Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

0
Websites
0
Industries
0
Countries
0
Avg Score
Page 2946 of 2976|Showing 147251-147300 of 148786
nyetimber.com favicon

Nyetimber Limited

nyetimber.com

0
wine productionUnited KingdommediumHIGH

The website exhibits a critically weak security posture with multiple severe vulnerabilities that expose it to significant risks including data breaches, compliance violations, and service interruptions. The absence of HTTPS encryption, flagged as critical across SSL/TLS, GDPR, and NIS2 compliance areas, is the most alarming issue, leaving all data transmissions vulnerable to interception and manipulation. Key security headers critical for protecting against common web attacks are missing, increasing the risk of clickjacking, content injection, and cross-site scripting attacks. GDPR compliance is poor, notably lacking a cookie consent mechanism and potentially non-compliant privacy policies, which could result in regulatory penalties and damage to customer trust. NIS2 directives are largely unmet, with no documented security policies, incident response plans, or information security frameworks, exposing the business to operational risks and regulatory enforcement. Email security is moderately better but still incomplete, with missing DKIM records and weak DMARC enforcement that could facilitate phishing attacks. DNS security is fairly strong, but the absence of DNSSEC and CAA records leaves some attack vectors open. Network security within the infrastructure is solid, providing a good foundation to build upon. Immediate attention is required to address critical encryption and compliance gaps to protect the business, customers, and reputation.

15
33
5
70
-
85
100
winesparkling wineEnglish wineonline shopgift+3 more
WooCommerceWordPressYoast SEOGoogle Tag Manager+15
2025-06-13T18:10:49.987Z
I

Infront Moto Racing

youthstream.org

0
motorsportsMonacomediumHIGH

The website's security posture is currently poor, with multiple critical and high-severity vulnerabilities exposing the business to significant risks including data breaches, regulatory non-compliance, and operational disruptions. Notably, the absence of HTTPS encryption is a critical flaw that jeopardizes all data in transit and undermines user trust. Missing key security headers and exposed high-risk services such as FTP and RDP further increase the attack surface, making the site vulnerable to common web attacks and unauthorized access. Additionally, the lack of GDPR compliance elements like privacy policies and cookie consent exposes the business to potential legal penalties. The absence of foundational information security policies, incident response plans, and business continuity strategies highlights a gap in organizational preparedness. Although email security and DNS health are relatively stronger, they cannot compensate for the critical gaps elsewhere. Immediate attention is required to remediate these vulnerabilities to protect sensitive data, maintain customer trust, and ensure regulatory compliance. Overall, the website’s current state presents a high business risk that demands swift and comprehensive security improvements.

15
-
-
85
-
85
70
motocrossMXGPMX1MX2snowcross+1 more
ASP.NETTelerik UIjQuery 1.4.2Google Analytics (commented out)+3

Partner Domains:

mxgp.com
partnerpending
mxgp-tv.com
partnerpending

+1 more partners

2025-06-13T18:10:49.940Z
dimco.mc favicon

Dimco

dimco.mc

0
professional kitchen equipment and servicesFRmediumHIGH

The website's overall security posture is critically weak, primarily due to the complete absence of HTTPS encryption, exposing all data transmissions to interception and manipulation. The lack of essential security headers such as Strict-Transport-Security and Content-Security-Policy further increases vulnerability to common web-based attacks like man-in-the-middle and cross-site scripting. Additionally, the site fails to comply with GDPR requirements by not providing a privacy policy, cookie policy, or consent mechanisms, risking significant regulatory penalties and reputational damage. From a NIS2 directive perspective, there is a notable absence of documented security policies, incident response procedures, and security contact information, indicating poor organizational readiness for cyber incidents. Although email and network security settings are strong, these strengths are overshadowed by foundational security and compliance gaps. DNS configurations are somewhat healthy but can be improved with DNSSEC and CAA records to enhance domain authenticity and prevent certificate misuse. Immediate remediation is crucial to mitigate data breach risks, regulatory fines, and loss of customer trust, which can severely impact business continuity and growth.

60
-
-
100
-
85
100
professional kitchenskitchen installationmaintenanceMonacohospitality+1 more
jQuerySweetAlert2GSAPSlick Carousel+6

Partner Domains:

auth0.com
servicepending
odice.info
partnerpending
2025-06-13T18:10:49.904Z