Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

149091
Websites
130
Industries
113
Countries
52
Avg Score
Page 24 of 25|Showing 1151-50 of 50
grawe.rs favicon

GRAWE osiguranje a.d.o.

grawe.rs

40
FinanceSerbiamediumHIGH

GRAWE Srbija is a well-established insurance company operating in Serbia, offering a broad range of life and non-life insurance products including vehicle, property, and health-related insurance. The company is part of the larger GRAWE Group, which has a long tradition in the insurance sector. The website is professionally designed using TYPO3 CMS and integrates modern technologies such as Google Tag Manager and Cloudfront CDN. It provides clear navigation, comprehensive product information, and multiple contact channels including phone, email, and social media. Privacy and cookie policies are present and include consent mechanisms, indicating good compliance with GDPR requirements. However, the website suffers from a critical security issue: the SSL certificate is invalid or missing, resulting in HTTPS not being properly enabled. This significantly impacts the security posture and user trust. Security headers are well configured, but the lack of valid SSL and modern TLS protocols is a major vulnerability. No explicit security or incident response policies are published, and no vulnerability disclosure or security.txt files are found. Overall, the website is functional and credible but requires urgent remediation of SSL/TLS issues to improve security and trust.

90
-
5
50
-
50
100
insurancefinanceserbialifeinsurancevehicleinsurance+4 more
TYPO3 CMSGoogle Tag ManagerGoogle AnalyticsCloudfront CDN+1

Partner Domains:

grawe.at
parent40
2025-06-15T21:49:55.674Z
frauscher.com favicon

Frauscher Sensor Technology USA Inc.

frauscher.com

40
TransportationUnited StateslargeHIGH

Frauscher Sensor Technology USA Inc. is a leading provider of highly reliable train detection and wayside object control solutions, serving rail operators and system integrators globally. The company offers a comprehensive portfolio including hardware components like wheel sensors and axle counters, software solutions, and smart life cycle services. With a strong market position and a global footprint, Frauscher is recognized for its innovation and quality in the transportation sector. Technically, the website is built on modern frameworks such as Nuxt.js and uses Storyblok CMS, hosted on AWS CloudFront. The site is well-optimized for mobile and SEO, with good accessibility features. However, performance is moderate and could be improved. From a security perspective, the site employs several security headers and has a proactive PSIRT program. However, the SSL certificate is currently invalid, which is a critical issue that impacts the overall security posture. Other security best practices are in place, but improvements in SSL configuration and CSP are recommended. Overall, the website presents a professional and trustworthy image, with comprehensive privacy and cookie policies in place. The domain registration is consistent with the business claims, enhancing credibility. Strategic recommendations include fixing SSL issues, enhancing security headers, and maintaining strong privacy compliance to further strengthen trust and security.

70
18
-
50
-
90
100
traindetectionrailwayaxlecounterswheelsensorsdatatransmission+4 more
Nuxt.jsTailwind CSSStoryblok CMSCloudFront CDN+3

Partner Domains:

delachaux.com
parentpending
hitachi.com
partnerpending
2025-06-15T21:49:49.375Z
5

555photography

555photography.com

38
MediaN/asmallHIGH

555photography is a small professional photography business specializing in wedding, family, engagement, and event photography. The business leverages the SmugMug platform to showcase its portfolio and manage client galleries, positioning itself as a niche service provider in the media sector. The website content is relevant and well-structured, targeting individuals and families seeking professional photography services. The business model relies on online presence and client engagement through SmugMug's infrastructure. Technically, the website is hosted on SmugMug's infrastructure using nginx and Amazon CloudFront CDN, with modern JavaScript frameworks and responsive design ensuring good mobile optimization and user experience. However, performance metrics are limited, and some technical debt is evident in the use of older YUI libraries alongside modern modules. From a security perspective, the site lacks a valid SSL certificate and does not support modern TLS protocols, which is a critical vulnerability impacting user trust and data protection. While some security headers are present, the absence of HTTPS and other advanced security features significantly lowers the security posture. Privacy policies and terms of service are available on the SmugMug domain, indicating compliance with GDPR and cookie consent mechanisms, but no explicit security or incident response policies are found. Overall, the website presents a moderate risk profile primarily due to missing HTTPS and limited direct business contact information. Strategic improvements in SSL implementation, security policy publication, and direct contact channels would enhance trust and compliance.

50
-
-
50
-
70
100
photographyweddingfamilyprofessionalengagement+1 more
nginxSmugMug platformCloudFront CDNJavaScript ES6 modules+5
2025-06-15T21:49:48.353Z
b4b-solutions.com favicon

All for One Customer Experience GmbH

b4b-solutions.com

40
TechnologyGermanylargeHIGH

All for One Customer Experience GmbH is a Germany-based technology company specializing in delivering innovative customer experience solutions leveraging the SAP Customer Experience Suite. Positioned as a SAP Platinum Partner and part of the All for One Group, the company offers comprehensive cloud-based services including consulting, software implementation, and custom development to enhance customer journeys and digital transformation for businesses. The website reflects a professional and consistent brand image targeting enterprises seeking to optimize their customer engagement and sales processes. Technically, the website is hosted on Amazon Web Services using Amazon S3 and CloudFront CDN, employing modern web technologies such as JSON-LD structured data and OneTrust for cookie consent management. The site is well-optimized for SEO, accessibility, and mobile responsiveness, providing a high-quality user experience. However, performance metrics were not available. From a security perspective, while the site implements several important security headers and content security policies, it critically lacks a valid SSL/TLS certificate and does not support modern TLS protocols, resulting in a poor security posture. This exposes users to risks and undermines trust. Privacy compliance is strong with comprehensive privacy and cookie policies and consent mechanisms in place. Overall, the website demonstrates strong business credibility and digital maturity but requires urgent remediation of SSL/TLS issues to ensure secure communications and maintain trust. Strategic improvements in security infrastructure will significantly enhance the site's risk profile and user confidence.

75
18
5
50
-
85
100
customerexperiencesapcloudsolutionsdigitaltransformationcxfullserviceprovider
Amazon S3CloudFront CDNJavaScriptJSON-LD+1
2025-06-15T21:49:20.324Z
ser.de favicon

SER Solutions Deutschland GmbH

ser.de

40
TechnologyGermanyenterpriseHIGH

SER Solutions Deutschland GmbH is a well-established enterprise content management (ECM) software provider based in Germany, with over 35 years of experience. The company is recognized as a leader in the ECM market, evidenced by its inclusion in Gartner's Magic Quadrant and IDC MarketScape reports. Their core offerings include intelligent content automation, document management, process automation, and collaboration tools, targeting large enterprises and organizations undergoing digital transformation. The website reflects a mature digital presence with comprehensive content, multiple language support, and strong branding consistency. Technically, the website is built on the Contao CMS platform, hosted on Ubuntu servers with Amazon CloudFront CDN for content delivery. It employs modern marketing and analytics tools such as Google Tag Manager, Visual Website Optimizer, and Usercentrics for consent management. The site is mobile-optimized and accessible, with good SEO practices. However, a critical security gap exists due to the absence of a valid SSL certificate and lack of HTTPS enforcement, which severely impacts the security posture. Security headers are properly configured, but the lack of TLS protocols and valid certificates exposes the site to risks and undermines user trust. Privacy compliance is well addressed with a comprehensive privacy policy and cookie consent mechanism. Contact information is clearly provided, enhancing business credibility. Overall, while the business and content quality are excellent, urgent remediation of SSL/TLS issues is necessary to improve security and trustworthiness.

65
-
-
50
-
85
100
ecmenterprisecontentmanagementdigitaltransformationdocumentmanagementprocessautomation+3 more
Apache 2.4.52Contao Open Source CMSCloudFront CDNUsercentrics CMP+4

Partner Domains:

klippa.com
subsidiarypending
afi-solutions.com
subsidiarypending
2025-06-15T21:47:11.113Z
B

Belépés ide: 24.hu

24xtra.hu

40
MediaHungarysmallHIGH

24xtra.hu is a user authentication portal associated with the Hungarian media brand 24.hu, providing login and registration services including social login options via Facebook, Apple, and Google. The site targets Hungarian-speaking users of 24.hu services and acts as a gateway for accessing content or services requiring user authentication. The business model centers on user identity management for a media platform. Technically, the site is hosted on Amazon AWS infrastructure using CloudFront CDN and employs Keycloak for single sign-on capabilities. The technology stack includes modern JavaScript modules and standard web technologies, but performance metrics are unavailable or minimal, indicating potential areas for improvement. Mobile optimization and accessibility are basic but functional. From a security perspective, the site implements several important HTTP security headers and enforces HSTS with preload. However, the absence of a valid SSL certificate and lack of HTTPS support critically undermine the security posture. No OCSP stapling or session resumption is configured, and no privacy or cookie policies are published, indicating compliance gaps. No contact or business information is provided on the site, limiting transparency. Overall, the site is functional as a login portal but requires urgent improvements in SSL/TLS configuration and privacy compliance to enhance trust and security. The domain registration is consistent with the 24.hu brand, supporting legitimacy. Strategic recommendations include obtaining a valid SSL certificate, publishing privacy and cookie policies, and improving performance and accessibility.

85
15
25
60
97
75
100
loginauthenticationmediasocial-loginhungary+1 more
nginxJavaScript ES ModulesCloudFront CDNKeycloak SSO+1
2025-06-15T09:01:00.664Z
pingidentity.com favicon

Ping Identity

pingidentity.com

60
TechnologyUnited StatesenterpriseMEDIUM

Ping Identity is a leading enterprise identity security company specializing in identity and access management solutions. Their platform offers comprehensive services including customer identity, workforce identity, B2B identity, decentralized identity, and advanced authentication methods such as passwordless and zero trust. The company targets large enterprises across various sectors including government, financial services, healthcare, retail, media, and telecommunications. With a strong market position supported by industry analyst recognitions, Ping Identity delivers secure and seamless digital experiences for its customers. Technically, the website is built on a modern infrastructure leveraging Adobe Experience Manager CMS, AWS hosting, and advanced web technologies such as Lottie animations and Google Tag Manager. The site demonstrates good mobile optimization, accessibility, and SEO practices. However, the SSL certificate is currently invalid, and no TLS protocols are enabled, which significantly impacts the security posture. Security-wise, the site implements strong security headers and cookie policies with consent mechanisms, indicating good privacy compliance. Certifications like ISO 27001, SOC 2, and FedRAMP further strengthen their security credibility. Nonetheless, the invalid SSL certificate and lack of TLS support are critical issues that must be addressed urgently to ensure secure communications. Overall, Ping Identity's website reflects a mature and professional digital presence with strong business credibility and privacy compliance. Addressing the SSL and TLS issues will elevate their security posture and trustworthiness further.

85
25
25
80
50
85
100
identitysecurityiamenterprisesecuritycustomeridentityworkforceidentity+3 more
Adobe Helix RUMGoogle Tag ManagerLottie animationsMarketo forms+5
2025-06-15T07:17:28.134Z
shiftboard.com favicon

Shiftboard, Inc.

shiftboard.com

51
ManufacturingUnited StatesenterpriseMEDIUM

Shiftboard, Inc. is an enterprise-level SaaS provider specializing in employee scheduling software tailored for mission-critical industries such as manufacturing, energy, and corrections. The company operates as a subsidiary of UKG and offers products like SchedulePro and ScheduleFlex to streamline workforce management, improve scheduling efficiency, and enhance employee engagement. The website demonstrates strong branding, customer trust signals, and comprehensive content targeting workforce managers in shift-based operations. Technically, the website is built on WordPress with performance optimizations via WP Rocket and hosted on AWS infrastructure using S3 and CloudFront. It integrates multiple marketing and analytics tools including Google Analytics, Google Ads, HubSpot, and social media platforms. The site is mobile-optimized and SEO-friendly with structured data and Open Graph metadata. From a security perspective, the site lacks a valid SSL certificate and does not serve content over HTTPS, which is a critical vulnerability. While some security headers like HSTS are present, the absence of TLS protocols and secure cipher suites significantly lowers the security posture. Privacy compliance is well addressed with visible privacy and cookie policies and consent mechanisms. Overall, the website is professional and content-rich but requires urgent remediation of SSL/TLS issues to ensure secure user interactions and maintain trust.

30
25
25
50
50
90
100
employeeschedulingworkforcemanagementmanufacturingenergycorrections+2 more
WordPress 6.8.1WP Rocket (performance optimization)jQuery 3.7.1Google Fonts (Lato)+10

Partner Domains:

ukg.com
parent62
2025-06-14T22:17:29.915Z
persistent.com favicon

Persistent Systems

persistent.com

59
TechnologyN/alargeMEDIUM

Persistent Systems is a well-established technology services company specializing in AI, digital engineering, and enterprise modernization. The company positions itself as a trusted partner for enterprises seeking to transform their AI journey and digital capabilities. Their website reflects a mature digital presence with comprehensive service offerings, a strong partner ecosystem, and extensive client success stories. The company targets large enterprises across multiple industries, leveraging a B2B business model with a focus on innovation and technology leadership. Technically, the website is built on WordPress and employs a modern tech stack including jQuery, Bootstrap, and various marketing and analytics tools such as Google Tag Manager, Pardot, and CookiePro. Hosting is via AWS CloudFront CDN, ensuring global content delivery. The site is well-optimized for SEO and accessibility, with multilingual support and responsive design. However, performance metrics are not explicitly available. From a security perspective, the site has several security headers configured and uses HttpOnly cookies and a detailed Content Security Policy. However, a critical issue is the absence of a valid SSL certificate and HTTPS support, severely impacting the security posture. Other TLS protocols and features like OCSP stapling and session resumption are not enabled. DNS CAA records appear malformed, which could affect certificate issuance policies. Privacy compliance is well addressed with clear privacy and cookie policies and consent mechanisms. Overall, the website demonstrates a high level of professionalism and business credibility but suffers from a critical security gap due to missing HTTPS. Strategic remediation of SSL/TLS configuration is essential to improve trust and security compliance.

75
40
25
75
50
90
100
aidigitalengineeringenterprisemodernizationtechnologyservicescloud+4 more
jQueryBootstrap 4.5.2Slick CarouselGoogle Tag Manager+13
2025-06-14T21:49:58.895Z
kirschbaumdevelopment.com favicon

Kirschbaum Development

kirschbaumdevelopment.com

49
TechnologyUnited StatessmallHIGH

Kirschbaum Development is a small technology company specializing in web application development, staff augmentation, training, and technical leadership services. They primarily focus on Laravel, Vue.js, Angular, Drupal, and Wordpress frameworks, serving a diverse client base including Fortune 50 companies and smaller organizations. Their market position is strengthened by partnerships with Laravel and endorsements from industry leaders. The website presents a professional and consistent brand image with comprehensive service offerings and client testimonials. Technically, the website leverages modern web technologies including Laravel and Vue.js frameworks, hosted on AWS CloudFront CDN. The site includes Google Tag Manager for analytics and marketing purposes. While the site is mobile optimized and SEO friendly, performance metrics are unavailable. Accessibility is basic but functional. From a security perspective, the site lacks a valid SSL certificate and does not serve content over HTTPS, which is a critical vulnerability. No advanced security headers or mechanisms such as HSTS or OCSP stapling are implemented. Cookie consent mechanisms are absent, indicating limited privacy compliance. The site uses secure cookies with CSRF tokens but overall security posture is weak. Overall, the website is professional and credible but requires urgent improvements in SSL/TLS implementation and privacy compliance to enhance security and user trust.

15
43
25
50
50
85
100
laravelwebdevelopmentstaffaugmentationtechnicalleadershiptraining+2 more
LaravelVue.jsFilamentAngular+5
2025-06-14T21:49:28.404Z