Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

149091
Websites
130
Industries
113
Countries
52
Avg Score
Page 15 of 17|Showing 701-750 of 811
P

Plexico Créations

plexico-creations.fr

58
signage and visual communicationFrancesmallMEDIUM

The website exhibits significant security and compliance gaps, particularly in privacy and incident management frameworks, posing considerable risks to business reputation and regulatory compliance. Critical deficiencies in GDPR adherence, such as the absence of a privacy policy, cookie policy, and consent mechanisms, expose the business to potential legal penalties and loss of customer trust. The lack of a security policy framework, incident response procedures, and vulnerability disclosure processes undermines the organization's ability to manage and respond to cyber threats effectively. Weak HTTP security headers and mixed content issues indicate vulnerabilities to web-based attacks, potentially compromising user data integrity. Exposure of high-risk services like FTP increases the attack surface and opens pathways for unauthorized access. While email security and DNS health are relatively stronger, they do not compensate for the fundamental gaps in governance and technical controls. Immediate remediation is required to address compliance and critical security flaws to safeguard business continuity and customer confidence. Overall, the security posture is inadequate for operating securely within the EU regulatory environment and against evolving cyber threats.

60
-
25
85
82
85
75
signagevisual communicationcustom signagesignalétiqueaménagement+3 more
Google Tag ManagerjQuerytarteaucitron.jsAOS (Animate On Scroll)+4

Partner Domains:

zandko.fr
partner56
2025-06-13T18:14:11.146Z
F

Format-z

format-z.ch

67
web developmentSwitzerlandsmallMEDIUM

The website demonstrates a moderate security posture with no critical vulnerabilities currently detected; however, there are multiple high and medium risk issues that could expose the business to regulatory non-compliance and cyber threats. Significant gaps exist in privacy compliance, including missing privacy and cookie policies and absence of a consent banner, which expose the business to GDPR fines and reputational damage. The lack of documented information security and incident response policies indicates immature cybersecurity governance, increasing risk during security incidents. Network security weaknesses, such as exposed FTP service and missing DNSSEC, further heighten the risk of unauthorized access and data interception. While email security and SSL/TLS implementations are generally strong, some SSL and HSTS configurations require improvement to maintain secure communications. The overall security headers configuration is suboptimal, missing key protections like Content-Security-Policy, increasing risk of content injection attacks. Immediate attention to governance, privacy compliance, and network service exposure will significantly reduce business risk and improve regulatory adherence. Strengthening these areas will bolster customer trust and reduce potential financial and operational impacts from security incidents.

75
25
25
95
87
85
75
web developmentcustom solutionse-commerceAPIContao CMS+1 more
Contao Open Source CMSFontAwesomeGoogle Tag ManagerApache+3

Partner Domains:

bka.ch
partnerpending
l-drive.ch
partnerpending

+3 more partners

2025-06-13T18:14:11.089Z
volkerrail.nl favicon

VolkerRail

volkerrail.nl

51
rail infrastructureNetherlandslargeMEDIUM

The website exhibits critical vulnerabilities that severely impact its security posture, notably the absence of HTTPS encryption, which exposes all data transmissions to interception and undermines trust. Compliance with GDPR is critically deficient, with missing privacy measures, cookie consent, and policy elements, risking significant legal and financial penalties for operating as an EU business without proper safeguards. The lack of an information security framework, incident response procedures, and security policies further amplifies operational risks and regulatory non-compliance under NIS2 requirements. While network security and email security show strengths, foundational issues such as weak security headers and DNS security gaps must be addressed to prevent exploitation. Overall, the site is at high risk of data breaches, legal repercussions, and reputational damage unless urgent remediation occurs. Immediate focus on encryption, privacy compliance, and security governance is essential to protect business interests and customer trust. The current security posture scores indicate critical gaps in GDPR, NIS2, and SSL/TLS domains that require rapid attention. Addressing these will significantly improve compliance, resilience, and stakeholder confidence.

75
-
15
95
-
85
100
rail infrastructureconstructionmaintenancesustainabilitysafety+1 more
Drupal 10Google Tag ManagerGoogle Tag (gtag.js)jQuery Validation+5

Partner Domains:

volkerwessels.com
subsidiarypending
werkenbijvolkerwessels.nl
related businesspending

+1 more partners

2025-06-13T18:10:50.407Z
hoozin.com favicon

Hoozin

hoozin.com

40
software / digital workplace solutionsUSAmediumHIGH

The website's overall security posture is critically weak, exposing the business to significant risks including data breaches, regulatory non-compliance, and operational disruptions. The absence of HTTPS encryption is a critical vulnerability that undermines data confidentiality and trust, while missing essential security headers leave the site open to common web attacks such as clickjacking and cross-site scripting. GDPR compliance is severely lacking, with no cookie policy or consent mechanisms, creating legal exposure and reputational damage risks. Network security is compromised by the exposure of high-risk services like FTP and MySQL without adequate protections, increasing the attack surface. The lack of incident response, security policies, and business continuity planning under the NIS2 framework indicates immature security governance. Although email security and DNS health score relatively well, these strengths do not offset the critical deficiencies elsewhere. Immediate remediation is required to protect customer data, maintain regulatory compliance, and safeguard business continuity. Without urgent action, the organization risks financial penalties, loss of customer trust, and potential service outages.

15
18
5
85
-
85
50
digital workplaceworkflowssocial intranetemployee collaborationintegration+1 more
WordPress 6.8.1W3 Total CacheRodller BlocksContact Form 7+8

Partner Domains:

rodller.com
partnerpending
2025-06-13T18:10:49.566Z
covidien.com favicon

Medtronic

covidien.com

45
Healthcare TechnologyUSAenterpriseHIGH

The website's security posture is critically weak, exposing the business to significant risks including data breaches, regulatory non-compliance, and reputational damage. The absence of HTTPS encryption is a severe vulnerability impacting data confidentiality and integrity, affecting customer trust and legal compliance, especially under GDPR and NIS2 regulations. Key security headers like Strict-Transport-Security and Content-Security-Policy are missing, increasing susceptibility to man-in-the-middle and cross-site scripting attacks. The lack of GDPR compliance elements such as a Privacy Policy, Cookie Policy, and Consent Banner exposes the company to potential fines and customer distrust. The organization also lacks foundational information security documentation, including security policies and incident response procedures, which undermines its ability to effectively manage and respond to security incidents. While network security and DNS health show some strengths, they do not compensate for fundamental flaws in encryption and governance. Immediate remediation is essential to protect sensitive data, ensure regulatory compliance, and safeguard business continuity. Overall, the current state presents a critical risk to both operational security and legal standing.

50
-
5
85
-
85
100
healthcaremedical devicestechnologyprivacycompliance+1 more
EloquaOneTrust Cookies ConsentCoveo AnalyticsAdobe DTM+8

Partner Domains:

medtronic.com
subsidiarypending
diabetes.shop
subsidiarypending
2025-06-13T18:10:49.514Z