Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

149091
Websites
130
Industries
113
Countries
52
Avg Score
Page 134 of 136|Showing 6651-6700 of 6766
T

Tieteen päivät

tieteenpaivat.fi

40
EducationFinlandsmallHIGH

Tieteen päivät is a Finnish non-profit organization that organizes science events aimed at the general public interested in research and science communication. The website serves as an information portal for upcoming events, news, and archives related to the Tieteen päivät event series. The organization positions itself as a key player in science outreach in Finland, hosting events at prominent venues such as the University of Helsinki. The business model focuses on free public engagement with science through events and digital content. Technically, the website is built on Drupal 7 with a range of contributed modules and libraries including jQuery, Nivo Slider, and Colorbox. The site uses Matomo for analytics with cookies disabled to respect privacy. However, the site suffers from slow performance and lacks modern optimizations. Mobile responsiveness and accessibility are basic but functional. From a security perspective, the site has critical deficiencies including the absence of a valid SSL certificate and no HTTPS support, which severely impacts user trust and data security. There are no advanced security headers or email authentication records such as DMARC. Privacy compliance is partial with a privacy policy present but no cookie consent mechanism. Contact information is available but limited to email and physical address. Overall, the site is functional and informative but requires urgent security improvements to protect users and improve trust. Strategic recommendations include deploying HTTPS, enhancing privacy compliance, and improving site performance and accessibility.

35
-
17
50
90
75
100
scienceeventeducationresearchfinland
Drupal 7jQuery 1.12Nivo SliderColorbox+3
2025-06-14T22:38:17.513Z
tiedekirja.fi favicon

Tieteellisten seurain valtuuskunta

tiedekirja.fi

40
E-commerceFinlandsmallHIGH

Tiedekirja is a Finnish e-commerce bookstore specializing in scientific and academic publications, operated under the auspices of Tieteellisten seurain valtuuskunta (TSV). The website serves a niche market of researchers, students, and science enthusiasts primarily in Finland, offering both online sales and a physical store in Helsinki. The business model focuses on retailing scientific books, journals, and related products, supported by a newsletter and social media presence to engage its audience. Technically, the website is built on the Magento platform, utilizing RequireJS, jQuery, and KnockoutJS for frontend interactivity. It integrates Matomo for analytics and Campaign Monitor for newsletter management. Despite a rich content offering and good mobile optimization, the site suffers from slow load times and lacks a valid SSL certificate, which impacts security and user trust. From a security perspective, the absence of HTTPS and security headers is a significant vulnerability, exposing users to potential risks. The site does not display explicit security or incident response policies, and DNS security features like DNSSEC and CAA are not enabled. However, privacy compliance is addressed with a cookie consent mechanism and a privacy policy, aligning with GDPR requirements. Overall, while the business is credible and well-positioned in its market, the technical and security shortcomings present risks that should be addressed promptly. Enhancing SSL implementation, security headers, and performance will improve user trust and compliance posture.

85
-
17
50
50
85
100
e-commercebookssciencemagentofinnish+1 more
MagentoRequireJSjQueryKnockoutJS+3

Partner Domains:

tsv.fi
partner40
paytrail.com
servicepending
2025-06-14T22:38:17.389Z
tsv.fi favicon

Tieteellisten seurain valtuuskunta

tsv.fi

40
GovernmentFinlandmediumHIGH

Tieteellisten seurain valtuuskunta (TSV) is a Finnish non-profit organization dedicated to supporting scientific societies and promoting open science practices within Finland. The website serves as an information portal for their services including grant funding, event organization, and scientific communication targeted primarily at the academic and research community. The organization holds a key position nationally as a facilitator of scientific collaboration and open knowledge dissemination. Technically, the website is built on Drupal 7 CMS with a traditional jQuery-based frontend and uses Matomo for analytics. The site is moderately performant with a page load time around 4 seconds and is mobile responsive with good navigation clarity. However, the SSL/TLS configuration is currently invalid, resulting in insecure HTTPS connections, which is a significant security concern. The site lacks modern security headers and cookie consent mechanisms, although DNS email security records like SPF and DMARC are properly configured. From a security perspective, the site demonstrates basic best practices in email security and tracking transparency but falls short in SSL implementation and HTTP security headers. No incident response or vulnerability disclosure policies are publicly available. Contact information is clearly presented, enhancing business credibility. Overall, the site is functional and professional but requires urgent improvements in SSL security and privacy compliance to meet modern standards.

35
-
17
50
50
80
100
drupalopensciencescientificsocietiesfinlandnon-profit
Drupal 7jQuery 1.12Matomo AnalyticsColorbox+2

Partner Domains:

tiedekirja.fi
partneranalyzing...
tieteidentalo.fi
partneranalyzing...

+3 more partners

2025-06-14T22:36:45.869Z
hpp.fi favicon

HPP Asianajotoimisto

hpp.fi

40
OtherFinlandmediumHIGH

HPP Asianajotoimisto Oy is a specialized Finnish law firm focusing on business law, serving leading Finnish and international companies. The firm offers a broad range of legal services including corporate transactions, financing, taxation, dispute resolution, technology law, and environmental law, positioning itself as a key player in green transition and technology-related legal matters. The website is professionally designed using WordPress and Elementor, featuring comprehensive content, clear navigation, and multi-language support. Technical infrastructure includes modern plugins and analytics tools such as Matomo and Leadfeeder, with hosting provided by Seravo and DNS managed by Hetzner. However, the security posture is weakened by the absence of a valid SSL certificate and lack of HTTPS support despite HSTS headers, which is a critical vulnerability. Privacy compliance is well addressed with a detailed cookie consent mechanism and a comprehensive privacy policy. Contact information is clearly presented with multiple channels including email, phone, and a contact form protected by reCAPTCHA. Overall, the site demonstrates strong business credibility and content quality but requires urgent security improvements.

80
-
25
50
97
85
100
lawfirmbusinesslawlegalservicestechnologylawcompliance+2 more
WordPressElementorElementor ProUltimate Elementor+10

Partner Domains:

hppattorneys.com
partnerpending
hppopen.fi
partnerpending
2025-06-14T22:32:39.795Z
interstices.info favicon

Interstices

interstices.info

53
EducationFrancemediumMEDIUM

Interstices.info is a French-language educational platform dedicated to explaining and disseminating research in computer science and applied mathematics. It is operated under the auspices of Inria, a major French national research institution, positioning it as a reputable source in the digital sciences education sector. The website offers a variety of content types including articles, podcasts, videos, dossiers, quizzes, and newsletters, targeting researchers, students, and professionals interested in digital sciences. The platform is well-branded and maintains consistent, high-quality content with a clear focus on education and research communication. Technically, the site is built on WordPress and leverages several modern web technologies and plugins such as FacetWP for filtering, Relevanssi for search, MailOptin for newsletter subscriptions, and Matomo for privacy-conscious analytics. However, the site suffers from a critical security shortfall: it lacks a valid SSL certificate and does not enforce HTTPS, exposing users to potential risks. Performance is suboptimal with slow load times and a large page size, though mobile optimization and SEO practices are good. Accessibility is basic but present. From a security perspective, the absence of HTTPS and security headers significantly lowers the site's security posture. There are no detected vulnerabilities or subdomain takeover risks, but the lack of modern TLS protocols and HSTS is a concern. Privacy compliance is strong with clear privacy and cookie policies and consent mechanisms in place. Contact information is limited to a contact form, with no direct emails or phone numbers provided. Overall, while Interstices.info excels in content quality and educational value, it requires urgent improvements in security infrastructure to protect its users and enhance trust. Strategic recommendations include implementing a valid SSL certificate, enabling HTTPS with HSTS, adding security headers, and optimizing performance. These steps will strengthen the site's security posture and align it with best practices for privacy and user protection.

65
25
25
50
50
85
100
educationresearchcomputersciencemathematicsdigitalsciences+2 more
WordPressjQueryFacetWPRelevanssi Live Search+5

Partner Domains:

inria.fr
partner40
2025-06-14T22:09:16.827Z
documentator.io favicon

WebBuilds B.V.

documentator.io

40
TechnologyN/asmallHIGH

Documentator is a technology SaaS company providing a documentation platform designed to simplify the creation and management of product and developer documentation. Positioned as an affordable alternative to established documentation tools, it targets developers and product teams seeking an easy-to-use, flexible solution with features like custom domains, translation support, and analytics. The business operates under WebBuilds B.V., founded in 2020, and offers tiered subscription plans with a free trial to attract users. Technically, the website employs modern JavaScript frameworks (likely Vue.js), Cloudflare DNS services, and Matomo analytics configured for privacy. However, the site suffers from a critical security shortfall due to an invalid SSL certificate and lack of HTTPS enforcement, which significantly impacts its security posture. Performance is moderate to slow, with good mobile optimization and basic accessibility features. Security-wise, the absence of HTTPS, missing security headers, and lack of DNS security records (DMARC, CAA) present vulnerabilities that could expose users to risks. Privacy compliance is reasonably addressed with a comprehensive privacy policy and GDPR references, but no cookie consent mechanism is implemented. Business credibility is supported by clear policies, testimonials, and transparent pricing. Overall, Documentator is a functional and professional SaaS platform with solid business fundamentals but requires urgent improvements in security infrastructure to protect user data and enhance trust.

50
43
25
40
85
75
40
documentationsaasdocumentationtooldevelopertooldocumentationplatform
JavaScriptMatomo AnalyticsCloudflare DNSCSS (custom styles)+1

Partner Domains:

ploi.io
partner73
filapanel.com
partnerpending

+1 more partners

2025-06-14T22:03:56.155Z
imt-bs.eu favicon

Institut Mines-Télécom Business School (IMT Business School)

imt-bs.eu

34
EducationFrancemediumHIGH

Institut Mines-Télécom Business School (IMT-BS) is a French public business school specializing in commerce, management, and digital transformation education. It holds a strong market position with multiple prestigious accreditations such as AACSB, AMBA, and CGE, and is part of the Institut Mines-Télécom group. The school offers a range of programs including Bachelor, Grande Ecole, Masters of Science, Executive Education, and doctoral partnerships, targeting students, enterprises, and international audiences. Technically, the website is built on WordPress with Elementor and several modern plugins, but suffers from slow performance and lacks a valid SSL certificate, which impacts security and user trust. Security posture is moderate with some best practices like SPF and DKIM for email, but critical issues exist due to missing HTTPS and TLS protocols. Privacy compliance is good with clear policies and consent mechanisms, and accessibility is excellently addressed with a dedicated plugin and detailed accessibility statement. Overall, the site is professional and trustworthy but requires urgent security improvements to enable HTTPS and modern TLS protocols.

25
-
25
50
50
80
-
educationbusinessschoolmanagementdigitaltransformationaccessibility+2 more
WordPressElementorPHPApache+7

Partner Domains:

isadmission.com
partnerpending
passerelle-esc.com
partnerpending

+1 more partners

2025-06-14T22:00:23.102Z
ensta-bretagne.fr favicon

ENSTA Bretagne

ensta-bretagne.fr

40
EducationFrancemediumHIGH

ENSTA Bretagne is a reputable French engineering school specializing in advanced technologies for defense, maritime, and high-tech industries. It offers a range of educational programs including engineering degrees, masters, specialized masters, and doctoral studies. The institution maintains strong partnerships with government defense bodies and leading industry players, reinforcing its market position as a Grande École with a focus on innovation and applied research. Technically, the website is built on Drupal 10 with modern JavaScript libraries and includes a cookie consent mechanism compliant with GDPR. However, the site suffers from critical security shortcomings, notably the absence of SSL/TLS encryption, which severely impacts its security posture. Performance is suboptimal with slow load times, though mobile optimization and content quality are good. Security-wise, the lack of HTTPS and security headers exposes the site to risks and undermines user trust. Privacy compliance is well addressed with clear policies and consent mechanisms. Overall, the site is professional and trustworthy but requires urgent security improvements to protect user data and institutional reputation. Strategic recommendations include immediate implementation of valid SSL certificates, enhancement of security headers, and performance optimization to improve user experience and security compliance.

65
-
17
50
50
85
100
educationengineeringresearchdefensemaritime+1 more
Drupal 10JavaScriptMatomo AnalyticsTarteaucitron (cookie consent)+3

Partner Domains:

gouv.fr
partner63
naval-group.com
partnerpending

+2 more partners

2025-06-14T21:52:17.180Z
ploi.io favicon

WebBuilds B.V.

ploi.io

73
TechnologyNetherlandssmallMEDIUM

Ploi.io is a technology company specializing in server management tools designed to simplify server provisioning, site deployments, and server management for developers and businesses. Positioned as a competitive alternative to popular platforms like Laravel Forge and ServerPilot, Ploi offers a subscription-based SaaS model with tiered pricing plans targeting developers and small to medium-sized businesses. The platform provides key services such as server installation, site management, load balancing, team collaboration, and API access, supported by partnerships with major cloud providers like UpCloud, DigitalOcean, Linode, and Hetzner. Technically, the website employs modern web technologies including JavaScript ES modules, Tailwind CSS, and privacy-focused Matomo analytics. The site is hosted behind Cloudflare DNS and CDN services, ensuring global availability. While the site is mobile-optimized and accessible with good SEO practices, performance is hindered by slow load times. The backend likely uses Laravel, inferred from feature references. Security posture reveals a critical issue with an invalid or missing SSL certificate despite strong HSTS policies and no detected vulnerable libraries. Other TLS features like OCSP stapling and session resumption are missing, and DNS CAA records are malformed. Privacy compliance is strong with comprehensive policies and GDPR adherence, and user tracking is minimal and privacy-conscious. Overall, Ploi.io presents a professional, trustworthy, and feature-rich platform with room for improvement in SSL configuration and site performance. Addressing these security and technical issues will enhance user trust and operational reliability.

90
43
25
87
100
90
100
servertoolproductivitymanagementlaravel+3 more
JavaScript (ES Modules)Tailwind CSSFont InterFont Lexend+3

Partner Domains:

webbuilds.nl
parentpending
2025-06-14T21:52:16.218Z
telecom-paris.fr favicon

Télécom Paris

telecom-paris.fr

40
EducationFrancelargeHIGH

Télécom Paris is a prestigious French engineering school specializing in digital and technological education and research. As a founding member of the Institut Polytechnique de Paris and part of the Institut Mines-Télécom, it holds a strong market position in higher education and innovation. The institution offers a wide range of programs including engineering degrees, masters, specialized masters, doctoral studies, and continuing education, supported by active research laboratories and a vibrant innovation ecosystem. Its target audience includes students, researchers, and industry partners, with a significant international presence. Technically, the website is built on WordPress with modern JavaScript libraries and plugins such as jQuery and RoyalSlider. It employs Matomo for privacy-conscious analytics and implements a comprehensive GDPR-compliant cookie consent mechanism. However, the site currently lacks a valid SSL/TLS certificate and does not serve content over HTTPS, which is a critical security deficiency. The site is well-structured, mobile-optimized, and provides rich, relevant content with clear navigation. From a security perspective, the presence of HSTS is positive, but the absence of valid SSL/TLS and modern encryption protocols significantly undermines the site's security posture. No critical vulnerabilities or malware were detected in the content. Privacy policies and data protection officer contact information are clearly provided, indicating good compliance with GDPR requirements. Overall, while the business and content aspects of the site are excellent, the critical lack of HTTPS and valid SSL/TLS certificate severely impacts the security score and poses risks to user data confidentiality and trust. Strategic improvements in SSL/TLS deployment and security configurations are urgently recommended.

30
18
25
50
50
65
100
educationengineeringresearchinnovationdigital+4 more
WordPressjQueryRoyalSliderMatomo Analytics+2

Partner Domains:

imt.fr
parentpending
ip-paris.fr
partner40

+3 more partners

2025-06-14T21:48:29.018Z
ensta-paristech.fr favicon

ENSTA Paris

ensta-paristech.fr

40
EducationFrancemediumHIGH

ENSTA Paris is a prestigious French engineering school and a founding member of the Institut Polytechnique de Paris. It offers a wide range of engineering education programs including engineering cycles, masters, specialized masters, doctoral studies, and executive education. The institution focuses on sectors such as transport, energy, defense, robotics, and artificial intelligence, positioning itself as a key player in education and research within these domains. The website reflects a strong brand presence with comprehensive content and clear navigation, targeting prospective students, researchers, and industry partners. Technically, the site is built on Drupal 9 and uses Apache with mod_pagespeed for optimization, but lacks HTTPS which is a critical security shortfall. Matomo analytics is used for user tracking, indicating a moderate level of user data collection with reasonable privacy compliance. Security posture is weak due to the absence of SSL/TLS encryption and missing security headers, exposing the site to potential risks. Business credibility is supported by multiple certifications and trust labels, but contact information is not prominently displayed, which could impact user trust and engagement. Overall, the site is content-rich and professionally designed but requires urgent security improvements to protect users and data.

20
-
25
50
90
85
40
enstaengineeringschooleducationresearchinnovation+9 more
Drupal 9ApacheGoogle FontsMatomo Analytics+2

Partner Domains:

ensta.org
partnerpending
ip-paris.fr
parent40

+1 more partners

2025-06-14T21:48:28.877Z
adi-na.fr favicon

ADI Nouvelle-Aquitaine

adi-na.fr

40
GovernmentFrancemediumHIGH

ADI Nouvelle-Aquitaine is a regional development and innovation agency focused on supporting businesses and territories in the Nouvelle-Aquitaine region of France. The organization provides services including innovation support, project financing, business acceleration, and partner networking to foster sustainable economic growth and transitions. The website reflects a strong regional presence with comprehensive content, clear navigation, and multiple trust signals such as testimonials and partner logos. Technically, the website is built on Drupal CMS, served by nginx, and integrates modern JavaScript libraries like Splide.js and Matomo for analytics. The site is mobile-optimized and accessible, with good SEO practices. However, the absence of a valid SSL certificate and HTTPS support is a significant security shortfall, limiting the site's security posture. Security headers such as Content-Security-Policy, X-Frame-Options, and X-Content-Type-Options are present, but the lack of TLS protocols and HSTS reduces overall security. Privacy compliance is well addressed with visible privacy and cookie policies and a consent mechanism. Contact information is clearly provided, enhancing business credibility. Overall, the site is professional and trustworthy but requires urgent improvements in SSL/TLS implementation to enhance security and user trust.

50
-
25
70
75
85
100
innovationeconomicdevelopmentregionalagencynouvelle-aquitainetechnology+3 more
nginxDrupal CMSMatomo AnalyticsSplide.js slider+2

Partner Domains:

invest-in-nouvelle-aquitaine.fr
partnerpending
accel-na.fr
partnerpending
2025-06-14T21:40:09.033Z
thephp.foundation favicon

The PHP Foundation

thephp.foundation

55
TechnologyN/amediumMEDIUM

The PHP Foundation is a non-profit collective dedicated to supporting, advancing, and developing the PHP programming language. It operates as a key steward of the PHP ecosystem by providing financial support and organizational guidance to PHP developers and contributors. The foundation is supported by a range of sponsors and members from the technology sector, positioning itself as an important entity within the open-source and developer community. The website reflects a professional and consistent branding approach with clear messaging targeted at PHP users and contributors. Technically, the site leverages modern frontend technologies such as Alpine.js and Highlight.js, and uses analytics tools like Matomo and Fathom to monitor user engagement. However, the site suffers from an invalid SSL certificate and lack of HTTPS support, which significantly impacts its security posture. While email authentication protocols like SPF and DMARC are properly configured, the absence of a cookie policy and direct contact emails or phone numbers limits privacy compliance and user trust. Overall, the website is functional and informative but requires critical improvements in security and privacy compliance to enhance trust and professionalism.

15
25
25
85
50
85
100
phpfoundationopensourcetechnologydevelopercommunity
Alpine.jsHighlight.jsMatomo AnalyticsFathom Analytics+2

Partner Domains:

jetbrains.com
partner68
automattic.com
partner70

+3 more partners

2025-06-14T21:17:17.126Z
vr-payment.de favicon

VR Payment GmbH

vr-payment.de

40
FinanceGermanymediumHIGH

VR Payment GmbH is a specialized payment solutions provider serving the Volksbanken Raiffeisenbanken network and their merchants. The company offers a broad range of services including card readers, terminals, cashless payment methods, e-commerce payment integration, and value-added services such as digital receipt management and mobile payment solutions. The website reflects a professional and consistent brand presence targeting merchants, banks, and resellers within the financial and payment technology sectors in Germany. The company maintains a medium-sized market presence with a focus on innovation and customer-centric payment solutions. Technically, the website is built on the Contao CMS platform and leverages modern JavaScript libraries such as jQuery, jQuery UI, and Swipe.js for UI interactions. It uses Matomo for analytics and Usercentrics for consent management, indicating a mature approach to user privacy and data tracking. However, the website suffers from a critical security deficiency due to an invalid or missing SSL certificate and lack of enabled TLS protocols, which severely undermines HTTPS security and user trust. From a security perspective, while the site has HSTS enabled with preload and a valid SPF record, the absence of a valid SSL certificate and TLS support is a major vulnerability. No incident response or explicit security policy information is found, and no vulnerability disclosure or security.txt file is present. Privacy compliance is well addressed with a comprehensive privacy policy and cookie consent mechanism. Contact information is readily available through multiple channels including email, phone, and detailed contact forms. Overall, the website is content-rich, professionally designed, and privacy-conscious but critically impaired by its SSL/TLS configuration issues. Immediate remediation of the SSL certificate and enabling modern TLS protocols is essential to restore security posture and trustworthiness.

85
18
25
70
100
80
20
paymentfinancee-commerceposgdpr+3 more
jQueryjQuery UISwipe.jsMatomo Analytics+2

Partner Domains:

vr-pay-ecommerce.de
partnerpending
vr-payment-webportalpos.de
partnerpending

+1 more partners

2025-06-14T20:54:15.707Z
R

Really Simple Plugins

really-simple-plugins.com

65
TechnologyN/amediumMEDIUM

Really Simple Plugins is a technology company specializing in WordPress plugin development, focusing on security and privacy compliance solutions. Their key offerings include the Really Simple Security plugin, ranked as the 12th most-used WordPress plugin, and the Complianz Privacy Suite, which supports compliance with international privacy legislation and boasts over 1 million users worldwide. The company targets WordPress users and website owners seeking easy-to-use security and privacy tools. Their business model revolves around plugin development and distribution, positioning them as an important player in the WordPress ecosystem since 2016. Technically, the website is built on WordPress using Elementor and Yoast SEO, with additional plugins for cookie consent management (Complianz) and analytics (Matomo). Hosting and DNS are managed via Cloudflare, providing robust DNS infrastructure. Performance is moderate with a page load time of approximately 3.8 seconds. The site is mobile optimized and has good SEO practices, though accessibility features are basic. From a security perspective, the site lacks a valid SSL certificate and does not enable modern TLS protocols, which is a significant risk. No HTTP security headers are detected, and advanced SSL features like OCSP stapling and HSTS are not enabled. DNS records show proper SPF and DMARC configurations, reducing email spoofing risks. Cookie consent is managed properly with opt-in mechanisms, supporting GDPR compliance. However, the absence of a valid SSL certificate and security headers lowers the overall security posture. Overall, the website is functional and professional but requires urgent improvements in SSL/TLS configuration and security headers to enhance trust and protect user data. Privacy compliance is well addressed through the Complianz plugin and clear privacy and cookie policies. Business credibility is moderate due to limited direct contact information and absence of terms of service. Strategic security enhancements and better transparency would improve the site's risk profile and user confidence.

15
58
25
85
100
90
100
wordpresssecurityprivacypluginsgdpr+3 more
WordPressElementorElementor ProYoast SEO+4

Partner Domains:

really-simple-ssl.com
partner59
complianz.io
partner69

+1 more partners

2025-06-14T20:27:01.627Z