Skip to main content

High-risk security reports

Browse 46,998 Guard analyses across this slice of the directory — NIS2 / GDPR readiness, SSL/TLS, DNS hygiene and email authentication.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157371
Websites
130
Industries
113
Countries
52
Avg Score
Page 275 of 940|Showing 13701-13750 of 46998
joma-sport.lt favicon

Joma Sport

joma-sport.lt

37
RetailLithuaniasmallHIGH

Joma Sport is an official Lithuanian representative of the Joma brand, specializing in the retail of sports apparel, equipment, and accessories for individual athletes, teams, and leisure consumers. The company operates an e-commerce platform built on WordPress and WooCommerce, offering a wide range of products categorized by gender, sport type, and product type. The website is professionally designed with good navigation, mobile optimization, and SEO practices, targeting the Lithuanian market primarily. Contact information and social media presence are clearly provided, enhancing trust and customer engagement. Technically, the website leverages modern web technologies including Elementor for page building, Yoast SEO for search optimization, and Google Analytics and Tag Manager for traffic analysis. Security measures include HTTPS encryption and Google reCAPTCHA integration to protect forms. However, some security headers are not explicitly detected, and there is no visible cookie consent mechanism, which could be improved for better GDPR compliance. The website performance is moderate, with good mobile responsiveness and basic accessibility features. From a security perspective, the site maintains a good posture with encrypted connections and no exposed sensitive data. The WHOIS data confirms a consistent and legitimate domain registration aligned with the business location and operations. No signs of malicious activity or suspicious domains were found. Privacy policy and terms of service pages are present, though the cookie policy and incident response information are lacking. Overall, Joma Sport presents a trustworthy and professional online presence with room for improvement in privacy compliance and security header implementation. Strategic recommendations include adding a cookie consent banner, publishing a security policy with incident response contacts, and enhancing security headers to strengthen protection and compliance.

15
10
2
70
62
60
-
sportsweare-commerceretaillithuaniawoocommerce+2 more
WordPressWooCommerceElementorYoast SEO+3
2025-10-16T07:28:15.178Z
epuap.org favicon

EPUAP org

epuap.org

39
HealthcareN/asmallHIGH

The European Pressure Ulcer Advisory Panel (EPUAP) is a well-established non-profit organization dedicated to the prevention and treatment of pressure ulcers through research, education, and policy advocacy across Europe. The website serves as a comprehensive hub for healthcare professionals, researchers, and policy makers, offering educational resources, clinical guidelines, research funding information, and event details. The organization has a clear market position as a niche advisory panel with a strong focus on patient-centered and cost-effective pressure ulcer care. Technically, the website is built on a modern WordPress CMS platform using Elementor for design and WooCommerce for e-commerce capabilities. It integrates common web technologies such as jQuery and Google Analytics for tracking. The site demonstrates good SEO practices and mobile optimization, although performance is moderate. The presence of a cookie consent banner indicates awareness of GDPR requirements, but explicit privacy and terms of service documents are not readily found. From a security perspective, the site uses HTTPS and has domain transfer protections enabled, but lacks DNSSEC and explicit security headers. No critical vulnerabilities or blocking mechanisms were detected. The WHOIS data confirms a long-standing domain registration consistent with the organization's history, enhancing trustworthiness. Overall, the website is professional, trustworthy, and serves its target audience effectively. However, improvements in published privacy policies, security headers, and DNS security would strengthen compliance and security posture.

30
50
17
35
-
80
20
healthcareeducationpressureulcernon-profitresearch+4 more
WordPress 6.8.3WooCommerce 10.2.0Elementor 3.27.3jQuery 3.7.1+6

Partner Domains:

epuap2026.org
partner
2025-10-16T06:28:49.062Z
vzpoura-urazum.cz favicon

Všeobecná zdravotní pojišťovna ČR (VZP ČR)

vzpoura-urazum.cz

43
HealthcareCzech RepublicmediumHIGH

The website 'VZPoura úrazům' is a project operated by the Všeobecná zdravotní pojišťovna ČR (VZP ČR), focusing on injury prevention among children and youth through educational meetings and awareness campaigns. It holds a reputable position as a long-standing initiative within the Czech healthcare and education sectors, targeting schools and young audiences. The project leverages official branding and maintains active social media channels to engage its audience effectively. Technically, the website employs a modern technology stack including Bootstrap, jQuery, and various UI libraries, ensuring a responsive and user-friendly experience. The site is secured with HTTPS and integrates Google reCAPTCHA and cookie consent mechanisms, reflecting a good level of digital maturity. However, some security headers are missing, and there is no visible CMS or hosting provider information. From a security perspective, the site demonstrates solid practices such as encrypted connections and bot protection, but lacks explicit security policies, incident response contacts, and vulnerability disclosure information. The absence of WHOIS data for the domain reduces trustworthiness, although the website content and official contact details strongly indicate legitimacy. Overall, the website is professional, content-rich, and well-targeted, with moderate technical and security maturity. Strategic improvements in security headers, transparency policies, and domain registration data would enhance trust and compliance.

30
40
2
60
42
75
20
healthcareinjurypreventioneducationvzprchildren+2 more
BootstrapjQueryFontAwesomeOwl Carousel+5
2025-10-16T06:28:39.044Z
kera.cz favicon

KERA GREEN s.r.o.

kera.cz

45
ManufacturingCzech RepublicmediumHIGH

KERA GREEN s.r.o. is a well-established Czech manufacturer specializing in gardening substrates, fertilizers, and decorative materials, operating since 1992. The company serves professional gardeners, municipalities, hobby markets, and retail chains primarily in the Czech Republic and Slovakia, with presence in several European markets. Their business model focuses on manufacturing high-quality products with an emphasis on quality control, ecological footprint reduction, and customer flexibility including custom packaging solutions. Technically, the website is built on WordPress 6.1.8 with common plugins such as Yoast SEO, WPML for multilingual support, and Complianz for GDPR cookie consent management. The site uses Google Analytics and Google Tag Manager for tracking and marketing purposes. The site is mobile optimized and has good SEO practices, though some accessibility features could be improved. From a security perspective, the site enforces HTTPS and uses cookie consent mechanisms, but lacks visible security headers and explicit security or incident response policies. No vulnerabilities or exposed sensitive data were detected in the HTML content. The absence of WHOIS data limits domain legitimacy verification, which is a concern for trust but the website content and business information appear professional and consistent. Overall, the website presents a professional and trustworthy front for a medium-sized manufacturing business with good privacy compliance and moderate technical maturity. Strategic improvements in security headers, incident response transparency, and domain registration verification are recommended to enhance trust and security posture.

30
25
2
85
42
75
20
gardeningsubstratesfertilizersmanufacturingczechrepublic+3 more
WordPress 6.1.8Yoast SEO pluginLayerSlider 6.9.1Google Tag Manager+4

Partner Domains:

eshop.kera.cz
partner
marketsoul.cz
partner
2025-10-16T06:24:53.266Z
pixelhouse.cz favicon

Pixelhouse s.r.o.

pixelhouse.cz

48
TechnologyCzech RepublicsmallHIGH

Pixelhouse s.r.o. is a Czech-based graphic studio specializing in web development, e-commerce solutions, graphic design, and video production. Established in 2007, the company targets businesses and individuals seeking professional digital and design services. Their website reflects a consistent brand image and offers clear information about their services and contact details. The company positions itself as an experienced local player with over a decade of industry presence. Technically, the website is built on Joomla! CMS with UIkit and Yootheme frameworks, incorporating accessibility features via a DJ-Extensions plugin. The site is mobile-optimized and demonstrates good SEO and usability practices. However, performance is moderate and could benefit from optimization. No advanced analytics or tracking scripts were detected, indicating a privacy-conscious approach. From a security perspective, the site uses HTTPS and includes accessibility enhancements but lacks explicit security headers and a published security policy or incident response contacts. No vulnerabilities or exposed sensitive data were identified in the provided content. The domain registration data is consistent with the business claims, showing a long-standing presence and transparent ownership. Overall, the website presents a professional and trustworthy digital presence with room for improvement in security best practices and privacy compliance mechanisms.

20
10
17
90
72
80
20
pixelhousewebdesigneshopgraphicdesignvideoproduction+2 more
Joomla!UIkitYoothemeGoogle Fonts (Roboto)+2
2025-10-16T06:24:33.203Z
dunajovskepecky.cz favicon

Spolek vinařů Dunajovské kopce

dunajovskepecky.cz

40
HospitalityCzech RepublicsmallHIGH

Dunajovské pecky is a regional project operated by Spolek vinařů Dunajovské kopce, focused on promoting unique local places, businesses, events, and projects within the Dunajovské kopce region in the Czech Republic. The website serves as a curated guide for visitors and locals, emphasizing quality, local authenticity, and community spirit. The project is relatively new, with domain registration and founding year in 2024, targeting tourists and regional enthusiasts through recommendations, event calendars, maps, and newsletters. Technically, the website is built on Joomla CMS with Yootheme and UIkit frameworks, enhanced by accessibility features via the DJ Accessibility plugin. The site is mobile-optimized, uses modern web standards, and includes SVG graphics and Google Fonts. Hosting is provided by REG-WEBGLOBE, consistent with the domain registration data. Performance is moderate with good accessibility and SEO practices, though some improvements in security headers and privacy compliance are recommended. From a security perspective, the site uses HTTPS and includes CSRF tokens, but lacks explicit security headers and vulnerability disclosure mechanisms. No analytics or tracking scripts were detected, indicating minimal user tracking. Contact information is clearly provided, but privacy and cookie consent policies are either missing or basic, which may pose compliance risks. No signs of malicious content or vulnerabilities were found. Overall, the website presents a trustworthy and professional regional project with good content quality and technical implementation. Strategic improvements in privacy policies, cookie consent, and security headers would enhance compliance and security posture, supporting long-term trust and user confidence.

20
10
2
55
52
80
20
regionaltourismlocalbusinesseseventsnewsletter+2 more
HTML5CSS3JavaScriptGoogle Fonts (Roboto)+1

Partner Domains:

dunajovskekopce.cz
partner
dj-extensions.com
partner

+2 more partners

2025-10-16T06:23:37.845Z
korekmikulov.cz favicon

Korek Mikulov

korekmikulov.cz

45
HospitalityCzech RepublicsmallHIGH

Korek Mikulov operates as a small hospitality business specializing in wine bar and restaurant services located in Mikulov, Czech Republic. The company also runs an e-commerce platform for wine and related products, positioning itself as the first cooperative wine bar in the Dunajovské kopce region. Their target audience includes local visitors, tourists, and wine enthusiasts. The website content is professionally presented in Czech, with clear navigation and mobile optimization, supporting a positive user experience. The business model combines on-site hospitality with online retail, supported by partnerships with regional producers and tourism entities. Technically, the website is built on Joomla CMS with VirtueMart e-commerce integration, utilizing modern JavaScript libraries such as jQuery and UIkit. Hosting is provided by REG-WEBGLOBE, a Czech registrar, consistent with the business location. Performance is moderate with good mobile responsiveness, though accessibility and SEO optimizations are basic. The site includes a cookie consent banner indicating some privacy compliance efforts but lacks comprehensive privacy and security policies. From a security perspective, HTTPS is implied but no explicit security headers were detected in the provided data. No incident response or vulnerability disclosure information is present. The site does not expose sensitive data or show signs of vulnerabilities but would benefit from enhanced security practices such as implementing security headers and publishing security policies. The domain WHOIS data aligns well with the business claims, showing consistent registration details and appropriate domain age. Overall, the website presents a trustworthy and professional image for a small hospitality business with moderate technical maturity and basic privacy compliance. Strategic improvements in security posture and privacy transparency would enhance trust and compliance.

20
25
2
85
62
75
20
winerestaurante-shophospitalityczechrepublic+2 more
jQueryUIkitVirtueMartYootheme

Partner Domains:

dunajovskekopce.cz
partner
pedrosfoodtruck.cz
partner

+2 more partners

2025-10-16T06:23:32.836Z
A

Hier entsteht eine neue Internetpräsenz

astratracker.net

46
OtherN/asmallHIGH

The website astratracker.net currently serves as a placeholder page with minimal content, indicating that a new internet presence is under construction. There is no substantive business information, services, or contact details available, which limits the ability to assess the company's market position or offerings. The domain is registered since 2012 with Mesh Digital Limited, but the website itself appears undeveloped or inactive. From a technical perspective, the site lacks modern web technologies, security headers, and HTTPS configuration. The hosting appears to be managed via DomainControl (GoDaddy), but no CMS or frameworks are detected. The site is not optimized for mobile or accessibility, and SEO elements are absent. Security posture is weak due to the absence of HTTPS, security headers, and privacy policies. No forms or scripts are present, reducing attack surface but also indicating no active user engagement or data collection. The domain registration is consistent and not privacy protected, but the lack of content and business information reduces trustworthiness. Overall, the site poses low risk but also low value or credibility. Strategic recommendations include enabling HTTPS, developing substantive content including privacy and cookie policies, adding contact information, and implementing security best practices to improve trust and compliance.

15
50
17
60
100
75
20
placeholderunderconstructionbasicnocontent
2025-10-16T06:21:16.875Z
24crystal.cz favicon

Crystal BOHEMIA a.s.

24crystal.cz

39
RetailCzech RepublicmediumHIGH

Crystal BOHEMIA a.s. operates the e-commerce website 24crystal.cz, specializing in the sale of crystal glassware and related decorative and gift products. The company targets consumers interested in high-quality crystal products, positioning itself as a niche retailer within the Czech Republic. The website provides a professional online shopping experience with clear navigation and detailed terms of service, reflecting a mature business model founded in 2019. Technically, the website employs common JavaScript libraries such as jQuery, Slick Carousel, and tracking tools including Google Analytics and Facebook Pixel. The site is hosted under the registrar REG-WEBGLOBE and uses HTTPS, ensuring secure communication. However, the site lacks explicit privacy and cookie policies and does not implement visible security headers, indicating areas for compliance and security improvement. From a security perspective, the website shows a moderate posture with no detected vulnerabilities or blocking mechanisms. The absence of privacy and cookie consent mechanisms presents compliance risks under GDPR. Contact information is clearly provided, enhancing business credibility. The content is safe for general audiences but includes mature content related to alcohol products. Overall, the website is functional and professional but would benefit from enhanced privacy compliance, improved security headers, and better mobile optimization to strengthen trust and regulatory adherence.

-
-
-
70
72
75
20
e-commercecrystalglasswaregiftretail+1 more
jQueryGoogle AnalyticsFacebook PixelSlick Carousel+3
2025-10-16T05:18:46.057Z
paydrom.co favicon

Digitain

paydrom.co

49
FinanceN/amediumHIGH

Paydrom is a payment gateway and service provider specializing in secure and quality payment solutions tailored for the iGaming industry. The company operates under the parent brand Digitain and offers a comprehensive suite of services including cashier integration, business intelligence, transaction management, refunds, risk and fraud management, and payment account management. Their market position is focused on enabling iGaming businesses to optimize payment flows and scale efficiently with a broad range of payment methods and local market coverage. Technically, the website employs modern front-end technologies such as Bootstrap, jQuery, Swiper Slider, and Font Awesome Pro, providing a responsive and visually appealing user experience. The site includes tracking via Google Tag Manager but lacks visible advanced security headers and privacy compliance mechanisms. Performance is moderate with good mobile optimization and basic accessibility features. From a security perspective, the site uses HTTPS and displays a PCI certification logo, indicating adherence to payment security standards. However, it lacks a published privacy policy, cookie consent mechanism, and incident response contact details, which are critical for GDPR compliance and overall security posture. No critical vulnerabilities or exposed sensitive data were detected in the content. Overall, the website presents a professional and trustworthy front for its business, but improvements in privacy compliance and security best practices are recommended to enhance trust and regulatory adherence.

15
35
17
65
-
85
100
paymentgatewayigamingpaymentsolutionsfinancetechnology+1 more
BootstrapjQuerySwiper SliderFont Awesome Pro+4

Partner Domains:

digitain.com
parent
aircash.com
partner

+3 more partners

2025-10-16T05:17:04.851Z
R

Random State

randomstate.se

40
TechnologySwedensmallHIGH

Random State is a Swedish-based technology company specializing in innovative lottery and bingo gaming solutions. They provide a comprehensive platform including player account management, random number generation, game modules, cloud hosting, and compliance support. Their team comprises industry veterans and creative professionals focused on delivering exclusive and engaging real money gaming experiences. The company holds recognition such as the Swedish Gambling Award and has secured strategic investments, positioning them as a notable player in the iLottery sector. Technically, the website is built on modern frameworks including Nuxt.js and Vue.js, leveraging Storyblok CMS and AWS CloudFront CDN for performance and scalability. The site is mobile-optimized, fast-loading, and SEO-friendly, with multimedia content enhancing user engagement. Security headers are implemented, and HTTPS is enforced, though DNSSEC is not enabled. No major vulnerabilities or exposed sensitive data were detected. From a security and compliance perspective, the site lacks published privacy and terms of service policies, which is a notable gap for GDPR compliance. Cookie consent is implemented, but no incident response or vulnerability disclosure information is available. Contact information is clearly provided, but no phone numbers are listed. Overall, the security posture is good but could be improved with additional transparency and security controls. The overall risk is moderate with no critical issues detected. Strategic recommendations include publishing privacy and terms policies, enabling DNSSEC, adding security.txt or vulnerability disclosure, and enhancing security headers. These steps will improve compliance, trust, and security maturity.

-
-
-
70
-
75
100
lotterybingogamingtechnologyilottery+2 more
Nuxt.jsVue.jsStoryblok CMSCloud hosting (likely AWS CloudFront CDN)+2

Partner Domains:

randomstate.se
partner
fdj-united-ventures.com
partner

+1 more partners

2025-10-16T05:16:49.810Z
T

Tepelná čerpadla Mazur s.r.o.

hitachimorava.cz

44
EnergyCzech RepublicsmallHIGH

The website hitachimorava.cz represents Tepelná čerpadla Mazur s.r.o., a small Czech company specializing in the sale, installation, and servicing of heat pumps and HVAC systems, primarily under the HITACHI brand. The company positions itself as an official distributor in the Czech Republic with over 60 years of experience in the industry. The site targets residential and commercial customers seeking high-quality, energy-efficient heating and cooling solutions. The business model focuses on product sales, professional installation, and after-sales service, supported by a user-friendly website with clear product offerings and contact channels. Technically, the website employs a modern but somewhat dated technology stack including AngularJS 1.6.7, jQuery, Bootstrap, and integrates Google Analytics, Google Tag Manager, and Smartsupp live chat for customer engagement and analytics. The site is hosted likely via WEDOS, a Czech hosting provider, consistent with the domain registrar information. The site is mobile optimized and SEO friendly with proper meta tags and structured navigation. From a security perspective, the website demonstrates good privacy compliance with a comprehensive GDPR policy and cookie consent mechanism. However, no explicit security headers were detected, and the use of an older AngularJS version may pose some security risks. There is no visible incident response or vulnerability disclosure information, which could be improved. The site uses HTTPS for all external resources, but direct SSL configuration details are not available. Overall, the website is professional, trustworthy, and well-aligned with the business goals. The risk level is moderate with recommendations to enhance security headers, update frameworks, and publish incident response contacts. The domain registration data is consistent with the business claims, supporting legitimacy. The site contains no adult or questionable content and is safe for general audiences.

15
40
2
60
62
75
20
tepelnerpadlaklimatizacehitachiservismont+3 more
AngularJS 1.6.7jQueryBootstrapFont Awesome+4

Partner Domains:

topimcerpadlem.cz
partner
tovi.cz
partner
2025-10-16T05:14:49.469Z