Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

149793
Websites
130
Industries
113
Countries
52
Avg Score
Page 2838 of 2996|Showing 141851-141900 of 149793
H

Hoval Österreich

hoval.at

40
EnergyAustrialargeHIGH

Hoval Österreich operates as a leading provider of technologically advanced heating and climate control solutions in Austria, targeting both residential and commercial sectors. Their product portfolio includes heating systems for heat pumps, oil, gas, biomass, and solar, complemented by climate technology solutions for heating, cooling, and ventilation. The company maintains a strong market position supported by a comprehensive website that offers detailed product information, customer references, and service options including customer support and online ordering via myHoval. Technically, the website is built on the SAP Commerce (Hybris) platform, integrating modern marketing and analytics tools such as Google Tag Manager, Google Analytics, and OneTrust for cookie consent management. However, performance is moderate with slow DNS resolution and no page size or load time data available. Mobile optimization and SEO are well addressed, but accessibility is basic. From a security perspective, the site lacks a valid SSL certificate and does not support modern TLS protocols, significantly weakening its security posture. While security headers like HSTS, X-Frame-Options, and XSS protection are present, the absence of a valid certificate and weak SSL/TLS configuration are critical issues. Privacy compliance is strong with clear privacy and cookie policies and GDPR adherence. Contact information is available but lacks explicit security policy or incident response details. Overall, the website is professional and trustworthy from a business and content perspective but requires urgent improvements in SSL/TLS configuration to enhance security and user trust. Strategic recommendations include fixing the SSL certificate, enabling modern TLS versions, and tightening CORS policies.

70
33
-
50
-
85
100
energyheatingclimatecontrolaustriasapcommerce+3 more
Google Tag ManagerGoogle Analytics (gtag.js)OneTrust Cookie ConsentDot.js templating+1
2025-06-15T22:01:15.439Z
amstetten.at favicon

Stadtgemeinde Amstetten

amstetten.at

34
GovernmentAustriamediumHIGH

The website amstetten.at serves as the official online portal for the Stadtgemeinde Amstetten, a municipal government entity in Austria. It provides residents and visitors with comprehensive information about city administration, services, events, and public resources. The site targets local citizens and stakeholders, offering key services such as event announcements, service directories, job postings, and public transportation information. The business model is that of a government entity focused on public service delivery and community engagement. Technically, the website is built on the WordPress CMS platform, utilizing common plugins such as Yoast SEO for search optimization, WP Statistics for analytics, and Complianz for GDPR-compliant cookie management. The site employs Apache as the web server and includes JavaScript libraries like jQuery and RoyalSlider for interactive features. While the site is mobile-optimized and accessible, performance data is incomplete, and the site currently lacks a valid SSL certificate, resulting in no HTTPS support. From a security perspective, the absence of a valid SSL certificate is a critical vulnerability, exposing users to potential data interception risks. The site does not implement modern TLS protocols, HSTS, or OCSP stapling, which are essential for secure communications. However, no known vulnerabilities such as Heartbleed or POODLE were detected. Privacy compliance is strong, with a clear cookie consent mechanism and a comprehensive privacy policy aligned with GDPR requirements. Overall, the website is a well-structured and professionally maintained municipal portal with good content quality and user experience. The primary risk lies in the lack of HTTPS, which should be addressed urgently to protect user data and enhance trust. Strategic recommendations include implementing a valid SSL certificate, enabling modern security protocols, and enhancing security headers to improve the site's security posture and compliance.

15
-
-
50
-
85
85
governmentmunicipalityaustriapublicservicesevents+3 more
WordPressPHPApachejQuery+7
2025-06-15T22:01:15.280Z
jamsaz.com favicon

شرکت مهندسی صنعت و تولید جمع‌ساز

jamsaz.com

20
ManufacturingIranmediumCRITICAL

شرکت مهندسی صنعت و تولید جمع‌ساز یک شرکت تولیدی متوسط در ایران است که در زمینه طراحی و تولید سیستم‌های روشنایی خودرو فعالیت می‌کند. این شرکت با سابقه بیش از 30 سال، محصولات متنوعی از چراغ‌های خودرو را ارائه می‌دهد و دارای آزمایشگاه تخصصی با گواهینامه‌های معتبر است. سایت شرکت به زبان فارسی و با استفاده از وردپرس و افزونه‌های رایج ساخته شده است. از نظر فنی، سایت از تکنولوژی‌های مدرن بهره می‌برد اما فاقد گواهی SSL معتبر است که یک ضعف امنیتی مهم محسوب می‌شود. همچنین سیاست‌های حفظ حریم خصوصی و کوکی‌ها در سایت به صورت آشکار وجود ندارد که می‌تواند ریسک‌های قانونی ایجاد کند. به طور کلی، شرکت موقعیت خوبی در بازار روشنایی خودرو ایران دارد اما نیازمند بهبودهای امنیتی و انطباق با مقررات حفظ حریم خصوصی است.

15
-
-
50
-
85
-
manufacturingautomotivelightingiranwordpress+2 more
PHP 7.4WordPress 5.8.10ElementorContact Form 7+6

Partner Domains:

scm.jamsaz.com
service
jobs.jamsaz.com
service
2025-06-15T22:01:00.477Z
wave-network.org favicon

WOMEN AGAINST VIOLENCE EUROPE

wave-network.org

40
Non-profitAustriamediumHIGH

WOMEN AGAINST VIOLENCE EUROPE (WAVE) is a well-established non-profit network comprising over 180 European women’s NGOs dedicated to preventing and protecting women and children from violence. The organization focuses on capacity building, advocacy, research, and awareness raising, positioning itself as a leading entity in the European women's rights sector. Their website reflects a professional and content-rich platform targeting NGOs, professionals, policymakers, and the general public interested in gender equality and violence prevention. Technically, the website is built on WordPress with a modern plugin ecosystem including Gravity Forms, Event Tickets, and MemberPress. While the design and content quality are excellent, technical performance is moderate, and mobile optimization is good. The site uses Matomo for analytics and Borlabs Cookie for privacy compliance, indicating a mature approach to user data and consent. Security-wise, the site suffers from a critical issue: an invalid or missing SSL certificate, resulting in no active TLS protocols and weak encryption posture. Although some security headers are present, the lack of proper HTTPS implementation significantly lowers the security score. Privacy and cookie policies are comprehensive and GDPR compliant, with clear contact information and consent mechanisms. Overall, the site is trustworthy and professionally managed but requires urgent remediation of SSL/TLS issues to ensure secure user interactions and maintain credibility. Strategic improvements in security infrastructure will enhance user trust and compliance with modern web standards.

50
18
5
75
-
85
100
non-profitwomensrightsviolencepreventioneuropeannetworkadvocacy+2 more
WordPress 6.8.1Nginx web serverGravity Forms pluginEvent Tickets plugin+7
2025-06-15T22:00:50.991Z
F

Focolare Media

newcitypress.com

40
MediaN/asmallHIGH

New City Press Bookstore, operated under Focolare Media, is an online platform specializing in academic and spiritual books aimed at promoting unity and spirituality. The website offers a range of products including books, magazines, podcasts, and other resources, targeting readers interested in Christian living and spirituality. The business model is primarily e-commerce with additional subscription and donation services, positioning itself as a niche media and publishing entity within the non-profit sector. Technically, the website is built on Drupal 10 and hosted on Pantheon, leveraging modern web technologies and caching mechanisms. While the site demonstrates good mobile optimization, accessibility, and SEO practices, its performance is currently slow, and it lacks a valid SSL certificate, which critically impacts security and user trust. From a security perspective, the site has implemented some security headers but fails to provide HTTPS, lacks modern TLS protocols, and does not have a cookie consent mechanism despite using tracking tools like Google Tag Manager. These gaps expose the site to potential risks and reduce its compliance with privacy regulations such as GDPR. Overall, the website is functional and professionally presented but requires urgent improvements in SSL/TLS configuration and privacy compliance to enhance security posture and user trust. Strategic recommendations include obtaining a valid SSL certificate, enabling HTTPS, implementing cookie consent, and enhancing security headers and incident response capabilities.

50
18
5
70
-
85
100
spiritualityacademicbooksmediae-commerce+2 more
Drupal 10nginxGoogle Tag ManagerVarnish Cache+3

Partner Domains:

focolare.foundation
parentpending
simplecirc.com
partnerpending
2025-06-15T22:00:50.773Z
insighttsi.com favicon

Insight Technology Solutions, LLC

insighttsi.com

40
GovernmentUnited StatesmediumHIGH

Insight Technology Solutions, LLC is a well-established Federal contractor headquartered in the National Capital Region, with over 20 years of experience delivering management consulting, business operations, and engineering solutions to Federal agencies. The company holds multiple government contract vehicles and certifications such as ISO 9001:2015, ISO/IEC 20000-1:2018, and CMMI Maturity Level 3, demonstrating a commitment to quality and compliance. Their target audience primarily includes U.S. government agencies, particularly in sectors like maritime, IT, and cybersecurity services. Technically, the website is built on the Wix platform utilizing modern JavaScript frameworks like React and includes various Wix apps for enhanced functionality. While the site is moderately optimized for performance and basic mobile responsiveness, there is room for improvement in accessibility and SEO practices. The hosting is managed by Wix, with standard security headers present, but the SSL certificate is currently invalid, which poses a significant security risk. From a security perspective, the site implements some best practices such as HSTS and secure cookie attributes but lacks a valid SSL certificate and comprehensive security headers. No vulnerabilities or exposed sensitive data were detected, but the absence of a cookie consent mechanism and privacy compliance indicators suggests partial adherence to privacy regulations. Overall, the website presents a professional and trustworthy image with clear business information and contact details. However, critical security improvements, especially regarding SSL certification and privacy compliance, are necessary to enhance trust and protect user data effectively.

35
-
5
50
-
85
100
federalcontractorgovernmentservicesmaritimeengineeringitservicescybersecurity+3 more
Wix platformJavaScriptReactWix Pro Gallery+4
2025-06-15T22:00:50.765Z
gvo-personal.de favicon

GVO Personal GmbH

gvo-personal.de

22
HospitalityGermanymediumCRITICAL

GVO Personal GmbH operates as a personnel service provider specializing in staffing and job placement within the hospitality sector, including gastronomy, hotellerie, aviation, and event services. The company maintains a strong regional presence with approximately 50 locations across Germany and Austria, targeting both job seekers and corporate clients. Their business model focuses on flexible employment solutions such as temporary staffing and personnel leasing, supported by a professional and content-rich website that effectively communicates their offerings and brand identity. Technically, the website is built on Drupal 8 and incorporates modern front-end libraries such as Swiper.js and Font Awesome, alongside Google Tag Manager and Klaro for consent management. However, the site lacks a valid SSL certificate and does not support any TLS protocols, which is a critical security deficiency. Performance metrics are not available, but the site demonstrates good mobile optimization and SEO practices. From a security perspective, the absence of HTTPS and TLS protocols significantly undermines the site's security posture, exposing users to potential risks. While some security headers like Content-Security-Policy and X-Content-Type-Options are present, the lack of HSTS, OCSP stapling, and session resumption further weakens defenses. Privacy compliance is well addressed with comprehensive policies and a consent mechanism, reflecting GDPR adherence. Overall, the site presents a professional business front with good content and privacy practices but suffers from critical security shortcomings that must be addressed urgently to protect user data and maintain trust. Strategic improvements in SSL/TLS implementation and enhanced security configurations are recommended to elevate the site's security maturity and compliance standing.

40
-
5
50
-
85
-
personaldienstleistergastronomiehotelleriepersonalvermittlungjobbrse+5 more
Drupal 8ApacheGoogle Tag ManagerKlaro Consent Manager+4
2025-06-15T22:00:50.721Z
softsolution.at favicon

Softsolution GmbH

softsolution.at

21
ManufacturingAustriamediumCRITICAL

Softsolution GmbH, in partnership with LiteSentry LLC, operates as a leading provider of automated quality assurance systems for the glass industry. Their solutions focus on precision inspection technologies that detect defects in glass manufacturing, enhancing production efficiency and product quality. The company maintains a strong global presence with over 3,000 systems installed worldwide and offices in Austria and the USA. Their website reflects a professional and comprehensive digital presence, supporting multiple languages and showcasing extensive product and project information. Technically, the website is built on WordPress with modern plugins and libraries such as jQuery, Slick Slider, and Borlabs Cookie for privacy management. Hosting is provided via Cloudways with Cloudflare CDN integration. However, the absence of a valid SSL certificate and lack of modern TLS protocols significantly weaken the security posture, exposing the site to potential risks. Privacy compliance is well addressed with clear cookie consent mechanisms and a comprehensive privacy policy. Security evaluation reveals critical issues including no HTTPS support, no HSTS, and no OCSP stapling, which are essential for secure communications. Despite these, the site employs some best practices like HttpOnly and Secure cookie flags and uses a reputable CDN. The overall risk is moderate but requires urgent remediation of SSL/TLS issues to protect user data and maintain trust. Strategically, the company should prioritize implementing a valid SSL certificate and modern security protocols, enhance incident response visibility, and continue leveraging their strong market position and trust indicators to maintain competitive advantage.

15
-
5
60
-
85
-
glassqualityassuranceinspectionsystemsmanufacturingtechnology+2 more
WordPressjQuerySlick SliderBorlabs Cookie+2

Partner Domains:

strainoptics.com
partnerpending
litesentry.com
partnerpending
2025-06-15T22:00:50.712Z