Skip to main content

High-risk security reports

Browse 46,997 Guard analyses across this slice of the directory — NIS2 / GDPR readiness, SSL/TLS, DNS hygiene and email authentication.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157364
Websites
130
Industries
113
Countries
52
Avg Score
Page 3 of 940|Showing 101-150 of 46997
autoaircon.co.za favicon

Auto Aircon Exchange

autoaircon.co.za

44
TransportationSouth AfricasmallHIGH

Auto Aircon Exchange is a South African company specializing in automotive air conditioning parts and services, operating since 1998. The company offers a range of aircon components such as compressors, condensers, and evaporators, targeting vehicle owners and automotive repair businesses within South Africa. The website is built on WordPress with WooCommerce, leveraging modern plugins like Elementor and YITH extensions to provide e-commerce functionality. Hosting is provided by xneelo (Pty) Ltd, a reputable South African hosting provider. Technically, the website demonstrates a moderate level of digital maturity with a solid tech stack and good mobile optimization. However, there are gaps in security best practices, including the absence of DNSSEC, missing security headers, and lack of a security.txt or vulnerability disclosure policy. Privacy compliance is weak, with no visible privacy or cookie policies, which could expose the business to regulatory risks. The security posture is adequate but could be improved by implementing recommended security headers, enabling DNSSEC, and formalizing incident response contacts. The domain WHOIS data supports the legitimacy of the business, showing consistent registration details and a long domain age. Overall, the website is functional and professional but requires enhancements in privacy and security compliance to reduce risk and improve trustworthiness.

15
35
2
85
57
60
20
automotiveairconditioninge-commercesouthafricaautoparts
WordPressWooCommercejQueryElementor+4
2026-08-14T08:10:21.438Z
wrce.co.za favicon

White River Country Estate

wrce.co.za

48
Real EstateSouth AfricamediumHIGH

White River Country Estate is a secure residential community located in the Lowveld region of Mpumalanga, South Africa. The estate offers modern homes, a championship golf course designed by Gary Player, and a variety of lifestyle amenities including health and wellness facilities, boutique hotel accommodation, shopping, dining, and educational proximity. The website positions the estate as a vibrant, safe, and connected community targeting families, professionals, and retirees seeking a balanced lifestyle blending nature and modern living. The estate emphasizes security with advanced surveillance and controlled access. Technically, the website employs a modern tech stack including Bootstrap 4, jQuery, Popper.js, Google Analytics, and a consent management system by Silktide. The site is mobile-optimized, uses responsive images, and implements a comprehensive cookie consent mechanism with granular user preferences. SEO and accessibility are well addressed, and the site loads with moderate performance. No CMS or hosting provider details are explicitly detected. From a security perspective, the site uses HTTPS and enforces cookie consent with denied default settings for advertising and analytics storage until user acceptance. However, explicit HTTP security headers are not detected in the provided data. No forms or input fields are present on the main pages, reducing attack surface. The WHOIS data is unavailable, indicating privacy protection, which is justified for this type of real estate business. Contact information is clearly presented, enhancing trust. Overall, the website is professional, trustworthy, and well-maintained with a strong focus on user privacy and security. The lack of WHOIS data is mitigated by consistent business information and contact details. Recommendations include adding explicit security headers, publishing a security policy or incident response contact, and continuous monitoring of third-party scripts for vulnerabilities.

15
68
2
80
57
80
-
realestatecommunitylifestylegolfsecurity+3 more
Bootstrap 4jQueryPopper.jsGoogle Analytics (gtag.js)+2

Partner Domains:

www.purveyors.wrce.co.za
partner
www.topics.wrce.co.za
partner

+2 more partners

2026-08-14T08:10:10.927Z

昶佑實業有限公司

changyoulift.com

49
TransportationTaiwansmallHIGH

昶佑實業有限公司 operates a specialized business in the rental, sales, maintenance, and parts supply of aerial work platforms and related machinery in New Taipei City, Taiwan. The company targets general customers needing aerial work vehicles such as scissor lifts, boom lifts, and self-propelled lifts. Their website presents a professional image with detailed product catalogs and contact information, positioning them as a regional niche provider in the transportation equipment sector. Technically, the website is built on WordPress with common plugins and libraries such as jQuery, Bootstrap, and RevSlider. It uses HTTPS with a Content-Security-Policy header, Google Analytics, and Tag Manager for tracking. The site is moderately optimized for performance and mobile devices but lacks advanced accessibility features. SEO is adequately addressed with meta tags and structured data. From a security perspective, the site has basic protections but lacks critical policies such as privacy and cookie notices, and no incident response or vulnerability disclosure information is provided. The WHOIS data is missing, which raises concerns about domain legitimacy and trustworthiness. No WAF or blocking mechanisms were detected, and the site content is fully accessible. Overall, the website is functional and business-appropriate but requires improvements in privacy compliance, security transparency, and domain registration clarity to enhance trust and reduce risk.

15
35
2
70
47
55
100
jQueryBootstrapGoogle AnalyticsGoogle Tag Manager+2
2026-08-14T08:07:22.608Z

岡邑企業有限公司

gang-yi.com

43
ManufacturingTaiwansmallHIGH

岡邑企業有限公司 is a Taiwanese manufacturing company specializing in high-temperature steam mold temperature control systems and hardware products. The website targets industrial clients and manufacturers in Taiwan, offering specialized equipment solutions. The business operates primarily in the manufacturing sector with a small company size and a regional market focus. The website content is presented in Traditional Chinese and provides basic product information and company contact details, including phone numbers and a physical address. Technically, the website uses older JavaScript libraries such as Prototype.js and Scriptaculous, and includes Google Plus One integration. The site lacks modern CMS or frameworks and shows no evidence of mobile optimization or advanced accessibility features. Performance is moderate but could be improved with updated technologies and responsive design. From a security perspective, the website lacks HTTPS, security headers, and privacy or cookie policies, which are critical for protecting user data and ensuring compliance with privacy regulations. The WHOIS data for the domain is missing or unavailable, raising concerns about domain legitimacy and transparency. No contact emails or social media links are provided, limiting communication channels. Overall, the security posture is weak, and the site is vulnerable to potential risks. The overall risk assessment indicates a need for urgent improvements in security infrastructure, privacy compliance, and domain registration transparency. Strategic recommendations include implementing HTTPS, adding security headers, updating JavaScript libraries, publishing privacy and cookie policies, and verifying domain registration details to enhance trust and compliance.

20
50
17
85
47
60
20
manufacturingindustrialtemperaturecontrolsteammoldtaiwan
JavaScriptPrototype.jsScriptaculousLightbox+1
2026-08-14T08:06:56.343Z
sunder.com.tw favicon

Sunder Biomedical Tech. Co., Ltd.

sunder.com.tw

46
HealthcareTaiwanmediumHIGH

Sunder Biomedical Tech. Co., Ltd. is a Taiwan-based medical device manufacturer founded in 1998, specializing in high-quality medical devices and custom-made solutions. The company emphasizes compliance with local and international standards such as GMP and ISO 13485, positioning itself as a reputable player in the healthcare manufacturing sector. The website reflects this professionalism with relevant content, certifications, and a clear business focus. Technically, the website is built on Joomla CMS and utilizes common web technologies including jQuery, Bootstrap, and various plugins for UI and sliders. The site is mobile-optimized and provides a good user experience, though performance is moderate. Tracking is implemented via Google Analytics and Tag Manager, but privacy and cookie policies are absent, indicating a gap in compliance. From a security perspective, the site uses HTTPS and shows no obvious vulnerabilities or exposed sensitive data. However, the absence of security headers and incident response contacts suggests room for improvement in security posture. No WAF or blocking mechanisms were detected, allowing full content access. Overall, the website is professional and trustworthy with solid business credibility but requires enhancements in privacy compliance and security best practices to reduce risk and improve user trust.

20
35
17
80
57
60
20
medicaldeviceshealthcaremanufacturingiso13485gmp+1 more
jQueryBootstrapFont AwesomeRevolution Slider+1
2026-08-14T08:06:19.545Z
N

Nimet Abla Milli Piyango yasal bayisi

nimetabla.com

36
OtherTurkeysmallHIGH

Nimet Abla is a well-established Turkish lottery ticket seller with a long history dating back to 1928. The website serves as an informational and sales platform for lottery tickets, including Milli Piyango and other games, targeting lottery players in Turkey. It provides lottery results, ticket sales information, and contact details for physical lottery offices. The business model is retail-focused with an online presence to support customer engagement. Technically, the website uses common marketing and analytics tools such as Google Tag Manager and Facebook Pixel, along with Elfsight widgets and Bootstrap for styling. The site is moderately optimized for performance and mobile use but lacks advanced SEO and accessibility features. No CMS or complex frameworks are detected, indicating a simple site architecture. From a security perspective, the site uses HTTPS but lacks visible security headers and privacy compliance mechanisms such as privacy and cookie policies. No forms are present to analyze for input security. The WHOIS data is consistent and supports the legitimacy of the domain and business. Overall, the security posture is moderate but could be improved with better headers and compliance. The overall risk is moderate with no critical security issues detected. Strategic improvements in privacy compliance, security headers, and user experience would enhance trust and reduce potential risks.

15
35
2
40
37
70
20
lotterygamingturkeymillipiyangoticketsales
Google Tag ManagerFacebook PixelElfsight WidgetsBootstrap 5

Partner Domains:

nimetablavakfi.com
partner
millipiyangoonline.com
partner

+1 more partners

2026-08-14T08:05:21.712Z
cumbriainsurance.co.uk favicon

David Roberts & Partners (Insurance Brokers) Limited

cumbriainsurance.co.uk

49
FinanceUnited KingdomsmallHIGH

Cumbria Insurance Brokers is a well-established independent insurance brokerage firm with over 60 years of history, serving businesses primarily in the North West of England and South Scotland. As part of the David Roberts & Partners Group since 2021, it leverages the benefits of a larger network while maintaining local client focus. The website presents a professional image with clear service offerings including commercial, fleet, cyber, professional indemnity, marine insurance, employee benefits, and claims handling. The company is FCA authorized and regulated, with trust signals such as BIBA membership enhancing credibility. Technically, the website is built on WordPress using modern plugins like Yoast SEO and Contact Form 7, with good mobile optimization and SEO practices. The site uses HTTPS with no visible security misconfigurations, though security headers are not explicitly detected. Privacy compliance is partially addressed with a comprehensive privacy policy linked to the parent company’s domain, but lacks a cookie consent mechanism. Contact information is clearly provided, supporting user trust and communication. Security posture is solid with HTTPS and no exposed sensitive data, but could be improved by adding security headers and explicit incident response information. No vulnerabilities or suspicious content were detected. Overall, the site is trustworthy and professional, with minor areas for improvement in privacy and security transparency. Strategically, the company should focus on enhancing privacy compliance with cookie consent, publishing security policies, and implementing security headers to strengthen its security posture and regulatory adherence.

15
53
2
85
47
70
40
insurancebrokercommercialinsurancefleetinsurancecyberinsurance+6 more
WordPressYoast SEO pluginjQuery 3.6.0Swiper.js 8.3.1+1

Partner Domains:

drpinsurance.com
parent
2026-08-13T07:07:43.895Z