Skip to main content

High-risk security reports

Browse 43,717 Guard analyses across this slice of the directory — NIS2 / GDPR readiness, SSL/TLS, DNS hygiene and email authentication.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

149319
Websites
130
Industries
113
Countries
52
Avg Score
Page 139 of 875|Showing 6901-6950 of 43717
G

Robot Challenge Screen

giovanieuropeistiverdi.org

38
OtherN/asmallHIGH

The website giovanieuropeistiverdi.org currently serves a robot challenge screen that blocks direct access to its content. This challenge uses a JavaScript-based proof-of-work captcha mechanism, indicating the presence of a Web Application Firewall (WAF) or similar security control. Due to this blocking, no business-related content, contact information, or policies are accessible, limiting the ability to assess the company's operations or services. The domain is registered with Tucows Domains Inc. since 2019 and appears legitimate from a registration standpoint, but the lack of accessible content reduces trust and transparency. Technically, the site employs advanced client-side JavaScript for bot mitigation but lacks visible security headers or privacy compliance mechanisms. Hosting is via SiteGround name servers, and external resources are loaded from a CloudFront CDN. The site shows basic mobile optimization but poor SEO and accessibility features. No analytics or advertising scripts are detected. Security posture is moderate due to the presence of a bot challenge but lacks standard security headers and DNSSEC. Privacy compliance is absent, with no privacy or cookie policies found. Business credibility is low due to missing contact and company information. Overall, the site is inaccessible for meaningful analysis, and the AI score is capped low due to blocking. Strategic recommendations include enabling DNSSEC, adding security headers, publishing privacy and cookie policies, and providing transparent contact information to improve trust and compliance.

20
50
2
70
72
65
-
securitycaptcharobotchallengewafblocked
JavaScriptWeb WorkersTextEncoderBlob+1
2025-10-23T12:15:39.923Z
croceviaterra.it favicon

Centro Internazionale Crocevia

croceviaterra.it

46
Non-profitItalysmallHIGH

Centro Internazionale Crocevia is a well-established Italian non-profit organization founded in 1958, dedicated to advocating for agroecology, food sovereignty, and human rights globally and nationally. The website serves as a platform to support movements, disseminate information, and organize campaigns and projects related to sustainable agriculture and social justice. The organization maintains a consistent brand presence and leverages modern web technologies to engage its audience effectively. Technically, the website is built on WordPress with Elementor and Yoast SEO, ensuring good SEO optimization and mobile responsiveness. The use of Google Tag Manager and CookieYes indicates a moderate level of analytics and privacy compliance. Security measures such as HTTPS and security headers are properly implemented, contributing to a strong security posture. While the site lacks explicit security and incident response policies, it demonstrates good privacy compliance with GDPR-aligned policies and cookie consent mechanisms. Contact is primarily through web forms, with no direct emails or phone numbers publicly listed. Overall, the site is professional, trustworthy, and safe for general audiences. Recommendations include enhancing accessibility, adding explicit security and incident response documentation, and implementing a vulnerability disclosure policy to further strengthen security and trust.

15
28
2
80
72
70
20
non-profitagroecologyfoodsovereigntyadvocacyenvironment+1 more
WordPressElementorYoast SEOjQuery+2
2025-10-23T12:15:19.876Z
recyclingportal.eu favicon

MSV GmbH

recyclingportal.eu

39
MediaGermanymediumHIGH

Recyclingportal.eu is a professional German-language media portal specializing in news, market data, and resources related to waste management, recycling, and the circular economy. Operated by MSV GmbH, the site targets industry professionals and stakeholders, providing timely updates, event information, and advertising opportunities. The platform maintains a consistent brand presence and leverages social media channels to extend its reach. Technically, the website is built on WordPress 6.8.3, utilizing modern libraries such as jQuery and FontAwesome, and integrates Google Analytics and Tag Manager for user tracking. The site is mobile-optimized with a moderate performance profile and good SEO practices. However, some accessibility features and security headers are lacking. From a security perspective, the site enforces HTTPS and uses secure login forms but lacks comprehensive security headers like CSP and X-Frame-Options. There is no visible security policy or incident response contact, and cookie consent mechanisms are absent, which may impact GDPR compliance. No vulnerabilities or exposed sensitive data were detected in the HTML content. Overall, recyclingportal.eu presents a trustworthy and professional online presence with room for improvement in privacy compliance and security hardening. Strategic enhancements in these areas would strengthen user trust and regulatory adherence.

25
33
17
55
42
65
-
recyclingwastemanagementcirculareconomyenvironmentnews+1 more
WordPress 6.8.3jQuery 3.7.1FontAwesome 6.4.2Advanced Ads 2.0.12+2
2025-10-23T11:58:36.203Z
landesvertretung-brandenburg.de favicon

Landesvertretung Brandenburg

landesvertretung-brandenburg.de

41
GovernmentGermanymediumHIGH

The Landesvertretung Brandenburg website serves as the official federal representation of the state of Brandenburg in Berlin. It functions as a governmental portal providing information about the state's interests at the federal level, including news, events, and political activities. The site targets politicians, citizens of Brandenburg, and stakeholders interested in regional federal affairs. The business model is public administration with a focus on political representation and communication. Technically, the website is built on WordPress using the Avada theme and several plugins such as Contact Form 7 and The Events Calendar. It is hosted on servers associated with kasserver.com and employs Matomo analytics for user tracking with privacy considerations. The site is mobile-optimized and demonstrates good SEO practices. From a security perspective, the site uses HTTPS and implements CAPTCHA on forms to prevent spam. However, explicit security headers are not detected, and there is no visible security policy or incident response contact information. No critical vulnerabilities or suspicious elements were found, but improvements in security headers and transparency are recommended. Overall, the website is professional, trustworthy, and compliant with GDPR regulations, with a good balance of content quality and technical implementation. The risk level is low, but enhancing security policies and disclosures would further strengthen its posture.

25
28
17
70
62
45
-
governmentbrandenburgfederalrepresentationeventswordpress+1 more
WordPressAvada ThemejQueryContact Form 7+2
2025-10-23T11:56:50.975Z
'

'bond' Software-Entwicklung GmbH

bond.de

45
TechnologyGermanysmallHIGH

The website bond.de represents 'bond' Software-Entwicklung GmbH, a German IT service provider specializing in cross-platform IT solutions including IT consulting, support, software development, and internet services. With over 30 years of experience, the company targets medium-sized enterprises, large corporations, and government agencies primarily in Germany. Their market position is that of a seasoned, trusted IT partner with strategic partnerships such as with Imprivata for healthcare security solutions. Technically, the website is built using SIQUANDO Web 10 CMS with jQuery and custom JavaScript for enhanced user interaction such as AJAX search. The site is moderately optimized for performance and mobile use but lacks advanced SEO and accessibility features. No modern frameworks or analytics tools are detected, indicating a relatively simple but functional technical infrastructure. From a security perspective, the website lacks visible security headers and cookie consent mechanisms, which are important for GDPR compliance and overall security posture. The SSL configuration could not be verified from the data provided. No incident response or vulnerability disclosure policies are publicly available, which suggests room for improvement in security transparency and readiness. Overall, the website is professional and trustworthy with good business credibility but would benefit from enhanced security practices and privacy compliance measures to reduce risk and improve user trust.

25
28
10
80
52
70
20
it-supportit-consultingsoftwareentwicklungdatenrettungvirtualisierung+4 more
jQuerySIQUANDO Web 10PHP (sajx.php, fts.php)CSS+1

Partner Domains:

imprivata.com
partner
2025-10-23T11:55:45.461Z
hellofuture.lu favicon

FEDIL - The Voice of Luxembourg's Industry

hellofuture.lu

44
ManufacturingLuxembourgmediumHIGH

Hello Future is a Luxembourg-based platform dedicated to promoting careers and qualifications in the industrial sector. Supported by FEDIL, the Luxembourg government, and the Chamber of Commerce, it targets students, educators, and young professionals by providing sector information, internship opportunities, and educational resources. The website is professionally designed with consistent branding and clear navigation, reflecting a strong market position in industry promotion within Luxembourg. Technically, the site is built on WordPress with modern plugins and frameworks, offering good mobile optimization and moderate performance. Security measures include HTTPS, GDPR-compliant cookie consent, and Google reCAPTCHA integration, though some HTTP security headers could be improved. Overall, the site demonstrates a solid security posture with no critical vulnerabilities detected. Contact information is comprehensive, including phone, email, physical address, and social media channels, enhancing business credibility. The domain registration aligns with the website's claims, supporting legitimacy. Strategic recommendations include enhancing security headers, adding explicit security policies, and maintaining regular updates to plugins and CMS for continued security and compliance.

-
40
2
70
62
75
20
industryeducationcareersluxembourgmanufacturing+3 more
WordPressPHPjQueryBootstrap 4+4

Partner Domains:

gouvernement.lu
partner
cc.lu
partner

+1 more partners

2025-10-23T11:37:05.527Z
E

Evangelizo.org

evangeliumtagfuertag.org

45
OtherGermanysmallHIGH

Evangelium Tag für Tag is a small non-profit religious organization providing daily gospel readings, prayers, and saint information primarily to German-speaking Christian audiences. The website serves as a digital platform for delivering religious content via web and mobile apps, supported by donations and subscription services. The domain has been registered since 2002, indicating a stable and long-term presence in its niche. Technically, the website is built on Angular 9 framework, uses Google Fonts, and integrates Google Tag Manager for analytics. It supports mobile optimization and progressive web app features. Hosting is provided by OVH sas, a reputable provider. Performance is moderate with basic SEO and accessibility features. From a security perspective, the site uses HTTPS with a good SSL configuration and domain status protections. However, DNSSEC is not enabled, and there is no visible security policy or incident response information. No vulnerability disclosure or security.txt file is present. Privacy compliance is basic with a GDPR cookie banner and a privacy policy located in the legal notice. Overall, the website is professional, trustworthy, and safe for general audiences. Strategic improvements in security headers, DNSSEC, and transparency around security policies would enhance its security posture and compliance maturity.

15
35
2
40
72
75
40
religiongospeldailyreadingschristianitygerman+1 more
Angular 9Google Fonts (Roboto, Circular Std)Google Tag ManagerManifest for PWA
2025-10-23T11:36:20.080Z