Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

0
Websites
0
Industries
0
Countries
0
Avg Score
Page 2945 of 2976|Showing 147201-147250 of 148786
volkerrail.nl favicon

VolkerRail

volkerrail.nl

0
rail infrastructureNetherlandslargeMEDIUM

The website exhibits critical vulnerabilities that severely impact its security posture, notably the absence of HTTPS encryption, which exposes all data transmissions to interception and undermines trust. Compliance with GDPR is critically deficient, with missing privacy measures, cookie consent, and policy elements, risking significant legal and financial penalties for operating as an EU business without proper safeguards. The lack of an information security framework, incident response procedures, and security policies further amplifies operational risks and regulatory non-compliance under NIS2 requirements. While network security and email security show strengths, foundational issues such as weak security headers and DNS security gaps must be addressed to prevent exploitation. Overall, the site is at high risk of data breaches, legal repercussions, and reputational damage unless urgent remediation occurs. Immediate focus on encryption, privacy compliance, and security governance is essential to protect business interests and customer trust. The current security posture scores indicate critical gaps in GDPR, NIS2, and SSL/TLS domains that require rapid attention. Addressing these will significantly improve compliance, resilience, and stakeholder confidence.

75
-
15
95
-
85
100
rail infrastructureconstructionmaintenancesustainabilitysafety+1 more
Drupal 10Google Tag ManagerGoogle Tag (gtag.js)jQuery Validation+5

Partner Domains:

volkerwessels.com
subsidiarypending
werkenbijvolkerwessels.nl
related businesspending

+1 more partners

2025-06-13T18:10:50.407Z
credit-agricole.com favicon

Crédit Agricole

credit-agricole.com

0
bankingFranceenterpriseMEDIUM

The website exhibits serious security deficiencies, particularly the complete absence of HTTPS encryption, which critically exposes data in transit and undermines user trust. Compliance with GDPR and NIS2 regulations is severely lacking, with missing cookie policies, consent mechanisms, and essential security governance documentation, posing significant legal and operational risks. While network security and email security demonstrate relatively strong postures, foundational issues around encryption and policy frameworks significantly elevate the organization's exposure to data breaches and regulatory penalties. Security headers and DNS configurations are suboptimal but less urgent relative to the critical gaps. Immediate remediation is necessary to protect customer data, maintain regulatory compliance, and uphold the organization's reputation. Without urgent action, the business remains vulnerable to interception, data leakage, and potential loss of customer confidence. Prioritizing HTTPS implementation alongside privacy and incident response policies will substantially improve the security stance. Overall, the current posture demands urgent attention to align with industry best practices and regulatory mandates.

80
18
5
85
-
85
100
bankingfinanceCrédit AgricoleFrancefinancial services+2 more
JavaScriptGoogle Maps APIAT Internettarteaucitron.js+3

Partner Domains:

credit-agricole.fr
subsidiarypending
2025-06-13T18:10:50.379Z
superyachtsociety.org favicon

International Superyacht Society

superyachtsociety.org

0
yachtingunspecifiedmediumHIGH

The website’s security posture is currently inadequate and exposes the business to significant risks including data breaches, regulatory non-compliance, and reputational damage. The absence of HTTPS encryption is a critical vulnerability affecting confidentiality and integrity of user data, severely undermining trust and violating GDPR and NIS2 requirements. Key security headers that mitigate common web attacks are largely missing, leaving the site vulnerable to clickjacking, content injection, and cross-site scripting exploits. Additionally, the lack of privacy and cookie policies, along with no cookie consent mechanism, poses serious compliance risks with GDPR regulations, potentially leading to legal penalties. The organization also lacks essential security governance components such as incident response procedures, security policies, and business continuity plans, which are vital for operational resilience. While some areas like DNS health and network security show moderate strength, critical gaps in email authentication and SSL/TLS further increase exposure to phishing and man-in-the-middle attacks. Immediate remediation is necessary to protect sensitive data, ensure regulatory compliance, and maintain customer trust. Without swift action, the business risks financial loss, legal consequences, and damage to brand reputation.

15
-
5
75
-
85
90
yachtingsuperyachtmembershipawardseducation+1 more
WordPress 6.7.2Yoast SEO plugin v20.3Google Analytics by MonsterInsights v8.13.1Modern Events Calendar Lite plugin v6.7.2+15

Partner Domains:

naiad.com
partnerpending
quantumstabilizers.com
partnerpending

+2 more partners

2025-06-13T18:10:50.378Z
tell.group favicon

Dubai Tell Limited, Geneva Tell SA, Algiers Tell Markets SPA

tell.group

0
financial servicesUAE, Switzerland, AlgeriamediumHIGH

The website's security posture is critically weak, exposing the business to significant risks including data breaches, regulatory non-compliance, and operational disruptions. The absence of HTTPS encryption is a critical vulnerability that compromises all data transmissions, severely impacting user trust and violating GDPR and NIS2 requirements. Missing essential security headers further increase susceptibility to common web attacks such as clickjacking, XSS, and content injection. Lack of privacy and cookie policies, as well as the absence of consent mechanisms, place the business at high risk of legal penalties under data protection regulations. Critical services like MySQL and FTP are publicly exposed, providing easy attack vectors for threat actors. Additionally, there is a notable deficit in security governance, including lack of incident response, security policies, and information security frameworks, which undermines the organization's ability to manage and mitigate risks effectively. While email and DNS security show some strengths, these are overshadowed by critical gaps in network and application security. Immediate action is required to address these issues to protect business assets, customer data, and maintain regulatory compliance.

35
15
5
85
-
85
60
financial servicescoming soonWordPressDFSACOSOB
jQueryTailwind CSSFontAwesomeFont Awesome

Partner Domains:

dfsa.ae
servicepending
cosob.org
servicepending
2025-06-13T18:10:50.348Z