Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

149091
Websites
130
Industries
113
Countries
52
Avg Score
Page 142 of 143|Showing 7051-7100 of 7115
fancs.com favicon

株式会社ファンコミュニケーションズ FANCOMI

fancs.com

62
TechnologyJapanlargeMEDIUM

株式会社ファンコミュニケーションズ FANCOMI operates as a leading digital marketing company specializing in performance-based advertising, primarily through its extensive affiliate network. Positioned as one of the world's largest success-based ad networks, the company offers CPA solutions and digital marketing services targeting advertisers, agencies, investors, and job seekers. The website serves as the official corporate portal providing company information, investor relations, news, recruitment, and contact avenues. Technically, the site is built on WordPress with a legacy PHP backend, leveraging common web technologies such as Apache, jQuery, and Google Tag Manager for analytics and marketing. While the SSL certificate is valid, the absence of modern TLS protocols and security headers indicates room for improvement in security posture. The company demonstrates trust through certifications like the Privacy Mark and listing on the Tokyo Stock Exchange. However, explicit cookie consent mechanisms and detailed security policies are not evident, suggesting potential compliance gaps. Overall, the site reflects a mature digital presence with solid business positioning but requires enhancements in security and privacy compliance to align with best practices.

-
25
17
80
70
85
100
成果報酬型広告デジタルマーケティングアフィリエイトCPAソリューション企業公式サイト
ApachePHP 5.6.40OpenSSL 1.0.2k-fipsjQuery+6

Partner Domains:

fancsglobal.com
subsidiarypending
thewand.jp
subsidiarypending
2025-06-14T12:23:10.810Z
greenpmp.io favicon

Sharethrough

greenpmp.io

62
MediaN/AmediumMEDIUM

GreenPMPs by Sharethrough is a sustainability-focused programmatic advertising platform aiming to reduce the carbon footprint of digital media campaigns. It leverages partnerships with companies like Scope3 to measure and compensate carbon emissions, positioning itself as an innovator in green media solutions. The website targets advertisers, publishers, and agencies seeking sustainable advertising options and provides tools such as Green Icon certification and custom PMPs for campaign activation. Technically, the site is built on Webflow, uses Cloudflare CDN, and integrates multiple third-party analytics and marketing tools, including Google Tag Manager, Hotjar, and LinkedIn Insight Tag. While the site demonstrates good design, mobile optimization, and performance, it lacks explicit privacy and terms of service documentation, which are critical for compliance and trust. Security posture is moderate with valid SSL but missing modern TLS protocols and DNS security features. The cookie consent mechanism is implemented, indicating some privacy awareness. Overall, the platform is well-positioned in the sustainable advertising niche but should enhance compliance and security transparency to strengthen trust and regulatory adherence.

30
25
25
75
92
85
100
GreenPMPsSustainabilityCarbon EmissionsProgrammatic AdvertisingSharethrough+3 more
jQueryInfinite ScrollWeglot (translation)Google Tag Manager (gtag.js)+6

Partner Domains:

sharethrough.com
partner69
scope3.com
partner63
2025-06-14T12:15:18.373Z
F

Format-z

format-z.ch

67
web developmentSwitzerlandsmallMEDIUM

The website demonstrates a moderate security posture with no critical vulnerabilities currently detected; however, there are multiple high and medium risk issues that could expose the business to regulatory non-compliance and cyber threats. Significant gaps exist in privacy compliance, including missing privacy and cookie policies and absence of a consent banner, which expose the business to GDPR fines and reputational damage. The lack of documented information security and incident response policies indicates immature cybersecurity governance, increasing risk during security incidents. Network security weaknesses, such as exposed FTP service and missing DNSSEC, further heighten the risk of unauthorized access and data interception. While email security and SSL/TLS implementations are generally strong, some SSL and HSTS configurations require improvement to maintain secure communications. The overall security headers configuration is suboptimal, missing key protections like Content-Security-Policy, increasing risk of content injection attacks. Immediate attention to governance, privacy compliance, and network service exposure will significantly reduce business risk and improve regulatory adherence. Strengthening these areas will bolster customer trust and reduce potential financial and operational impacts from security incidents.

75
25
25
95
87
85
75
web developmentcustom solutionse-commerceAPIContao CMS+1 more
Contao Open Source CMSFontAwesomeGoogle Tag ManagerApache+3

Partner Domains:

bka.ch
partnerpending
l-drive.ch
partnerpending

+3 more partners

2025-06-13T18:14:11.089Z
tell.group favicon

Dubai Tell Limited, Geneva Tell SA, Algiers Tell Markets SPA

tell.group

43
financial servicesUAE, Switzerland, AlgeriamediumHIGH

The website's security posture is critically weak, exposing the business to significant risks including data breaches, regulatory non-compliance, and operational disruptions. The absence of HTTPS encryption is a critical vulnerability that compromises all data transmissions, severely impacting user trust and violating GDPR and NIS2 requirements. Missing essential security headers further increase susceptibility to common web attacks such as clickjacking, XSS, and content injection. Lack of privacy and cookie policies, as well as the absence of consent mechanisms, place the business at high risk of legal penalties under data protection regulations. Critical services like MySQL and FTP are publicly exposed, providing easy attack vectors for threat actors. Additionally, there is a notable deficit in security governance, including lack of incident response, security policies, and information security frameworks, which undermines the organization's ability to manage and mitigate risks effectively. While email and DNS security show some strengths, these are overshadowed by critical gaps in network and application security. Immediate action is required to address these issues to protect business assets, customer data, and maintain regulatory compliance.

35
15
5
85
-
85
60
financial servicescoming soonWordPressDFSACOSOB
jQueryTailwind CSSFontAwesomeFont Awesome

Partner Domains:

dfsa.ae
servicepending
cosob.org
servicepending
2025-06-13T18:10:50.348Z
safinco.com favicon

SAFINCO

safinco.com

60
property management and legal servicesSpainmediumMEDIUM

The website's overall security posture reveals significant gaps, particularly in governance, privacy compliance, and essential security headers, exposing the business to regulatory risks and potential cyber threats. While there are no critical vulnerabilities, the presence of 11 high and 9 medium severity issues highlights urgent areas for remediation. Notably, missing privacy policies and consent mechanisms put the organization at risk of GDPR non-compliance, which could lead to costly fines and reputational damage. The absence of a formal information security framework, incident response procedures, and security policies under NIS2 requirements further exposes the business to operational disruptions and regulatory scrutiny. Security headers are inadequately configured, increasing exposure to web-based attacks like clickjacking and cross-site scripting. Additionally, the exposure of an FTP service represents a high-risk attack vector that could enable unauthorized access or data leakage. Overall, this assessment underscores the need for immediate governance improvements, privacy compliance actions, and technical hardening to safeguard the business and its customers.

35
25
17
80
87
85
85
property managementlegal servicesarchitectureSevillaadministradores de fincas+2 more
jQueryBootstrapFontAwesomeGoogle Analytics+4

Partner Domains:

megafincas-sevilla.com
partnerpending
tucomunidad.com
partnerpending
2025-06-13T18:10:48.927Z
andbank.com favicon

GROUP Andbank

andbank.com

45
bankingAndorralargeHIGH

The website's overall security posture is currently poor, with critical vulnerabilities that pose significant risks to both the business and its users. The absence of HTTPS encryption is a severe issue, exposing data in transit to interception and undermining compliance with GDPR and NIS2 regulations. Key security headers are either missing or weakly configured, increasing susceptibility to common web attacks such as clickjacking and content injection. Privacy compliance is lacking, with no privacy or cookie policies and no consent mechanisms, risking regulatory penalties and reputational damage. Additionally, the organization lacks foundational security governance, including incident response, security policies, and vulnerability disclosure procedures, which impairs its ability to manage and respond to threats effectively. Email security is moderately strong but could be improved with stricter DMARC enforcement and reporting. DNS security measures like DNSSEC are not enabled, reducing protection against DNS spoofing. Network security itself is well managed, indicating some internal controls are in place. Immediate remediation is critical to prevent data breaches, regulatory fines, and erosion of customer trust.

50
-
5
85
-
85
100
bankingprivate bankingasset managementfinancial servicesinvestment+1 more
WordPressYoast SEO PremiumSimple Google reCAPTCHAjQuery+12

Partner Domains:

andbank.com.br
subsidiarypending
andbank.es
subsidiarypending

+2 more partners

2025-06-13T18:10:48.109Z