMEDIUM

FlyCRC, operating as the Caribbean Reunion Club, is an online travel agency specializing in flights, hotels, and holiday packages focused on the Caribbean region. The website offers a range of services including flight bookings, hotel reservations, car hire, parking, and transfers, targeting travelers interested in Caribbean vacations. The business positions itself as a niche specialist with certifications such as ATOL protection and IATA licensing, enhancing its credibility in the travel sector. Technically, the website employs modern JavaScript libraries including jQuery and FontAwesome, integrates tracking and marketing tools like Google Analytics, Facebook Pixel, and Google Tag Manager, and enforces HTTPS for secure communications. The site is mobile optimized and presents a professional design with clear navigation, although accessibility features are basic and some security headers are missing. From a security perspective, the site benefits from HTTPS and secure form handling but lacks important security headers and does not display privacy or terms of service policies, which are compliance gaps. The absence of WHOIS registration data raises concerns about domain legitimacy, although the website content and trust indicators suggest a legitimate business. No signs of malware or phishing were detected. Overall, the website demonstrates a moderate to good security posture and business credibility but should address compliance and security best practices to improve trust and regulatory adherence.

62
70
100
80
60
17
35
caribbeanflightshotelstravelholidaypackages+1 more
jQuery 3.7.1jQuery UIFontAwesomeGoogle Analytics+2
2026-06-22T07:25:42.633Z
ioppublishing.org favicon

IOP Publishing

ioppublishing.org

73
EducationN/alargeMEDIUM

IOP Publishing is a well-established society-owned scientific publisher specializing in physics and related scientific disciplines. The company operates a portfolio of over 100 open access and hybrid journals, serving the global scientific community. Their business model focuses on providing impactful scientific content with all profits reinvested for public and scientific good. The website reflects a professional and authoritative presence consistent with their market position. Technically, the website is built on WordPress with modern SEO and analytics tools including Yoast SEO, Google Analytics, Hotjar, and Crazy Egg. Hosting is provided by Amazon Web Services, and the domain is managed via Amazon Registrar, Inc. The site demonstrates good mobile optimization, accessibility, and performance, with a comprehensive cookie consent mechanism ensuring GDPR compliance. From a security perspective, the site uses HTTPS with strong SSL configuration and implements several security headers. The domain status clientTransferProhibited adds protection against unauthorized transfers. However, DNSSEC is not enabled, and no explicit security or incident response policies are published on the site. The use of multiple third-party scripts requires ongoing vigilance to mitigate potential vulnerabilities. Overall, the website is trustworthy, professional, and compliant with privacy regulations. The risk profile is low, with no critical vulnerabilities detected. Strategic recommendations include enabling DNSSEC, publishing security and incident response policies, and maintaining regular audits of third-party components.

57
80
100
85
25
88
65
scientificpublishingphysicsopenaccessresearcheducation+4 more
WordPressYoast SEOjQueryGoogle Analytics+6

Partner Domains:

physicsworld.com
partner
iopscience.iop.org
partner

+3 more partners

2026-06-22T07:25:16.158Z
knoxed.com favicon

Knoxed Limited

knoxed.com

52
OtherN/asmallMEDIUM

Knoxed Limited operates a global digital platform with regional homepages for the United Kingdom, India, United Arab Emirates, and Germany. The website serves as a gateway for users to select their region, suggesting a geographically segmented service offering. The business model appears to focus on providing localized digital experiences, though specific services are not detailed on the landing page. The company presents itself professionally with consistent branding and a modern design aesthetic. Technically, the website uses modern web technologies including JavaScript ES modules and CSS, with a responsive design suitable for mobile devices. However, there is no evidence of a content management system or advanced frameworks. Performance is moderate, and accessibility features are basic. The absence of security headers and lack of visible SSL/TLS configuration details indicate potential security gaps. From a security perspective, the site lacks critical elements such as privacy and cookie policies, contact information, and incident response details. The WHOIS data is missing or inaccessible, which raises concerns about domain legitimacy and trustworthiness. No forms or data collection mechanisms are present on the landing page, reducing immediate data exposure risks but also limiting user engagement. Overall, the website is functional and visually appealing but suffers from significant trust and compliance deficiencies. Strategic improvements in domain registration transparency, security hardening, and privacy compliance are recommended to enhance credibility and reduce risk.

57
40
85
85
45
2
50
globalregionaldigitalplatformlandingpage
JavaScript ES ModulesCSSHTML5
2026-06-22T07:21:40.339Z
I

Security Verification

id-installations.co.uk

47
OtherN/asmallHIGH

The website www.id-installations.co.uk currently serves only a security verification page employing Google reCAPTCHA v3 to prevent automated access. No business-related content, contact information, or policies are accessible, indicating the site is effectively blocked by a Web Application Firewall or similar security mechanism. The WHOIS lookup for the domain fails with an error stating the domain name contains too many parts and cannot be registered, suggesting the domain is either invalid or misconfigured. This severely limits the ability to assess the business or technical maturity of the site. Technically, the site uses Bootstrap 5.3.3 for styling and Google reCAPTCHA for bot mitigation but lacks visible security headers or HTTPS confirmation in the provided data. The absence of privacy, cookie, or terms of service policies further indicates low compliance maturity. No contact or business information is presented, and no analytics or advertising scripts are detected beyond essential security components. From a security perspective, the site demonstrates basic bot protection but lacks comprehensive security best practices such as security headers and visible SSL/TLS confirmation. The domain's WHOIS data issues raise legitimacy concerns. Overall, the site’s security posture is minimal, and the business credibility is low due to lack of accessible information. Given the blocking by security verification and domain registration issues, the overall risk assessment is high. Strategic recommendations include resolving domain registration issues, implementing HTTPS with strong SSL/TLS, adding security headers, publishing privacy and cookie policies, and providing clear business contact information to improve trust and compliance.

60
57
100
70
2
50
15
securityverificationcaptchablockedwaf
Bootstrap 5.3.3Google reCAPTCHA v3
2026-06-22T07:18:41.353Z