Skip to main content

Low-risk security reports

Browse 2,871 Guard analyses across this slice of the directory — NIS2 / GDPR readiness, SSL/TLS, DNS hygiene and email authentication.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

156013
Websites
130
Industries
113
Countries
52
Avg Score
Page 26 of 58|Showing 1251-1300 of 2871
metro-sourcing.hk favicon

METRO SOURCING International Limited

metro-sourcing.hk

77
RetailHong KongmediumLOW

METRO SOURCING International Limited is a Hong Kong headquartered wholly owned subsidiary of METRO AG, specializing in global sourcing and supply chain solutions for METRO's wholesale divisions and third-party customers. Established in 1976, it operates a broad supplier network across multiple countries, providing a wide range of products including non-food, near food, and fresh/frozen food categories. The company positions itself as a strategic buying organization within the retail sector, leveraging its international procurement expertise to serve a diverse customer base. Technically, the website is built on a modern stack including Bootstrap and Sitecore CMS, with integrated analytics tools such as Google Analytics and Siteimprove. The site demonstrates good mobile optimization, SEO practices, and a professional design consistent with corporate branding. Cookie consent mechanisms are implemented with detailed categories, reflecting compliance with GDPR and privacy best practices. From a security perspective, the site enforces HTTPS with excellent SSL configuration and employs standard security practices such as request verification tokens and cookie consent. However, it lacks explicit security headers and published security policies or incident response contacts, which are recommended for enhanced security posture. No vulnerabilities or suspicious content were detected. Overall, the website reflects a mature digital presence with strong business credibility and compliance adherence. Strategic recommendations include enhancing security headers, publishing security policies, and adding vulnerability disclosure mechanisms to further strengthen trust and security culture.

85
100
17
85
75
70
100
sourcingprocurementwholesalemetrohongkong+3 more
Google Tag ManagerGoogle Analytics (GA4)Siteimprove AnalyticsPhotoSwipe Lightbox+1

Partner Domains:

www.metro-gsc.in
partner
www.miag.com
partner

+3 more partners

2025-07-29T17:07:44.810Z
connectwise.com favicon

ConnectWise, LLC

connectwise.com

78
TechnologyUnited StatesenterpriseLOW

ConnectWise, LLC is a leading enterprise technology company specializing in IT management software and solutions tailored for Managed Service Providers (MSPs) and IT professionals. Their platform offers comprehensive tools including Remote Monitoring and Management (RMM), Unified Management and Monitoring (UMM), Security Operations Center (SOC), Network Operations Center (NOC), and cybersecurity services. Positioned as a market leader, ConnectWise supports a thriving community and ecosystem to help MSPs grow and manage their businesses effectively. The website demonstrates a mature technical infrastructure leveraging modern technologies such as Episerver CMS, AWS Cloudfront CDN, and advanced analytics and marketing tools including Google Tag Manager, Microsoft Application Insights, and OneTrust for consent management. The site is well-optimized for performance, mobile responsiveness, and accessibility, reflecting a high level of digital maturity. From a security perspective, ConnectWise employs strong HTTPS encryption, comprehensive security headers, and cookie consent mechanisms, indicating a robust security posture. However, the absence of a publicly available security policy, incident response information, and vulnerability disclosure program suggests areas for improvement in transparency and security communication. Overall, ConnectWise presents a professional, trustworthy, and secure online presence consistent with an established enterprise technology provider. The lack of WHOIS data is noted but does not detract significantly from the legitimacy given the company's market presence and website quality. Strategic recommendations include enhancing security transparency and providing explicit incident response contacts to further strengthen trust and compliance.

65
88
55
87
75
70
100
itmanagementmspsolutionscybersecurityrmmitsm+2 more
JavaScriptCloudfront CDNGoogle Tag ManagerMicrosoft Application Insights+4

Partner Domains:

screenconnect.connectwise.com
subsidiary
marketplace.connectwise.com
subsidiary

+2 more partners

2025-07-29T14:48:18.676Z
elementfleet.com favicon

Element Fleet Management

elementfleet.com

78
TransportationCanadaenterpriseLOW

Element Fleet Management is a leading global fleet management company specializing in intelligent mobility solutions and comprehensive fleet services. The company serves a broad range of industries with a focus on optimizing fleet costs, safety, and productivity. With over 1.5 million vehicles under management and thousands of clients, Element holds a strong market position in North America and Australia/New Zealand. Their business model centers on providing end-to-end fleet lifecycle services including acquisition, management, optimization, and remarketing. Technically, the website demonstrates a mature digital infrastructure utilizing modern JavaScript libraries, analytics tools, and video platforms. The site is mobile-optimized, accessible, and SEO-friendly, reflecting a high level of digital maturity. The use of multiple tracking and marketing tools indicates extensive user engagement monitoring, balanced with privacy compliance through clear policies and consent mechanisms. From a security perspective, the site enforces HTTPS and employs reCAPTCHA for form security. However, it lacks visible security headers and a public incident response or vulnerability disclosure policy, which are recommended for enhanced security posture. No critical vulnerabilities or exposed sensitive data were detected. The absence of WHOIS data limits domain registration trust verification but does not detract from the overall legitimacy indicated by the website content and branding. Overall, Element Fleet Management presents a professional, trustworthy, and well-structured online presence suitable for its enterprise clientele. Strategic improvements in security transparency and WHOIS data availability would further strengthen trust and compliance.

85
70
17
80
100
85
100
fleetmanagementtransportationmobilitysolutionsenterprisebusinessservices
jQuery 3.6.0BootstrapGoogle Tag ManagerGoogle Analytics+7

Partner Domains:

www.elementarval.com
partner
www.elementfleet.com.mx
partner

+2 more partners

2025-07-29T11:22:07.091Z
occ.gov favicon

Office of the Comptroller of the Currency

occ.gov

81
GovernmentUnited StateslargeLOW

The Office of the Comptroller of the Currency (OCC) is a U.S. federal government agency responsible for ensuring a safe, sound, and fair federal banking system. The website serves as the official digital presence of the OCC, providing regulatory information, news, publications, and tools for bankers, consumers, and other stakeholders. It holds a strong market position as a key regulator within the U.S. banking sector, operating under the Department of the Treasury. The site targets a broad audience including banking professionals, federal institutions, and the general public seeking regulatory guidance and banking information. Technically, the website is built on the Percussion Content Management System and leverages modern web technologies including jQuery, Google Analytics, Crazy Egg, and the U.S. Web Design System (USWDS) to ensure accessibility, responsiveness, and usability. The site demonstrates good performance and SEO practices, with comprehensive metadata and structured navigation. Mobile optimization and accessibility features are well implemented, reflecting a mature digital infrastructure. From a security perspective, the site enforces HTTPS and employs domain transfer protections, indicating a secure baseline. However, DNSSEC is not enabled, representing a minor security gap. The presence of a vulnerability disclosure policy is a positive indicator of security awareness, though explicit incident response contacts and security headers are not evident. Privacy compliance is moderate, with a comprehensive privacy policy but lacking a cookie consent mechanism despite the use of tracking scripts. Overall, the OCC website is a professional, trustworthy, and authoritative government resource with strong content quality and business credibility. Minor improvements in security headers, DNSSEC implementation, and privacy consent mechanisms would enhance its security posture and compliance. The site is safe for general audiences and aligns well with its role as a federal regulatory agency.

85
53
73
70
95
85
100
governmentbankingregulationfinancecompliance+2 more
jQueryGoogle Custom Search EngineGoogle AnalyticsCrazy Egg+1

Partner Domains:

www.banknet.gov
partner
www.helpwithmybank.gov
partner

+2 more partners

2025-07-29T06:50:46.676Z
P

Philip Morris International

pmi.com

77
ManufacturingN/aenterpriseLOW

Philip Morris International (PMI) is a leading global tobacco company focused on transitioning its business towards smoke-free products that are positioned as better alternatives to traditional cigarettes. The company operates at an enterprise scale with a strong global presence and a clear vision to replace cigarettes with reduced-risk products. The website reflects this strategic direction with comprehensive corporate content, investor information, and product details aimed at a mature, global audience. Technically, the website is built on the Sitefinity CMS platform, leveraging modern technologies such as Google Tag Manager, Adobe Target, and Gigya for customer identity management. The site is well optimized for performance, mobile responsiveness, and accessibility, indicating a mature digital infrastructure. Security-wise, the website enforces HTTPS, employs advanced security headers, and integrates reCAPTCHA Enterprise to protect forms, demonstrating a strong security posture. However, there is no publicly available dedicated security policy or incident response page, which could be improved to enhance transparency. The domain WHOIS data is not publicly available, likely due to privacy protection, which is justified for a multinational corporation of PMI's stature. Overall, the website is professional, trustworthy, and compliant with privacy regulations including GDPR, supported by clear privacy and cookie policies with consent mechanisms.

80
88
35
85
62
85
100
tobaccosmoke-freecorporateglobalmanufacturing+2 more
Sitefinity CMSGoogle Tag ManagerAdobe TargetGigya (customer identity management)+2
2025-07-29T05:40:06.778Z
engageware.com favicon

Engageware

engageware.com

76
FinanceUnited StatesenterpriseLOW

Engageware is an enterprise-grade AI-powered customer engagement platform specializing in conversational and generative AI technologies to enhance sales, customer service, and employee efficiency. The company serves over 700 clients across finance, retail, and technology sectors, offering solutions such as virtual assistants, appointment scheduling, knowledge management, and digital communications. Their market position is strong, supported by trusted partnerships and a comprehensive product suite tailored for enterprise needs. Technically, Engageware leverages a modern WordPress-based infrastructure enhanced with advanced marketing and analytics tools including Google Analytics, HubSpot, and Facebook Pixel. The site is optimized for performance, mobile responsiveness, and SEO, reflecting a mature digital presence. Hosting and DNS services are managed via Amazon Registrar, indicating reliable infrastructure. From a security perspective, the website enforces HTTPS and domain registration protections, though it lacks DNSSEC and some advanced security headers. Privacy compliance is robust with clear policies and consent mechanisms aligned with GDPR standards. However, incident response contact details and security.txt files are not explicitly provided, representing an area for improvement. Overall, Engageware presents a low-risk profile with high business credibility and technical maturity. Strategic recommendations include enhancing DNS security, publishing vulnerability disclosure mechanisms, and strengthening security headers to further improve trust and compliance.

80
80
35
85
52
90
100
aicustomerengagementappointmentschedulingconversationalaienterprise+2 more
jQueryGoogle Tag ManagerGoogle AnalyticsHubSpot+4

Partner Domains:

timetrade.com
partner
2025-07-29T04:37:30.094Z
coursera.org favicon

Coursera, Inc.

coursera.org

80
EducationUnited StatesenterpriseLOW

Coursera, Inc. is a leading global online education platform founded in 2012, offering a wide range of courses, professional certificates, and degree programs in partnership with top universities and industry leaders such as Google, IBM, and Meta. The platform targets students, professionals, and lifelong learners seeking to advance their careers and acquire new skills. Coursera holds a strong market position as a trusted provider of accessible, high-quality education worldwide. Technically, Coursera employs a modern web technology stack including React, Webpack, and Amazon Cloudfront for hosting and content delivery. The website demonstrates excellent performance, mobile optimization, and accessibility features, supported by comprehensive SEO and metadata implementation. Privacy and cookie policies are clearly presented with GDPR compliance and user consent mechanisms in place. From a security perspective, Coursera enforces HTTPS, implements robust security headers, and follows best practices to protect user data and maintain platform integrity. No significant vulnerabilities or exposed sensitive data were detected. However, the absence of a publicly available incident response or vulnerability disclosure policy suggests room for improvement in transparency and security communication. Overall, Coursera presents a low-risk profile with a professional, secure, and user-friendly online presence. Strategic recommendations include enhancing incident response visibility, publishing a vulnerability disclosure policy, and maintaining continuous security audits to uphold trust and compliance.

70
95
47
80
72
85
100
educationonlinecoursese-learningcertificatesdegrees
ReactJavaScriptWebpackCloudfront CDN+2

Partner Domains:

michigan.edu
partner
upenn.edu
partner

+3 more partners

2025-07-29T04:33:58.746Z
owletcare.com favicon

Owlet US

owletcare.com

76
HealthcareUnited StatesmediumLOW

Owlet US operates a well-established e-commerce platform specializing in FDA-cleared smart baby monitors, including the Dream Sock®, Dream Duo 2, and Owlet Cam 2. The company targets parents and caregivers seeking advanced infant monitoring solutions that provide live health readings and HD video for peace of mind. Owlet holds a strong market position as an innovator in infant healthcare technology with a focus on safety and reliability. The website is professionally designed, mobile-optimized, and leverages Shopify's robust platform and third-party marketing tools such as Klaviyo and Bazaarvoice to enhance customer engagement and sales. Technically, the website is built on Shopify with modern web technologies including jQuery and video media elements. It uses Cloudflare DNS and Shopify CDN for hosting, ensuring fast performance and good availability. SEO and accessibility features are well implemented, and the site includes structured data for enhanced search engine understanding. Privacy and cookie policies are present with consent mechanisms, reflecting good compliance with GDPR and related regulations. From a security perspective, the site enforces HTTPS with strong domain registration protections and no visible vulnerabilities or exposed sensitive data. However, DNSSEC is not enabled, and there is no publicly available security policy or incident response information, which could be improved. The domain registration is consistent with the business claims, showing a mature and legitimate online presence. Overall, Owlet US presents a low-risk profile with a strong security posture, good privacy compliance, and a professional e-commerce presence. Strategic recommendations include enabling DNSSEC, publishing a security policy, and adding vulnerability disclosure information to further enhance trust and security transparency.

75
73
20
100
75
80
100
e-commercehealthcarebabymonitorfda-clearedshopify+2 more
ShopifyjQueryKlaviyoBazaarvoice+5

Partner Domains:

owletcare.myshopify.com
service
bazaarvoice.com
partner

+2 more partners

2025-07-28T19:02:01.961Z
flatlogic.com favicon

Flatlogic LLC

flatlogic.com

76
TechnologyN/amediumLOW

Flatlogic LLC is a technology company specializing in AI-powered software development for startups and businesses. Their platform enables rapid generation and deployment of full-stack web applications including SaaS, CRM, and ERP solutions. The company emphasizes ownership of the generated code, allowing clients full customization and control. The website demonstrates a strong market position with notable clients and positive reviews, positioning Flatlogic as an innovative player in AI-driven software development. Technically, the website is built on a modern stack including Next.js, React, Node.js, and PostgreSQL, hosted on Cloudflare infrastructure. The site is well-optimized for performance, mobile responsiveness, and SEO. It integrates multiple analytics and marketing tools such as Google Analytics, Microsoft Clarity, and Facebook Pixel, with appropriate cookie consent mechanisms in place. From a security perspective, the site enforces HTTPS, uses CSRF tokens, and benefits from Cloudflare DNS protection. However, DNSSEC is not enabled, and some security headers are not explicitly visible in the HTML. No critical vulnerabilities or exposed sensitive data were detected. Privacy policies and terms of service are comprehensive and GDPR compliant. Overall, Flatlogic's website reflects a mature, professional, and trustworthy business with a solid technical foundation and good security posture. Minor improvements in DNS security and explicit security policy publication are recommended to further enhance trust and compliance.

55
100
17
85
75
85
100
aisoftwaredevelopmentbusinesssoftwarecustomsaascustomcrmcustomerp+3 more
Next.jsReactNode.jsPostgreSQL+2
2025-07-28T12:57:34.915Z
gensler.com favicon

Gensler

gensler.com

78
Real EstateUnited StatesenterpriseLOW

Gensler is a globally recognized architecture, design, and planning firm with a significant international footprint, operating 57 offices and employing over 6,000 professionals. The company offers a broad range of services including architecture, urban design, brand design, sustainability consulting, and interior design, targeting corporate clients, real estate developers, and urban planners. The website reflects a mature digital presence with professional design, comprehensive content, and clear navigation, supporting its market leadership position. Technically, the website employs modern web technologies such as JavaScript frameworks, Matomo analytics, and Sentry for error tracking. It is well-optimized for mobile devices and accessibility, with good SEO practices and performance. Security posture is strong with HTTPS enforced and multiple security headers present, although explicit security policies and incident response information are not publicly detailed. Overall, the site demonstrates a high level of professionalism and trustworthiness, with privacy and cookie policies implemented in compliance with GDPR. The absence of WHOIS data suggests domain privacy protection, which is common for large enterprises. No critical vulnerabilities or suspicious content were detected, indicating a low risk profile. Strategic recommendations include publishing detailed security and incident response policies, adding a vulnerability disclosure program, and enhancing transparency around data protection officer contacts and certifications to further strengthen trust and compliance.

90
68
25
87
82
85
100
architecturedesignplanningsustainabilityurbandesign+2 more
JavaScriptMatomo AnalyticsSentryGoogle Fonts+1
2025-07-28T11:46:15.285Z
betterimpact.com favicon

Better Impact

betterimpact.com

76
TechnologyCanadamediumLOW

Better Impact is a technology company specializing in SaaS solutions for volunteer, donor, client, and member management primarily targeting non-profit organizations. The company has a strong market presence with over 25,000 organizations using its software globally. Their website is professionally designed, mobile-optimized, and rich in relevant content including testimonials, case studies, and detailed product descriptions. The technical infrastructure leverages HubSpot CMS and integrates modern analytics and marketing tools such as Google Analytics, LinkedIn Insight, and Intercom, with appropriate cookie consent mechanisms in place. From a security perspective, the website enforces HTTPS, employs standard security headers, and uses secure forms integrated with HubSpot. However, there is no dedicated security policy or incident response page publicly available, which could be improved to enhance transparency and trust. No vulnerabilities or exposed sensitive data were detected in the content. Privacy compliance is well addressed with clear privacy and cookie policies, including GDPR compliance indicators. Overall, the website demonstrates a mature digital presence with good security posture and privacy practices. The business credibility is high, supported by consistent WHOIS data and strong trust signals. Strategic recommendations include publishing a dedicated security policy, providing incident response contacts, and adding a vulnerability disclosure mechanism to further strengthen security transparency.

45
83
47
88
75
85
100
volunteermanagementdonormanagementnon-profitsoftwaresaasvolunteerengagement
HubSpot CMSjQuerySlick CarouselGoogle Analytics+4
2025-07-28T07:13:11.196Z
dovetail.com favicon

Dovetail Research Pty Ltd

dovetail.com

77
TechnologyAustraliamediumLOW

Dovetail Research Pty Ltd operates a sophisticated AI-native Customer Insights Hub designed to help teams and businesses rapidly convert customer data into actionable insights. Positioned strongly in the technology sector, the company offers a SaaS platform that supports research analysis, qualitative data analysis, thematic analysis, and user research, targeting product managers, UX researchers, and customer experience professionals. The website reflects a mature digital presence with comprehensive content, clear navigation, and strong branding consistency. The company is based in Australia and has been established since 1994, indicating a well-rooted market presence. Technically, the website leverages modern frameworks such as React and Gatsby, hosted on Amazon AWS infrastructure, and integrates analytics via Segment. The site is optimized for performance, mobile responsiveness, and SEO, demonstrating a high level of digital maturity. Structured data and metadata are well implemented, enhancing search visibility and business transparency. From a security perspective, the site enforces HTTPS, employs standard security headers, and maintains domain registration protections that prevent unauthorized changes. However, DNSSEC is not enabled, and there is no publicly available security policy or incident response contact, which are areas for improvement. No vulnerabilities or exposed sensitive data were detected in the analysis. Overall, the website presents a low-risk profile with strong business credibility and technical robustness. Strategic recommendations include enabling DNSSEC, publishing a formal security policy and vulnerability disclosure program, and continuing to monitor third-party scripts for security compliance.

95
53
17
100
77
85
100
dovetailresearchanalysisresearchmethodsresearchopsuserresearch+5 more
ReactGatsbySegment AnalyticsAWS DNS+1
2025-07-28T02:40:00.116Z
bitwarden.com favicon

Bitwarden, Inc.

bitwarden.com

85
TechnologyUnited StatesenterpriseLOW

Bitwarden, Inc. operates a leading open source password management platform trusted by millions globally, serving individuals, families, businesses, and enterprises. Their product suite includes password management, secrets management, passwordless authentication, and developer tools, positioning them strongly in the cybersecurity technology market. The company emphasizes transparency, security, and compliance, supported by certifications such as SOC 2 and ISO 27001. Their business model is primarily SaaS with free and paid tiers, including self-hosting options for enterprises. Technically, Bitwarden employs a modern React-based web platform, leveraging Cloudflare for hosting and CDN services, and integrates analytics tools like Google Tag Manager and Plausible Analytics. The website demonstrates excellent performance, mobile optimization, accessibility, and SEO practices, reflecting a mature digital infrastructure. Security posture is robust, with enforced HTTPS, comprehensive security headers, a bug bounty program, and regular compliance audits. However, DNSSEC is not enabled, and a security.txt file is absent, representing areas for improvement. Privacy compliance is strong, with clear privacy and cookie policies and GDPR adherence. Contact information is available primarily via contact forms, with no explicit phone numbers or emails disclosed. Overall, Bitwarden presents a high-trust, professional, and secure online presence with minimal risk. Strategic recommendations include enabling DNSSEC, publishing a security.txt file, and enhancing incident response transparency to further strengthen their security and compliance posture.

95
80
75
82
72
85
100
passwordmanagersecurityopensourceenterprisecompliance+1 more
ReactJavaScriptCSSGoogle Tag Manager+2
2025-07-27T20:53:00.717Z
inhousepharmacy.vu favicon

Pacific Health Ltd

inhousepharmacy.vu

77
HealthcareVanuatumediumLOW

Inhouse Pharmacy, operated by Pacific Health Ltd, is a reputable online pharmacy established since 1996, specializing in shipping authentic prescription medications worldwide from a South Pacific facility. The company emphasizes affordable pricing, authentic sourcing from government-registered and FDA-approved manufacturers, and excellent customer service supported by licensed pharmacists. Their market position is strong within the online pharmacy sector, targeting individuals seeking safe and affordable medications globally. Technically, the website is built on ASP.NET WebForms with modern JavaScript libraries such as jQuery and integrates multiple analytics and tracking tools including Microsoft Clarity, Google Tag Manager, and Facebook SDK. The site is mobile-optimized with good SEO and accessibility basics, though there is room for improvement in security headers and accessibility compliance. Security posture is solid with HTTPS enforced and use of Trustwave security seals, but lacks explicit security policies or incident response contacts. No vulnerabilities or exposed sensitive data were detected. Privacy compliance is well addressed with clear privacy and cookie policies and consent mechanisms. Overall, the website presents a professional, trustworthy, and user-friendly platform with moderate technical sophistication and a good security baseline. The absence of WHOIS data reduces transparency but is common in this sector. Strategic recommendations include enhancing HTTP security headers, publishing security policies, and improving accessibility standards.

90
83
47
60
75
80
100
onlinepharmacyprescriptionmedicationshealthcaree-commercetrustedpharmacy+1 more
jQuery 3.7.1jQuery UI 1.13.2jQuery Validate 1.19.5ScrollReveal+2
2025-07-27T19:47:35.147Z