Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157327
Websites
130
Industries
113
Countries
52
Avg Score
Page 224 of 248|Showing 11151-11200 of 12372
B

Bolt Technology OÜ

bolt.eu

59
TransportationEstonialargeMEDIUM

Bolt Technology OÜ operates a leading European mobility superservice platform offering ridesharing, food and grocery delivery, car sharing, and micro-mobility solutions across 600+ cities in 50+ countries. The company targets urban consumers and business clients seeking convenient, sustainable transportation and delivery options. Their multi-service mobile app consolidates diverse mobility needs into a single platform, positioning Bolt as a competitive alternative to private car ownership and traditional transport services. Technically, the website leverages modern frameworks such as Next.js and React, hosted likely on AWS infrastructure with a Strapi CMS backend. The site is well-optimized for performance, mobile responsiveness, and SEO, with comprehensive multi-language support. Integration of Google Tag Manager indicates moderate user tracking for analytics and marketing purposes. Security posture is strong with HTTPS enforced, appropriate security headers, and no visible vulnerabilities or exposed sensitive data. Privacy compliance is robust, with clear privacy and cookie policies and consent mechanisms in place. However, explicit incident response and vulnerability disclosure policies are not found, representing an area for improvement. Overall, Bolt's digital presence reflects a mature, professional, and trustworthy organization with a strong market position in the transportation sector. Strategic recommendations include enhancing transparency around security incident response, maintaining up-to-date security practices, and formalizing vulnerability disclosure to further strengthen trust and compliance.

60
48
-
87
-
85
100
mobilityridesharingfooddeliverye-scooterscarsharing+5 more
ReactNext.jsJavaScriptCSS+2

Partner Domains:

couriers.bolt.eu
partner
partners.food.bolt.eu
partner

+2 more partners

2025-06-21T18:22:07.291Z
gov.bc.ca favicon

Province of British Columbia

gov.bc.ca

53
GovernmentCanadaenterpriseMEDIUM

The website gov.bc.ca serves as the official online presence of the Government of British Columbia, providing comprehensive information and access to public services for residents and businesses within the province. It is positioned as a trusted government resource with a broad range of key services including government information dissemination, employment resources, news updates, and public engagement platforms. The site targets citizens, businesses, and stakeholders in British Columbia, operating under a government public service model with an enterprise scale and a founding date consistent with its domain registration history. Technically, the site is built on modern web technologies including React and Next.js, supported by a custom content management framework. It demonstrates good digital maturity with mobile optimization, accessibility features, and SEO best practices. Performance is moderate, with asynchronous loading of scripts and structured content delivery. From a security perspective, the site enforces HTTPS, employs multiple security headers, and avoids exposing sensitive data. However, it lacks a dedicated security policy or incident response contact information, and does not implement a cookie consent mechanism despite having a cookie policy. These gaps present opportunities for improvement in compliance and user trust. Overall, the website is professional, trustworthy, and well-maintained, reflecting its role as a government portal. Strategic recommendations include enhancing privacy compliance with explicit consent mechanisms, publishing security and incident response policies, and maintaining vigilance on third-party scripts to uphold security standards.

40
28
-
85
-
80
100
governmentbritishcolumbiapublicservicesofficialbcgovernment
ReactNext.jsJavaScriptCSS
2025-06-21T18:22:07.244Z
W

Wintershall Dea GmbH

wintershall.com

43
EnergyGermanylargeHIGH

Wintershall Dea GmbH is a leading independent gas and oil company in Europe, with a strong market position in the energy sector. The company focuses on exploration and production of gas and oil, targeting investors, partners, and customers within the energy industry. The website reflects a professional corporate presence with comprehensive content about the company's history, management, and responsibility. The digital infrastructure is built on Drupal CMS, enhanced with Matomo analytics for user tracking under GDPR-compliant cookie consent mechanisms. The site is mobile-optimized and accessible, with clear navigation and consistent branding. From a security perspective, the website enforces HTTPS and employs cookie consent categories, but lacks explicit security headers and published security policies or incident response contacts. No vulnerabilities or exposed sensitive data were detected in the HTML content. The site integrates multiple marketing and tracking tools including LinkedIn Insight, Google Ads, Meta Pixel, and Twitter tracking, all gated behind user consent. Overall, the security posture is solid but could be improved by adding formal security policies and headers. The domain registration details align well with the company's identity, showing consistency and legitimacy. No WAF or blocking mechanisms interfere with content access, allowing full analysis. The website demonstrates a high level of professionalism and trustworthiness, suitable for its corporate audience and business model.

55
25
-
-
-
85
100
energyoilgascorporatedrupal+2 more
Drupal CMSMatomo AnalyticsJavaScriptSVG+1
2025-06-21T18:22:06.644Z
G

GoDaddy, LLC

hpwmg.com

43
OtherUnited StatesenterpriseHIGH

The website hpwmg.com is a parked domain page managed by GoDaddy, LLC, a well-known domain registrar and parking service provider. The page offers no active business content or services and primarily serves as a placeholder indicating the domain is available for purchase. The target audience is domain investors or buyers interested in acquiring this domain. The business model is domain parking and sales, leveraging GoDaddy's platform and branding. The site includes basic trust signals such as a Trustpilot widget and a cookie consent banner powered by TrustArc, reflecting minimal but present privacy compliance efforts. From a technical perspective, the site uses standard web technologies including JavaScript, CSS, and third-party widgets for consent management and trust signals. It is hosted on GoDaddy's infrastructure and lacks a content management system. The performance is moderate with basic mobile optimization and accessibility features. SEO optimization is minimal due to the nature of the parked page. Security posture is limited; no HTTPS was detected in the provided HTML content, and no advanced security headers are present. The site uses a cookie consent mechanism but lacks detailed security or incident response policies. There are no forms or data collection fields, reducing attack surface but also limiting user engagement. The domain registration is consistent and legitimate, owned by GoDaddy, with no suspicious WHOIS patterns. Overall, the site is low risk but also low value from a business and security perspective. Strategic recommendations include implementing HTTPS, enhancing security headers, improving accessibility and SEO, and providing clearer contact and security policies to increase trust and compliance.

15
43
-
60
-
75
100
domainparkinggodaddycookieconsenttrustarctrustpilot
JavaScriptCSSTrustArc Consent ManagementTrustpilot Widget
2025-06-21T18:22:05.020Z
P

Prickly Pear Works

pricklypearworks.com

57
OtherMaltasmallMEDIUM

Prickly Pear Works is a small local business based in Malta specializing in branding, web design, and print services. The business maintains a professional presence primarily through its Facebook page, which serves as its main digital platform. The page showcases their services and recent projects, targeting local clients seeking creative and print solutions. The company appears to have a consistent brand identity and a moderate follower base, indicating a stable market position within its niche. Technically, the business leverages the Facebook platform for hosting and content delivery, utilizing modern web technologies such as React and GraphQL. The site benefits from Facebook's robust infrastructure, ensuring fast loading times and mobile optimization. However, the reliance on a third-party platform limits direct control over certain technical aspects like SEO and accessibility. From a security perspective, the page benefits from Facebook's comprehensive security measures, including HTTPS enforcement and standard security headers. No vulnerabilities or exposed sensitive data were detected. Privacy compliance is managed through Facebook's policies, with clear cookie consent mechanisms and privacy policy links. However, the business itself does not provide dedicated security or incident response information. Overall, Prickly Pear Works presents a trustworthy and professional online presence suitable for its business scale. The strategic use of Facebook as a platform offers advantages in performance and security but also imposes limitations in customization and direct control. Enhancing direct business information and security policies on a dedicated website could further improve credibility and compliance.

70
63
13
60
-
75
100
brandingwebprintlocalbusinessmalta
ReactGraphQLRelayJavaScript+1
2025-06-21T18:22:04.736Z
casan.com.br favicon

Companhia Catarinense de Águas e Saneamento

casan.com.br

48
EnergyBrazillargeHIGH

CASAN (Companhia Catarinense de Águas e Saneamento) is a large regional public utility company in Brazil specializing in water supply and sanitation services primarily for the state of Santa Catarina. The company provides a broad range of services including water distribution, sewage treatment, billing, debt management, and social tariff programs. The website serves as a customer portal offering quick access to payment options, service notifications, and customer support channels. CASAN maintains an active social media presence and links to government transparency and regulatory portals, reinforcing its public utility status. Technically, the website uses legacy JavaScript libraries such as jQuery 1.7.1 and jCarousel, indicating some technical debt. The site is moderately optimized for mobile devices and has a clear navigation structure. Hosting appears to be managed internally or via dedicated infrastructure. Google Analytics is used for visitor tracking, but no privacy or cookie policies are present, which is a compliance gap. Security headers are not visible in the HTML source, and the use of outdated libraries may expose the site to vulnerabilities. From a security perspective, the site benefits from HTTPS usage on external service links and no visible sensitive data exposure. However, the lack of modern security headers, outdated JavaScript libraries, and missing privacy compliance elements reduce the overall security posture. Incident response and security policy information are not publicly available. The domain registration data aligns well with the business claims, indicating legitimacy and trustworthiness. Overall, CASAN's website is a functional and professional portal for a major public utility company but would benefit from modernization of its technical stack, enhanced security practices, and improved privacy compliance to reduce risk and improve user trust.

30
10
5
90
-
70
100
watersanitationpublicutilitybrazilcustomerservice+2 more
jQuery 1.7.1jCarouselJavaScriptCSS

Partner Domains:

casan.flexpag.com
partner
online.casan.com.br
partner

+3 more partners

2025-06-21T18:22:04.590Z
T

Teatru Manoel

teatrumanoel.com.mt

50
HospitalityMaltamediumMEDIUM

Teatru Manoel is a historic and culturally significant theatre located in Malta, offering event bookings, theatre tours, and cultural performances. The website serves as a booking platform and information portal for upcoming events, targeting the general public interested in theatre and cultural activities. The business model revolves around ticket sales and event management, positioning Teatru Manoel as an established cultural venue within the Maltese hospitality sector. Technically, the website employs modern web technologies including JavaScript, SVG graphics, and lazy loading for images, hosted on Microsoft Azure infrastructure. The site demonstrates good mobile optimization, accessibility, and SEO practices, contributing to a positive user experience. The presence of cookie consent mechanisms and privacy policies indicates a mature approach to privacy compliance. From a security perspective, the site enforces HTTPS and includes anti-clickjacking scripts, though explicit security headers are not detected. No critical vulnerabilities or exposed sensitive data were found. The security posture is solid but could be enhanced by implementing additional HTTP security headers and publishing detailed security policies. Overall, the website is professional, trustworthy, and compliant with GDPR requirements. It effectively supports the business goals of Teatru Manoel while maintaining a secure and user-friendly online presence. Strategic recommendations include enhancing security headers, expanding security and incident response documentation, and continuous monitoring of third-party scripts.

55
43
-
40
-
80
100
theatrebookingseventsculturemalta
JavaScriptSVGCSSHTML5
2025-06-21T18:22:04.330Z
fairplaycasino.com favicon

FairPlay

fairplaycasino.com

40
HospitalityN/asmallHIGH

FairPlay appears to be an online casino platform targeting Dutch-speaking users, offering gambling services with customer support via email. The website is minimalistic, primarily serving as a landing page with a logo and a contact email address. There is no evidence of privacy, cookie, or terms of service policies, and no interactive forms or social media presence are visible. The technical infrastructure is basic, with JavaScript and CSS used for styling and minimal scripting. The site references a Freshchat widget script, but it is commented out, indicating no active live chat functionality. No structured data or SEO enhancements are present. From a security perspective, the website lacks HTTPS information in the provided data, no security headers are detected, and no incident response or vulnerability disclosure information is available. These factors indicate a low security posture with significant room for improvement. The absence of privacy and cookie policies also suggests non-compliance with GDPR requirements, which is critical for online gambling platforms operating in or targeting the EU. Overall, the website's risk profile is elevated due to minimal content, lack of security best practices, and absence of compliance documentation. Strategic recommendations include implementing HTTPS, publishing comprehensive privacy and cookie policies, adding security headers, and enhancing contact information. Improving these areas will increase trustworthiness, legal compliance, and user confidence.

15
25
-
70
-
70
100
onlinecasinogamblingcustomersupportdutch
JavaScriptCSS
2025-06-21T18:22:04.179Z
powerhalton.ca favicon

Protect Our Water and Environmental Resources (P.O.W.E.R.)

powerhalton.ca

47
Non-profitCanadasmallHIGH

POWER Halton is a small Canadian non-profit organization dedicated to protecting water and environmental resources in North Halton and beyond. Established in 1989, it has a strong community focus with international recognition, including United Nations accreditation and participation in the 1992 Earth Summit. The organization engages in environmental education, policy advocacy, and landscape restoration, targeting individuals, governments, and like-minded organizations. The website reflects a consistent and professional brand image with clear contact information and community engagement features such as a newsletter subscription. Technically, the website is built on the Squarespace platform, leveraging modern web technologies including Typekit fonts and Google Fonts. The site is mobile-optimized and performs moderately well, though accessibility and SEO optimizations are basic. Security posture is adequate with HTTPS enabled and no exposed sensitive data, but lacks advanced security headers and published security policies. Privacy compliance is weak due to the absence of privacy and cookie policies or consent mechanisms. Overall, the website is trustworthy and professionally maintained but would benefit from enhanced privacy compliance and security policy transparency. Strategic improvements in these areas would strengthen user trust and regulatory adherence.

35
10
5
70
-
75
100
environmentnon-profitcommunitysustainabilityenvironmentalprotection+2 more
SquarespaceTypekit FontsGoogle FontsJavaScript+1
2025-06-21T18:22:03.783Z
l-3nss.com favicon

L-3 National Security Solutions group, Inc.

l-3nss.com

33
GovernmentN/alargeHIGH

L-3 National Security Solutions group, Inc. operates as a defense and government contracting entity specializing in national security technology solutions. Their offerings include full-spectrum cyber operations, enterprise and mission IT, intelligence operations support, and operational infrastructure solutions. The company targets government agencies and defense sectors, positioning itself as an established provider with multiple contract vehicles and partnerships. The website content reflects a professional and consistent brand image, though some technical aspects are dated. Technically, the website is built on Joomla CMS and employs older JavaScript libraries such as jQuery 1.7.1 and MooTools, alongside deprecated Flash content. The site shows moderate performance and basic mobile optimization but lacks modern security headers and visible HTTPS enforcement. SEO and accessibility features are basic, indicating room for improvement in digital maturity. From a security perspective, the site does not expose sensitive data but uses outdated technologies that pose risks. The absence of privacy and cookie policies indicates compliance gaps, and no incident response or security policy information is provided. The WHOIS data aligns well with the business claims, supporting legitimacy. Overall, the security posture is moderate but requires enhancements to meet current standards. The overall risk assessment suggests the website is functional and credible but needs modernization and compliance improvements. Strategic recommendations include upgrading technology stacks, implementing security headers, enforcing HTTPS, and adding privacy and cookie policies to enhance trust and compliance.

15
25
5
60
-
75
20
nationalsecuritycyberoperationsdefensegovernmentcontractinginformationtechnology
JavaScriptjQuery 1.7.1MooToolsFlash (deprecated technology)+1
2025-06-21T18:22:03.781Z
ccmedianetwork.com favicon

CC Media Network Ltd

ccmedianetwork.com

54
MediaGibraltarmediumMEDIUM

CC Media Network Ltd is a well-established company based in Gibraltar, specializing in the development and management of live video chat platforms and pay-as-you-go billing technologies within the entertainment sector. Founded in 1999, the company has positioned itself as a leader and pioneer in this niche, serving a global user base with cloud-based, scalable, and device-agnostic solutions. Their website reflects a mature digital presence with professional design, clear navigation, and mobile optimization, supporting their market position. Technically, the website is built using modern frameworks such as GatsbyJS and React, ensuring fast performance and good SEO practices. The use of Google Analytics and Google Tag Manager indicates a moderate level of user tracking, balanced with privacy compliance through visible cookie consent mechanisms and comprehensive privacy and cookie policies. From a security perspective, the site employs HTTPS and secure form inputs but lacks explicit security headers and dedicated security or incident response pages. No vulnerabilities or exposed sensitive data were detected in the HTML content. The WHOIS data corroborates the legitimacy of the domain and business claims, showing consistent registrant information and domain age appropriate for the company's history. Overall, the website demonstrates a strong business credibility and technical maturity with room for improvement in security best practices and incident response transparency.

30
58
-
75
-
85
100
livevideochatstreamingtechnologybillingtechnologyentertainmentcloud-based+1 more
GatsbyJSReactJavaScriptCSS+2
2025-06-21T18:22:03.361Z
jerrydee.com favicon

Network Solutions

jerrydee.com

39
TechnologyN/amediumHIGH

The website jerrydee.com currently serves as a placeholder under construction page hosted by NetworkSolutions.com, a domain registration and internet services provider. The site offers no active business content or services, only displaying a message that the site is under construction and providing a NetworkSolutions.com assistance phone number. The market positioning and business model inferred relate to domain registration services, but no direct business entity or operational details are present on the site. Technically, the site is minimal, consisting of basic HTML and CSS with no detected scripts, analytics, or modern frameworks. There is no evidence of HTTPS or security headers from the provided data, and the site lacks privacy, cookie, or terms of service policies. The site is not optimized for SEO or accessibility and provides a poor user experience due to its placeholder nature. From a security perspective, the absence of HTTPS and security headers, combined with no visible privacy or incident response policies, indicates a very low security posture. No vulnerabilities or malicious indicators were detected, but the lack of security best practices and transparency is a concern. The domain is privacy protected, which is common but limits trust signals. Overall, the site is not currently operational as a business website and presents minimal risk but also minimal trustworthiness. The overall risk assessment is low due to the lack of active content or data collection, but the site should be updated with proper security, privacy, and business information before going live. Strategic recommendations include implementing HTTPS, adding privacy and cookie policies, providing clear business contact information, and improving content quality to establish credibility and trust.

15
25
5
70
-
75
100
domainregistrationunderconstructionnetworksolutions
HTMLCSS
2025-06-21T18:22:03.339Z
G

GoDaddy, LLC

successlodge.com

40
OtherUnited StatesenterpriseHIGH

The website successlodge.com is a parked domain page managed by GoDaddy, LLC, a well-known domain registrar and parking service provider. The site contains minimal content, primarily serving as a placeholder with advertising and a call to action to purchase the domain. There is no active business presence, contact information, or detailed content related to any commercial or service offering. The target audience appears to be potential domain buyers or investors. Technically, the site uses basic web technologies including JavaScript, CSS, and external widgets such as Trustpilot and Google Adsense. The hosting and platform are provided by GoDaddy's domain parking infrastructure. The site is minimalistic with basic mobile optimization but lacks advanced SEO, accessibility features, and modern CMS frameworks. From a security perspective, the site lacks HTTPS/SSL in the provided data, has no visible security headers, and does not provide security or incident response policies. Cookie consent is managed via a third-party Truste script, and a basic privacy policy is linked but is minimal and not fully GDPR compliant. No forms or data collection mechanisms are present beyond advertising scripts. Overall, the site poses low risk but also offers minimal business value or trust signals. It is recommended to implement HTTPS, improve privacy and security disclosures, and provide contact information if the domain is to be developed into an active business site.

15
28
-
60
-
75
100
domainparkinggodaddytrustpilotadvertisingplaceholder
JavaScriptCSSTrustpilot widgetGoogle Adsense
2025-06-21T18:22:03.250Z
mbr.mt favicon

Malta Business Registry

mbr.mt

53
GovernmentMaltamediumMEDIUM

The Malta Business Registry (MBR) is the official government entity responsible for the registration and regulation of commercial partnerships and companies in Malta. It provides a comprehensive range of services including company formation, document registration, issuance of certified documents, name reservations, fee collection, publication of notices, and insolvency proceedings management. The website serves as a central portal for businesses, legal professionals, and the public to access regulatory information and online services. The MBR holds a strong market position as the authoritative registry in Malta, supported by official certifications and a consistent brand presence. Technically, the website is built on WordPress with modern plugins such as Jetpack and Gutenberg, hosted on WordPress.com Atomic infrastructure. It employs HTTPS with excellent SSL configuration, uses Google Fonts for typography, and demonstrates good mobile optimization and accessibility. The site features clear navigation and professional design, supporting a positive user experience. From a security perspective, the site enforces HTTPS and uses security best practices, though some security headers could be enhanced. No vulnerabilities or exposed sensitive data were detected. Privacy and cookie policies are present with consent mechanisms, indicating good compliance with GDPR requirements. Contact information is clearly provided, including phone, email, and physical address, enhancing trust. Overall, the Malta Business Registry website is a well-maintained, secure, and professional government portal that effectively supports its business and regulatory functions. Strategic recommendations include enhancing security headers, publishing a vulnerability disclosure policy, and maintaining regular security audits to sustain and improve its security posture.

30
48
5
75
-
80
100
governmentbusinessregistrycompanyregistrationinsolvencylegal+2 more
WordPressGutenbergJetpackPHP+3

Partner Domains:

register.mbr.mt
service
support.mbr.mt
service

+2 more partners

2025-06-21T18:22:03.206Z
copportunities.net favicon

copportunities.net

copportunities.net

38
OtherN/asmallHIGH

The website copportunities.net is currently a parked domain registered through Gandi.net, with no active business content or services presented. The site displays a minimal placeholder page indicating the domain registration status and provides links to Gandi.net for domain management and WHOIS lookup. There is no evidence of an operational business, no contact information, and no privacy or cookie policies, indicating the site is not currently used for commercial or informational purposes. Technically, the site uses basic HTML, CSS, and a small JavaScript snippet for redirecting users to domain search on Gandi.net. A Content-Security-Policy header is present, which is a positive security measure, but no other advanced technologies, CMS, or analytics tools are detected. The site appears to be hosted by Gandi.net, consistent with the domain registration service. From a security perspective, the site lacks HTTPS information in the provided data, but the presence of a CSP header is a good practice. There are no forms or data collection points, reducing attack surface, but also no privacy or security policies. The lack of business information and policies means compliance with GDPR or other regulations cannot be assessed. Overall, the security posture is minimal but adequate for a parked domain. Given the lack of active content, business information, or security policies, the site scores low on content quality, business credibility, and privacy compliance. The domain is privacy protected, which is typical for parked domains. Strategic recommendations include establishing HTTPS, adding privacy and cookie policies if the site becomes active, and providing clear business and contact information to improve trust and compliance.

30
25
-
70
-
55
100
parkeddomaindomainregistrationgandinet
CSSJavaScript
2025-06-21T18:22:02.693Z
Y

yl23455永利

filetactics.com

40
EducationChinamediumHIGH

The website 'yl23455永利(CHINA)有限公司官网' presents itself as an educational and cultural media platform with a focus on online entertainment and academic news. It targets a Chinese-speaking audience interested in cultural, educational, and entertainment content. The business model appears to revolve around online entertainment services and cultural media collaborations, positioning itself as a leader in the domestic wireless value-added services sector. However, the website lacks transparent business registration details and verifiable contact information, which impacts its credibility. Technically, the site is built using Visual SiteBuilder 9 CMS with a traditional HTML, CSS, and JavaScript stack. It includes multiple third-party scripts for analytics and tracking, notably from 51.la and Baidu domains. The site lacks HTTPS, which is a significant security and trust concern. Mobile optimization is poor, and SEO and accessibility features are basic. The site uses some JavaScript libraries but does not employ modern frameworks or advanced performance optimizations. From a security perspective, the absence of HTTPS and security headers, combined with the use of multiple external scripts without integrity checks, exposes the site to potential risks. There is no visible privacy policy, cookie consent mechanism, or incident response information, indicating low privacy compliance and security maturity. The WHOIS data is privacy protected, which reduces transparency and trustworthiness. Overall, the website scores low to moderate on content quality, technical implementation, security posture, privacy compliance, and business credibility. Strategic improvements in security (HTTPS, headers), privacy policies, and transparent contact information are critical to enhance trust and compliance.

-
25
-
60
-
85
100
educationchineseonlineentertainmentculturalmedianews+1 more
JavaScriptHTML5CSSBase64 encoding+1
2025-06-21T18:22:02.485Z
C

curbsy.com.mt

curbsy.com.mt

36
OtherN/asmallHIGH

The website curbsy.com.mt currently serves as a minimal placeholder page with no substantive content or business information. The main visible content is an iframe embedding a third-party domain (yfdpco.com), which raises concerns about the legitimacy and intent of the site. There are no privacy, cookie, or terms of service policies present, and no contact information is provided, limiting user trust and compliance with data protection regulations. Technically, the site lacks HTTPS and security headers, further weakening its security posture. From a technical infrastructure perspective, the site uses basic HTML, CSS, and JavaScript with content delivery via AWS Cloudfront CDN. However, the reliance on an external iframe for primary content and absence of modern web practices such as responsive design, SEO optimization, and accessibility features indicate low digital maturity. Performance is likely slow due to iframe embedding and lack of optimization. Security evaluation reveals critical gaps including missing HTTPS, absence of security headers, no visible forms or secure data collection mechanisms, and no incident response or vulnerability disclosure information. The embedded third-party domain is suspicious and could pose risks to users. Overall, the site presents a high risk profile with poor privacy compliance and minimal business credibility. Strategically, the site requires urgent improvements in security, privacy compliance, and content authenticity to establish trust and legitimacy. Without these, it risks being flagged as suspicious or malicious by users and security tools.

15
-
-
65
-
85
100
JavaScriptHTML5CSS
2025-06-21T18:22:00.760Z
S

St. Michaels Electrical Engineering Services & Distribution L.L.C.

stmichaelselectrical.com

41
EnergyUnited StatessmallHIGH

St. Michaels Electrical Engineering Services & Distribution L.L.C. is a small local energy services company specializing in electrical engineering, distribution products, and energy savings solutions. The company targets commercial, healthcare, industrial, and government sectors, offering products and services aimed at reducing electric bills and improving energy efficiency. They emphasize lamp disposal services compliant with DOE and EPA guidelines and maintain memberships in recognized industry organizations such as the Engineering Society of Detroit and the U.S. Green Building Council. Technically, the website is built using an older site builder platform (Trellix Site Builder) hosted by webhosting.web.com. The site uses basic HTML, CSS, and JavaScript without modern frameworks or CMS. Performance is moderate but mobile optimization and accessibility are poor. The site lacks HTTPS, security headers, and modern security practices, which significantly impacts its security posture. From a security perspective, the absence of HTTPS and security headers, combined with no privacy or cookie policies, represents critical vulnerabilities. No incident response or vulnerability disclosure information is provided. The site does not use analytics or tracking services, indicating minimal user tracking. Overall, the security maturity is low, and the site requires urgent improvements to protect user data and comply with privacy regulations. The overall risk assessment indicates moderate business credibility but poor security and privacy compliance. Strategic recommendations include implementing HTTPS, adding security headers, establishing privacy and cookie policies, improving mobile responsiveness, and enhancing form security to build trust and protect users.

15
25
-
70
-
70
100
energyelectricalengineeringdistributionlighting+1 more
HTMLCSSJavaScript
2025-06-21T18:22:00.641Z
P

Paragon Offshore Limited

paragonoffshore.com

44
EnergyN/amediumHIGH

Paragon Offshore Limited is an offshore drilling company that underwent significant corporate restructuring, culminating in its acquisition by Borr Drilling Limited in 2018. The website primarily serves as a corporate notice platform informing visitors about the ownership change and the status of shares. The company operates in the energy sector, specifically offshore drilling, and functions as a subsidiary under Borr Drilling Limited. The website content is minimal and focused on corporate information rather than marketing or customer engagement. Technically, the website is built with basic HTML, CSS, and JavaScript without modern frameworks or CMS detected. The site lacks mobile optimization and accessibility features, and no advanced SEO or analytics tools are evident. The performance is moderate but limited by the simplicity of the site. There is no evidence of HTTPS usage or security headers, which indicates a weak security posture. From a security perspective, the site lacks critical elements such as HTTPS, privacy and cookie policies, contact information, and incident response details. No forms or user input mechanisms are present, reducing attack surface but also limiting user engagement. The absence of security best practices and compliance indicators suggests the site is informational only and not designed for interactive or transactional use. Overall, the website presents a low-risk profile due to its static nature but suffers from poor security and privacy compliance. Strategic improvements in security, privacy policies, and technical modernization are recommended to enhance trust and compliance.

15
25
-
85
-
80
100
offshoredrillingcorporaterestructuringenergyborrdrillingparagonoffshore
HTML5CSSJavaScript

Partner Domains:

borrdrilling.com
parent
2025-06-21T18:21:59.843Z
M

Michael Grech Financial Investment Services Limited

michaelgrechfinancial.com

45
FinanceMaltasmallHIGH

Michael Grech Financial Investment Services Limited is a licensed financial investment services provider based in Malta, regulated by the Malta Financial Services Authority and a member of the Malta Stock Exchange. The company offers a range of investment products including shares, bonds, funds, and tailored investment plans, targeting investors seeking portfolio management and wealth building solutions. The website provides regulatory disclosures, COVID-19 operational notices, and current financial news, reflecting a business focused on compliance and client communication. Technically, the website uses legacy technologies such as jQuery 1.2.6 and standard JavaScript with CSS styling and Google Fonts. The site structure is basic with moderate performance and limited mobile optimization. SEO and accessibility features are present but basic. No advanced CMS or modern frameworks are detected. External links are primarily to reputable financial and regulatory domains. From a security perspective, the site lacks visible security headers and uses an outdated JavaScript library, which poses potential risks. There is no cookie consent mechanism or explicit privacy compliance indicators beyond a basic privacy policy PDF. Contact information is clearly presented, but no incident response or security policy pages are found. The domain registration data aligns well with the business claims, supporting legitimacy. Overall, the website presents a moderately credible and compliant financial services business with room for technical and security improvements. Strategic enhancements in security headers, library updates, privacy compliance, and mobile optimization would strengthen the digital maturity and trustworthiness of the platform.

-
33
-
85
-
75
100
financialservicesinvestmentmaltastockexchangeshares+2 more
jQuery 1.2.6JavaScriptCSSGoogle Fonts
2025-06-21T18:21:59.172Z
B

Cyberspace Console :: Login

bee.com.mt

14
OtherN/asmallCRITICAL

The website bee.com.mt presents a minimalistic login page titled 'Cyberspace Console :: Login' with no substantive business content or policies. The page includes a login form that posts user credentials to an external domain (konsoleh.your-server.de), which raises significant security concerns including potential phishing risks. The site lacks HTTPS on its main domain, has no privacy or cookie policies, and does not provide verified contact emails or physical addresses, only a phone number labeled as support. Branding is inconsistent, using an external logo from cyberlobby.com, and the technical implementation relies on outdated JavaScript libraries without modern security headers or protections. Technically, the site uses basic HTML, CSS, and jQuery 1.10.2, hosted on a dedicated server under your-server.de. Performance and mobile optimization are basic, with poor accessibility and SEO. Security posture is weak due to lack of HTTPS, missing security headers, and insecure form handling. No analytics or marketing tools are detected, and no GDPR compliance indicators are present. Overall, the site exhibits low trustworthiness and poor business credibility, with critical security issues that significantly reduce its reliability. The domain registration is privacy protected, which combined with the suspicious form action and lack of business information, further undermines legitimacy. Strategic recommendations include implementing HTTPS, securing form submissions, adding security headers, updating libraries, and publishing privacy and cookie policies to improve trust and compliance.

15
-
-
-
-
75
-
loginsecurityphishingcyberspaceconsole
HTMLCSSJavaScriptjQuery 1.10.2
2025-06-21T18:21:59.161Z
oceanstrategy.eu favicon

Ocean Strategy

oceanstrategy.eu

44
OtherMaltasmallHIGH

Ocean Strategy is a small, independent boutique advisory firm based in Malta, specializing in research-based consultancy and enterprise project management services for organizations and family offices. The company operates through a network of independent consultants and corporate partners, delivering tailored strategic enterprise development and policy-based initiatives. The website is professionally designed using Squarespace, with good branding consistency and clear navigation. Contact information including email, phone, and physical address is clearly provided, enhancing business credibility. Technically, the website leverages Squarespace CMS, Typekit fonts, and Google Tag Manager for analytics. HTTPS is enabled, but the absence of HSTS headers and privacy/cookie policies indicates areas for security and compliance improvement. No forms or data collection fields are present on the homepage, reducing immediate privacy risks. The site shows moderate performance and good mobile optimization. Security posture is generally good with no exposed sensitive data or vulnerable libraries detected. However, the lack of security policies and incident response contacts limits transparency. The domain is privacy protected but has a registration date consistent with the business's apparent history, supporting legitimacy. Overall, the site is trustworthy but would benefit from enhanced privacy and security disclosures. Strategic recommendations include implementing privacy and cookie policies with consent mechanisms, enabling HSTS headers, publishing security and incident response policies, and improving accessibility features to meet compliance standards.

25
-
5
70
-
75
100
SquarespaceTypekit FontsGoogle Tag ManagerJavaScript+1
2025-06-21T18:21:59.106Z