Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

149091
Websites
130
Industries
113
Countries
52
Avg Score
Page 24 of 38|Showing 1151-1200 of 1863
peschkedesign.at favicon

Peschke

peschkedesign.at

31
TechnologyAustriamediumHIGH

Peschke Design GmbH is a well-established design agency based in Vienna, Austria, specializing in product design, UX/UI, app development, 3D visualization, and industrial design. With over 50 years of experience and a strong portfolio of reputable clients such as Carl Zeiss AG, ENGEL AUSTRIA GmbH, and Austrian Airlines, the company positions itself as a trusted partner for digital transformation and innovative design solutions. Their business model focuses on delivering comprehensive design and development services tailored to client needs, supported by a professional and content-rich website that targets businesses seeking high-quality design expertise. Technically, the website is built on WordPress, hosted on WP Engine, and uses Cloudflare as a CDN and proxy. It employs modern web technologies including React, jQuery, and Swiper.js, and supports multilingual content via WPML. SEO and accessibility are well addressed with Yoast SEO and adherence to WCAG guidelines. However, performance metrics are not available, though mobile optimization and navigation clarity are good. From a security perspective, the site lacks a valid SSL certificate and does not serve content over HTTPS, which is a critical vulnerability. No TLS protocols are enabled, and security headers are minimal. While cookies are set with secure and HttpOnly flags, the absence of HTTPS exposes users to potential interception risks. Privacy compliance is strong with GDPR-aligned policies and a cookie consent mechanism. No explicit security or incident response policies are published. Overall, the website demonstrates high professionalism and business credibility but suffers from a critical security misconfiguration regarding SSL/TLS. Addressing this would significantly improve the security posture and trustworthiness of the site.

15
-
-
50
-
50
100
designuxuiproductdesignindustrialdesign+5 more
WordPressWP EngineCloudflareGoogle Tag Manager+8
2025-06-15T22:05:14.403Z
N

Newlogic Pte Ltd

newlogic.com

40
TechnologySingaporemediumHIGH

Newlogic Pte Ltd is a Singapore-headquartered software consultancy firm with a strong regional presence across Southeast Asia. The company specializes in delivering innovative software solutions in areas such as digital identity and biometrics, data collection and analytics, cash transfer and payment systems, and ERP implementation. Their client base includes leading companies, organizations, and governments, positioning them as a key player in the regional technology consultancy market. The website reflects a professional and consistent brand image with clear descriptions of services and leadership team details. Technically, the website employs a modern tech stack including Bootstrap 4.3.1, jQuery, Popper.js, and Google Fonts, hosted behind Cloudflare. However, performance metrics are lacking, and the site suffers from the absence of a valid SSL certificate, which critically impacts security and user trust. The site is mobile-optimized with good navigation and SEO practices but lacks accessibility features and cookie consent mechanisms. From a security perspective, the site has several HTTP security headers configured, but the lack of HTTPS and TLS support is a major vulnerability. No incident response or security policies are published, and no vulnerability disclosure or data protection officer information is available. The presence of social media links and contact information supports business credibility, but the security posture requires urgent improvement. Overall, the website is functional and professional but has critical security shortcomings that reduce its trustworthiness and compliance. Strategic improvements in SSL deployment, privacy compliance, and security policy transparency are recommended to enhance the company's digital maturity and risk posture.

-
18
-
50
-
85
100
softwareconsultancytechnologybiometricsdataanalyticserp+1 more
Bootstrap 4.3.1jQuery 3.5.1Popper.js 1.14.7Google Fonts+2
2025-06-15T22:01:40.825Z
blue-tomato.com favicon

Blue Tomato

blue-tomato.com

71
RetailGermanylargeMEDIUM

Blue Tomato is a well-established European e-commerce and retail company specializing in boardsport and lifestyle products including snowboarding, skateboarding, surfing, freeski, and streetwear. With over 30 years of experience and more than 70 physical shops across Europe, the company offers a comprehensive product range from over 500 brands, supported by community engagement and specialized services such as snowboard schools and rental shops. The website is professionally designed, highly localized, and optimized for performance and user experience across devices. Technically, the website employs modern web technologies including React and Preact frameworks, utilizes Cloudflare for hosting and security, and integrates advanced analytics and consent management tools. The site demonstrates good SEO and accessibility practices, ensuring broad reach and compliance with relevant regulations. From a security perspective, the site uses a valid SSL certificate but lacks modern TLS protocol support and some security headers like HSTS and OCSP stapling. No critical vulnerabilities were detected, but improvements are recommended to enhance security posture. Privacy compliance is well addressed with clear privacy and cookie policies and consent mechanisms. Overall, Blue Tomato presents a low-risk profile with strong business credibility, good technical infrastructure, and adequate security measures. Strategic recommendations include enhancing SSL/TLS configurations, enabling additional security headers, and implementing domain protection locks to further secure the domain registration.

-
43
30
55
100
70
100
e-commerceboardsportlifestyleretailsnowboard+4 more
ReactPreactCloudflareConsentManager+4

Partner Domains:

zumiez.com
partnerpending
puresurfcamps.com
partnerpending
2025-06-15T21:59:08.026Z
playosmo.com favicon

Osmo

playosmo.com

58
EducationUnited StatesmediumMEDIUM

Osmo is an educational technology company specializing in interactive learning systems that combine physical game pieces with digital apps primarily for iPad and iPhone users. The website positions Osmo as an award-winning brand with a focus on fostering social intelligence and creative thinking through hands-on play. The business model centers on e-commerce sales of educational products and digital content, targeting parents and educators seeking engaging learning tools for children. The site is professionally designed with consistent branding and positive media testimonials, indicating a strong market presence in the education sector. Technically, the website is built on modern frameworks such as Next.js and React, hosted behind Cloudflare, and uses Google Tag Manager for analytics. While the site is mobile-optimized and SEO-friendly, performance metrics are unavailable. Security-wise, the site uses HTTPS with a valid SSL certificate but lacks modern TLS protocol support and OCSP stapling, which are important for robust security. Security headers are partially implemented, but critical headers like HSTS are not fully enabled. No privacy or cookie policies were found, indicating gaps in compliance with data protection regulations. Overall, the security posture is moderate with room for improvement in encryption protocols and privacy compliance. The absence of contact information and policy pages reduces transparency and user trust. The domain registration is consistent with the business claims, and no suspicious patterns were detected, supporting the legitimacy of the site. Strategic recommendations include enabling modern TLS protocols, fully implementing HSTS, publishing comprehensive privacy and cookie policies, adding contact information, and establishing a vulnerability disclosure program to enhance security and compliance posture.

40
25
17
50
75
50
100
educationgameslearningipadosmo+1 more
Next.jsReactCloudflareGoogle Tag Manager+3
2025-06-15T21:58:32.300Z
wdmatthews.com favicon

W.D. Matthews Machinery Co.

wdmatthews.com

40
TransportationUnited StatesmediumHIGH

W.D. Matthews Machinery Co. is a well-established heavy equipment dealer operating primarily in New England, with a history dating back to 1939. The company specializes in new and used forklifts, heavy machinery, warehousing supplies, rentals, parts, and service. It maintains strong partnerships with reputable brands such as Toyota, Manitou, Clark, and Bobcat, positioning itself as a leading regional provider in the transportation and industrial equipment sector. The website reflects a professional business model focused on equipment sales, rentals, and maintenance services targeting commercial and industrial clients in the region. Technically, the website is built on WordPress with WooCommerce and utilizes modern web technologies including Gravity Forms for data collection and Google Tag Manager for analytics. Hosting is provided by WP Engine with Cloudflare CDN for content delivery. While the site is mobile-optimized and well-structured with good SEO practices, performance data is incomplete, and some accessibility features are basic. The site lacks a valid SSL certificate, which is a critical security gap. From a security perspective, the absence of HTTPS and modern TLS protocols significantly reduces the site's security posture. No advanced security headers or mechanisms such as HSTS or OCSP stapling are implemented. Privacy compliance is partial, with a privacy policy present but no cookie consent mechanism or terms of service page detected. Contact information is clearly provided, enhancing business credibility. Overall, the site presents a moderate risk profile due to the lack of HTTPS and limited privacy compliance. Strategic improvements in security configuration and privacy practices are recommended to enhance trust and protect user data. The business itself appears legitimate and well-positioned in its market, but the website's security shortcomings could impact user confidence and compliance with regulations.

15
18
5
85
-
85
100
heavyequipmentforkliftsequipmentrentalsindustrialmachinerynewengland+1 more
WordPressWooCommerceGravity FormsjQuery+4
2025-06-15T21:58:25.069Z
vwr.com favicon

Avantor, Inc.

vwr.com

40
HealthcareUnited StatesenterpriseHIGH

VWR.com is the online presence of Avantor, Inc., a large enterprise specializing in providing life science products and service solutions. The website targets life science professionals and organizations globally, offering a broad range of scientific supplies and services. The business model is primarily B2B, with a strong market position as an established global supplier in the healthcare sector. The site uses localized subdomains to serve different countries, indicating a mature international presence. Technically, the website employs a variety of modern JavaScript libraries and tracking tools, including Google Analytics, Hotjar, and Cloudflare for CDN and security. However, the site lacks a valid SSL certificate and does not enable modern TLS protocols, which is a significant security concern. The content is professionally presented with good navigation and branding consistency, but mobile optimization and accessibility are basic. From a security perspective, while the site implements a comprehensive Content Security Policy and some security headers, the absence of HTTPS and modern TLS support severely impacts the security posture. No incident response or vulnerability disclosure information is provided, and no explicit contact details are available on the landing page, limiting transparency. Overall, the website is functional and professional but requires urgent improvements in SSL/TLS implementation and privacy compliance mechanisms to enhance trust and security. Strategic recommendations include installing a valid SSL certificate, enabling modern TLS protocols, implementing cookie consent mechanisms, and providing clear contact and security policy information.

55
18
5
85
-
85
100
lifesciencehealthcareb2benterprisescientificsupplies
JavaScriptGoogle AnalyticsCloudflareModernizr+2

Partner Domains:

avantorsciences.com
parentpending
2025-06-15T21:57:22.997Z