Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

149091
Websites
130
Industries
113
Countries
52
Avg Score
Page 109 of 120|Showing 5401-5450 of 5967
interactvty.com favicon

Interactvty

interactvty.com

66
TechnologySpainsmallMEDIUM

Interactvty is a Spanish technology company specializing in second-generation over-the-top (OTT) media technology and TV-commerce solutions. Positioned as a pioneer in interactive media and monetization platforms, the company targets broadcasters, sports organizations, public administration, brands, education, influencers, media, and events sectors. Their business model revolves around providing OTT technology with integrated commerce capabilities, leveraging interactive content to enhance user engagement and revenue streams. The website reflects a professional digital presence with clear navigation and multilingual metadata, indicating a focus on Spanish-speaking markets with international outreach. Technically, the website is built on WordPress using Elementor and Yoast SEO, incorporating modern web technologies such as Bootstrap and jQuery. Security measures include HTTPS enforcement and Google reCAPTCHA integration to protect forms from abuse. Cookie consent mechanisms are implemented, supporting GDPR compliance. However, the absence of explicit security policies and incident response information suggests room for improvement in transparency and preparedness. From a security perspective, the site demonstrates good practices with SSL and form protection but lacks advanced HTTP security headers and public vulnerability disclosure information. The WHOIS data is notably missing or unavailable, which raises concerns about domain registration legitimacy despite the professional appearance and EU funding acknowledgments. This discrepancy warrants monitoring and further verification to ensure trustworthiness. Overall, Interactvty presents as a credible small technology company with a specialized niche in OTT and interactive TV-commerce. Strategic recommendations include enhancing security transparency, publishing incident response and vulnerability disclosure policies, and clarifying domain registration details to strengthen trust and compliance posture.

30
68
17
85
77
75
100
otttv-commerceinteractivemediatechnologymonetization+1 more
WordPressElementorYoast SEOjQuery+2
2025-06-23T13:35:24.729Z
oei.int favicon

OEI - Organización de Estados Iberoamericanos

oei.int

60
EducationN/alargeMEDIUM

The Organización de Estados Iberoamericanos (OEI) is a large, well-established international non-profit organization focused on education, culture, science, and multilateral relations within Ibero-American countries. The website serves as a comprehensive portal offering information on their programs, projects, training, and cultural initiatives, targeting governments, educational institutions, and citizens in the region. The organization maintains a strong digital presence with multilingual support and accessibility features. Technically, the website is built on WordPress with modern SEO and accessibility best practices, including the use of Yoast SEO, WPML for multilingual content, and Google Tag Manager for analytics. Hosting is provided by Interhost, and the site uses HTTPS with a good SSL configuration. Performance is moderate with good mobile optimization. From a security perspective, the site enforces HTTPS, uses Google reCAPTCHA for bot protection, and implements cookie consent mechanisms aligned with GDPR. However, explicit security headers and a published security policy or incident response contacts are absent, representing areas for improvement. Overall, the website is professional, trustworthy, and compliant with privacy regulations, with no signs of blocking or WAF interference. Strategic recommendations include enhancing security headers, publishing a security policy, and adding vulnerability disclosure information to further strengthen trust and security posture.

30
50
17
70
52
75
100
educationinternationalorganizationibero-americanon-profitmultilingual+2 more
WordPressYoast SEOGoogle Tag ManagerGoogle reCAPTCHA+1
2025-06-23T13:27:26.429Z
pamesagrupoempresarial.com favicon

Pamesa Grupo Empresarial

pamesagrupoempresarial.com

57
ManufacturingSpainenterpriseMEDIUM

Pamesa Grupo Empresarial is a leading ceramic manufacturing group based in Spain, recognized as the top ceramic producer in Europe and fifth worldwide. The company operates through multiple subsidiary brands including Pamesa, TAU, Prissmacer, Ecoceramic, Geotiles, Navarti, and Ascale, focusing on design, manufacturing, distribution, and sales of ceramic products. The website content reflects a mature enterprise with a strong market position and commitment to innovation, environmental responsibility, and social engagement. Technically, the site is built on WordPress with a modern theme and uses standard technologies such as jQuery, Google Analytics, and Google reCAPTCHA for security and analytics. Privacy and cookie policies are present and indicate GDPR compliance, although direct contact emails and phone numbers are not explicitly listed, relying instead on contact forms. Security posture is good with HTTPS and bot protection, but lacks advanced security headers and explicit incident response information. A critical concern is the absence of WHOIS registration data, which raises questions about domain legitimacy despite the professional appearance and detailed business information on the site.

15
50
2
80
67
70
100
manufacturingceramicsindustrialenterprisespain+2 more
jQueryGoogle AnalyticsGoogle reCAPTCHAThemify WordPress Theme

Partner Domains:

www.pamesa.com
subsidiary
www.ecoceramic.es
subsidiary

+3 more partners

2025-06-23T12:15:57.001Z
youreka-virtualtours.be favicon

Youreka!

youreka-virtualtours.be

65
HospitalityBelgiumsmallMEDIUM

Youreka! is a specialized service provider offering immersive 360° virtual tours and digital marketing solutions aimed at enhancing business presentations and customer engagement. Their market position is focused on hospitality, sports, and venue sectors, leveraging a visual-first approach to transform traditional marketing materials into interactive digital experiences. The company demonstrates a strong professional presence with client showcases and testimonials, indicating a trusted niche player in their industry. Technically, the website is built on modern web technologies including Webflow CMS, Google Tag Manager, Facebook Pixel, and Hotjar for analytics and user tracking. The site is mobile-optimized, accessible, and performs moderately well, reflecting a mature digital infrastructure. Security measures include HTTPS enforcement and use of Google reCAPTCHA on forms, alongside a comprehensive cookie consent mechanism. Security posture is solid with no visible vulnerabilities or exposed sensitive data, though additional security headers could enhance protection. Privacy compliance is well addressed with clear policies and opt-in consent, supporting GDPR adherence. However, the WHOIS data is restricted, limiting transparency on domain registration details, which slightly impacts trust but is mitigated by the professional website content and contact information. Overall, Youreka! presents a credible and professional digital presence with strong business and technical foundations. Strategic recommendations include enhancing security headers, publishing a security policy or incident response page, and improving domain registration transparency to further strengthen trust and compliance.

60
83
2
55
57
80
100
virtualtours360degreesdigitalmarketinginteractivepresentationsbusinessservices+3 more
Webflow CMSGoogle Fonts (Inter, Roboto, Poppins)Google Tag ManagerFacebook Pixel+5
2025-06-23T12:15:46.955Z
vriendenumcutrecht-wkz.nl favicon

Vrienden UMC Utrecht & Wilhelmina Kinderziekenhuis

vriendenumcutrecht-wkz.nl

70
HealthcareNetherlandssmallMEDIUM

Vrienden UMC Utrecht & Wilhelmina Kinderziekenhuis is a non-profit organization dedicated to supporting the UMC Utrecht hospital and its Wilhelmina Children's Hospital through fundraising efforts. The website serves as a platform to engage donors and supporters, emphasizing child-friendly and comfortable hospital care. The organization positions itself as a charitable entity focused on enhancing medical research and patient experience. Technically, the website is built on WordPress using modern technologies such as Gravity Forms, Google Tag Manager, and Cookiebot for cookie consent management. The site is well-structured with SEO optimizations and mobile responsiveness, providing a good user experience. Security-wise, the site enforces HTTPS, uses DNSSEC, and integrates Google reCAPTCHA for form protection, but lacks explicit security policies or incident response information. Overall, the website demonstrates a solid security posture and compliance with privacy regulations through Cookiebot, though it could improve transparency by publishing privacy and terms of service documents and providing direct contact information. The domain registration data is consistent and trustworthy, supporting the legitimacy of the organization.

75
83
17
65
72
70
100
healthcarenon-profitfundraisinghospitalchildcare+1 more
WordPressGravity FormsGoogle Tag ManagerCookiebot+3
2025-06-23T10:16:55.893Z
rccelta.es favicon

RC Celta

rccelta.es

66
MediaSpainmediumMEDIUM

RC Celta's official website serves as the primary digital platform for the professional football club, providing fans with news, ticket purchasing options, and club-related services. The site targets supporters and stakeholders interested in the club's activities and offerings. The business model centers on fan engagement and service provision through digital channels, positioning RC Celta as a recognized entity in the sports media sector within Spain. Technically, the website is built on WordPress CMS, leveraging popular plugins such as Yoast SEO and WPBakery Page Builder to enhance content management and SEO performance. Integration with Google Tag Manager, Google Analytics, and Cookiebot demonstrates a mature approach to analytics and privacy compliance. The site is mobile-optimized and exhibits good design and navigation clarity, supporting a positive user experience. From a security perspective, the website enforces HTTPS and includes several security headers, alongside the use of Google reCAPTCHA to mitigate bot activity. Cookie consent mechanisms comply with GDPR requirements, reflecting a commitment to privacy. However, the absence of explicit terms of service, security policy, and incident response contact information represents gaps in the security posture that could be addressed to enhance trust and compliance. Overall, the website is professional, trustworthy, and well-structured, with minor areas for improvement in security transparency and contact availability. The domain registration aligns with the club's identity, reinforcing legitimacy. Strategic recommendations include publishing comprehensive legal and security policies, enhancing accessibility, and establishing clear incident response channels.

50
83
17
55
65
80
100
sportsfootballclubofficialticketsales+4 more
WordPress 5.4Yoast SEO pluginWPBakery Page BuilderGoogle Tag Manager+2
2025-06-23T09:10:59.749Z
aquariumbiarritz.com favicon

Biarritz Aquarium

aquariumbiarritz.com

44
HospitalityFrancemediumHIGH

Biarritz Aquarium is a medium-sized regional tourist attraction located in Biarritz, France, specializing in marine life exhibitions and educational events. The website provides comprehensive visitor information including opening hours, ticket purchasing, and onsite services such as catering. The business targets tourists, families, and educational groups, positioning itself as a key cultural and leisure destination in the region. Technically, the website is built on WordPress using a modern theme and plugins, including Yoast SEO and Contact Form 7 with Google reCAPTCHA for spam protection. The site demonstrates good mobile optimization, SEO practices, and accessibility basics, supported by a cookie consent mechanism compliant with GDPR requirements. From a security perspective, the site uses HTTPS with strong SSL configuration and employs reCAPTCHA to protect forms. However, it lacks explicit security headers and formal security or incident response policies. No critical vulnerabilities or WAF blocking were detected, indicating a stable security posture. Overall, the website is professional, trustworthy, and compliant with privacy regulations, though it could improve by adding explicit security policies and enhancing security headers. The domain registration data aligns well with the business claims, supporting legitimacy and trustworthiness.

15
50
2
60
52
70
20
aquariummarinelifetourismbiarritzfrance+3 more
WordPressjQueryYoast SEOContact Form 7+4

Partner Domains:

biarritz-ocean.qweekle.com
partner
www.biarritzocean.com
partner

+1 more partners

2025-06-23T07:56:36.643Z
weeeireland.ie favicon

WEEE Ireland

weeeireland.ie

10
OtherIrelandmediumCRITICAL

WEEE Ireland is a well-established Irish compliance scheme focused on the recycling of electrical and battery waste. The organization supports householders, producers, and retailers by providing free recycling services and promoting environmental sustainability. The website reflects a medium-sized organization with a clear market position as a leader in electrical waste recycling in Ireland. Their key services include collection, delivery, and support for members in compliance with environmental regulations. The company is ISO certified, enhancing its credibility and trustworthiness. Technically, the website is built on WordPress with modern SEO and privacy compliance plugins such as Yoast SEO and Complianz GDPR Cookie Consent. It uses Google reCAPTCHA for form security and integrates social media platforms for broader engagement. The site is mobile-optimized and performs moderately well, with good SEO and basic accessibility features. From a security perspective, the site enforces HTTPS, uses reCAPTCHA to protect forms, and manages cookie consent effectively. However, it lacks explicit security headers and a published security policy or incident response contact, which are recommended for enhanced security posture. No vulnerabilities or exposed sensitive data were detected. Overall, the website is professional, trustworthy, and compliant with GDPR requirements. It serves its target audience effectively with clear navigation and relevant content. Strategic recommendations include improving security headers, publishing a security policy, and enhancing accessibility to further strengthen the site's security and compliance posture.

-
-
-
-
-
-
-
recyclingenvironmentcomplianceirelandelectricalwaste+2 more
WordPressYoast SEOContact Form 7Complianz GDPR Cookie Consent+2
2025-06-23T03:13:46.341Z
registre.quebec favicon

PointQuébec

registre.quebec

31
GovernmentCanadamediumHIGH

PointQuébec operates as the official registry for the .QUEBEC top-level domain, providing domain registration services that emphasize Quebecois identity and enhanced search engine optimization for local businesses and organizations. The website positions itself as a government-affiliated entity, offering accredited registrar services and domain checking tools to facilitate domain acquisition. The target audience includes Quebec residents, businesses, and institutions seeking a distinct online presence that reflects their cultural and regional identity. Technically, the website is built on WordPress using the Oxygen Builder framework, integrating modern JavaScript libraries such as jQuery, Flickity for carousels, and Google services including reCAPTCHA and Analytics. The site demonstrates good mobile optimization and SEO practices, although performance is moderate and accessibility features are basic. Security is enforced through HTTPS and form protection via reCAPTCHA, but lacks advanced security headers and explicit privacy or cookie consent mechanisms. From a security perspective, the site maintains a solid posture with no visible vulnerabilities or exposed sensitive data. However, the absence of security headers and formalized privacy and incident response policies indicates room for improvement. The domain registration details align well with the website's governmental nature, reinforcing trust and legitimacy. Overall, the site is professional and trustworthy but could enhance compliance and security transparency. Strategically, PointQuébec should prioritize implementing comprehensive privacy and cookie policies, introduce security headers, and provide clear incident response contacts to strengthen user trust and regulatory compliance. Enhancing accessibility and performance would further improve user experience and broaden reach.

90
35
17
85
62
-
20
domainregistryquebecgovernmentdomainnamesseo+1 more
jQueryGoogle reCAPTCHAGoogle AnalyticsOxygen Builder+2
2025-06-22T22:46:24.218Z
eurashe.eu favicon

EURASHE

eurashe.eu

64
EducationBelgiummediumMEDIUM

EURASHE is a prominent European association representing over 500 applied universities and higher education institutions. It focuses on policy development, advocacy, and fostering collaboration among applied higher education stakeholders across Europe. The organization maintains a strong market position as the voice of applied universities, offering key services such as networking, events, research projects, and quality assurance initiatives. The website reflects a professional and comprehensive digital presence, targeting educational institutions and policymakers in Europe. The technical infrastructure is built on WordPress with the Divi theme, leveraging modern web technologies including Google Tag Manager, reCAPTCHA, and various plugins for enhanced user experience and functionality. The site demonstrates good performance, mobile optimization, and SEO practices, though some accessibility improvements could be made. Security posture is robust with HTTPS enforced, security headers present, and no exposed sensitive data. The site employs cookie consent mechanisms and reCAPTCHA to protect forms, indicating a mature approach to privacy and security. However, dedicated security policies and incident response information are absent, representing an area for improvement. Overall, EURASHE's website is a trustworthy and authoritative platform for its sector, with strong compliance to privacy regulations and a clear business focus. Strategic recommendations include publishing explicit security policies, enhancing accessibility, and implementing a vulnerability disclosure policy to further strengthen trust and security.

15
80
17
75
75
80
100
educationhighereducationapplieduniversitieseuropeanassociationpolicy+5 more
WordPressDivi ThemejQueryGoogle Tag Manager+6

Partner Domains:

members.eurashe.eu
partner
2025-06-22T22:46:14.130Z
sood.agency favicon

Sood

sood.agency

63
OtherUnited KingdomsmallMEDIUM

Sood is a UK-based dynamic marketing agency specializing in web design, branding, social media management, SEO, content creation, and PPC services. The company emphasizes trust, innovation, and personal client relationships, positioning itself as a boutique agency focused on delivering real results and success for its clients. Their website reflects a professional and modern digital presence with clear navigation and strong branding consistency. Technically, the website is built on WordPress using Elementor and Gravity Forms, enhanced with modern JavaScript libraries such as GSAP and jQuery. It employs Google reCAPTCHA for form security and uses Litespeed caching for performance optimization. The site is mobile-optimized, accessible, and SEO-friendly, with comprehensive meta tags and structured data. From a security perspective, the site enforces HTTPS and uses cookie consent mechanisms compliant with GDPR. It displays a Cyber Essentials Certification Plus badge, indicating a commitment to cybersecurity standards. However, explicit security policies and incident response contacts are not found, suggesting room for improvement in transparency and readiness. Overall, the website presents a low-risk profile with strong business credibility and privacy compliance. Strategic recommendations include enhancing security headers, publishing dedicated security and incident response policies, and maintaining vigilance on third-party scripts and analytics tools.

15
88
2
75
60
80
100
marketingwebdesignbrandingseosocialmedia+5 more
WordPressElementorGravity FormsGoogle reCAPTCHA+3
2025-06-22T22:31:34.743Z
xolphin.nl favicon

Xolphin BV

xolphin.nl

71
TechnologyNetherlandsmediumMEDIUM

Xolphin BV is a well-established Dutch company specializing in the provision of SSL certificates and digital signatures, serving primarily businesses and individuals seeking secure online communication solutions. Founded in 2002, it has grown to become the largest SSL certificate provider in the Netherlands, leveraging its role as a Registration Authority for Sectigo to offer fast certificate issuance and expert support. The company emphasizes trust and security, demonstrated by its ISO 27001 certification and multiple WebTrust seals, alongside a strong customer base of over 50,000 clients. Technically, the website employs modern web technologies including Google Tag Manager, Google reCAPTCHA, and Cookiebot for consent management, ensuring compliance with privacy regulations such as GDPR. The site is well-structured, mobile-optimized, and integrates multiple language and currency options to serve a broad audience. While no major CMS or hosting provider details are explicitly detected, the performance and SEO practices are good, supporting a professional online presence. From a security perspective, Xolphin maintains a strong posture with HTTPS enforcement, secure form handling via reCAPTCHA, and adherence to ISO 27001 standards. However, there is room for improvement by adding explicit security headers and publishing incident response and vulnerability disclosure policies. No critical vulnerabilities or exposed sensitive data were detected, indicating a mature security environment. Overall, Xolphin presents a trustworthy and professional digital footprint with strong business credibility and compliance. Strategic recommendations include enhancing security header implementation, formalizing incident response communications, and improving accessibility features to further strengthen their security and compliance posture.

80
43
25
85
100
55
100
ssldigitalsignaturessecurityiso27001dutch+3 more
JavaScriptGoogle Tag ManagerGoogle reCAPTCHACookiebot

Partner Domains:

sslcertificaten.nl
partner
digitalehandtekeningen.nl
partner

+1 more partners

2025-06-22T20:47:41.554Z
S

Solutions on Demand Ltd

sod-it.co.uk

58
TechnologyUnited KingdomsmallMEDIUM

SOD-IT, operated by Solutions on Demand Ltd, is a UK-based IT support and technology solutions provider focused on serving businesses primarily in Glasgow and Ayrshire. The company offers a range of services including cloud tools, Microsoft 365 solutions, hardware supply, and IT support. Their market position is that of a regional specialist with strong partnerships with major technology vendors such as Dell and Microsoft. The website reflects a professional and consistent brand image with good content quality and clear navigation. Technically, the website is built on WordPress using modern libraries and plugins such as jQuery, Contact Form 7, and Google Analytics. The site is mobile-optimized and SEO-friendly with Yoast SEO integration. Security measures include HTTPS enforcement and Google reCAPTCHA for form protection, though additional security headers and explicit privacy policies could enhance the security posture. The security posture is solid but not comprehensive; the absence of explicit security headers and cookie consent mechanisms are areas for improvement. No critical vulnerabilities or exposed sensitive data were detected. The domain registration and WHOIS data align well with the business claims, indicating legitimacy and consistency. Overall, the website presents a trustworthy and professional digital presence with moderate tracking and marketing tools. Strategic improvements in privacy compliance and security policies would further strengthen the company's risk management and user trust.

15
35
33
85
50
70
100
itsupportmicrosoft365cloudtoolshardwarebusinessservices+3 more
WordPressjQueryGoogle AnalyticsFacebook Pixel+3

Partner Domains:

solutionsondemand.co.uk
parent
creodesign.co.uk
partner

+3 more partners

2025-06-22T19:42:54.614Z
stubbenedge.com favicon

Stubben Edge Group Limited

stubbenedge.com

64
FinanceUnited KingdommediumMEDIUM

Stubben Edge Group Limited operates a sophisticated financial services platform designed to streamline access to insurance, savings, and investment products for brokers, appointed representatives, independent financial advisors, and enterprises primarily in the UK. The platform integrates marketplace offerings, growth services, and APIs to enable users to build, scale, and grow their financial product businesses efficiently. The company positions itself as a scalable and integrated solution provider in the financial services sector, leveraging technology to simplify complex workflows and improve commission earnings. Technically, the website is built on the Webflow CMS platform, utilizing modern web technologies including Google Tag Manager, Google Analytics, Facebook Pixel, LinkedIn Insight Tag, and advanced JavaScript libraries like GSAP and SplitType.js for animations. The site is hosted likely on Webflow's infrastructure with Cloudflare CDN, ensuring fast performance and good mobile optimization. Accessibility is basic but functional, and SEO practices are well implemented with proper meta tags and Open Graph data. From a security perspective, the site enforces HTTPS and employs bot protection mechanisms such as Google reCAPTCHA and Cloudflare Turnstile on forms. However, it lacks explicit security headers and a published security policy or incident response contact, which are areas for improvement. No vulnerabilities or exposed sensitive data were detected in the HTML content. Privacy compliance is partial; while a comprehensive privacy policy exists, there is no visible cookie consent mechanism, which may affect GDPR compliance. Overall, Stubben Edge presents a credible and professional online presence with strong business legitimacy and a solid technical foundation. The main risks relate to privacy compliance and security policy transparency. Strategic recommendations include implementing cookie consent, adding security headers, publishing a security policy, and enhancing incident response readiness to strengthen trust and compliance.

30
53
25
70
69
80
100
financeinsurancefinancialservicesplatformmarketplace+3 more
Google Tag ManagerGoogle AnalyticsFacebook PixelLinkedIn Insight Tag+5
2025-06-22T19:41:10.877Z
bsc.es favicon

Barcelona Supercomputing Center

bsc.es

61
TechnologySpainlargeMEDIUM

Barcelona Supercomputing Center (BSC) is a leading public research consortium in Spain specializing in high performance computing (HPC). The organization provides supercomputing resources, conducts advanced research, and facilitates technology transfer to industry. Their market position is strong within the European HPC ecosystem, supported by recognized excellence certifications such as Severo Ochoa and HR Excellence in Research. The website targets researchers, academic institutions, industry partners, and students, offering services including access to the MareNostrum supercomputer, research projects, and educational programs. Technically, the website is built on Drupal 7 with a mature technology stack including jQuery, Shadowbox, and Google reCAPTCHA. Analytics are implemented via Google Analytics and Piwik/Matomo, with a clear cookie consent mechanism in place. The site is mobile optimized and accessible, with good SEO practices. Security posture is solid with HTTPS enforced and use of CAPTCHA on forms, though some security headers could be improved. Overall, the security posture is good with no critical vulnerabilities detected. Privacy compliance is strong, featuring comprehensive privacy and cookie policies with GDPR alignment. The domain registration details are consistent with the organization's identity and history, reinforcing trustworthiness. Strategically, BSC should enhance security headers, maintain up-to-date CMS versions, and consider publishing a vulnerability disclosure policy to further strengthen security culture and transparency.

45
25
33
60
52
85
100
supercomputingresearchhpceducationtechnologytransfer+2 more
Drupal 7jQuery 1.8ShadowboxGoogle reCAPTCHA+5
2025-06-22T17:39:10.558Z
heon.org.uk favicon

Higher Education Outreach Network

heon.org.uk

33
EducationUnited KingdommediumHIGH

The Higher Education Outreach Network (HEON) is a well-established educational partnership focused on increasing higher education progression rates among under-represented students in Surrey and North East Hampshire. Funded by the Office for Students, HEON collaborates with multiple regional educational institutions to deliver outreach activities, resources, and training sessions targeted at students, teachers, and parents. The website reflects a professional and accessible digital presence, supporting its mission with comprehensive content and clear navigation tailored to its audience. Technically, the site is built on WordPress with the Sensei LMS plugin, integrating modern web technologies such as Google Analytics, Google Tag Manager, and reCAPTCHA for security and analytics. The site is mobile-optimized and demonstrates good SEO and accessibility practices, although there is room for improvement in security headers and explicit security policy disclosures. From a security perspective, the website enforces HTTPS and uses CAPTCHA to protect forms, with a clear cookie consent mechanism supporting GDPR compliance. However, it lacks published security policies and incident response information, which are recommended for enhanced trust and transparency. Overall, HEON's website is a credible, secure, and user-friendly platform that effectively supports its educational outreach objectives. Strategic enhancements in security policy transparency and technical security headers would further strengthen its posture and stakeholder confidence.

15
80
25
-
47
60
100
WordPressGravity FormsSensei LMSjQuery+4

Partner Domains:

surreycc.gov.uk
partner
officeforstudents.org.uk
partner

+3 more partners

2025-06-22T15:06:28.268Z
kta.ie favicon

KTA Tax Limited

kta.ie

38
FinanceIrelandmediumHIGH

KTA Tax Limited is an established Irish tax advisory firm specializing in private client tax advice and planning services. Founded in 1997, the company operates with a medium-sized team offering a broad range of tax-related services including income tax planning, estate planning, pension tax planning, and expatriate tax services. The firm targets private clients and their families, positioning itself as a trusted advisor in the Irish finance sector. The website reflects a professional business with clear service offerings and client engagement through a secure login portal. Technically, the website is built on ASP.NET WebForms with a CMS by Webtrade Ltd. It uses modern JavaScript libraries such as jQuery and integrates Google Analytics and reCAPTCHA for analytics and security. Cookie consent is managed via CookiePro, indicating awareness of GDPR compliance. However, some legacy technical elements like the IE7 compatibility header suggest areas for modernization. The site is moderately optimized for performance and mobile use, with basic accessibility and SEO features. From a security perspective, the site enforces HTTPS and includes standard security practices such as cookie consent and CAPTCHA. The absence of advanced security headers like Content-Security-Policy and the use of outdated browser compatibility headers are noted vulnerabilities. No critical security issues or WAF blocks were detected, and the domain registration details align well with the business claims, supporting legitimacy. Overall, KTA Tax Limited's website presents a credible, professional tax advisory service with moderate technical sophistication and a good security baseline. Improvements in privacy policy visibility and modern security headers would enhance compliance and security posture.

25
15
-
70
-
75
40
taxadvicefinancetaxplanningprivateclientsireland
jQuery 3.7.1Google AnalyticsGoogle reCAPTCHACookiePro Consent Management+1
2025-06-22T09:00:05.667Z
cortsite.com favicon

CORT Ltd & CORTBase Ltd

cortsite.com

40
OtherIrelandsmallHIGH

CORT Ltd and CORTBase Ltd operate the website cortsite.com, providing specialized legal software solutions primarily targeting solicitors and legal professionals in Ireland. Their key offerings include case management, legal accounts, and requisitions on title software, supported by over 30 years of expertise in the legal sector. The website presents a professional and consistent brand image with clear navigation and relevant content tailored to their niche market. The business model focuses on software product sales and licensing with accompanying support services. Technically, the website employs a Bootstrap-based responsive design with jQuery, Font Awesome, and Jssor Slider for interactive elements. While the site uses HTTPS with a Sectigo SSL certificate and includes some anti-spam measures in forms, it lacks modern security headers and uses an older jQuery version, which may pose security risks. The site does not implement a cookie consent mechanism and has no visible terms of service or incident response information. From a security perspective, the site demonstrates good baseline practices such as HTTPS and SSL trust seals but could improve by activating reCAPTCHA, upgrading libraries, and adding security headers. Privacy compliance is strong with a comprehensive privacy policy, though cookie policy and GDPR-specific disclosures could be enhanced. No critical vulnerabilities or blocking mechanisms were detected. Overall, cortsite.com is a credible and professionally maintained website serving a specialized legal software market. Strategic improvements in security hardening, privacy transparency, and technical modernization would further strengthen its posture and trustworthiness.

15
28
13
85
-
80
20
legalsoftwarecasemanagementlegalaccountsrequisitionsontitlesolicitors+1 more
Bootstrap 3.3.1jQuery 1.11.3 and 2.1.3Font Awesome 4.3.0Google reCAPTCHA+2
2025-06-22T09:00:04.765Z
C

CarePlus Pharmacy

careplus.ie

49
HealthcareIrelandmediumHIGH

CarePlus Pharmacy is a medium-sized healthcare business operating a network of local pharmacies across Ireland. The company provides a range of pharmacy services including health checks, clinics, online GP consultations, prescription ordering, and wellness advice. Their digital presence is supported by a well-structured website with clear navigation, mobile optimization, and good SEO practices. The business targets Irish residents seeking accessible local pharmacy and health services. The website includes structured data markup and social media integration, enhancing its market visibility and trustworthiness. Technically, the website employs modern web technologies such as jQuery, Google reCAPTCHA, Google Tag Manager, Facebook Pixel, and Google Maps API. It uses HTTPS with strong SSL configuration and includes CSRF tokens for form security. The site loads scripts asynchronously to optimize performance and includes a cookie consent mechanism, indicating awareness of privacy compliance requirements. However, there is no explicit security policy or incident response information published, which could be improved. From a security perspective, the site demonstrates good practices including HTTPS enforcement, CSRF protection, and use of reCAPTCHA to mitigate automated abuse. Tracking and analytics tools are used moderately, with cookie consent provided. No critical vulnerabilities or exposed sensitive data were detected. WHOIS data aligns with the business claims, supporting legitimacy. Overall, the security posture is solid but could benefit from enhanced transparency around security policies and incident response. The overall risk assessment is low, with the website presenting a professional, trustworthy, and compliant digital presence. Strategic recommendations include publishing a dedicated security policy, providing incident response contacts, improving accessibility, and adding a vulnerability disclosure mechanism to further strengthen trust and compliance.

70
43
-
85
-
75
40
pharmacyhealthcareirelandlocalpharmacyhealthadvice+2 more
jQuery 3.6.0Google reCAPTCHAGoogle Tag ManagerFacebook Pixel+2
2025-06-22T08:59:47.013Z