Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157327
Websites
130
Industries
113
Countries
52
Avg Score
Page 227 of 248|Showing 11301-11350 of 12372
oru.se favicon

Örebro universitet

oru.se

51
EducationSwedenlargeMEDIUM

Örebro universitet is a well-established public university in Sweden, offering a broad range of educational programs and conducting research with a focus on modernity and quality. The website reflects a strong institutional presence with clear branding, comprehensive content for students and researchers, and active engagement through multiple official social media channels. The university positions itself as a highly ranked institution with a commitment to innovation and collaboration. Technically, the website employs modern web technologies including Bootstrap, FontAwesome, and JSON-LD structured data, likely running on a CMS such as Episerver. The site is mobile-optimized, accessible, and SEO-friendly, providing a good user experience. Performance is moderate with room for optimization. From a security perspective, the site uses HTTPS and implements a cookie consent mechanism compliant with GDPR. However, it lacks visible security policies, incident response contacts, and vulnerability disclosure information. Security headers and advanced security practices are not evident in the provided data, suggesting areas for improvement. Overall, the website is trustworthy and professional, with no signs of blocking or WAF interference. The domain registration details align well with the university's identity, supporting legitimacy. Strategic recommendations include enhancing security transparency, publishing incident response and vulnerability disclosure information, and improving security header implementation to strengthen the security posture.

70
15
-
75
-
65
100
educationuniversityresearchstudentsweden+1 more
HTML5CSSJavaScriptFontAwesome+2
2025-06-18T08:55:47.548Z
sublime.se favicon

Sublime Consulting AB

sublime.se

58
TechnologySwedenmediumMEDIUM

Sublime Consulting AB is a well-established digital agency based in Stockholm, Sweden, with over 30 years of experience specializing in UX design, web development, AI-driven digital solutions, and digital strategy consulting. The company targets businesses primarily in Stockholm and broader Sweden, offering tailored digital services that emphasize accessibility, security, and long-term partnerships. Their market position is strong, supported by long-term client relationships and a comprehensive portfolio of services including modern intranet solutions and platform/CMS expertise. Technically, the website demonstrates a mature digital infrastructure leveraging ASP.NET Core, Umbraco CMS, and modern analytics and marketing tools such as Google Tag Manager, Google Analytics, and Facebook Pixel. The site is fast, mobile-optimized, and accessible, with good SEO practices and structured data implementation. Security posture is robust with HTTPS, antiforgery tokens, and a detailed cookie consent mechanism, although explicit security policies and incident response contacts are not published. Overall, the website reflects a professional, trustworthy, and technically competent organization with a strong focus on client satisfaction and compliance.

80
58
-
75
-
65
100
digitalagencywebdevelopmentuxdesignaisolutionsaccessibility+3 more
Google Tag ManagerGoogle AnalyticsFacebook PixelCookieTractor (cookie consent management)+3
2025-06-18T08:55:47.127Z
B

Bank of England

bankofengland.co.uk

54
GovernmentUnited KingdomlargeMEDIUM

The Bank of England website serves as the official digital presence of the UK's central bank, providing comprehensive information on monetary policy, financial stability, banknotes, and regulatory functions. It targets a broad audience including UK residents, financial institutions, researchers, and policymakers. The site offers authoritative content with a clear mission to promote monetary and financial stability in the UK. The business model is government-centric, focusing on public service and regulatory oversight, positioning the Bank of England as a key institution in the UK's financial ecosystem. Technically, the website employs modern web technologies including JavaScript, CSS, service workers, and integrates with Akamai CDN for hosting and performance optimization. It uses Google Tag Manager and Akamai mPulse for analytics and performance monitoring. The site is well optimized for mobile devices, accessible, and SEO-friendly, reflecting a mature digital infrastructure. From a security perspective, the site enforces HTTPS, uses service workers for caching, and implements cookie consent mechanisms. However, explicit security headers and a published security policy or incident response contacts are absent. No vulnerabilities or exposed sensitive data were detected. The WHOIS data confirms the legitimacy and consistency of the domain registration with the Bank of England's identity. Overall, the website demonstrates a high level of professionalism, trustworthiness, and compliance with privacy regulations. Strategic recommendations include enhancing security headers, publishing a security policy, and adding vulnerability disclosure information to further strengthen security posture and transparency.

30
63
-
80
-
70
100
bankingcentralbankfinancegovernmentmonetarypolicy+3 more
JavaScriptCSSHTML5Service Workers+3

Partner Domains:

bankunderground.co.uk
partner
2025-06-18T08:07:10.426Z
H

Heart Internet

offshore-iom.com

32
TechnologyUnited KingdommediumHIGH

The website offshore-iom.com is a parked domain registered by Heart Internet, a UK-based web hosting provider. The site content primarily promotes Heart Internet's hosting services including web hosting, reseller hosting, domain registration, and dedicated servers. The target audience appears to be individuals and businesses seeking hosting and domain services. The website is basic in design and content, serving as a holding page with advertisements and links to Heart Internet's main services. Technically, the site uses standard HTML, CSS, and JavaScript with Google AdSense for advertising. The hosting provider is Heart Internet itself. The site lacks HTTPS in the provided content, uses HTTP URLs, and does not implement modern security headers or privacy policies. Performance and mobile optimization are basic, with limited accessibility features. From a security perspective, the absence of HTTPS and security headers is a significant weakness. No privacy or cookie policies are present, and no contact or incident response information is provided. The site does not expose sensitive data but lacks best practices for security and privacy compliance. Overall, the site is a basic parked domain page with minimal content and limited security and privacy measures. Strategic recommendations include implementing HTTPS, adding privacy and cookie policies, providing contact information, and enhancing security headers to improve trust and compliance.

15
25
-
85
-
85
-
webhostingresellerhostingdomainnamesdedicatedserversheartinternet
HTMLCSSJavaScriptGoogle AdSense
2025-06-18T08:07:09.364Z
senseilms.com favicon

Automattic

senseilms.com

68
EducationN/alargeHIGH

Sensei LMS is a comprehensive WordPress Learning Management System plugin developed by Automattic, the company behind WordPress.com and WooCommerce. It enables educators, entrepreneurs, and agencies to create and sell online courses with interactive lessons, quizzes, and student management features. The platform leverages the WordPress ecosystem, offering both free and premium (Sensei Pro) products, integrated tightly with WooCommerce for flexible monetization options. The website reflects a mature digital presence with professional design, clear navigation, and strong branding consistency. Technically, the site is built on WordPress with WooCommerce and Jetpack plugins, utilizing modern web technologies such as jQuery and JavaScript. Performance is moderate with good mobile optimization and accessibility features. SEO is well implemented with proper meta tags and structured data. Analytics and marketing tools like Google Analytics, Jetpack Stats, and Gauges are used responsibly with visible cookie consent mechanisms. From a security perspective, the site enforces HTTPS with excellent SSL configuration and employs best practices such as cookie consent and no exposed sensitive data. However, explicit security headers like Content-Security-Policy and X-Frame-Options are not detected and could be improved. There is no dedicated security policy or incident response contact information published, which are areas for enhancement. Overall, the website demonstrates a high level of professionalism, trustworthiness, and compliance with privacy regulations. The domain registration details align with the business identity, reinforcing legitimacy. Strategic recommendations include enhancing security headers, publishing a security policy, and providing incident response contacts to further strengthen the security posture and user trust.

30
88
18
100
39
85
100
lmswordpresseducatione-learningwoocommerce+2 more
WordPressWooCommerceJetpackjQuery+3

Partner Domains:

wordpress.org
partner
automattic.com
parent

+1 more partners

2025-06-18T00:33:30.643Z
geomaterials.eu favicon

SCHLÜSSELBAUER Geomaterials GmbH

geomaterials.eu

24
ManufacturingAustriamediumCRITICAL

SCHLÜSSELBAUER Geomaterials GmbH operates a website focused on sustainable insulation materials made from recycled glass, targeting the construction and infrastructure sectors primarily in Austria. The company offers products such as Schaumglas, Blähglas, and RED Blähglasschotter, emphasizing environmental sustainability and technical performance. The website presents detailed product information, reference projects, and downloadable technical and safety documents, supporting a professional business presence. Technically, the site uses Apache server technology, the UIkit framework, and likely the REDAXO CMS platform. However, the website lacks a valid SSL certificate, resulting in no HTTPS support, which is a critical security shortfall. Other security features such as HSTS, DMARC, DNSSEC, and CAA records are missing, reducing the overall security posture. Privacy compliance is partially addressed with a cookie consent mechanism and a privacy policy page, but GDPR compliance indicators are limited. Contact information is clearly provided, including phone, email, and physical address, alongside active social media channels. Overall, the website is functional and professional but requires urgent security improvements to protect user data and enhance trust.

15
18
17
50
-
75
-
schaumglasblhglasredblhglasschotterinsulationconstruction+1 more
ApacheHTML5CSSJavaScript+3

Partner Domains:

sbm.at
partner23
schluesselbauer.com
partneranalyzing...

+1 more partners

2025-06-16T16:18:12.543Z
altran.nl favicon

NVA Online Advertising B.V.

altran.nl

42
OtherNetherlandssmallMEDIUM

The website altran.nl is a domain sale landing page operated by NVA Online Advertising B.V., leveraging the Nameshift.com platform for domain brokerage and escrow services. The site offers the altran.nl domain for sale or rent, targeting domain buyers interested in acquiring this specific domain. The business model centers on domain resale with an escrow service to ensure safe and fast domain transfers. The website content is minimal and focused primarily on facilitating domain purchase offers, with limited business information and no privacy or security policies published. Technically, the site is built using modern web technologies including SvelteKit and JavaScript, hosted on a CDN associated with Nameshift.com. The site includes a Trustpilot widget to provide social proof and uses a minimal tracking script for analytics. The performance and mobile optimization are moderate to good, but accessibility and SEO optimizations are basic. No CMS or complex platform is detected. From a security perspective, the site lacks published security policies, incident response contacts, and security headers. There is no evidence of HTTPS status from the provided data, and privacy compliance is poor due to the absence of privacy and cookie policies. The escrow service provides some security assurance for domain transactions, but overall security posture is limited. No vulnerabilities or exposed sensitive data were detected in the HTML content. Overall, the website serves its purpose as a domain sale landing page but lacks comprehensive privacy, security, and compliance features. Strategic improvements in these areas would enhance trust and professionalism, especially if the domain sale business expands or targets a broader audience.

55
-
-
65
-
60
100
domainsaledomainbrokerageescrowservicenameshifttrustpilot
SvelteKitJavaScriptCSSWebmanifest+1

Partner Domains:

nameshift.com
partner
2025-06-15T22:27:54.772Z
Z

zu Hause e.V.

zuhause-ev.de

29
Non-profitGermanysmallLOW

zu Hause e.V. is a small non-profit organization based in Germany dedicated to the social integration of immigrants. The website provides information about integration courses, language learning, homework help, and community projects aimed at supporting immigrants in their adaptation to German society. The target audience primarily consists of immigrants and newcomers seeking educational and social support. The organization operates locally with a focus on community engagement and educational services. Technically, the website uses older JavaScript libraries such as prototype.js and scriptaculous.js, with CSS styling and lightbox functionality. The site appears to have basic mobile optimization and accessibility features but lacks modern CMS or advanced frameworks. Performance is moderate, and SEO is basic with meta tags present but no advanced structured data or Open Graph tags. From a security perspective, the site lacks HTTPS, security headers, and any visible privacy or cookie policies, indicating significant compliance and security gaps. No contact emails or phone numbers are provided on the main page, and no incident response or security policies are evident. These factors reduce the overall trust and security posture of the website. Overall, the website serves its informational purpose but requires urgent improvements in security, privacy compliance, and contact transparency to enhance trustworthiness and protect user data.

15
-
-
85
-
60
20
integrationzuwandererintegrationskurssprachkursehausaufgabenhilfe+2 more
prototype.jsscriptaculous.jslightbox.jsCSS
2025-06-15T22:27:45.272Z
B

Bhalkeshwar Sugars Limited

bhalkeshwarsugars.com

29
EnergyIndiasmallLOW

Bhalkeshwar Sugars Limited is a regional sugar manufacturing company based in India, operating since 2000. The company produces sugar and related products such as bio-fertilizer, ethanol, power, and molasses. It also contributes to local infrastructure development including bridges and power stations. The website provides basic information about the company and its products but lacks modern digital features and security measures. Technically, the website uses legacy technologies including Flash content, Bootstrap for styling, and SpryMenuBar for navigation. The site is served over HTTP without HTTPS, which is a significant security concern. The design is basic with limited mobile optimization and accessibility features. No modern analytics or tracking tools are detected. From a security perspective, the absence of HTTPS, lack of security headers, and use of deprecated Flash content expose the site to risks. There are no privacy or cookie policies, and no contact information for security or incident response. These factors indicate a low security maturity level. Overall, the website presents moderate business credibility but poor security and privacy compliance. Strategic improvements in security infrastructure, policy transparency, and modernization of technology stack are recommended to enhance trust and compliance.

15
25
-
70
-
75
-
sugarenergymanufacturingbio-fertilizerethanol+3 more
HTMLCSSJavaScriptBootstrap+2
2025-06-15T22:27:21.057Z
E

EOLAS, Orange Business Services SA

ares-genetics.com

39
TechnologyFrancesmallLOW

The website ares-genetics.com currently serves as a placeholder domain reservation page managed by EOLAS, a Grenoble-based web hosting and domain registration provider affiliated with Orange Business Services SA. The site does not present any active business content or services related to the domain name itself, indicating it is not yet operational for its intended purpose. The target audience appears to be French-speaking clients seeking web hosting and domain services, but no direct business offerings are visible on this domain. From a technical perspective, the website is very basic, consisting of static HTML and CSS with no dynamic content, scripts, or CMS detected. There is no evidence of HTTPS or security headers, and the site lacks mobile optimization and accessibility features. SEO is minimal, with only basic meta tags present. No analytics or tracking technologies are in use. Security posture is weak due to the absence of HTTPS, security headers, privacy policies, and cookie consent mechanisms. No incident response or vulnerability disclosure information is provided. Contact information is available but limited to a single email, phone number, and physical address associated with EOLAS. The domain registration is privacy protected, which is common for hosting providers but limits transparency. Overall, the site scores low on content quality, technical implementation, security, and privacy compliance, reflecting its status as a parked/reserved domain page rather than an active business website. Strategic recommendations include implementing HTTPS, adding privacy and cookie policies, improving mobile and accessibility features, and developing actual business content to enhance credibility and user trust.

15
25
-
70
-
60
100
domainreservationwebhostingeolasgrenoblefrance
HTMLCSS
2025-06-15T22:26:50.415Z
S

konsoleH :: Login

statec-binder.at

24
TechnologyGermanyenterpriseLOW

The website statec-binder.at serves as a login portal for konsoleH, a server and account management interface provided by Hetzner Online GmbH, a well-known German hosting provider. The site offers access to webmail and account administration services, targeting users of Hetzner's hosting infrastructure. The portal is minimalistic, with basic content and limited user interface elements, primarily serving as a gateway to other Hetzner services. Technically, the site is built with simple HTML and CSS, hosted on Hetzner infrastructure. It lacks modern web features such as mobile optimization, accessibility enhancements, and SEO best practices. The absence of HTTPS on the domain is a significant technical and security shortfall, although the base URL points to a secure Hetzner server. No analytics or tracking technologies are detected, indicating minimal data collection. From a security perspective, the lack of HTTPS and security headers exposes users to potential risks. No privacy, cookie, or terms of service policies are present, which is a compliance gap especially under GDPR. The site does not provide contact or incident response information, limiting transparency and user trust. However, the external links and branding align with Hetzner, lending some credibility. Overall, the website is functional but basic, with critical security and compliance deficiencies. Strategic improvements in SSL implementation, security headers, privacy policies, and user experience are recommended to enhance trust and protect users.

15
-
5
60
-
75
-
loginhostingservermanagementwebmailhetzner
HTMLCSS

Partner Domains:

your-server.de
partner
hetzner.de
partner
2025-06-15T22:25:39.721Z
E

eeas.eu

eeas.eu

24
OtherN/asmallCRITICAL

The website eeas.eu presents minimal content primarily focused on language selection and login instructions, with no substantive business or organizational information. The site appears outdated, with the last modification dating back to 2011, and lacks modern web standards and security practices. Technically, the site is served by Apache on Unix, but it lacks HTTPS support and modern TLS protocols, exposing it to security risks. No privacy, cookie, or terms of service policies are present, and no contact or business information is provided, which severely limits trust and credibility. Overall, the site appears to be a placeholder or demo rather than an active business platform. From a security perspective, the absence of a valid SSL certificate and HTTPS support is a critical vulnerability. The lack of security headers and modern encryption protocols further weakens the site's security posture. No incident response or vulnerability disclosure mechanisms are evident. The DNS configuration is standard with no DNSSEC or CAA records, and no subdomain takeover vulnerabilities were detected. Given these findings, the website poses significant risks in terms of security and compliance. It lacks essential privacy and security controls, and its minimal content and lack of business information reduce its credibility. Strategic improvements are necessary to establish a secure, trustworthy, and compliant online presence.

-
-
-
50
-
85
20
languageselectionlogininstructionsdemooutdatedinsecure
Apache/2.4.63HTML 4.01 TransitionalCSS
2025-06-15T22:11:41.368Z
B

BERNARD Gruppe

bernard-ing.com

40
EnergyAustriamediumHIGH

The Bernard Gruppe is a medium-sized, owner-managed engineering group founded in 1983, specializing in interdisciplinary engineering services across energy, industry, infrastructure, and transportation sectors. With approximately 400 employees and operations in over 40 countries, the company offers comprehensive consulting, planning, and project realization services, including specialized software and hardware solutions. The website content reflects a professional engineering firm with a broad service portfolio and international presence. Technically, the website is built on WordPress using the Avada theme and includes a cookie consent mechanism from an external provider. However, the site lacks HTTPS support and modern security configurations, which significantly impacts its security posture. Performance data is missing, and SEO and accessibility features are basic. No analytics or tracking services beyond cookie consent are detected. From a security perspective, the absence of a valid SSL certificate and HTTPS is a critical vulnerability, exposing users to potential data interception risks. The site also lacks security headers, DNSSEC, and other modern protections. No privacy policy, terms of service, or incident response information is provided, indicating gaps in compliance and security transparency. Overall, the website presents a moderate business credibility but suffers from significant security and privacy shortcomings. Strategic improvements in SSL deployment, security headers, and privacy documentation are essential to enhance trust and compliance.

-
-
-
50
-
85
85
engineeringenergytransportationautomationinfrastructure+1 more
ApacheJavaScript (cookieconsent.at)CSSHTML5+1
2025-06-15T22:11:07.839Z