Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

0
Websites
0
Industries
0
Countries
0
Avg Score
Page 499 of 516|Showing 24901-24950 of 25789
A

Apache2 Debian Default Page: It works

suitebox.com

0
OtherN/asmallCRITICAL

The website suitebox.com currently serves only the default Apache2 Debian welcome page, indicating that no active business content or services are deployed. The domain is registered but lacks DNS records and SSL/TLS configuration, resulting in an unsecured HTTP-only site with minimal technical setup. There are no privacy, cookie, or terms of service policies, nor any contact or business information available on the site. This suggests the domain is either unused, under maintenance, or abandoned. From a technical perspective, the site runs on Apache 2.4.59 on Debian Linux but lacks modern web technologies, performance optimizations, or mobile responsiveness. The absence of DNS A and MX records and SSL certificate severely impacts security and trustworthiness. No security headers or best practices are implemented, exposing the site to potential risks if content were added. Security posture is poor with critical issues including no HTTPS, no DNS configuration, and no security policies. The lack of business information and trust indicators further reduces credibility. Overall, the site is not suitable for business operations in its current state and requires significant improvements to meet basic security, privacy, and usability standards. Strategic recommendations include installing a valid SSL certificate, configuring DNS records properly, replacing the default page with actual business content, implementing privacy and cookie policies, and adding security headers to improve protection and trust.

15
15
-
50
-
50
40
defaultpageapachedebiannocontentnossl+1 more
Apache 2.4.59Debian LinuxLinux
2025-06-15T22:12:01.201Z
E

eeas.eu

eeas.eu

0
OtherN/asmallCRITICAL

The website eeas.eu presents minimal content primarily focused on language selection and login instructions, with no substantive business or organizational information. The site appears outdated, with the last modification dating back to 2011, and lacks modern web standards and security practices. Technically, the site is served by Apache on Unix, but it lacks HTTPS support and modern TLS protocols, exposing it to security risks. No privacy, cookie, or terms of service policies are present, and no contact or business information is provided, which severely limits trust and credibility. Overall, the site appears to be a placeholder or demo rather than an active business platform. From a security perspective, the absence of a valid SSL certificate and HTTPS support is a critical vulnerability. The lack of security headers and modern encryption protocols further weakens the site's security posture. No incident response or vulnerability disclosure mechanisms are evident. The DNS configuration is standard with no DNSSEC or CAA records, and no subdomain takeover vulnerabilities were detected. Given these findings, the website poses significant risks in terms of security and compliance. It lacks essential privacy and security controls, and its minimal content and lack of business information reduce its credibility. Strategic improvements are necessary to establish a secure, trustworthy, and compliant online presence.

-
-
-
50
-
85
20
languageselectionlogininstructionsdemooutdatedinsecure
Apache/2.4.63HTML 4.01 TransitionalCSS
2025-06-15T22:11:41.368Z
ticketgretchen.com favicon

Ticket Gretchen GmbH

ticketgretchen.com

0
OtherAustriasmallHIGH

Ticket Gretchen GmbH operates a mobile application platform focused on providing fast and direct ticket sales for cultural events across Austria, including theater, musicals, concerts, and operas. The company targets cultural enthusiasts, especially younger demographics such as U27 and U30, offering exclusive promotions and original tickets without price surcharges. The website reflects a professional and well-branded presence with comprehensive event listings and user testimonials, positioning the company as a leading cultural ticketing service in Austria. Technically, the website is built on WordPress with modern plugins and frameworks such as Bootstrap and WPBakery Page Builder. It integrates analytics and marketing tools including Google Analytics, Google Tag Manager, and Facebook Pixel, supporting moderate user tracking and marketing efforts. Hosting is provided via Amazon AWS DNS infrastructure. The site is mobile-optimized and SEO-friendly, delivering a good user experience. From a security perspective, the website lacks HTTPS encryption, which is a critical vulnerability exposing users to potential data interception. Security headers are minimal, and no advanced security policies or incident response information are published. While no immediate vulnerabilities or malware are detected, the absence of SSL/TLS and security best practices significantly lowers the security posture. Overall, the business is credible and trustworthy based on domain registration consistency, clear contact information, and positive user feedback. However, the lack of HTTPS and cookie consent mechanisms presents compliance and security risks. Strategic improvements in security infrastructure and privacy compliance are recommended to enhance user trust and regulatory adherence.

30
18
-
50
-
85
100
ticketingeventscultureappaustria+3 more
ApachePHPWordPressWPBakery Page Builder+9
2025-06-15T22:09:00.853Z
M

metacure.com

metacure.com

0
OtherN/asmallHIGH

The website metacure.com currently serves only a minimal HTML page that immediately redirects visitors to a /lander path, with no visible content, metadata, or business information. The domain is registered and resolves to IP addresses likely hosted on Amazon AWS, but lacks a valid SSL certificate and does not support HTTPS, exposing visitors to security risks. No privacy, cookie, or terms of service policies are present, and no contact or company information is available on the site. The technical infrastructure is minimal and lacks modern security and performance optimizations, resulting in a poor user experience and low trustworthiness. From a security perspective, the absence of HTTPS and security headers, combined with no DNSSEC or CAA records, indicates a weak security posture. The domain's DNS configuration is incomplete, with no valid MX records, which may affect email deliverability and trust. No analytics or tracking technologies are detected, suggesting minimal digital maturity. Overall, the site appears to be either under development, abandoned, or a placeholder with no active business presence. Given these findings, the overall risk level is high due to lack of encryption, absence of policies, and no verifiable business identity. Strategic recommendations include obtaining and configuring a valid SSL certificate, implementing security best practices such as HSTS and security headers, publishing privacy and cookie policies to comply with regulations, and providing clear contact and business information to improve credibility and trust.

15
15
5
50
-
70
100
2025-06-15T22:05:14.600Z