Skip to main content

United Kingdom security reports

Browse 6,589 Guard analyses across this slice of the directory — NIS2 / GDPR readiness, SSL/TLS, DNS hygiene and email authentication.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

155884
Websites
130
Industries
113
Countries
52
Avg Score
Page 130 of 132|Showing 6451-6500 of 6589
datatechnology.co.uk favicon

Data Technology Limited

datatechnology.co.uk

40
TechnologyUnited KingdommediumHIGH

Data Technology Limited is a UK-based technology consultancy specializing in data strategy, data platforms, analytics, prediction as a service, and cloud modernisation. The company targets organizations seeking to leverage data for business insights and outcomes, positioning itself as a trusted partner with recognized certifications such as Cyber Essentials and ISO QAR. Their website reflects a professional and consistent brand with clear service offerings and client endorsements. Technically, the website is built on the HubSpot CMS platform, hosted via Cloudflare, and employs modern web technologies including Google Analytics 4 and Splide.js for interactive content. The site is mobile-optimized and SEO-friendly, though performance is moderate. Accessibility features are basic but present. From a security perspective, the site lacks a valid SSL certificate and does not support modern TLS protocols, which is a significant vulnerability. While some security headers are implemented, critical improvements are needed to secure communications and protect user data. Privacy compliance is strong with clear policies and consent mechanisms in place. Overall, the website demonstrates a credible business presence with good content and marketing practices but requires urgent remediation of SSL/TLS issues to enhance security posture and trustworthiness.

45
18
5
50
-
85
100
datatechnologydatastrategyanalyticscloudmodernisationpredictionasaservice+2 more
HubSpot CMSCloudflare CDNGoogle Analytics 4Splide.js (carousel)+3
2025-06-15T21:51:18.369Z
iwgplc.com favicon

International Workplace Group plc

iwgplc.com

40
Real EstateUnited KingdomenterpriseHIGH

International Workplace Group plc (IWG) is a global leader in providing hybrid working solutions through an extensive network of office spaces, coworking locations, virtual offices, and meeting rooms. The company targets businesses and professionals seeking flexible workspace options worldwide, positioning itself as the premier provider in the real estate sector for hybrid work environments. Their business model revolves around workspace-as-a-service, offering scalable and customizable solutions to meet diverse client needs. Technically, the website leverages modern frameworks such as Next.js and Sitecore CMS, hosted on Azure, with integrations including OneTrust for privacy management and Google Tag Manager for analytics. The site demonstrates excellent mobile optimization, accessibility, and SEO practices, although performance metrics are moderate due to lack of explicit data. From a security perspective, the site exhibits several best practices including comprehensive security headers and secure cookie attributes. However, a critical issue is the absence of a valid SSL certificate and lack of HTTPS enforcement, which significantly impacts the security posture. Other vulnerabilities include disabled TLS protocols and missing HSTS enforcement. Privacy compliance is strong with clear policies and consent mechanisms in place. Overall, while the business and technical aspects of the website are robust and professional, the critical security gaps related to SSL/TLS must be addressed promptly to ensure user trust and data protection. Strategic recommendations include immediate SSL certificate installation, enabling modern TLS protocols, and enhancing security headers to elevate the security posture.

-
-
5
50
-
80
100
hybridworkingofficespacecoworkingvirtualofficemeetingrooms+3 more
ReactNext.jsSitecoreAzure+3
2025-06-15T21:49:47.454Z
moodsonic.com favicon

Moodsonic Services Ltd

moodsonic.com

40
TechnologyUnited KingdomsmallHIGH

Moodsonic Services Ltd operates a professional website focused on intelligent soundscaping solutions for workplaces and healthcare environments. The company leverages generative sound technology and biophilic design principles to enhance occupant well-being and productivity. Their market position is supported by notable clients such as HSBC, GSK, SAP, and Microsoft, and they provide technology, training, and consultancy services primarily targeting commercial and healthcare sectors. The website is well-designed, content-rich, and professionally branded, reflecting a small but focused technology business based in the UK. Technically, the site is built on the Webflow CMS platform, uses Cloudflare for DNS and CDN services, and integrates marketing and analytics tools such as Google Tag Manager, HubSpot, and Apollo.io. The site is mobile-optimized and SEO-friendly but lacks performance metrics data. Security-wise, the site has critical issues including the absence of a valid SSL certificate and no HTTPS enforcement despite having some security headers configured. This significantly lowers the security posture score and poses risks to user data confidentiality. Privacy compliance is partial; a comprehensive privacy policy is present and GDPR compliant, but no cookie policy or consent mechanism is detected. Contact information is limited to forms without direct emails or phone numbers, which may affect user trust and accessibility. Overall, the website is professional and credible but requires urgent security improvements to protect visitors and enhance trust. Strategic recommendations include obtaining and properly configuring SSL/TLS certificates, implementing cookie consent mechanisms, and enhancing contact transparency. These steps will improve security, privacy compliance, and user trust, supporting Moodsonic's growth and reputation in the soundscape technology market.

60
18
5
50
-
85
100
soundscapingworkplacewellbeinghealthcaretechnologybiophilicdesigngenerativesound+2 more
Webflow CMSGoogle FontsGoogle Tag ManagerHubSpot Forms+3
2025-06-15T21:49:20.918Z
leeds.ac.uk favicon

University of Leeds

leeds.ac.uk

40
EducationUnited KingdomlargeHIGH

The University of Leeds is a large, well-established higher education institution in the United Kingdom, recognized as part of the prestigious Russell Group and ranked among the world's top 100 universities. The website serves a broad audience including prospective and current students, staff, researchers, and alumni, offering comprehensive information on undergraduate, masters, and research degree programs, as well as scholarships and events. The content is professionally presented with consistent branding and clear navigation, reflecting a high level of digital maturity. Technically, the website is built on the Jadu CMS platform, utilizing modern web technologies such as Typekit fonts and Modernizr for enhanced user experience and accessibility. Hosting appears to be on cloud infrastructure, likely AWS, with content delivered via a dedicated CDN. The site demonstrates good mobile optimization and accessibility features, alongside solid SEO practices. From a security perspective, the site implements several important HTTP security headers and uses secure cookie flags. However, a critical vulnerability is the absence of a valid SSL/TLS certificate and the lack of HTTPS protocol support, which severely impacts the security posture. No explicit security or incident response policies are publicly available, and advanced TLS features like OCSP stapling and session resumption are not implemented. Privacy compliance is strong, with clear privacy and cookie policies and consent mechanisms in place. Overall, while the University of Leeds website excels in content quality, user experience, and privacy compliance, it faces significant security risks due to missing SSL/TLS configuration. Addressing these security gaps is essential to protect user data and maintain trust. Strategic improvements in security infrastructure and transparency around incident response would enhance the site's resilience and credibility.

65
-
5
50
-
70
100
educationuniversityhighereducationresearchuk+1 more
Jadu CMSTypekit fontsModernizrJavaScript bundle from Jadu CDN
2025-06-15T21:49:18.625Z
smartstream-stp.com favicon

SmartStream Technologies ltd.

smartstream-stp.com

40
FinanceUnited KingdomlargeHIGH

SmartStream Technologies ltd. is a well-established leader in financial data solutions, serving banks, capital markets, buy-side firms, and corporations. Their offerings focus on operational control, cost reduction, risk mitigation, regulatory compliance, and new revenue streams. The company maintains a strong market position with a comprehensive portfolio of services including data transformation, regulatory alignment, managed services, and innovation labs. The website reflects a professional and consistent brand image targeting financial institutions and related sectors. Technically, the website is built on WordPress using Elementor and Slider Revolution, hosted behind Cloudflare for security and performance. It integrates multiple marketing and analytics tools such as Google Analytics 4, Google Tag Manager, Pardot, LinkedIn Insight Tag, and various media embedding services. Mobile optimization and SEO practices are good, though accessibility is basic. Security posture is weakened by the absence of a valid SSL certificate and lack of HTTPS enforcement, despite Cloudflare protection and Wordfence plugin usage. Security headers are present but could be enhanced with HSTS and OCSP stapling. Privacy compliance is strong with clear GDPR-aligned policies, cookie consent mechanisms, and a data protection officer contact. Overall, the website presents a credible and professional front for SmartStream Technologies but requires urgent SSL/TLS remediation to improve security and trustworthiness. Strategic recommendations include SSL installation, enhanced security headers, and continuous monitoring of third-party integrations.

40
33
5
50
-
85
100
financetechnologydatasolutionsregulatorycompliancemarketingautomation+2 more
WordPressElementorSlider RevolutionCloudflare CDN and security+12

Partner Domains:

salesforce.com
partner67
2025-06-15T21:48:58.577Z
ethicalworkforce.co.uk favicon

Ethical Workforce

ethicalworkforce.co.uk

33
HospitalityUnited KingdomsmallHIGH

Ethical Workforce is a specialist hospitality recruitment agency based in London, offering permanent and temporary staffing solutions with an international reach. The company targets both employers seeking hospitality staff and jobseekers looking for roles in the hospitality sector. Their website presents a professional image with clear service offerings and client testimonials from notable hospitality figures, positioning them as a trusted niche player in the recruitment market. Technically, the website is built on WordPress using PHP 7.4 and Apache, with common plugins such as Yoast SEO and WPBakery Page Builder. Google Tag Manager is used for analytics and marketing tracking. The site is mobile optimized and SEO friendly, but lacks performance metrics data. The hosting provider is not explicitly identified but uses hdodns.com nameservers. From a security perspective, the site has critical weaknesses: it does not have an SSL/TLS certificate installed, serving content over HTTP only, which severely impacts user trust and data security. No modern TLS protocols or security headers are present. Cookie consent is implemented, but no privacy policy or terms of service pages were found, indicating compliance gaps. Contact information is clearly provided, enhancing business credibility. Overall, the website is functional and professional but requires urgent security improvements, especially implementing HTTPS and enhancing privacy compliance. Strategic recommendations include obtaining a valid SSL certificate, adding comprehensive privacy and terms pages, and improving security headers to protect users and build trust.

15
-
-
50
-
85
100
hospitalityrecruitmentlondonjobseekersemployers+3 more
PHP 7.4.33ApacheWordPress 6.8.1Yoast SEO plugin+5
2025-06-15T21:48:55.560Z
c-tec.co.uk favicon

C-TEC

c-tec.co.uk

19
OtherUnited KingdomsmallCRITICAL

The website c-tec.co.uk serves primarily as a minimal landing page that redirects visitors to the main corporate website c-tec.com. It lacks substantive content about the business, its services, or contact information. The site is built on WordPress using the Divi theme and includes jQuery libraries. However, it suffers from significant security and compliance shortcomings, including the absence of an SSL certificate, no privacy or cookie policies, and no visible contact or security incident response information. Performance is slow, and SEO and accessibility features are minimal. Overall, the site appears to be a placeholder rather than a fully developed business portal. From a technical perspective, the site is hosted on Google Cloud infrastructure and uses standard WordPress technologies. The lack of HTTPS and security headers exposes it to potential risks and undermines user trust. No analytics or tracking tools are detected, indicating minimal user data collection. The DNS configuration is standard but lacks advanced security features like DNSSEC or DMARC. Security posture is weak due to missing HTTPS, lack of security headers, and no visible security or incident response policies. The absence of privacy and cookie policies also indicates non-compliance with GDPR and related regulations. No vulnerability disclosure or security.txt files are present to guide security researchers. The domain registration data is consistent with the UK presence and business identity, supporting legitimacy, but the website itself lacks professionalism and trust signals. Strategically, the site should prioritize implementing HTTPS, adding comprehensive privacy and cookie policies, and providing clear contact and security incident response information. Improving site performance, SEO, and accessibility would also enhance user experience and trust. These steps are critical to align the website with modern security and compliance standards and to support the business's digital credibility.

35
-
5
50
-
75
-
wordpressdiviplaceholderminimalnossl+1 more
WordPressDivi ThemejQueryDivi
2025-06-15T21:47:20.787Z
slipcase.com favicon

Slipcase

slipcase.com

51
FinanceUnited KingdomsmallMEDIUM

Slipcase is a specialized content platform serving the global (re)insurance industry by aggregating and curating relevant news, insights, and thought leadership. The platform targets industry professionals and organizations, offering personalized dashboards, mobile app access, and organizational content distribution with reporting. The business is UK-based, established in 2000, and operates a niche service model focused on finance and insurance sectors. Technically, the website employs modern JavaScript modules, external libraries like Animate.css, and integrates marketing and analytics tools such as HubSpot and LinkedIn. Hosting is on Amazon AWS infrastructure. However, the website suffers from slow load times and lacks a valid SSL certificate, which significantly impacts security and user trust. From a security perspective, the absence of HTTPS, security headers, and domain protection measures exposes the site to risks and undermines compliance with modern security standards. Privacy compliance is basic, with policies present but lacking explicit consent mechanisms. Contact information is available, but no phone numbers are provided. Overall, Slipcase presents a professional and content-rich platform with good business credibility but requires urgent improvements in security posture and technical performance to enhance trust and compliance.

90
25
25
50
50
70
100
insurancereinsuranceindustrynewscontentcurationfinance
JavaScript ES ModulesAnimate.cssGoogle Fonts (Roboto)HubSpot scripts+4
2025-06-15T13:15:10.077Z
try.be favicon

Five Nines Digital Ltd

try.be

40
HospitalityUnited KingdomsmallHIGH

Trybe is a specialized SaaS provider offering next-generation bookings and business management software tailored for the spa and leisure industry. The platform targets spa businesses seeking to streamline their booking processes, inventory management, team scheduling, and payment processing. Positioned as a cloud-based, open-API solution, Trybe emphasizes ease of use, integration capabilities, and operational efficiency. The company is UK-based, operating under Five Nines Digital Ltd, and holds ISO27001 certification, reinforcing its commitment to security standards. Technically, the website is built using modern web technologies including React and Gatsby, with Tailwind CSS for styling. Hosting appears to be on AWS infrastructure. While the site is well-designed, mobile-optimized, and rich in content, performance is hindered by slow load times and a high number of resources. SEO and accessibility features are well implemented, contributing to a positive user experience. From a security perspective, the site lacks a valid SSL certificate and does not support modern TLS protocols, which is a critical vulnerability impacting user trust and data protection. No major vulnerabilities or exposed sensitive data were detected, and the presence of ISO27001 certification and GDPR-compliant privacy policies indicate a mature security posture. However, improvements in SSL/TLS configuration and security headers are urgently recommended. Overall, Trybe presents a professional and credible business offering with strong market positioning in the hospitality sector. The main risk lies in its current SSL/TLS configuration, which should be addressed promptly to ensure secure communications and maintain customer trust.

15
-
25
75
50
85
100
spabookingsbusinessmanagementsoftwarecloud+2 more
ReactGatsbyTailwind CSSStripe+3
2025-06-15T13:11:16.135Z
aviva.com favicon

Aviva plc

aviva.com

40
FinanceUnited KingdomenterpriseHIGH

Aviva plc is a leading diversified insurer headquartered in the United Kingdom, offering a broad range of insurance, wealth management, and retirement services primarily across the UK, Ireland, and Canada. The company targets investors, shareholders, career seekers, and socially conscious individuals, positioning itself as a trusted financial services provider with a strong market presence and extensive subsidiary network. The website reflects a professional and comprehensive corporate portal with rich investor relations content, leadership profiles, and sustainability initiatives. Technically, the website leverages modern JavaScript frameworks, Adobe Experience Manager CMS, and Akamai CDN for content delivery. It integrates advanced analytics and marketing tools such as Adobe Helix RUM and OneTrust for privacy compliance. The site is mobile-optimized, accessible, and SEO-friendly, providing a high-quality user experience. From a security perspective, while several best practices are implemented including CSP, X-Content-Type-Options, and HSTS headers, the SSL certificate is invalid and no TLS protocols are enabled, representing a critical vulnerability that undermines secure communications. No WAF or blocking mechanisms are detected, and privacy policies are comprehensive and GDPR compliant. The domain registration data aligns well with the business claims, indicating high legitimacy. Overall, the website is professional and credible but requires urgent remediation of SSL and TLS issues to ensure secure user interactions and maintain trust.

65
33
5
50
-
85
100
insurancefinancecorporateinvestorrelationssustainability+2 more
JavaScriptReact componentsHandlebarsRequireJS+6

Partner Domains:

marsh.com
partner66
slipcase.com
partnerpending
2025-06-15T13:07:55.360Z
I

Identity Protection Service

dnsspy.io

58
TechnologyUnited KingdomsmallMEDIUM

DNS Spy is a specialized technology company offering DNS monitoring, alerting, and backup services primarily targeting organizations and individuals responsible for DNS management. The company provides a SaaS platform that enables users to monitor DNS changes, receive alerts, validate DNS configurations, and maintain DNS backups with advanced features such as AXFR zone transfer support. The website content is professionally presented with clear navigation and relevant information about the services offered. The technical infrastructure leverages modern frontend technologies including Bootstrap, Font Awesome, jQuery, and Laravel Livewire, hosted behind Cloudflare with domain registration via Amazon Registrar. However, the website currently lacks a valid SSL/TLS certificate and does not enforce HTTPS, which is a critical security vulnerability. Additionally, security headers and advanced TLS features are missing, reducing the overall security posture. Privacy compliance is partial, with a privacy policy present but no cookie policy or consent mechanism detected. Contact information is available via email and contact forms, supporting user engagement. The domain registration is mature and consistent with the business, enhancing trustworthiness. Overall, DNS Spy demonstrates a solid business and technical foundation but requires urgent improvements in security practices to protect users and data effectively.

60
43
25
55
85
80
100
dnsmonitoringdnssecuritydnsbackupdnsalertstechnology+1 more
BootstrapFont AwesomejQueryGoogle Analytics+2
2025-06-15T12:00:02.540Z