Skip to main content

Retail security reports

Browse 8,852 Guard analyses across this slice of the directory — NIS2 / GDPR readiness, SSL/TLS, DNS hygiene and email authentication.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

148819
Websites
130
Industries
113
Countries
52
Avg Score
Page 130 of 178|Showing 6451-6500 of 8852
kulturistika.com favicon

Kulturistika.com

kulturistika.com

65
RetailCzech RepublicmediumMEDIUM

Kulturistika.com operates as a Czech-based fitness e-commerce platform combined with a magazine offering content on bodybuilding, fitness, strength sports, crossfit, and healthy lifestyle. The site targets fitness enthusiasts and athletes primarily in the Czech and Slovak regions, providing a broad range of sports nutrition products, clothing, equipment, and informative articles. The business model integrates online retail with content publishing to engage and convert its audience. Technically, the website employs a modern tech stack including jQuery, Google Tag Manager, Google reCAPTCHA Enterprise, Facebook SDK, and OneSignal for push notifications. The site is mobile-optimized with good navigation and SEO practices, although some accessibility features could be improved. Performance is moderate, with multiple external scripts for analytics and advertising. From a security perspective, the site uses HTTPS and implements bot protection on login forms. However, no explicit security headers were detected, and there is no published privacy policy or terms of service in the provided content. The WHOIS data is missing, which raises concerns about domain registration legitimacy. Cookie consent is implemented with advanced user controls, indicating some GDPR compliance awareness. Overall, the website presents a professional and functional platform with moderate security and privacy posture. The lack of WHOIS transparency and absence of privacy policy are notable gaps. Strategic improvements in security headers, privacy documentation, and domain registration verification are recommended to enhance trust and compliance.

55
50
17
75
72
80
100
kulturistikafitnesscrossfitmmasportovnviva+6 more
jQueryGoogle Tag ManagerGoogle reCAPTCHA EnterpriseFacebook SDK+3
2025-07-22T01:51:49.679Z
milagro.cz favicon

Milagro

milagro.cz

65
RetailCzech RepublicmediumMEDIUM

Milagro is an authorized e-commerce retailer specializing in Pandora jewelry, offering a wide range of products such as rings, earrings, necklaces, and bracelets. The website targets consumers primarily in the Czech Republic, providing services including product personalization and free shipping for orders above a certain threshold. The platform demonstrates a consistent brand identity and positions itself as a trusted authorized reseller within the retail jewelry market. Technically, the website is built using modern web technologies including Next.js and React, ensuring a responsive and user-friendly experience across devices. The site employs HTTPS with strong security headers, indicating a good security posture. However, the absence of WHOIS data and lack of visible cookie consent mechanisms suggest areas for improvement in domain transparency and privacy compliance. From a security perspective, the site follows best practices with HTTPS enforcement and security headers, but could enhance user trust by adding explicit privacy and cookie policies and implementing a security.txt file for vulnerability disclosures. Overall, the site is professional and secure, but the missing WHOIS information and privacy compliance gaps slightly reduce its trustworthiness. Strategic recommendations include improving GDPR compliance with visible cookie consent, enhancing domain transparency, and establishing a formal vulnerability disclosure process to strengthen security culture and user trust.

75
25
10
75
75
80
100
e-commercejewelrypandoraauthorizedresellerczechrepublic
Next.jsReactJavaScriptCSS+1
2025-07-22T01:51:44.669Z
kalas.cz favicon

Kalas

kalas.cz

58
RetailCzech RepublicmediumMEDIUM

Kalas.cz is a Czech-based e-commerce website specializing in cycling apparel and sportswear for men, women, and children. The company boasts over 30 years of experience in manufacturing quality cycling clothing, positioning itself as a reputable brand within the Czech and Slovak markets. The website offers a broad range of products including jerseys, shorts, vests, and accessories, along with options for custom designs. The business model focuses on direct online sales supported by a professional and user-friendly website. Technically, the website employs modern web technologies such as JavaScript ES modules, Google Tag Manager, and SmartEmailing for marketing and analytics. The site is mobile-optimized with good SEO practices and a responsive design. However, some security best practices like explicit security headers and a published security policy are missing, which could be improved. From a security perspective, the site uses HTTPS and has cookie consent mechanisms in place, indicating a baseline compliance with privacy regulations such as GDPR. The absence of WHOIS data for the domain is a concern, as it limits the ability to verify domain legitimacy and ownership, slightly reducing trustworthiness. No critical vulnerabilities or exposed sensitive data were detected in the HTML content. Overall, Kalas.cz presents as a professional and trustworthy e-commerce platform with room for improvement in transparency around security policies and domain registration details. Strategic recommendations include enhancing security headers, publishing incident response contacts, and verifying domain registration information to bolster trust and compliance.

70
25
2
55
52
80
100
cyclingsportsweare-commerceczechrepubliccyclingapparel+1 more
JavaScript ES ModulesGoogle Tag ManagerSmartEmailing trackingSwiper.js carousel+1
2025-07-22T00:41:30.986Z
virginexperiencedays.co.uk favicon

Virgin Experience Days Ltd.

virginexperiencedays.co.uk

67
RetailUnited KingdomlargeMEDIUM

Virgin Experience Days Ltd. operates a UK-based e-commerce platform specializing in experience gifts, offering over 5,000 experiences ranging from supercars and spa days to dining and adventure activities. The company is positioned as a leading provider in the UK market with a broad target audience including families and gift buyers. The website demonstrates a mature digital infrastructure leveraging modern technologies such as Next.js, React, and marketing tools like Google Tag Manager and Klaviyo, indicating a well-developed digital presence. Security posture is generally good with HTTPS enforced and no exposed sensitive data, though the absence of security headers and explicit privacy and cookie policies suggests room for improvement in compliance and security best practices. Overall, the site is professional, trustworthy, and user-friendly, with a high-quality design and clear navigation. The WHOIS data could not be retrieved due to a query on the www subdomain, which is invalid for .uk domains, but the website content and branding strongly support legitimacy. Strategic recommendations include enhancing security headers, publishing comprehensive privacy and cookie policies, and providing clear contact and incident response information to strengthen trust and compliance.

55
68
17
75
77
65
100
experiencegiftsuke-commerceadventurespa+3 more
Next.jsReactGoogle Tag ManagerKlaviyo+1
2025-07-21T22:06:27.144Z
I

ITES RACING s.r.o.

ites.cz

59
RetailCzech RepublicsmallMEDIUM

ITES RACING s.r.o. operates the website ites.cz, a Czech e-commerce platform specializing in slot car racing products and accessories. The company offers a range of products including slot cars in various scales, sets, track parts, accessories, and spare parts. The website targets hobbyists and enthusiasts of slot car racing, positioning itself as a niche market leader in the Czech Republic. The business model is retail-focused, leveraging an online storefront powered by the Shoptet e-commerce platform. Technically, the website employs a modern tech stack including jQuery, Google Analytics (GA4), Google Tag Manager, Facebook SDK, and Smartsupp Chat for customer interaction. The site is well-structured with good SEO and mobile optimization, though accessibility features are basic. Performance is moderate, with CDN usage for static assets. The site uses HTTPS with good SSL configuration and standard security headers, though some headers like Content-Security-Policy are not confirmed. From a security perspective, the site demonstrates good practices such as HTTPS enforcement, CSRF protection on login forms, and cookie consent mechanisms aligned with GDPR. However, there is no published security policy or incident response contact information, and no vulnerability disclosure or security.txt file is found. The WHOIS data for the domain is unavailable, which reduces trustworthiness and raises questions about domain registration legitimacy. Overall, the website is professional, trustworthy, and safe for general audiences. The lack of WHOIS data and absence of explicit security policies are notable gaps. Strategic recommendations include verifying domain registration, publishing security and incident response policies, implementing a security.txt file, and enhancing accessibility and security headers. These steps will improve trust, compliance, and security posture.

40
40
17
70
52
75
100
e-commerceslotcarshobbyczechrepublicretail+1 more
jQuery 1.11.3Google Tag ManagerGoogle Analytics (GA4)Facebook SDK+2
2025-07-17T17:49:01.572Z
russellstover.com favicon

Russell Stover

russellstover.com

71
RetailUnited StateslargeMEDIUM

Russell Stover is a well-established chocolate and candy brand operating a professional e-commerce website offering a wide range of products including traditional chocolates, gift baskets, and sugar-free options. The website targets consumers seeking quality confectionery gifts and personalized chocolate boxes. The business operates under the retail and e-commerce sectors and is a subsidiary of Lindt & Sprüngli, a globally recognized chocolate manufacturer. The website demonstrates consistent branding and good content quality, supporting its market position as a trusted chocolate retailer. Technically, the website is built on Magento Commerce with modern JavaScript frameworks and integrates multiple analytics and marketing platforms such as Google Tag Manager, Adobe Experience Cloud, and New Relic for performance monitoring. The site is mobile-optimized and employs standard SEO and accessibility practices, although accessibility could be improved further. Performance is moderate with room for optimization. From a security perspective, the website enforces HTTPS, uses standard security headers, and employs CAPTCHA on forms to mitigate automated abuse. No critical vulnerabilities or exposed sensitive data were detected. However, the absence of a publicly available security policy and incident response contact information suggests areas for improvement in transparency and readiness. Privacy compliance is well addressed with clear privacy and cookie policies and consent mechanisms, aligning with GDPR requirements. Overall, the website presents a low-risk profile with strong business credibility and technical maturity. The main risk factor is the lack of WHOIS data, which may be due to privacy protection or query limitations but warrants monitoring. Strategic recommendations include publishing a security policy, enhancing incident response visibility, and improving accessibility compliance to further strengthen trust and security posture.

85
68
2
85
62
85
100
chocolatecandygiftbasketssugarfreee-commerce+2 more
Magento CommerceRequireJSjQueryGoogle Tag Manager+4

Partner Domains:

lindt.com
parent
cj.com
partner

+1 more partners

2025-07-17T17:47:20.533Z
backcountryaccess.com favicon

Backcountry Access

backcountryaccess.com

49
RetailUnited StatesmediumHIGH

Backcountry Access is a well-established company founded in 2001, specializing in backcountry safety products and consumer education. The website positions itself as a trusted name in the outdoor safety retail sector, targeting backcountry enthusiasts and consumers seeking reliable safety equipment. The business model is primarily e-commerce combined with educational content to support safe outdoor activities. The company maintains a consistent brand presence with professional design and structured data to enhance search visibility. Technically, the website uses modern web technologies including JavaScript, Typekit fonts, and integrates third-party services such as Klarna for payments and Yotpo for reviews. Hosting is managed via NS1 DNS services, and the site is mobile optimized with good SEO practices. Security posture is adequate with HTTPS enabled and domain transfer protections, but lacks DNSSEC and security headers, which are recommended for enhanced protection. Privacy compliance is weak due to absence of visible privacy and cookie policies, and no GDPR compliance indicators. Contact information and incident response details are not explicitly provided, which may impact user trust and compliance. Overall, the site is professional and trustworthy but would benefit from improved privacy and security disclosures.

15
73
17
67
42
-
100
backcountrysafetyoutdoorretailecommerce
JavaScriptTypekit fontsTermly cookie consentKlarna payment SDK+1
2025-07-17T17:46:55.269Z
delaro.it favicon

De.La.Ro.

delaro.it

61
RetailItalysmallMEDIUM

De.La.Ro. is an Italian company specializing in the manufacturing and retail of tactical and shooting sports eyewear, including glasses and lenses. Established in 2018, the company positions itself as a niche player offering 100% made in Italy products, targeting shooting sports enthusiasts and tactical eyewear customers. Their business model is primarily e-commerce based, supported by a professional website with multilingual support and a clear product catalog. The company maintains a consistent brand image and leverages partnerships such as ISSF to enhance credibility. Technically, the website is built on WordPress with WooCommerce, utilizing modern web technologies including Bootstrap, jQuery, and integrations with Iubenda for privacy compliance and Microsoft Clarity for analytics. The site is mobile optimized and SEO friendly, with structured data and social media integration. Performance is moderate with good mobile responsiveness and basic accessibility features. From a security perspective, the site enforces HTTPS with strong SSL configuration and includes security headers. Cookie consent is implemented with explicit withdrawal options, indicating good GDPR compliance. No critical vulnerabilities or exposed sensitive data were detected. However, the site lacks a dedicated security policy or vulnerability disclosure page, which could enhance trust and incident response readiness. Overall, the website demonstrates a high level of professionalism, trustworthiness, and compliance suitable for a small specialized retail business. Strategic improvements in security transparency and accessibility could further strengthen its posture.

15
73
2
75
75
65
100
tacticaleyewearshootingglassesitalianmanufacturere-commercesportsoptics
WordPressWooCommercejQueryIubenda cookie consent+3

Partner Domains:

dealers.delaroworld.com
partner
2025-07-17T17:34:39.542Z
R

Razítko.cz | Pohodlná online objednávka razítek Trodat

razitko.cz

61
RetailCzech RepublicmediumMEDIUM

Razítko.cz is an e-commerce platform specializing in the sale of original Trodat stamps and related accessories. The website offers a comprehensive online ordering system with customization options including text input, logo uploads, and color selection. It serves primarily businesses and individuals in the Czech Republic and supports multiple languages including Czech, Slovak, and English. The platform integrates multiple local producers and branches, providing customers with localized e-shop options and contact points. Technically, the website is built on WordPress 5.4.16, utilizing Bootstrap for responsive design, jQuery for interactivity, and several third-party libraries such as Select2 and Google Maps API. Analytics and user behavior tracking are implemented via Smartlook and Google Tag Manager. The site employs HTTPS and a cookie consent mechanism, indicating a baseline level of privacy compliance. From a security perspective, the site has good SSL configuration but lacks advanced security headers and uses an outdated jQuery version, which could expose it to known vulnerabilities. There is no visible security policy, incident response information, or vulnerability disclosure mechanism, which are areas for improvement. The absence of WHOIS data reduces domain transparency and trustworthiness, although the business presence and content suggest legitimate operations. Overall, Razítko.cz presents a professional and functional e-commerce site with good user experience and moderate technical maturity. Strategic improvements in security practices, privacy documentation, and domain transparency would enhance its risk posture and trustworthiness.

30
25
17
80
72
85
100
e-commercecustomstampstrodatretailczechrepublic+2 more
WordPress 5.4.16jQuery 1.8.0BootstrapSelect2+3

Partner Domains:

typos.razitko.cz
partner
planoprint.razitko.cz
partner

+3 more partners

2025-07-17T14:41:47.413Z
kancelar-sabe.cz favicon

Sabe, spol. s r.o.

kancelar-sabe.cz

45
RetailCzech RepublicmediumHIGH

Sabe, spol. s r.o. operates as a retail business specializing in office supplies, calendars, diaries, and office furniture primarily serving customers in the Czech Republic. The company maintains multiple physical stores, with the website indicating at least one active location in Blansko. The website is currently in maintenance mode, preparing a new e-shop, but provides a catalog link and contact information for customers. The business targets both individual and corporate customers seeking office-related products with options for personal pickup. Technically, the website uses standard HTML5 and CSS3 with custom fonts and basic responsive design. There is no detected CMS or advanced frameworks. The site lacks active analytics or tracking scripts, and no social media presence is linked. The website's SEO and accessibility features are basic, and performance is moderate. Security features such as HTTPS and security headers are not verifiable from the provided data, and no privacy or cookie policies are published. From a security perspective, the absence of WHOIS data and domain registration details is a concern, reducing trust in domain legitimacy. The site does not expose any forms or user input fields, minimizing attack surface, but also lacks visible security best practices such as security headers or vulnerability disclosure policies. The lack of privacy and cookie policies indicates non-compliance with GDPR and related regulations, which could pose legal risks. Overall, the website presents a legitimate retail business with moderate digital maturity but requires improvements in security posture, privacy compliance, and technical modernization to enhance trust and user experience. The domain registration opacity is a notable risk factor that should be addressed to improve credibility.

55
10
2
80
72
85
-
officesuppliesretailczechrepublicmaintenancecatalog
HTML5CSS3Custom fonts (neuzeit-grotesk)Google Maps links
2025-07-17T14:41:37.232Z
hartzellswag.com favicon

Hartzell Swag

hartzellswag.com

44
RetailN/asmallHIGH

Hartzell Swag is a small retail e-commerce business specializing in corporate branded merchandise such as apparel and accessories. The website offers a variety of products including t-shirts, hoodies, polos, vests, jackets, caps, and blankets, targeting corporate clients and employees. The business appears to be newly established in 2024 and is associated with KSM Promotions as the parent company. The website is professionally designed with consistent branding and a clear product catalog, but lacks comprehensive privacy and cookie policies, as well as explicit contact information. Technically, the website uses a basic technology stack including jQuery and a slideshow plugin, hosted by GoDaddy. The site is moderately optimized for performance and mobile use but lacks advanced SEO and accessibility features. Security posture is average with HTTPS enabled but missing important security headers and DNSSEC. No advanced security or compliance frameworks are evident. From a security perspective, the site shows basic protections but lacks privacy compliance elements such as GDPR indicators, cookie consent, and incident response contacts. No vulnerabilities or malware were detected, but improvements are recommended in security headers and privacy disclosures. Overall, the site is functional and trustworthy for its business purpose but requires enhancements in privacy, security, and contact transparency to improve compliance and user trust. Strategically, the business should focus on implementing privacy and cookie policies, enhancing security headers, and providing clear contact information to strengthen compliance and customer confidence. Technical modernization and SEO improvements would also benefit the site's visibility and user experience.

15
35
2
85
72
75
-
e-commercecorporatemerchandiseapparelbrandedclothingretail
jQuery 1.10.2Slippry slideshow pluginGoogle Fonts (Source Sans Pro)Google Translate widget
2025-07-17T14:40:21.359Z