Skip to main content

High-risk security reports

Browse 43,809 Guard analyses across this slice of the directory — NIS2 / GDPR readiness, SSL/TLS, DNS hygiene and email authentication.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

149561
Websites
130
Industries
113
Countries
52
Avg Score
Page 170 of 877|Showing 8451-8500 of 43809
colibris-outilslibres.org favicon

Colibris Outils Libres

colibris-outilslibres.org

43
OtherFrancesmallHIGH

Colibris Outils Libres is a small-scale organization focused on providing free and open tools for project organization and collaboration. The website presents itself as a platform to help users organize and execute projects freely, targeting a general audience interested in open-source and collaborative tools. The domain has been registered since 2017 with a reputable registrar, indicating a stable presence. Technically, the website is built using modern frontend technologies including React and Gatsby, styled with Bootstrap. The site is mobile-optimized and offers a good user experience with clear navigation and professional design. However, the technical implementation lacks advanced security headers and privacy compliance features, which are areas for improvement. From a security perspective, the site uses HTTPS but does not enable DNSSEC or implement common security headers, which reduces its security posture. No privacy or cookie policies are present, and no contact or incident response information is provided, limiting transparency and compliance with regulations such as GDPR. Overall, the website is functional and trustworthy but would benefit from enhanced security measures, privacy compliance documentation, and clearer contact information to improve user trust and regulatory adherence.

15
35
17
70
52
70
20
freetoolsprojectmanagementopensourceorganizationcollaboration
ReactGatsbyBootstrap
2025-10-20T15:50:49.131Z
colibris-universite.org favicon

Mouvement Colibris

colibris-universite.org

46
EducationFrancemediumHIGH

The Université des Colibris is a French non-profit educational platform operated by the Mouvement Colibris, focused on empowering individuals and organizations to engage in ecological and social transition. The website offers a variety of MOOCs and training programs targeting citizens and professionals interested in sustainable development, governance, and community projects. The organization is well-established with a domain registered since 2016 and holds the Qualiopi certification, reinforcing its credibility in the education sector. Technically, the website is built on Drupal 7, utilizing JavaScript and Matomo analytics for user tracking. The site is moderately optimized for performance and mobile devices, with good SEO practices and structured data enhancing search visibility. Hosting is provided by Gandi SAS, a reputable registrar and hosting provider. However, some security enhancements such as enabling DNSSEC and adding security headers could improve the overall security posture. From a security perspective, the site uses HTTPS and has domain transfer protections in place, but lacks explicit security policies or incident response contacts. Privacy compliance is partially addressed with a privacy policy present, but no cookie consent mechanism was detected. The site tracks users moderately via Matomo, a privacy-friendly analytics tool. No vulnerabilities or exposed sensitive data were identified. Overall, the website presents a trustworthy and professional front for the educational services it offers, with room for improvement in security and privacy compliance to align with best practices and regulatory requirements.

30
35
17
70
62
55
20
educationnon-profitecologytrainingmooc+1 more
Drupal 7JavaScriptMatomo Analytics

Partner Domains:

colibris-lemouvement.org
parent
framasoft.org
partner

+2 more partners

2025-10-20T15:50:39.111Z
novaxia.fr favicon

Novaxia Groupe

novaxia.fr

43
Real EstateFrancemediumHIGH

Novaxia Groupe is a French real estate company specializing in sustainable and impact-driven real estate investment and urban recycling projects. The group operates through two main subsidiaries: Novaxia Investissement, which manages real estate investment funds focused on responsible and durable assets, and Novaxia Développement, which leads urban recycling projects transforming obsolete tertiary real estate into housing and mixed-use developments. The company positions itself as a leader in sustainable real estate savings in France, targeting investors seeking to align financial returns with environmental and social impact. Technically, the website is built on WordPress with modern SEO and analytics tools such as Yoast SEO, Google Tag Manager, Piano Analytics, and LinkedIn Insight Tag. It employs HTTPS with good SSL configuration and uses Google reCAPTCHA to secure forms. The site is well-optimized for mobile devices and accessibility, with comprehensive privacy and cookie policies that comply with GDPR requirements. From a security perspective, while HTTPS and form protections are in place, the site lacks explicit security headers and published security policies or incident response information. The absence of WHOIS data limits domain legitimacy verification, though the professional presentation and regulatory disclosures support trustworthiness. Overall, the website demonstrates a mature digital presence with moderate tracking and good privacy compliance. Strategically, Novaxia should enhance its security posture by implementing recommended HTTP security headers, publishing a security policy, and providing incident response contacts. Addressing the WHOIS data gap or clarifying domain registration details would improve trust and credibility. These steps will strengthen the company's digital security and compliance, supporting its market position as a responsible real estate investment leader.

15
25
2
70
67
65
20
realestatesustainableinvestmenturbanrecyclingimpactinvestingfrenchcompany+1 more
WordPressYoast SEOGoogle Tag ManagerGoogle reCAPTCHA+2

Partner Domains:

novaxia-investissement.fr
subsidiary
masteos.com
partner

+1 more partners

2025-10-20T15:50:29.085Z
musee-ile-oleron.fr favicon

musee-ile-oleron

musee-ile-oleron.fr

38
HospitalityFrancesmallHIGH

The Musée de l’île d’Oléron is a regional cultural institution dedicated to preserving and showcasing the heritage and traditions of the Oléron island. The museum offers a rich collection of over 500 objects spanning from prehistory to modern times. Currently closed for renovations with a reopening planned in 2027, it maintains engagement through temporary exhibitions, educational programs, and a mobile app for virtual tours. The website reflects a well-maintained digital presence with clear visitor information and official certifications, positioning the museum as a trusted cultural destination in the region. Technically, the website is built on WordPress with modern plugins and frameworks such as Yoast SEO, Bootstrap, and Ultimate Addons for Gutenberg. It employs HTTPS, Google reCAPTCHA v3 for form security, and a cookie consent mechanism via Axeptio, indicating a mature approach to privacy and security. Analytics are handled by Matomo, supporting privacy-conscious tracking. The site is mobile-optimized and SEO-friendly, though some accessibility features could be enhanced. Security posture is solid with HTTPS and form protections, but lacks explicit security headers and published security policies or incident response information. WHOIS data is unavailable, likely due to privacy protection, which is common and not suspicious for this type of institution. Overall, the site demonstrates good security hygiene and compliance with GDPR requirements. Strategically, the museum should consider publishing detailed security policies and incident response plans to enhance trust and transparency. Implementing security.txt and improving accessibility compliance would further strengthen its digital maturity. The website effectively supports the museum’s mission and audience engagement, with room for incremental security and technical improvements.

15
10
2
40
52
65
40
museumculturalheritagetourismolronfrance+3 more
WordPressYoast SEOUltimate Addons for GutenbergBootstrap 5+6

Partner Domains:

kwantic.fr
partner
ile-oleron-marennes.com
partner

+2 more partners

2025-10-20T15:46:31.315Z
vytahy-voto.cz favicon

Výtahy VOTO s.r.o.

vytahy-voto.cz

46
ManufacturingCzech RepublicmediumHIGH

Výtahy VOTO s.r.o. is a Czech Republic-based company specializing in the manufacturing, installation, modernization, and servicing of various types of elevators and elevator shafts. Founded in 1995, the company serves a diverse clientele including residential customers, building managers, and persons with mobility challenges. Their product portfolio includes personal and freight elevators, vertical platforms, and stair lifts, with a focus on compliance with European standards. The company maintains regional offices in Plzeň and Prague, enhancing its market reach. Technically, the website employs a range of established web technologies including jQuery, Bootstrap, Google Analytics, and Facebook SDK, indicating a moderate level of digital maturity. The site is mobile responsive and well-structured, though it lacks some modern security headers and explicit privacy and cookie policies, which are important for compliance and user trust. From a security perspective, the site uses HTTPS and avoids exposing sensitive data in its HTML content. However, the absence of security headers and privacy policies represents areas for improvement. The WHOIS data for the domain is unavailable, which limits the ability to fully verify domain registration legitimacy, though the website content and business information appear professional and trustworthy. Overall, the website presents a solid business presence with good content quality and user experience but would benefit from enhanced privacy compliance and security hardening to improve trust and regulatory adherence.

20
10
17
80
62
85
20
elevatorsmanufacturingliftmodernizationaccessibilityczechrepublic+1 more
jQuery 1.11.1Google AnalyticsGoogle Tag ManagerFacebook SDK+4
2025-10-20T14:44:02.151Z
C

Security Verification

cancarka.cz

45
OtherN/asmallHIGH

The website at cancarka.cz is currently inaccessible beyond a security verification page that employs Google reCAPTCHA v3 to prevent automated access. This indicates the presence of a Web Application Firewall (WAF) or similar bot mitigation mechanism, which blocks full content delivery and limits the ability to analyze the site's business or security posture comprehensively. The domain is very new, registered in April 2024, consistent with a newly launched or under-development site. No business information, contact details, or privacy policies are available on the accessible page, which restricts trust and credibility assessment. From a technical perspective, the site uses modern frontend libraries such as Bootstrap 5.3.3 and integrates Google reCAPTCHA for security. However, no explicit security headers or HTTPS confirmation were found in the provided data, and the content is minimal, consisting solely of a bot verification challenge. This results in a low content quality and poor user experience. Security-wise, the use of Google reCAPTCHA is a positive measure against automated threats, but the absence of visible security headers and policies, combined with the blocking mechanism, suggests an immature security posture. The lack of privacy and cookie policies also indicates non-compliance with GDPR and related regulations. Overall, the site currently presents a high risk for users and visitors due to lack of transparency, minimal content, and blocking by security mechanisms. Strategic improvements in content availability, security headers, privacy compliance, and business transparency are recommended to enhance trust and usability.

-
-
-
60
95
80
100
securitycaptchabot-protectionverification
Bootstrap 5.3.3Google reCAPTCHA v3
2025-10-20T14:33:34.803Z
I

indica.pictures

indica.pictures

42
OtherN/asmallHIGH

The website indica.pictures/lander is currently a minimal placeholder or parking page with very limited content. It primarily loads a React-based JavaScript bundle and includes Google Adsense scripts for advertising. There is no visible business information, metadata, or structured data to describe the company or its services. The lack of contact details, privacy policies, or terms of service indicates a very low level of digital maturity and business presence. Technically, the site uses modern JavaScript frameworks but lacks SEO optimization, accessibility features, and security headers. There is no evidence of HTTPS or SSL configuration from the provided data. The WHOIS information is unavailable due to unsupported TLD, preventing verification of domain ownership or legitimacy. From a security perspective, the site shows no signs of advanced security measures or compliance with privacy regulations such as GDPR. The absence of contact information and security policies further reduces trustworthiness. No vulnerabilities or malicious indicators were detected, but the minimal content limits comprehensive security assessment. Overall, the site presents a low-risk profile due to its minimal content but also a low trust and credibility level. Strategic recommendations include implementing HTTPS, adding privacy and cookie policies, providing clear business and contact information, and improving SEO and accessibility to enhance user trust and compliance.

25
50
2
60
-
75
100
placeholderparkingminimal-contentadsensereact
React (inferred from main.bd170100.js)
2025-10-20T14:30:36.990Z
R

ricansko.eu

ricansko.eu

38
OtherN/asmallHIGH

The website www.ricansko.eu is currently non-functional, returning a PHP fatal error related to deprecated syntax in the script-loader.php file. This prevents access to any meaningful content or business information. The lack of HTTPS and security headers further weakens the site's security posture. WHOIS data is inaccessible, likely due to privacy protection or data redaction by the EURid registry, which limits the ability to verify domain legitimacy or ownership details. Overall, the site appears to be either abandoned or under maintenance with critical technical issues preventing normal operation. From a technical perspective, the site lacks modern web standards compliance, including secure transport (HTTPS), error handling, and content delivery. No metadata, structured data, or external links are present, indicating minimal or no active digital presence. The absence of privacy, cookie, or terms of service policies suggests non-compliance with GDPR and other privacy regulations. Security-wise, the site exposes a fatal error message, which can leak internal implementation details and increase risk. The absence of security headers and HTTPS further exposes visitors to potential risks. The WHOIS data unavailability and domain registration opacity add to concerns about the site's trustworthiness and operational status. Given these factors, the overall risk assessment is high. The site should urgently address the PHP errors, implement HTTPS, and publish necessary compliance policies. Until then, it should be considered unreliable and potentially insecure.

30
15
2
65
75
85
20
2025-10-20T13:25:42.612Z