Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

148819
Websites
130
Industries
113
Countries
52
Avg Score
Page 2923 of 2977|Showing 146101-146150 of 148819
ccavenue.ae favicon

CCAvenue

ccavenue.ae

66
financial technologyUAEmediumMEDIUM

The website demonstrates a moderate overall security posture with no critical issues detected but several high and medium-severity vulnerabilities that could expose the business to regulatory, reputational, and operational risks. Notably, GDPR compliance is weak, lacking essential cookie policies and consent mechanisms, increasing potential legal liabilities in privacy regulations. The absence of a formal information security framework, incident response procedures, and security policies indicates immature governance and preparedness, which could hinder effective breach management. Security headers are partially implemented but missing key protections like Content-Security-Policy, leaving the site vulnerable to client-side attacks. Email security configurations such as DMARC and DKIM require improvement to prevent phishing and spoofing threats. While SSL/TLS and DNS health scores are relatively strong, mixed content issues and missing DNSSEC reduce overall trustworthiness. Network exposure of services like SSH presents an additional attack surface. Addressing these issues will significantly enhance the security posture and reduce business risks related to compliance, data breaches, and service disruption.

65
43
17
75
85
85
90
payment gatewaymerchant accountcredit card processingonline paymentsUAE+1 more
Google Tag ManagerGoogle Ads (gtag.js)jQueryjQuery bxSlider+9

Partner Domains:

ccavenue.sa
subsidiary65
ccavenue.us
subsidiary61

+1 more partners

2025-06-13T21:30:20.155Z
ccavenue.com favicon

CCAvenue

ccavenue.com

66
financial technologyIndialargeMEDIUM

The website demonstrates a moderate to low overall security posture with no critical vulnerabilities but several high and medium risk issues that could expose the business to significant threats. Key deficiencies exist in foundational web security headers, GDPR compliance, and adherence to NIS2 regulations, indicating potential legal and operational risks. Missing security headers like Content-Security-Policy and X-Frame-Options increase vulnerability to common web attacks such as clickjacking and cross-site scripting. GDPR gaps, including absent cookie policies and consent mechanisms, expose the business to regulatory fines and reputational damage. The lack of documented security policies, incident response, and business continuity plans points to unpreparedness for cyber incidents, potentially leading to extended downtime or data breaches. SSL certificate expiration soon poses imminent risk of service disruption and loss of customer trust. While email security and network security are relatively strong, enhancements like enabling DNSSEC and securing exposed services are needed. Overall, urgent remediation is required to protect business operations, ensure regulatory compliance, and maintain customer confidence.

35
43
25
85
85
85
90
payment gatewaymerchant accountscredit card processingonline paymentsPCI-DSS compliant
PCI-DSS CompliantGoogle Tag ManagerGoogle AdsjQuery+7

Partner Domains:

ccavenue.sa
subsidiarypending
ccavenue.ae
subsidiarypending

+1 more partners

2025-06-13T21:28:49.165Z
cleartrip.ae favicon

Cleartrip

cleartrip.ae

67
travelUAElargeMEDIUM

The website demonstrates a moderate security posture with no critical vulnerabilities but multiple high and medium risks predominantly related to policy, compliance, and configuration gaps. Key deficiencies exist in compliance with GDPR and NIS2 regulations, including the absence of privacy and cookie policies, consent mechanisms, and formal security frameworks or incident response procedures. Missing security headers such as Content-Security-Policy and X-Content-Type-Options increase the risk of client-side attacks like XSS and MIME sniffing. While the network security and SSL/TLS configurations are generally strong, several foundational controls including email authentication (DKIM), DNSSEC, and security documentation are lacking or insufficient. These gaps expose the business to regulatory fines, reputational damage, and potential operational disruption. Immediate remediation will improve legal compliance, reduce attack surface, and build stakeholder trust. Establishing formal security governance and transparency will be crucial for long-term resilience and regulatory adherence. Overall, the organization should prioritize closing compliance and configuration deficiencies to strengthen its cybersecurity maturity and protect customer data effectively.

50
25
25
85
95
90
100
travelbookingflightshotelsonline travel agency
ReactsmartlookGoogle Tag ManagerDroid Arabic Kufi font

Partner Domains:

cleartrip.com
subsidiary70
paytabs.com
payment95

+1 more partners

2025-06-13T21:26:42.248Z
audible.in favicon

Audible

audible.in

67
digital media and entertainmentIndialargeMEDIUM

The website demonstrates a generally strong technical security foundation in areas such as SSL/TLS, network security, and email security, which reduces exposure to common external threats. However, significant gaps exist in security headers implementation and data privacy compliance, with critical omissions like missing Content-Security-Policy and X-Frame-Options headers that increase vulnerability to web-based attacks. The lack of GDPR compliance elements including privacy and cookie policies, consent banners, and third-party privacy disclosures poses legal and reputational risks, especially for customers in regulated regions. Additionally, the absence of a formal information security framework, incident response procedures, and security policy documentation indicates immature internal governance, which could delay threat detection and response. Medium-impact gaps in DNS security and DKIM configuration suggest room for improvement in email and domain protections. Overall, the security posture reflects a need to prioritize privacy compliance and internal security governance to mitigate business risk and maintain customer trust. Immediate remediation of high-severity issues will significantly enhance the website’s resilience against both regulatory and cyber threats.

45
25
25
85
100
85
100
audiobooksdigital mediasubscriptionentertainmentReact+1 more
ReactAmazon CloudFrontAdobe DTMAmazonUIPageJS+2

Partner Domains:

amazon.in
subsidiary69
audible.com
subsidiary67
2025-06-13T21:22:13.208Z