Skip to main content

Retail security reports

Browse 8,852 Guard analyses across this slice of the directory — NIS2 / GDPR readiness, SSL/TLS, DNS hygiene and email authentication.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

148819
Websites
130
Industries
113
Countries
52
Avg Score
Page 71 of 178|Showing 3501-3550 of 8852
shopbeauty.lv favicon

SIA "Skaistumpasaule"

shopbeauty.lv

53
RetailLatviasmallMEDIUM

Shopbeauty.lv is an established Latvian online cosmetics retailer operating since 2009 under the company SIA "Skaistumpasaule". The website offers a wide range of beauty and cosmetic products from numerous brands, targeting Latvian consumers interested in personal care and beauty products. The business model is focused on e-commerce retail with additional customer engagement through promotions, brand filtering, and social media presence. The company provides clear contact information and physical pickup options, reinforcing its local market presence. Technically, the website uses a custom CMS platform with common web technologies including jQuery, Google Analytics, Google Tag Manager, Facebook Pixel, and Tawk.to for live chat support. The site is served over HTTPS, ensuring secure communication. However, the site lacks advanced security headers and a cookie consent mechanism, indicating room for improvement in privacy compliance and security hardening. The website performance and mobile optimization are basic but functional. From a security perspective, the site demonstrates a moderate security posture with HTTPS and no visible vulnerabilities or exposed sensitive data. The absence of a published security policy or incident response contacts is a gap in transparency and preparedness. The use of third-party tracking and marketing tools is standard but requires ongoing monitoring for privacy compliance. No WAF or blocking mechanisms were detected, and the site content is fully accessible. Overall, shopbeauty.lv is a legitimate and moderately mature e-commerce site with good business credibility and a consistent brand presence. Strategic improvements in privacy compliance, security headers, and incident response transparency would enhance trust and regulatory adherence. The site is safe for general audiences with no adult or questionable content detected.

20
10
2
85
60
75
100
cosmeticse-commercebeautyretaillatvia
jQueryGoogle AnalyticsGoogle Tag ManagerFacebook Pixel+2

Partner Domains:

e-beauty.lv
partner
salidzini.lv
partner

+1 more partners

2025-09-29T00:33:59.119Z
potterybarnkids.co.uk favicon

Williams-Sonoma Inc.

potterybarnkids.co.uk

56
RetailUnited KingdomlargeMEDIUM

Pottery Barn Kids UK is a well-established e-commerce retailer specializing in children's and baby furniture, bedding, toys, and home décor. The website is professionally designed and targets parents and caregivers in the UK market. It operates under the parent company Williams-Sonoma Inc., a reputable large enterprise in retail. The site offers a broad catalog with clear navigation and a consistent brand presence, supported by active social media channels. Technically, the website is built on the SuiteCommerce Advanced platform, leveraging modern JavaScript frameworks and integrations such as Google Tag Manager and Searchspring for analytics and search functionality. The site is mobile-optimized with good SEO practices and moderate performance. However, some accessibility features could be improved. From a security perspective, the site enforces HTTPS and avoids exposing sensitive data in its HTML content. While no explicit security headers were detected in the provided data, the overall security posture is solid with no visible vulnerabilities. Privacy compliance is well addressed with clear privacy and cookie policies, though a consent mechanism for cookies is not explicitly implemented. Contact information is limited to a web form, with no direct emails or phone numbers published. The WHOIS data could not be retrieved due to a domain naming rules error, likely caused by querying the subdomain rather than the base domain. Despite this, the website's association with Williams-Sonoma Inc. and its professional presentation support its legitimacy. Strategic recommendations include enhancing security headers, publishing incident response information, and implementing explicit cookie consent to improve compliance and trust.

25
68
2
70
72
30
100
e-commercechildrenfurnituretoysretail+2 more
JavaScriptXMLHttpRequestGoogle Tag ManagerSearchspring+1

Partner Domains:

ehac.fa.us6.oraclecloud.com
partner
2025-09-07T14:11:41.809Z
erinstead.com favicon

Erin Stead

erinstead.com

58
RetailUnited StatessmallMEDIUM

Erin Stead's website serves as a professional portfolio and e-commerce platform showcasing the artist's works, primarily children's books and related artwork. The site is hosted on Squarespace, leveraging its platform for content management and online sales. The design is clean, visually appealing, and optimized for mobile devices, providing a good user experience for visitors interested in the artist's offerings. However, the site lacks critical business and privacy information such as contact details, privacy policies, and terms of service, which are important for trust and compliance. Technically, the website uses modern web technologies and benefits from Squarespace's secure hosting environment, including HTTPS with HSTS enabled, ensuring encrypted communication and protection against certain attacks. The absence of additional security headers and explicit privacy compliance measures indicates room for improvement in security posture and regulatory adherence. From a security perspective, the site shows no signs of vulnerabilities or malicious content, but the missing WHOIS registration data raises concerns about domain legitimacy and transparency. This discrepancy suggests either privacy protection or an unregistered domain, which could impact trustworthiness. The lack of contact information and security policies further limits the site's credibility from a security and compliance standpoint. Overall, while the website effectively presents the artist's work and facilitates e-commerce, it should address privacy, contact, and security transparency to enhance trust and compliance. Strategic improvements in these areas will strengthen the site's security posture and business credibility, benefiting both the owner and visitors.

35
35
17
65
62
80
100
portfolioartistauthore-commercechildrensbooks+1 more
SquarespaceJavaScriptCSSHTML5
2025-09-07T11:54:09.152Z
W

Williams-Sonoma, Inc.

williams-sonoma.com

56
RetailN/alargeMEDIUM

Williams-Sonoma, Inc. operates a portfolio of well-known retail brands specializing in home furnishings and kitchenware. The website content indicates a strong retail and e-commerce focus with multiple subsidiary brands. However, the current page content is restricted for visitors from the European Union due to regulatory challenges, limiting accessibility and user engagement in that region. The company provides contact phone numbers for customer support across its brands but lacks visible privacy or cookie policies on this page. Technically, the website uses Bootstrap 4.1.1 for styling and basic JavaScript for functionality. The page is minimal and lacks advanced SEO, accessibility, or performance optimizations. No CMS or hosting provider information is discernible. Security headers and SSL configuration details are not available from the provided data, and no forms or data collection mechanisms are present on this page. From a security perspective, the absence of WHOIS registration data raises concerns about domain transparency, although the branding and contact information suggest legitimacy. The website does not display privacy compliance elements such as GDPR notices or cookie consent banners, which is critical given the region-based access restrictions. Overall, the security posture is limited by the lack of visible security best practices and policies. The overall risk assessment indicates moderate trustworthiness but highlights critical issues related to content blocking, missing WHOIS data, and lack of privacy compliance. Strategic recommendations include improving transparency, implementing comprehensive privacy and cookie policies, enhancing security headers, and ensuring full HTTPS coverage to strengthen user trust and regulatory compliance.

35
50
2
70
72
90
100
retaile-commercehomefurnishingsregionrestrictionprivacycompliance
Bootstrap 4.1.1JavaScript

Partner Domains:

www.westelm.co.uk
partner
www.potterybarnkids.co.uk
partner
2025-09-07T11:53:44.096Z
jesus.shoes favicon

mschf

jesus.shoes

54
RetailN/asmallMEDIUM

The website jesus.shoes is a niche retail e-commerce platform focused on selling a limited edition sneaker product called 'Jesus Shoes' by the brand MSCHF. The site markets the product as air bubble shoes filled with holy water, targeting sneaker enthusiasts and collectors interested in unique and artistic footwear. The business model revolves around limited product drops and building a subscriber base via phone number text lists for future releases. The site content is professionally designed with consistent branding and good user experience, optimized for mobile devices and leveraging modern web technologies such as Nuxt.js and Bulma CSS framework. Analytics tools like Google Analytics and Facebook Pixel are integrated for marketing and user tracking purposes. However, the site lacks publicly available privacy, cookie, and terms of service policies, as well as explicit contact information, which impacts privacy compliance and business credibility scores. Security posture is moderate with HTTPS enforced but missing security headers and vulnerability disclosure mechanisms. The domain WHOIS data is privacy protected, which is common for this type of small retail artistic project, and no suspicious patterns were detected. Overall, the site is functional and visually appealing but would benefit from improved compliance and security transparency.

15
35
2
60
75
75
100
noveltysneakersretailmschflimitededition+1 more
JavaScriptBulma CSSGoogle AnalyticsModernizr+2
2025-09-07T04:36:12.168Z
nhnwetoo.com favicon

NHN WETOO

nhnwetoo.com

53
RetailN/amediumMEDIUM

NHN WETOO is a commerce-focused company specializing in retail brands such as 가방팝, 오보즈코리아, 인케이스, 라이프썸, 스마일리지, and 에코브릿지. The website presents minimal content primarily in Korean, targeting a general retail audience. The business appears to be medium-sized and was founded in 2016, consistent with the domain registration data. The company operates in the retail sector with a focus on e-commerce and brand management. Technically, the website uses modern JavaScript modules and integrates external resources such as Google Fonts and Kakao Maps SDK, indicating a moderate level of digital maturity. However, the site lacks comprehensive SEO, accessibility features, and visible CMS or hosting details. Performance is moderate with basic mobile optimization. From a security perspective, the site uses HTTPS but lacks DNSSEC and security headers, which lowers its security posture. No privacy or cookie policies are present, and no contact or incident response information is provided, indicating gaps in compliance and security readiness. The WHOIS data shows a consistent and legitimate domain registration with no privacy protection, supporting the business credibility. Overall, the website is functional but basic, with room for improvement in security, privacy compliance, and content richness. Strategic recommendations include implementing security headers, publishing privacy and cookie policies, enhancing mobile and accessibility features, and providing clear contact and incident response channels to improve trust and compliance.

30
35
2
55
62
80
100
nhnwetoocommerceretailkoreanbrands
JavaScriptKakao Maps SDKGoogle Fonts
2025-09-06T13:30:44.756Z
S

Sfera

sfera.com

43
RetailSpainlargeHIGH

Sfera is a retail fashion brand operating an online platform primarily targeting Spanish-speaking countries with some English-speaking markets. The website serves as a login and country selection portal for customers. The business model focuses on e-commerce sales of apparel and accessories. The website's market position appears established but lacks visible trust signals or detailed business information on the landing page. Technically, the site uses common web technologies such as jQuery, Google Tag Manager, and Ensighten for tracking and tag management, with Akamai as a CDN provider. The site shows basic mobile optimization and moderate performance but lacks advanced SEO optimization due to restrictive meta robots tags. No CMS or specific frameworks were detected. From a security perspective, the site lacks visible security headers and privacy or cookie policies, which are critical for GDPR compliance. The WHOIS data is missing, raising concerns about domain legitimacy. No WAF or blocking mechanisms were detected, and the site content is accessible. The security posture is moderate but requires improvements in SSL configuration, header implementation, and privacy compliance. Overall, the site scores moderately low on AI scoring due to missing WHOIS data, lack of privacy policies, and poor SEO. Strategic recommendations include improving transparency with privacy and cookie policies, enhancing security headers, and verifying domain registration details to build trust.

-
35
2
70
-
85
100
fashionretaile-commerceloginmultilingual
jQueryGoogle Tag ManagerEnsightenAkamai
2025-09-06T01:55:57.436Z
E

El Corte Inglés S.A.

hipercor.es

50
RetailSpainenterpriseMEDIUM

El Corte Inglés S.A., operating the Hipercor brand, is a leading Spanish retail and e-commerce enterprise specializing in supermarkets, fashion, electronics, and home goods. The website hipercor.es serves as a comprehensive online platform offering a wide range of products to general consumers in Spain, supported by a strong brand presence and multiple subsidiaries. The company has a long-standing history since 1940 and maintains a significant market position in the retail sector. Technically, the website employs modern web technologies including Vue.js, Google Tag Manager, Adobe DTM, and OneTrust for cookie compliance, hosted on Akamai CDN ensuring fast and reliable performance. The site is well optimized for mobile and accessibility standards, with good SEO practices and structured data enhancing search visibility. Security posture is strong with HTTPS enforcement, security headers, and no visible vulnerabilities, although explicit security policies and incident response information are not publicly detailed. Privacy compliance is robust, featuring comprehensive privacy and cookie policies aligned with GDPR requirements. Overall, the website demonstrates high professionalism, trustworthiness, and digital maturity, supporting the enterprise's business objectives effectively.

-
40
17
70
-
85
100
retaile-commercesupermarketfashionelectronics+4 more
Vue.jsGoogle Tag ManagerGoogle AnalyticsAdobe DTM+3

Partner Domains:

www.elcorteingles.es
parent
www.supercor.es
subsidiary

+2 more partners

2025-09-06T01:55:47.418Z
E

El Corte Inglés, S.A.

primeriti.es

46
RetailSpainenterpriseHIGH

Primeriti is a flash sales e-commerce platform operated by El Corte Inglés, S.A., a leading retail company in Spain. The website offers discounted branded fashion, sportswear, accessories, and home products targeting consumers looking for exclusive deals. The platform leverages the strong brand reputation of El Corte Inglés and integrates secure user authentication via the parent company's OAuth system. The site is well-branded, professionally designed, and provides comprehensive privacy and cookie policies in Spanish, demonstrating compliance with GDPR requirements. Contact information and a designated Data Protection Officer are clearly provided, enhancing trust and transparency. Technically, the website employs modern JavaScript libraries, tag management tools like Google Tag Manager and Adobe DTM, and a content delivery network associated with the parent company. The site is mobile-optimized, accessible, and SEO-friendly, with moderate performance. Security posture is strong with HTTPS enforced, encrypted data transmission, and secure login mechanisms. However, explicit security headers and a public incident response policy are not evident, and a cookie consent mechanism is missing, which are areas for improvement. Overall, the website presents a high level of professionalism, security, and compliance suitable for an enterprise retail business. The domain registration data aligns with the business entity, confirming legitimacy. Strategic recommendations include implementing explicit cookie consent, publishing a security policy, and enhancing security headers to further strengthen the security posture and compliance.

-
25
17
70
-
70
100
e-commercefashionflashsalesretailelcorteingls+4 more
JavaScriptAdobe DTM (Adobe Dynamic Tag Management)Google Tag ManagerInsider SDK+2

Partner Domains:

cuenta.elcorteingles.es
partner
cdn.grupoelcorteingles.es
partner
2025-09-06T01:55:32.175Z
celerant.com favicon

Celerant Technology

celerant.com

67
RetailUnited StatesmediumMEDIUM

Celerant Technology is a well-established retail software provider founded in 1999, offering a comprehensive suite of cloud-based POS, eCommerce, mobile apps, inventory management, and digital marketing solutions. The company targets retailers ranging from startups to enterprises, positioning itself as a top retail software provider with numerous industry awards and a strong market presence. Their business model focuses on SaaS retail management solutions with a strong emphasis on customer support and professional services. Technically, the website is built on WordPress with modern optimization and tracking technologies such as NitroPack, Google Tag Manager, HubSpot forms, and reCAPTCHA v3. The site is mobile-optimized, fast-loading, and SEO-friendly, reflecting a mature digital infrastructure. Security best practices are observed with HTTPS enforcement, security headers, and secure form handling, although explicit security and privacy policy documentation is lacking. The security posture is strong but could be improved by adding dedicated security policies and vulnerability disclosure mechanisms. The absence of WHOIS registration data raises some concerns about domain legitimacy, although the website content and business information appear professional and trustworthy. Overall, the site demonstrates a high level of professionalism and technical maturity with minor gaps in privacy compliance and domain transparency. Strategic recommendations include publishing comprehensive privacy and cookie policies, establishing a security.txt file for vulnerability reporting, verifying domain registration details, and maintaining regular security audits of third-party integrations.

30
95
17
85
42
85
100
retailposecommercesoftwaretechnology+3 more
WordPress CMSNitroPack optimizationGoogle Tag ManagerHubSpot forms+5

Partner Domains:

clients.celerant.com
subsidiary
2025-09-05T19:00:59.634Z
unishop-potsdam.de favicon

UNICUM Merchandising GmbH

unishop-potsdam.de

52
RetailGermanysmallMEDIUM

Unishop Potsdam is an official e-commerce platform operated by UNICUM Merchandising GmbH, serving as the official merchandise shop for Universität Potsdam. The site offers a range of university-branded products including hoodies, T-shirts, accessories, and stationery, targeting students and the university community. The business model focuses on retailing exclusive university designs online, supported by customer service via hotline and contact forms. The website maintains a consistent brand presence and leverages social media channels to engage its audience. Technically, the website is built on the Shopware 6 platform, utilizing modern web technologies such as Font Awesome for icons, Google reCAPTCHA v3 for bot protection, and Swiper.js for UI elements. Hosting and DNS services are provided through Cloudflare, ensuring reliable performance and security. The site demonstrates good mobile optimization, accessibility features, and SEO practices, contributing to a positive user experience. From a security perspective, the website enforces HTTPS with strong SSL configuration and implements multiple security headers. The presence of reCAPTCHA and secure login forms enhances protection against automated attacks. Privacy compliance is addressed with a clear cookie consent mechanism and a GDPR-aligned privacy policy. However, the site lacks a dedicated security policy or incident response contact information, which could be improved to strengthen trust. Overall, Unishop Potsdam presents a secure, professional, and user-friendly online retail platform with strong ties to the university community. The domain registration and website content are consistent and legitimate, supporting a high trustworthiness rating. Strategic recommendations include publishing a security policy, incident response details, and a vulnerability disclosure to further enhance security posture and transparency.

60
43
17
60
72
60
20
universitymerchandisee-commerceretaileducation+2 more
ShopwareFont AwesomeGoogle reCAPTCHA v3Swiper.js

Partner Domains:

unicum-merchandising.com
partner
2025-09-05T09:44:11.926Z
valuedynamx.com favicon

Valuedynamx Limited

valuedynamx.com

63
RetailUnited KingdommediumMEDIUM

Valuedynamx Limited operates a sophisticated global commerce platform specializing in personalized customer rewards and incentives. The company leverages data analytics and real-time insights to enhance loyalty and engagement for brands, merchants, and customers across retail, travel, and financial services sectors. Positioned as a leading provider with a broad network of over 50,000 partners and 400 million accessible consumers, Valuedynamx offers scalable reward programs and flexible redemption solutions. The website reflects a mature digital presence with professional design, clear navigation, and comprehensive content supporting their business objectives. Technically, the site is built on Drupal 11, integrating modern analytics and consent management tools such as Google Analytics, Google Tag Manager, LinkedIn Insight Tag, and OneTrust. The hosting appears to be managed via GoDaddy with standard domain protections in place. Mobile optimization and accessibility are well addressed, contributing to a positive user experience. From a security perspective, the website enforces HTTPS and employs cookie consent mechanisms, though explicit security headers could be enhanced. No vulnerabilities or exposed sensitive data were detected. The WHOIS data is transparent and consistent with the company's UK registration, supporting legitimacy. However, the absence of a published security policy or incident response contact is noted. Overall, Valuedynamx demonstrates a strong business and technical foundation with good privacy compliance and security posture. Strategic recommendations include enabling DNSSEC, adding explicit security headers, publishing a security policy, and considering a vulnerability disclosure program to further enhance trust and resilience.

35
88
2
40
77
75
100
customerengagementrewardsloyaltycommerceplatformpersonalizedincentives+4 more
Drupal 11Google AnalyticsGoogle Tag ManagerOneTrust Consent Management+1

Partner Domains:

collinsongrouptalent.com
partner
collinsongroup.com
partner
2025-09-05T02:48:00.669Z

沈阳好花科技有限公司

roselove.com

56
RetailChinamediumMEDIUM

Roselove.com is a Chinese e-commerce platform specializing in high-end fresh flower online ordering and delivery services. The company, identified as Shenyang Haohua Technology Co., Ltd., offers a variety of floral products including romantic, friendship, business, wedding flowers, and preserved flowers. The website targets general consumers in China seeking timely and customized floral gifts, with a market position as a mid-tier specialized flower retailer. The platform supports 24-hour ordering with delivery as fast as within 1-3 hours, emphasizing freshness and romantic symbolism. Technically, the website employs standard web technologies including jQuery and Slick Slider for UI components, with custom JavaScript and CSS. The site is moderately optimized for performance and mobile use, though accessibility features are basic. SEO practices are good with proper meta tags and structured navigation. However, no CMS or hosting provider details are evident, and no advanced frameworks are detected. From a security perspective, the site uses HTTPS but lacks important security headers such as Content-Security-Policy and HSTS. Forms do not show anti-CSRF tokens, and no incident response or security policies are published. No analytics or tracking scripts are detected, indicating minimal user tracking. The absence of WHOIS data for the domain is a concern, though the presence of ICP and public security备案 numbers supports legitimacy within China. Overall, the website is functional and professional with good content quality and business credibility. Security posture is moderate but could be improved with standard best practices. Privacy compliance is basic, lacking cookie consent mechanisms. The domain registration opacity reduces trust slightly but does not negate the apparent legitimate business operations. Strategic improvements in security and privacy transparency are recommended.

30
50
2
60
67
70
100
flowershope-commercefreshflowersonlineorderingchinesemarket+1 more
jQuerySlick SliderCustom JavaScriptCSS3
2025-09-04T18:31:19.902Z
hg-daigou.com favicon

货源通

hg-daigou.com

35
RetailChinasmallHIGH

货源通 is a Chinese wholesale and retail product information platform established in 2010, providing a user-driven marketplace for various product categories including shoes, bags, clothing, watches, and cosmetics. The platform operates as a non-commercial information publishing site where users must complete real-name authentication before posting. It targets a broad audience of suppliers and buyers seeking product sourcing information. The website is structured with multiple subdomains dedicated to specific product categories, indicating a comprehensive product offering. The business model focuses on free information dissemination rather than direct sales, positioning itself as a reference platform in the retail supply chain sector. Technically, the website uses a custom CMS with standard web technologies including JavaScript, jQuery 1.11, CSS, and HTML. It employs Baidu Analytics for user tracking and is hosted with GoDaddy as the registrar, using Alibaba DNS servers. The site is moderately optimized for performance and mobile use but lacks advanced accessibility and SEO features. Security-wise, HTTPS is enabled, but no advanced security headers or DNSSEC are implemented. The use of an outdated jQuery version presents potential vulnerabilities. Privacy compliance is limited, with no cookie consent mechanism and only a basic privacy policy present. Overall, the security posture is moderate with room for improvement in security headers, library updates, and privacy compliance. The domain registration is consistent and trustworthy, with no privacy protection masking registrant details. The site is fully accessible without WAF or blocking mechanisms. Strategic improvements in security and privacy policies would enhance trust and compliance. The platform serves as a useful resource for wholesale sourcing but should address technical and compliance gaps to strengthen its market position and user trust.

30
50
2
60
-
75
-
JavaScriptjQuery 1.11CSSHTML+1

Partner Domains:

xie.hg-daigou.com
subsidiary
bao.hg-daigou.com
subsidiary

+1 more partners

2025-09-04T16:38:15.666Z
gearttree.tw favicon

大樹藥局

gearttree.tw

40
RetailTaiwanlargeHIGH

大樹藥局 is a prominent Taiwanese retail pharmacy chain specializing in male health and prescription medications, including products like Viagra, Cialis, and Priligy. The website serves as an e-commerce platform offering a wide range of health products with a focus on male enhancement and sexual health. It positions itself as the largest prescription and maternity pharmacy chain in Taiwan with over 300 franchise locations, emphasizing professional pharmacist consultation and community health promotion. Technically, the site is built on WordPress with WooCommerce, utilizing popular plugins such as Yoast SEO and WPBakery Page Builder, hosted by Cloudmax Inc. The site is moderately optimized for performance and mobile devices, with good SEO practices but lacks some accessibility features. Security posture is adequate with HTTPS enabled but lacks explicit security headers and visible privacy compliance mechanisms. No privacy or cookie policies were found, which is a compliance gap. Overall, the domain registration is consistent and legitimate, aligning with the business claims. The site contains adult-oriented pharmaceutical products, targeting adults only. Strategic improvements in privacy compliance and security headers are recommended to enhance trust and regulatory adherence.

15
35
2
60
72
60
-
pharmacymalehealthe-commercetaiwanprescriptiondrugs+3 more
WordPressWooCommerceYoast SEOWPBakery Page Builder+3

Partner Domains:

geaerttre.com.tw
partner
www.ukkku.com.tw
partner
2025-08-04T14:48:16.330Z