Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

149091
Websites
130
Industries
113
Countries
52
Avg Score
Page 28 of 38|Showing 1351-1400 of 1863
ctbto.org favicon

Comprehensive Nuclear-Test-Ban Treaty Organization

ctbto.org

40
GovernmentAustriamediumHIGH

The Comprehensive Nuclear-Test-Ban Treaty Organization (CTBTO) operates as an international governmental entity dedicated to monitoring and enforcing the ban on nuclear tests globally. The organization provides key services including verification regimes, international monitoring systems, data analysis, and on-site inspections, targeting member states, researchers, civil society, and media. The website reflects a professional and authoritative presence consistent with its mission and audience. Technically, the site is built on Drupal 10 with modern frameworks and is hosted behind Cloudflare, leveraging Google Analytics and other monitoring tools. The site is mobile-optimized and well-structured, though performance metrics are unavailable. Security headers are implemented, but a critical issue is the absence of a valid SSL certificate and disabled TLS protocols, which significantly impacts the security posture. Security-wise, while the organization employs good header policies and content security policies, the lack of HTTPS and proper TLS support is a major vulnerability. No incident response or security policy pages were found, and cookie consent mechanisms are missing despite tracking usage. DNS records show malformed CAA entries and no DNSSEC, which could be improved. Overall, the site is trustworthy and professional but requires urgent remediation of SSL/TLS issues and enhancement of privacy compliance mechanisms to improve security and user trust.

70
-
5
50
-
90
100
governmentinternationalnuclear-test-bannon-profitsecurity+2 more
Drupal 10Bootstrap 5Google AnalyticsCloudflare+2
2025-06-15T21:47:23.539Z
lamresearch.com favicon

Lam Research

lamresearch.com

40
TechnologyUnited StatesenterpriseHIGH

Lam Research Corporation is a leading enterprise in the semiconductor manufacturing technology sector, providing advanced equipment and solutions that enable chipmakers to innovate at the atomic scale. The website reflects a mature, well-structured corporate presence with comprehensive information on products, customer support, careers, investors, and environmental, social, and governance (ESG) initiatives. The company targets semiconductor industry professionals, investors, and potential employees globally, with multilingual support and dedicated portals. Technically, the website is built on WordPress CMS hosted on WP Engine and utilizes Cloudflare CDN for delivery. It incorporates modern JavaScript frameworks such as React and libraries like GSAP and amCharts for interactive content. However, the site lacks a valid SSL certificate and does not serve content over HTTPS, which is a critical security deficiency. Despite this, the site implements several security headers and a cookie consent mechanism, indicating attention to privacy compliance. Security posture is weakened by the absence of HTTPS and TLS protocols, exposing users to potential risks. No critical vulnerabilities or exposed sensitive data were detected in the content. The domain registration and DNS configurations align with a legitimate enterprise, with no suspicious patterns. Overall, the site demonstrates strong business credibility and content quality but requires urgent security improvements. Strategic recommendations include immediate deployment of a valid SSL certificate, enabling modern TLS protocols, and enhancing security configurations to protect user data and improve trust. The company should also continue to maintain comprehensive privacy and security policies to comply with global regulations and foster user confidence.

95
18
5
50
-
85
100
technologysemiconductormanufacturingcorporatecareers+3 more
WordPressReactGSAPjQuery+4

Partner Domains:

lamcapital.com
subsidiarypending
silfex.com
subsidiarypending

+2 more partners

2025-06-15T21:47:19.105Z
wearedevelopers.com favicon

WeAreDevelopers

wearedevelopers.com

36
TechnologyNetherlandslargeHIGH

WeAreDevelopers operates as Europe’s leading developer community platform, providing a comprehensive ecosystem for developers and companies to connect through job boards, events, and educational content. The platform hosts major events such as the WeAreDevelopers World Congress and offers extensive resources including tech talks and salary calculators. Their market position is strong within the European technology sector, targeting developers and tech companies with a large and active user base. Technically, the website is built on modern frameworks such as Nuxt.js and Vue.js, hosted via Cloudflare with Imgix for image delivery, and integrates video content hosted on Vimeo. The site demonstrates good design quality, mobile responsiveness, and SEO practices, although performance metrics are unavailable. Accessibility is basic but present. From a security perspective, the site lacks a valid SSL certificate and does not serve content over HTTPS, which is a critical vulnerability impacting user trust and data security. Other security headers are partially implemented but insufficient. Privacy and cookie policies are present and indicate GDPR compliance, supporting responsible data handling. Overall, the platform is professionally managed with strong business credibility and content quality but requires urgent improvements in security infrastructure to protect users and maintain trust. Strategic recommendations include immediate SSL deployment, enabling HTTPS, and enhancing security headers and practices.

30
-
5
50
-
85
100
developercommunityjobboardtecheventsdevelopertalkseurope+1 more
Nuxt.jsVue.jsCloudflareImgix (image CDN)+1
2025-06-15T21:47:18.892Z
bausparen.at favicon

Raiffeisen Bausparkasse Gesellschaft m.b.H.

bausparen.at

24
FinanceAustriamediumCRITICAL

Raiffeisen Bausparkasse Gesellschaft m.b.H. is a well-established Austrian financial services company specializing in building savings contracts and financing solutions for housing and related needs. The company has a strong market presence with over 60 years of experience and offers a range of products including classic building savings, financing for construction, renovation, education, and health care. The website reflects a professional and consistent brand image targeting private individuals seeking secure and reliable financial products. Technically, the site is built on Adobe Experience Manager and uses modern web technologies such as AngularJS and Adobe DTM for analytics and marketing. It is hosted behind Cloudflare, ensuring good performance and security at the network level. However, a critical security issue is the invalid or missing SSL certificate and lack of TLS protocol support, which severely impacts the security posture and user trust. Privacy compliance is well addressed with comprehensive privacy and cookie policies and a consent mechanism in place. Contact information is clearly provided, enhancing business credibility. Overall, the site is functional and professional but requires urgent remediation of SSL/TLS issues to ensure secure user interactions.

40
-
5
50
-
85
-
financebausparenraiffeisenbuildingsavingsfinancing+1 more
Cloudflare (CDN and security)Adobe Dynamic Tag Management (Adobe DTM)JQueryVideo.js+5

Partner Domains:

raiffeisen.at
partnerpending
2025-06-15T21:47:16.437Z
U

United Nations Industrial Development Organization (UNIDO)

unido.org

30
GovernmentAustrialargeHIGH

The United Nations Industrial Development Organization (UNIDO) is a well-established intergovernmental organization focused on promoting industrial development for sustainable economic growth and poverty reduction. The organization operates globally with a strong presence in Austria, where it is headquartered. UNIDO's key services include technical cooperation, policy advice, capacity building, and implementation of industrial development programs. The website represents a critical digital asset for UNIDO's communication and outreach efforts. Technically, the website is hosted behind Cloudflare, which provides security and performance services. However, the current website content is inaccessible due to a Cloudflare security challenge page requiring JavaScript and cookies, preventing full content analysis. The SSL/TLS configuration is critically flawed with no valid certificate detected, disabling HTTPS and exposing the site to security risks. Performance metrics are unavailable due to blocked content, and no modern web frameworks or CMS are identifiable from the limited HTML. From a security perspective, while several security headers are implemented, the lack of HTTPS and invalid SSL certificate significantly degrade the security posture. There is no evidence of privacy policies, cookie consent mechanisms, or incident response contacts on the accessible page. WHOIS data is consistent and trustworthy, showing a mature domain registered to UNIDO with no privacy protection, reinforcing the legitimacy of the domain. Overall, the website currently suffers from critical accessibility and security issues that limit its effectiveness and trustworthiness. Strategic improvements in SSL/TLS deployment, content accessibility, and privacy compliance are essential to enhance the organization's digital presence and security posture.

70
15
5
50
-
85
100
Cloudflare
2025-06-15T21:47:12.848Z
H

Haridus- ja Teadusministeerium (EENet)

harno.ee

30
GovernmentEstoniamediumHIGH

The website harno.ee is a government-related domain managed by the Estonian Ministry of Education and Research (Haridus- ja Teadusministeerium) through its EENet network services. It appears to serve as a portal for educational and research network infrastructure in Estonia. However, the website content is currently inaccessible due to a Cloudflare Turnstile captcha security challenge, preventing direct content analysis. The domain is registered consistently with the governmental entity and has a domain age appropriate for its establishment in 2020. Technically, the site is hosted behind Cloudflare with security measures such as HSTS enabled, but it lacks a valid SSL certificate and modern TLS protocol support, resulting in no HTTPS availability. DNS records show a well-configured SPF and DMARC policy, but DNSSEC is not enabled. Performance is slow, and no content or business contact information is visible on the challenge page. Security posture is weak due to missing HTTPS and incomplete security headers, though email security policies are in place. Privacy compliance is poor with no visible privacy or cookie policies. Business credibility is moderate based on domain registration and affiliation with a government entity but is limited by lack of accessible content and contact details. Overall, the site requires improvements in SSL/TLS configuration, enabling DNSSEC, and publishing privacy and cookie policies. The current WAF challenge limits content accessibility and analysis, impacting trust and user experience.

70
-
25
65
87
75
-
governmenteducationsecurity-challengecloudflare
CloudflareCloudflare Turnstile Captcha
2025-06-15T16:59:42.271Z
easydmarc.com favicon

EasyDMARC Inc.

easydmarc.com

71
TechnologyUnited StatesmediumMEDIUM

EasyDMARC Inc. is a technology company specializing in email security solutions, focusing on DMARC, SPF, DKIM, and BIMI protocols to protect organizations from email spoofing and phishing attacks. The company offers a comprehensive SaaS platform with managed services, reputation monitoring, and educational resources, serving a broad range of industries including finance, healthcare, government, and education. With a mature domain and strong market presence, EasyDMARC is recognized as a leader in its field, trusted by over 175,000 domains worldwide. Technically, the website leverages a modern tech stack including Cloudflare for DNS and hosting, HubSpot for marketing and analytics, and various tracking and advertising platforms. The site is well-designed, mobile-optimized, and provides a rich user experience with clear navigation and professional content. However, the absence of a valid SSL certificate and HTTPS support is a critical security gap that undermines user trust and data protection. Security-wise, EasyDMARC demonstrates strong email authentication practices with a strict DMARC reject policy and SPF configurations. The lack of HTTPS and modern TLS protocols, along with missing security headers, represent significant vulnerabilities that should be addressed promptly. Privacy compliance is well-handled with clear policies and consent mechanisms, supporting GDPR adherence. Overall, EasyDMARC presents a strong business and technical profile with excellent content and market positioning but requires urgent improvements in SSL/TLS security to enhance its security posture and maintain trust.

60
25
60
100
100
85
100
emailsecuritydmarcspfdkimbimi+5 more
Cloudflare DNS and hostingHubSpot (analytics and marketing)Google AnalyticsMicrosoft Advertising+9
2025-06-15T16:54:04.801Z
kmd.dk favicon

KMD A/S

kmd.dk

40
TechnologyDenmarkenterpriseHIGH

KMD A/S is a leading Danish IT and software company specializing in delivering comprehensive IT solutions to the public sector and businesses, with a strong focus on sectors such as energy, education, healthcare, and government. The company operates as a subsidiary of NEC Corporation and offers a broad portfolio of services including HR and payroll systems, data analytics, electronic document management, IT security, and SAP services. The website reflects a mature, well-established enterprise with extensive content and a professional digital presence. Technically, the website utilizes modern web technologies including ASP.NET, JavaScript modules, and is hosted behind Cloudflare with Umbraco CMS. It employs multiple security headers and analytics tools such as Google Analytics and Siteimprove. However, the absence of a valid SSL certificate and lack of enabled TLS protocols represent significant security weaknesses that must be addressed to ensure secure communications. From a security perspective, the site has implemented strong security headers and a strict DMARC policy, indicating good email security practices. Yet, the invalid SSL configuration and missing modern TLS support severely impact the overall security posture. Privacy compliance is well managed with clear privacy and cookie policies, including consent mechanisms, aligning with GDPR requirements. Overall, KMD's website demonstrates high business credibility and professionalism but requires urgent remediation of its SSL/TLS configuration to protect user data and maintain trust. Strategic improvements in security infrastructure will enhance the company's risk management and compliance stance.

70
-
40
80
97
70
100
itsolutionspublicsectorenergyhrsystemsdataanalytics+3 more
ASP.NETJavaScript modulesGoogle Tag ManagerCloudflare+1

Partner Domains:

nec.com
parentanalyzing...
edlund.dk
subsidiaryanalyzing...

+3 more partners

2025-06-15T14:46:36.438Z
kystverket.no favicon

Kystverket

kystverket.no

60
GovernmentNorwaylargeMEDIUM

Kystverket is a Norwegian government agency responsible for maritime safety, navigation, and environmental protection along the Norwegian coast. The website serves as a portal for digital maritime services, including navigation aids, real-time ship tracking, and environmental alerts. It targets maritime professionals, coastal communities, and the general public interested in maritime affairs. The agency holds a strong national position as the authoritative maritime body in Norway. Technically, the website leverages Microsoft Azure infrastructure, ASP.NET Core framework, and integrates advanced analytics and consent management tools such as Microsoft Application Insights, Google Tag Manager, and Cookie Information. The site uses Episerver CMS and Cloudflare for CDN services. Despite a rich technical stack, the site suffers from critical SSL/TLS misconfigurations, lacking a valid certificate and disabling all TLS protocols, which severely impacts security posture. Security-wise, while the site implements HSTS with preload and includes no known major vulnerabilities like Heartbleed or POODLE, the absence of a valid SSL certificate and TLS support is a critical flaw. Cookie consent and privacy policies are comprehensive and GDPR compliant, reflecting good privacy practices. Contact information and social media presence enhance trust and transparency. Overall, the site is professionally designed with good content quality and user experience but requires urgent remediation of SSL/TLS issues to ensure secure communications. Strategic recommendations include fixing the SSL certificate, enabling modern TLS protocols, and improving OCSP stapling and session resumption. These steps will significantly enhance the security posture and user trust.

30
25
25
80
100
90
85
governmentmaritimenorwaynavigationenvironment+4 more
Microsoft AzureASP.NET CorePower BICloudflare+3
2025-06-15T13:19:43.146Z
E

Empresas Polar

empresaspolar.com

30
OtherVenezuelalargeHIGH

Empresas Polar is a well-established Venezuelan food and beverage company with a mature domain age of 26 years, reflecting its longstanding market presence. The company operates primarily in the food and beverage sector, serving consumers and business partners in Venezuela. However, the website is currently inaccessible due to a Cloudflare security challenge, which prevents direct content analysis and limits visibility into the company's online presence and policies. From a technical perspective, the website relies on Cloudflare for DNS and security services and employs Google's Turnstile captcha for bot mitigation. Unfortunately, the site lacks a valid SSL/TLS certificate and does not serve content over HTTPS, which is a critical security deficiency. Performance is poor with slow load times, and no SEO or accessibility optimizations are evident in the accessible content. Security posture is weak due to the absence of HTTPS, missing security headers, and lack of modern TLS protocol support. No privacy, cookie, or terms of service policies are detectable, indicating potential compliance gaps. The WHOIS data is consistent and trustworthy, showing strong domain protection and a reputable registrar. Overall, the site requires significant improvements in security, accessibility, and content availability to meet modern standards. Strategic recommendations include immediate implementation of a valid SSL certificate, enabling HTTPS, enhancing security headers, and improving site accessibility and performance. Additionally, publishing clear privacy and cookie policies and ensuring compliance with GDPR and other regulations will strengthen trust and legal standing.

55
15
5
85
-
85
100
blockedcloudflaresecurity-challengefood-beveragevenezuela
CloudflareGoogle Turnstile Captcha
2025-06-15T13:07:52.666Z