Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157326
Websites
130
Industries
113
Countries
52
Avg Score
Page 260 of 261|Showing 12951-13000 of 13036
hyperwave.com favicon

Hyperwave GmbH

hyperwave.com

40
TechnologyAustriamediumHIGH

Hyperwave GmbH is an established Austrian technology company specializing in intranet and private cloud solutions designed to facilitate efficient and secure information management within enterprises. With over 20 years of market presence, the company offers a range of services including document management, knowledge management, collaboration tools, and consulting services. The website targets businesses seeking robust data and information processing solutions, emphasizing ease of use, security, and adaptability. Technically, the website is built on a modern stack including Apache, Bootstrap, and JavaScript with Lottie animations, hosted via World4You DNS services. While the site is mobile-optimized and well-structured with good SEO practices, it suffers from critical security shortcomings, notably the absence of a valid SSL certificate and proper HTTPS configuration, which undermines user trust and data security. Performance metrics are unavailable, suggesting potential monitoring gaps. From a security perspective, the site implements some security headers but lacks a valid SSL/TLS setup, OCSP stapling, and DNSSEC, exposing it to potential risks. No explicit security policies or incident response contacts are published, indicating gaps in security governance and transparency. Privacy compliance is partially addressed with cookie consent mechanisms and a privacy policy, but no data protection officer or vulnerability disclosure information is provided. Overall, the website presents a professional business front with solid content and branding but requires urgent improvements in security infrastructure and transparency to enhance trustworthiness and compliance. Strategic recommendations include immediate SSL certificate deployment, DNS record corrections, and publication of security and incident response policies to align with best practices and regulatory requirements.

45
18
5
50
-
90
100
intranetprivatecloudinformationmanagementdatasecurityenterprisesoftware
ApacheHTML5CSS3JavaScript+3
2025-06-15T21:49:13.355Z
U

UniCredit Bank Austria AG

bankaustria.at

38
FinanceAustriaenterpriseHIGH

UniCredit Bank Austria AG operates as a major financial institution in Austria, providing a wide range of banking services including retail, corporate, and private banking. The website targets private customers, corporate clients, and private banking customers with comprehensive offerings such as accounts, credit cards, loans, insurance, and investment products. The bank is part of the UniCredit Group, indicating a strong market position and enterprise scale. The website is professionally designed with consistent branding and rich content, supporting a high level of user engagement and trust. Technically, the website employs modern JavaScript libraries and third-party services such as Tag Commander for tag management and Genesys for customer service. Hosting is supported by Akamai CDN infrastructure, enhancing availability and performance. However, the site suffers from slow load times and lacks a valid SSL certificate, which is a critical security flaw for a banking website. Accessibility and SEO optimizations are well implemented, and mobile responsiveness is good. Security posture is weak due to the absence of HTTPS, missing security headers, and no HSTS policy. While no immediate vulnerabilities are detected, these gaps expose the site to risks and reduce user trust. Privacy compliance is strong with clear privacy and cookie policies, GDPR adherence, and consent mechanisms in place. Business credibility is high, supported by certifications and transparent legal information. Overall, the site is a professional and comprehensive banking portal but requires urgent security improvements, especially SSL/TLS implementation, to meet industry standards and protect user data effectively.

20
-
5
50
-
85
100
bankingfinanceonlinebankingmobilebankingloans+5 more
JavaScriptGenesys (customer service widget)Tag Commander (tag management)Owl Carousel (JS carousel)+2

Partner Domains:

wien-ticket.at
partnerpending
cashbackonline.at
partnerpending

+3 more partners

2025-06-15T21:48:49.087Z
brokenrul.es favicon

Broken Rules

brokenrul.es

35
TechnologyN/asmallHIGH

Broken Rules is an independent game development studio established in 2009, specializing in designing, developing, and publishing original digital games. The website showcases multiple award-winning titles, targeting gamers and digital entertainment audiences. The business model focuses on creative game production and distribution across multiple platforms including Apple Arcade, Nintendo Switch, Steam, and itch.io. The company maintains a consistent and professional brand presence with high-quality content and clear navigation. Technically, the website is hosted on an Apache server with basic HTML5 and CSS3 technologies. However, it lacks modern security implementations such as HTTPS, HSTS, and security headers, which significantly impacts its security posture. Performance data is unavailable, but the site appears to have basic mobile optimization and accessibility features. SEO is reasonably well implemented with proper meta tags and Open Graph data. From a security perspective, the absence of SSL/TLS encryption is a critical vulnerability, exposing users to potential data interception risks. No security policies, incident response contacts, or vulnerability disclosure mechanisms are publicly available, indicating a low maturity in security governance. The DNS configuration lacks DNSSEC and CAA records, further reducing domain security assurance. Overall, the website is functional and professional in content and design but requires urgent security improvements to protect users and enhance trust. Strategic recommendations include enabling HTTPS, implementing security headers, and establishing clear privacy and incident response policies.

15
-
5
50
-
85
100
gamedevelopmentdigitalgamesindiegamescreativestudioaward-winninggames
ApacheHTML5CSS3Web
2025-06-15T21:47:19.743Z
agi-world.com favicon

Spark

agi-world.com

37
MediaN/amediumHIGH

The website agi-world.com serves as a minimal landing page for the company now branded as Spark, which has a long history of over 50 years in marketing transformation and creative production services. The business is positioned as a trusted partner delivering localized marketing solutions. The site itself is minimalistic, with no forms, contact details, or privacy policies, and primarily directs visitors to the main corporate site sparkbrighterthinking.com. From a technical perspective, the site is hosted on Amazon S3 with CloudFront CDN, uses basic HTML5 and CSS3 technologies, and includes a video background and SVG logo for branding. Mobile optimization is basic but functional. However, the site lacks HTTPS support, security headers, and any analytics or tracking technologies, indicating a low level of digital maturity. Security posture is weak due to the absence of SSL/TLS encryption, no HSTS, and no security headers. There are no detected vulnerabilities such as subdomain takeover or SSL vulnerabilities, but the lack of HTTPS is a critical issue. Privacy compliance is poor, with no privacy or cookie policies present, and no GDPR compliance indicators. Business credibility is moderate based on the company's history and branding but is weakened by the lack of contact information and policies on this domain. Overall, the site presents a basic online presence with significant room for improvement in security, privacy compliance, and content richness. Strategic recommendations include implementing HTTPS, adding privacy and cookie policies, enhancing security headers, and providing clear contact information to improve trust and compliance.

15
15
5
50
-
85
100
marketingcreativeproductionbrandingmediabusinessservices
HTML5CSS3SVGVideo (HTML5 video tag)
2025-06-15T21:47:08.728Z
boyden.com favicon

Boyden

boyden.com

36
OtherN/alargeHIGH

Boyden is a globally recognized leadership and talent advisory firm specializing in executive search, interim management, and leadership consulting services. The company operates through a broad international network with over 75 offices in more than 45 countries, serving a diverse range of industries and markets. Their website reflects a professional and comprehensive presentation of their services, targeting corporate clients seeking high-level talent solutions worldwide. Technically, the website employs standard web technologies including HTML5, CSS3, and jQuery. While the site is well-structured with good SEO and mobile optimization basics, performance data is unavailable. The absence of a valid SSL certificate and lack of modern TLS protocols represent significant technical and security shortcomings. Despite strong security headers and cookie consent mechanisms, the invalid SSL undermines overall security posture. From a security perspective, the site demonstrates awareness of best practices through implemented headers and cookie policies but critically fails in SSL deployment, exposing users to potential risks. No incident response or vulnerability disclosure information is provided, indicating gaps in security transparency and readiness. The WHOIS data supports the legitimacy of the domain and business identity, with no suspicious patterns detected. Overall, Boyden's website is professionally designed and content-rich, supporting its market position as a leading talent advisory firm. However, urgent remediation of SSL/TLS issues is necessary to ensure secure user interactions and maintain trust. Enhancements in security transparency and incident response communication would further strengthen their security posture and compliance.

85
18
5
50
-
90
40
executivesearchinterimmanagementleadershipconsultingprofessionalservicesglobal+1 more
jQuery 3.7.1HTML5CSS3
2025-06-15T21:47:05.975Z
iqsoft.company favicon

ООО "Айкюсофт"

iqsoft.company

47
TechnologyRussiasmallHIGH

ООО "Айкюсофт" is a Russian technology company specializing in software development and integration, primarily serving financial institutions and businesses requiring advanced IT solutions. Their product portfolio includes modules for the National Payment Card System, Escrow services, and AML monitoring systems, positioning them as a niche player in fintech. The company maintains partnerships with notable payment processors and financial service providers, enhancing its market credibility. Technically, the website is built with standard web technologies including HTML5, CSS3, and JavaScript, with moderate performance and good mobile optimization. However, the absence of HTTPS and security headers significantly undermines the site's security posture. No advanced frameworks or CMS platforms are detected, indicating a relatively simple but functional technical infrastructure. Security evaluation reveals critical vulnerabilities due to lack of SSL/TLS encryption, missing security headers, and absence of domain-level protections such as DNSSEC and DMARC. While the company holds PCI DSS certifications, the website itself does not reflect strong security practices, posing risks to user data confidentiality and trust. Overall, the business appears legitimate and established with consistent WHOIS data and clear contact information. Strategic improvements in website security and privacy compliance are essential to enhance trust and protect business operations.

15
25
25
50
50
60
100
softwaredevelopmentfinancialtechnologypaymentsystemsconsultingtraining+1 more
HTML5CSS3JavaScriptGoogle Fonts (Roboto)

Partner Domains:

guarantee.money
partner65
webmoney.ru
partner55

+3 more partners

2025-06-15T10:28:22.739Z
ensta-bretagne.fr favicon

ENSTA Bretagne

ensta-bretagne.fr

40
EducationFrancemediumHIGH

ENSTA Bretagne is a reputable French engineering school specializing in advanced technologies for defense, maritime, and high-tech industries. It offers a range of educational programs including engineering degrees, masters, specialized masters, and doctoral studies. The institution maintains strong partnerships with government defense bodies and leading industry players, reinforcing its market position as a Grande École with a focus on innovation and applied research. Technically, the website is built on Drupal 10 with modern JavaScript libraries and includes a cookie consent mechanism compliant with GDPR. However, the site suffers from critical security shortcomings, notably the absence of SSL/TLS encryption, which severely impacts its security posture. Performance is suboptimal with slow load times, though mobile optimization and content quality are good. Security-wise, the lack of HTTPS and security headers exposes the site to risks and undermines user trust. Privacy compliance is well addressed with clear policies and consent mechanisms. Overall, the site is professional and trustworthy but requires urgent security improvements to protect user data and institutional reputation. Strategic recommendations include immediate implementation of valid SSL certificates, enhancement of security headers, and performance optimization to improve user experience and security compliance.

65
-
17
50
50
85
100
educationengineeringresearchdefensemaritime+1 more
Drupal 10JavaScriptMatomo AnalyticsTarteaucitron (cookie consent)+3

Partner Domains:

gouv.fr
partner63
naval-group.com
partnerpending

+2 more partners

2025-06-14T21:52:17.180Z
scoutapm.com favicon

Scout Monitoring

scoutapm.com

49
TechnologyN/asmallHIGH

Scout Monitoring is a specialized SaaS provider offering application performance monitoring solutions tailored for software engineering teams. Their platform emphasizes ease of use, rapid setup, and comprehensive monitoring features including app metrics, log management, tracing, query analysis, and alerting. The company targets developers and DevOps professionals seeking to optimize application performance and reliability. Technically, the website is built on modern web technologies including Webflow CMS, Google Tag Manager, and Cookiebot for privacy compliance. Hosting is via Amazon AWS infrastructure. However, the site suffers from a lack of a valid SSL certificate, resulting in no HTTPS support, which is a critical security gap. Performance is suboptimal with slow page load times and a high number of resources loaded. Security posture is weak due to missing security headers, invalid SPF configuration, and absence of HSTS and modern TLS protocols. Privacy compliance is reasonably well addressed with a privacy policy, cookie consent, and GDPR indicators. Business credibility is supported by clear branding, testimonials, and active social media presence. Overall, the site is professional and content-rich but requires urgent security improvements to protect user data and enhance trust.

60
25
25
50
50
70
100
apmdevopssoftwaremonitoringperformancedevelopertools
Webflow CMSGoogle Tag ManagerHighlight.jsCookiebot+5

Partner Domains:

telemetryhub.com
partnerpending
2025-06-14T21:49:28.678Z
exaroton.com favicon

Aternos GmbH

exaroton.com

66
TechnologyGermanymediumMEDIUM

exaroton.com is a specialized service offering high-end, on-demand Minecraft game servers with a unique pay-per-use pricing model. The platform targets Minecraft players and server administrators who desire flexible, customizable, and cost-efficient server hosting. The service is backed by Aternos GmbH, a German company, and integrates features such as DDOS protection, automatic backups, and API access to enhance user experience and operational control. The website demonstrates a professional design with clear navigation and comprehensive content tailored to its niche audience. Technically, the site employs modern web technologies including JavaScript, HTML5, and CSS3, with DNS and CDN services provided by Cloudflare. The platform supports both Minecraft Java and Bedrock editions, offering a wide range of server software and modpacks. Despite good SEO and accessibility practices, the website suffers from a critical security flaw: the absence of a valid SSL certificate and HTTPS support, which severely impacts its security posture. Security-wise, the site has implemented SPF and DMARC DNS records with a strict reject policy, uses Google MX servers for email, and has no subdomain takeover vulnerabilities. However, the lack of HTTPS, TLS protocols, HSTS, and OCSP stapling exposes users to potential risks. Privacy compliance is strong, with a comprehensive privacy policy and terms of service hosted on the parent company domain. Analytics usage is moderate and privacy-conscious, utilizing Matomo. Overall, exaroton.com presents a strong business and technical foundation but must urgently address its SSL/TLS deficiencies to ensure user trust and data security. Strategic improvements in security configuration will elevate the platform's credibility and protect its user base effectively.

50
43
25
87
100
85
100
minecraftgameserversondemandhostingcloudgamingddosprotection+1 more
JavaScriptHTML5CSS3Cloudflare DNS+6

Partner Domains:

aternos.org
parent67
2025-06-14T21:31:50.152Z
T

Team Farner

teamfarner.com

53
OtherSwitzerlandlargeMEDIUM

Team Farner is a prominent European alliance of independent, owner-led management consultancies specializing in integrated communication. The alliance combines expertise in strategy, creativity, behavioral science, and technology to provide comprehensive communication solutions across various sectors. With a strong presence in Switzerland and multiple partner companies across Europe, Team Farner positions itself as a leading consultancy network focused on impactful and agile communication strategies. Technically, the website is built on modern web technologies including Webflow CMS, HTML5, CSS3, JavaScript, jQuery, and Lottie animations. The hosting is managed by world4you.at, and the site employs TLS 1.2 for secure HTTPS connections. However, performance is somewhat slow, and there are opportunities to enhance security by enabling HSTS, OCSP stapling, and upgrading to TLS 1.3. From a security perspective, the site has valid SPF and DMARC DNS records, uses HTTPS, and shows no signs of subdomain takeover vulnerabilities. Yet, it lacks several security headers and advanced SSL features, which could be improved to strengthen its security posture. Privacy compliance is good with a comprehensive privacy policy, but no explicit cookie consent mechanism was detected. Overall, the website demonstrates a high level of professionalism, rich content, and strong business credibility. The security posture is adequate but can be enhanced. The risk assessment suggests moderate risk with recommendations to improve SSL configurations and implement additional security headers to protect user data and enhance trust.

50
43
25
65
42
85
40
managementconsultancyintegratedcommunicationeuropeanalliancebehavioralsciencetechnology+2 more
HTML5CSS3JavaScriptjQuery 3.5.1+2

Partner Domains:

affective-advisory.com
partneranalyzing...
blueglass.ch
partnerpending

+3 more partners

2025-06-14T20:57:10.605Z
nesteoil.com favicon

Neste

nesteoil.com

66
EnergyFinlandenterpriseMEDIUM

Neste is a leading global company specializing in renewable energy solutions, particularly sustainable aviation fuel and renewable diesel. The company positions itself as a pioneer in mitigating climate change and advancing the circular economy by refining waste and residues into high-quality renewable fuels and raw materials. Their market position is strong as a world leader in sustainable aviation fuel production, targeting businesses and consumers focused on sustainability. The website reflects a professional and consistent brand image with excellent content quality and user experience. Technically, the website is built on modern web technologies including React and Next.js, hosted likely on Google Cloud infrastructure. SEO and accessibility practices are well implemented, and the site is mobile optimized. However, performance data is limited but inferred to be moderate. The site uses cookie consent mechanisms and integrates marketing tools such as OneTrust and Visual Website Optimizer. From a security perspective, the site employs strong security headers and HSTS policies, but critically suffers from an invalid or missing SSL certificate and lack of enabled TLS protocols, which significantly undermines its security posture. No explicit security policies or incident response information are published, and no vulnerability disclosure program is evident. Privacy compliance is strong with comprehensive policies and GDPR adherence. Overall, while the business and content aspects are robust and professional, the security weaknesses related to SSL/TLS must be urgently addressed to ensure trust and secure user interactions. Strategic improvements in certificate management and enabling modern TLS protocols are recommended to elevate the security posture and overall website score.

95
25
25
85
90
85
100
renewableenergysustainabilityaviationfuelrenewabledieselclimatechange+1 more
ReactNext.jsJavaScriptHTML5+1
2025-06-14T20:04:23.431Z
akzonobel.com favicon

Akzo Nobel N.V.

akzonobel.com

72
ManufacturingNetherlandsenterpriseMEDIUM

Akzo Nobel N.V. is a global leader in the manufacturing and distribution of paints and coatings, with a rich history dating back to 1792. The company operates in over 150 countries and manages a portfolio of well-known brands such as Dulux, International, Sikkens, and Interpon. Their business model focuses on providing innovative and sustainable surface solutions to a wide range of industries including manufacturing, energy, and transportation. The website reflects a mature digital presence with comprehensive content aimed at customers, investors, and partners worldwide. Technically, the website is built on Adobe Experience Manager (AEM) and leverages modern web technologies including HTML5, CSS3, JavaScript, and various marketing and analytics tools such as Google Tag Manager and Adobe DTM. Hosting is provided via Amazon AWS infrastructure. While the site is mobile-optimized and accessible, performance is somewhat slow with a load time exceeding 8 seconds, indicating room for optimization. From a security perspective, the site employs HTTPS with a valid SSL certificate, SPF and DMARC email authentication records, and no detected vulnerabilities or subdomain takeover risks. However, security headers like HSTS and OCSP stapling are not enabled, and TLS 1.3 is not supported, suggesting moderate security posture. Privacy compliance is strong with clear privacy and cookie policies and an active consent mechanism, aligning with GDPR requirements. Overall, the website demonstrates a high level of professionalism, trustworthiness, and business credibility. The main risks relate to technical performance and some security hardening opportunities. Strategic recommendations include enhancing SSL configurations, enabling advanced security headers, improving page load times, and maintaining rigorous privacy compliance to sustain trust and regulatory adherence.

75
40
25
85
77
85
100
innovationsustainabilitypaintscoatingscorporate+1 more
HTML5CSS3JavaScriptjQuery+4

Partner Domains:

dulux.co.uk
partnerpending
interpon.com
partnerpending

+3 more partners

2025-06-14T19:28:56.501Z