Skip to main content

High-risk security reports

Browse 46,998 Guard analyses across this slice of the directory — NIS2 / GDPR readiness, SSL/TLS, DNS hygiene and email authentication.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157371
Websites
130
Industries
113
Countries
52
Avg Score
Page 322 of 940|Showing 16051-16100 of 46998
roistat.com favicon

Roistat

roistat.com

45
TechnologyRussiamediumHIGH

Roistat is a mature SaaS company founded in 2014, specializing in marketing analytics and automation solutions targeted at CEOs, marketers, business analysts, and sales leaders. The platform offers a comprehensive suite of tools including summary reports, lead generation, multichannel analytics, and CRM integrations, positioning itself as a key player in marketing intelligence. The website is professionally designed with consistent branding and clear navigation, supporting a positive user experience and trustworthiness. Technically, the site leverages modern web technologies such as jQuery, Bootstrap, and various UI libraries, hosted behind Cloudflare DNS services. The site is mobile optimized and performs moderately well, with good SEO practices and accessibility features. Tracking is implemented via Yandex.Metrika and VK retargeting pixels, reflecting moderate user tracking practices. Security posture is solid with HTTPS enforced and domain transfer protections in place, though there is room for improvement by enabling DNSSEC and adding security headers. Privacy compliance is well addressed with clear privacy and cookie policies including consent mechanisms. However, incident response and vulnerability disclosure policies are not publicly available. Overall, Roistat presents a trustworthy and professional online presence with a strong business model and technical foundation. Strategic improvements in security policies and transparency could further enhance its risk profile and customer confidence.

30
53
17
55
-
85
40
marketinganalyticsbusinessintelligencesaascrmintegration+2 more
jQueryBootstrapFancyboxSelect2+5
2025-10-10T08:49:09.861Z
silverbellgroup.com favicon

Silver Bell Group

silverbellgroup.com

42
TechnologySerbiamediumHIGH

Silver Bell Group is a professional business process outsourcing (BPO) provider specializing in scalable European nearshore sales and customer support teams. Their service offerings include sales outsourcing, customer support, lead generation, video customer experience, IT staffing, and a tech tool marketplace. The company targets global businesses seeking multilingual and on-demand BPO solutions based in Europe, with a physical presence in Belgrade, Serbia. The website is well-designed, mobile-optimized, and SEO-friendly, reflecting a mature digital presence. Technically, the website is built on WordPress using the Elementor framework, leveraging modern JavaScript libraries and multiple third-party marketing and analytics tools such as Google Tag Manager, Facebook Pixel, and Cookiebot for consent management. The site employs HTTPS with a strong SSL configuration and uses reCAPTCHA to secure forms. However, explicit security headers are not clearly visible and could be improved. From a security perspective, the site demonstrates good practices including encrypted connections and cookie consent mechanisms, but lacks visible incident response contacts or security certifications. The absence of WHOIS registration data for the domain is a significant concern, as it raises questions about domain legitimacy despite the professional website. Overall, the website presents a low to moderate risk profile with strong business and technical maturity but requires verification of domain registration and enhancement of security transparency to improve trustworthiness and compliance.

15
100
10
55
-
80
-
bpocustomersupportsalesoutsourcingleadgenerationitstaffing+5 more
WordPressElementorjQueryGoogle Tag Manager+8
2025-10-10T08:40:46.077Z
B

403 - Forbidden

bayes-cid.com

36
OtherN/asmallHIGH

The website bayes-cid.com is currently inaccessible, presenting a 403 Forbidden error page that blocks access to any substantive content. This prevents any meaningful analysis of the business, services, or compliance posture from the website itself. The domain is relatively new, registered in March 2023, and hosted on SiteGround. No privacy policies, cookie notices, terms of service, or contact information are available on the page. The lack of HTTPS information and security headers further limits the security assessment. Overall, the site appears to be either under development, restricted, or misconfigured, resulting in a poor user experience and low trustworthiness. From a technical perspective, the site uses standard fonts from Google Fonts and is hosted on a reputable provider, but no modern frameworks or CMS are detectable. The absence of analytics or tracking scripts suggests minimal digital marketing or user tracking activity. The security posture is weak due to the lack of visible HTTPS and security headers, and no incident response or vulnerability disclosure information is present. Given the blocked content and minimal data, the risk assessment is elevated due to lack of transparency and accessibility. Strategic recommendations include enabling HTTPS, publishing privacy and cookie policies, providing clear contact and business information, and resolving the 403 access issue to allow proper content delivery and user engagement.

15
35
2
75
72
70
-
403forbiddenerroraccessdeniedblocked
2025-10-10T07:43:13.574Z
rcumariacristina.es favicon

Real Centro Universitario Escorial - María Cristina

rcumariacristina.es

48
EducationSpainmediumHIGH

The Real Centro Universitario Escorial - María Cristina is a private university institution located in San Lorenzo de El Escorial, Spain, with a rich history dating back to 1892. It offers official undergraduate and postgraduate degrees in business administration, law, and related fields, affiliated with Universidad CEU San Pablo. The website reflects a well-established academic institution with a professional digital presence, including comprehensive academic program information, campus details, and active social media engagement. Technically, the website is built on WordPress with modern JavaScript libraries such as Swiper.js and jQuery, enhanced by SEO plugins and GDPR-compliant cookie consent mechanisms. The site is mobile-optimized and uses HTTPS with good SSL configuration, though some security headers are missing. Analytics and marketing tools are implemented with user privacy in mind, leveraging Google Tag Manager and consent mode. From a security perspective, the site demonstrates a solid baseline with HTTPS and cookie consent but lacks published security policies or incident response contacts. No vulnerabilities or suspicious content were detected. The absence of WHOIS data due to Red.es restrictions limits domain registration verification, but the website content and structured data strongly support legitimacy. Overall, the site is a credible, professional educational platform with good technical and privacy practices. Strategic improvements in security headers, incident response transparency, and accessibility could further enhance trust and compliance.

-
40
17
85
85
75
-
educationuniversitymadridhighereducationofficialdegrees+6 more
WordPressjQuerySwiper.jsGoogle Tag Manager+5

Partner Domains:

www.uspceu.com
partner
centroteologicosanagustin.es
partner

+2 more partners

2025-10-10T07:40:04.649Z
N

National Highway Traffic Safety Administration

trafficsafetymarketing.gov

47
GovernmentUnited StatesenterpriseHIGH

The website trafficsafetymarketing.gov is an official U.S. government site managed by the National Highway Traffic Safety Administration (NHTSA), a division of the U.S. Department of Transportation. It serves as a centralized resource hub for traffic safety communication materials, campaigns, and research targeted at states, partner organizations, and highway safety professionals. The site provides comprehensive and timely behavioral and vehicle safety outreach initiatives, supported by strong government branding and trust signals. The content is highly relevant, professionally presented, and designed for a general audience with a focus on public safety. Technically, the site is built on Drupal 10 CMS, leveraging modern web technologies including Google Tag Manager and Google Analytics for tracking and performance monitoring. The site is mobile-optimized, accessible, and SEO-friendly with proper meta tags and structured navigation. HTTPS is enforced with excellent SSL configuration, ensuring secure communications. However, some security headers like CSP and X-Content-Type-Options could be improved for enhanced protection. From a security and compliance perspective, the site demonstrates good practices with no visible vulnerabilities or exposed sensitive data. Privacy policies and terms of service are clearly linked and comprehensive, though a cookie consent mechanism is not explicitly present. WHOIS data is unavailable due to .gov domain privacy policies, which is standard and justified for government domains. The overall security posture is strong, with recommendations to enhance header policies and consider a security.txt file for vulnerability disclosures. Overall, trafficsafetymarketing.gov is a trustworthy, authoritative government resource with excellent content quality and a solid technical foundation. Strategic improvements in security headers and privacy consent mechanisms would further strengthen its posture and user trust.

-
53
35
70
-
30
100
trafficsafetygovernmentnhtsapublicsafetymarketing+2 more
Drupal 10Google Tag ManagerGoogle AnalyticsYouTube iframe API+1
2025-10-10T07:39:12.549Z
nimbus-mockup.com favicon

Nimbus Group GmbH

nimbus-mockup.com

48
ManufacturingGermanymediumHIGH

Nimbus Group GmbH operates a specialized showroom and manufacturing business focused on innovative LED lighting and acoustic room partitioning systems. The company targets B2B customers seeking advanced lighting solutions and acoustic design products, positioning itself as a niche player with a strong brand presence in Germany. The website serves as a digital showroom and brand portal, linking to related Nimbus and Rossoacoustic brands. Technically, the website uses a modern JavaScript stack including jQuery, Fotorama, and Pikaday, integrated with marketing and analytics tools such as Google Tag Manager and HubSpot. The site is mobile-optimized and well-structured, though no CMS or hosting provider details are evident. Performance is moderate with good SEO and accessibility basics. From a security perspective, the site uses HTTPS but lacks DNSSEC and visible security headers, which are recommended for enhanced protection. Cookie consent is implemented via OneTrust, indicating some GDPR compliance effort, but no privacy policy or terms of service are published. No contact emails or phone numbers are provided, limiting direct communication channels. Overall, the website is professional and trustworthy but could improve compliance and security posture by publishing privacy and security policies, enabling DNSSEC, and adding security headers. These steps would enhance user trust and reduce risk exposure.

15
35
2
55
85
80
40
ledshowroomnimbusrossoakustik+2 more
jQueryFotoramaMoment.jsPikaday+3

Partner Domains:

nimbus-lighting.com
partner
nimbus-group.com
parent

+1 more partners

2025-10-10T07:36:30.478Z
tabergmediagroup.se favicon

Taberg Media Group

tabergmediagroup.se

44
MediaSwedenmediumHIGH

Taberg Media Group is a well-established Swedish media and communication company founded in 2005, offering a broad range of services including print production, expo solutions, profile products, creative marketing, and digital solutions. The company operates across multiple Swedish cities, positioning itself as a full-service communication partner for businesses seeking integrated marketing and print services. Their website reflects a mature digital presence with professional design, clear service segmentation, and active marketing integrations. Technically, the site is built on WordPress with the Divi theme and leverages modern JavaScript libraries and marketing tools such as HubSpot, Google Tag Manager, and Facebook Pixel. Security posture is generally good with HTTPS enabled and no critical vulnerabilities detected, though some security headers like Content-Security-Policy are missing, and DNSSEC is not enabled. Privacy compliance is strong, with a comprehensive privacy policy and cookie consent mechanism in place, aligned with GDPR requirements. Contact information is primarily via web forms, with no explicit emails or phone numbers visible on the homepage. Overall, the site is trustworthy, professional, and well-suited for its business purpose.

15
40
17
70
62
65
-
mediamarketingprintcommunicationsweden+1 more
WordPressDivi ThemejQuerySwiper Carousel+5

Partner Domains:

solutions.tabergmediagroup.se
partner
2025-10-10T06:30:33.125Z
maskrosbarn.org favicon

Maskrosbarn

maskrosbarn.org

46
Non-profitSwedenmediumHIGH

Maskrosbarn is a Swedish non-profit organization dedicated to supporting children and youth aged 13-19 who have parents suffering from mental illness, addiction, or who expose them to violence. The organization offers a range of services including chat support, educational materials, activities, and advocacy efforts. It operates regionally in Stockholm, Göteborg, Malmö, and provides nationwide support. The website is well-structured, professionally designed, and targets both youth and adults interested in supporting them. The organization holds recognized certifications such as 90-konto and Tryggt Givande, enhancing its trustworthiness. Technically, the website is built on WordPress with modern technologies including React and jQuery. It uses Yoast SEO for optimization and Cookiebot for cookie consent management. Hosting is provided via Loopiagroup nameservers. The site is mobile-optimized and performs moderately well. Analytics and marketing tools include Google Tag Manager, Snapchat Pixel, and LinkedIn Insight Tag, with moderate user tracking and good privacy compliance. From a security perspective, the site enforces HTTPS with an excellent SSL configuration but lacks DNSSEC and security headers such as Content-Security-Policy and X-Frame-Options. No vulnerabilities or exposed sensitive data were detected. Privacy compliance is strong with a clear privacy policy and cookie consent mechanism. However, there is no visible incident response or vulnerability disclosure information. Overall, the website presents a low-risk profile with a strong business credibility and good technical implementation. Recommendations include enabling DNSSEC, adding security headers, publishing incident response contacts, and providing a terms of service page to further enhance trust and security posture.

15
50
2
55
-
65
100
non-profityouthsupportmentalhealthchildwelfaresweden+3 more
WordPress 6.8.2Yoast SEO pluginjQuery 3.7.1React 18.3.1.1+4

Partner Domains:

press.maskrosbarn.org
partner
2025-10-10T06:27:00.753Z
orange-one.de favicon

Top Light GmbH & Co.KG

orange-one.de

41
EnergyGermanymediumHIGH

Orange One is a German-based lighting brand operating under the parent company Top Light GmbH & Co.KG. The company specializes in high-quality, innovative lighting solutions primarily targeting B2B customers such as architects, light planners, and retailers. Their product portfolio includes architectural and indoor lighting designed for both private and commercial applications. The website reflects a professional and consistent brand image with clear business contact information and a partner program to support business customers. Technically, the website uses a modern frontend stack including Bootstrap, jQuery, and slick slider for UI elements. It is mobile responsive and provides a good user experience with clear navigation and relevant content. However, no CMS or hosting provider details are explicitly detected. Performance is moderate with room for optimization. From a security perspective, the site uses HTTPS (implied by domain and external links), but no explicit security headers were detected in the provided HTML content. Cookie consent is implemented, supporting GDPR compliance. No incident response or security policy pages were found. The WHOIS data is consistent and supports the legitimacy of the domain and business. Overall, the website presents a trustworthy and professional business presence with moderate technical maturity and basic privacy compliance. Security posture can be improved by implementing recommended HTTP headers and formalizing security policies.

15
43
2
70
62
60
-
lightingb2benergygermanypartnerprogram+2 more
jQueryBootstrapFont AwesomeSlick Slider+1

Partner Domains:

top-light.de
parent
top-light.shop
partner
2025-10-10T06:25:34.040Z
T

Tribunal Constitucional

tribunalconstitucional.es

40
GovernmentSpainlargeHIGH

The website for www.tribunalconstitucional.es represents the Spanish Constitutional Court, a key government judicial institution. However, the current accessible content is minimal and appears to be a security or anti-bot challenge page, preventing access to substantive information. The domain WHOIS data is not accessible due to Red.es restrictions, which is typical for official Spanish government domains. The site lacks visible privacy, cookie, or terms of service policies, and no contact information or social media links are present. This limits the ability to fully assess the website's digital maturity and user engagement capabilities. From a technical perspective, the site uses basic JavaScript and minimal HTML content, likely as part of a security verification process. There is no evidence of modern CMS, analytics, or advertising technologies. The security posture is difficult to evaluate fully due to the blocking mechanism, but the presence of a WAF or similar protection is indicated. No security headers or SSL details were available for review. Overall, the website's security posture appears cautious with protective measures in place, but the lack of accessible content and policies reduces transparency and user trust. The domain is likely legitimate and government-owned, but the inability to access full content or WHOIS data limits comprehensive analysis. Strategic recommendations include improving transparency by providing accessible privacy and cookie policies, contact information, and ensuring security headers and HTTPS are properly configured once the security challenge is passed. Given the current blocking, the risk assessment is moderate with no indications of malicious activity but with significant limitations on content and compliance visibility.

-
25
17
75
100
80
-
governmentconstitutionalcourtsecuritychallengewafspain
JavaScript
2025-10-10T06:24:48.584Z
artimeta.nl favicon

Artimeta BV

artimeta.nl

36
RetailNetherlandssmallHIGH

Artimeta BV is a Netherlands-based B2B company specializing in the distribution of design lighting products. Their clientele includes light, design, and furniture stores as well as project designers in sectors such as yachting and hotel interiors. The company has an established online presence with a domain registered since 1998, reflecting a mature business. The website showcases a curated collection of lighting products from various brands, targeting professional partners rather than end consumers. Technically, the website is built on WordPress using the Astra theme and Elementor page builder, indicating a modern and flexible infrastructure. The site is mobile optimized and provides a good user experience with clear navigation and professional design. However, some technical improvements are recommended, including enabling DNSSEC, adding security headers, and properly configuring analytics tools. From a security perspective, the site uses HTTPS but lacks advanced security headers and DNSSEC, which are important for enhancing protection against common web threats. The absence of a cookie consent mechanism and incomplete privacy compliance features indicate potential regulatory gaps, especially under GDPR. No incident response or security policy information is publicly available, which could be improved to enhance trust. Overall, Artimeta presents as a credible and professional business with a solid market position in the lighting distribution sector. Strategic improvements in security and privacy compliance would strengthen their digital maturity and reduce potential risks.

15
28
2
70
-
75
20
lightingdesigndistributionb2bretail+1 more
WordPressElementorPHPGoogle Fonts+1
2025-10-10T05:19:53.723Z
bernwaehlt.ch favicon

FDP.Die Liberalen Kanton Bern

bernwaehlt.ch

43
GovernmentSwitzerlandmediumHIGH

FDP.Die Liberalen Kanton Bern is a regional political organization representing liberal interests in the Canton of Bern, Switzerland. The website serves as an information hub for voters, providing details about the party's liberal compass, electoral districts, and candidates. It targets residents and voters in the region interested in liberal political representation. The business model is non-profit and focused on political engagement and information dissemination. Technically, the website is built on WordPress using the Elementor page builder, leveraging common web technologies such as jQuery and PHP. The site is moderately optimized for performance and mobile devices, with good SEO practices and basic accessibility features. Hosting details are not explicitly identified. From a security perspective, the site uses HTTPS with a good SSL configuration but lacks advanced security headers and explicit security policies. No vulnerabilities or exposed sensitive data were detected. Privacy compliance is addressed with a privacy and cookie policy that includes consent mechanisms, aligning with GDPR requirements. Contact information is clearly provided, enhancing business credibility. Overall, the website presents a professional and trustworthy front for the political party, with moderate technical sophistication and a solid security posture. Recommendations include implementing security headers, adding a vulnerability disclosure policy, and enhancing accessibility and incident response information to further strengthen trust and compliance.

15
80
2
70
-
75
20
politicsgovernmentswitzerlandfdpbern+2 more
WordPressElementorjQueryPHP

Partner Domains:

plrgrandchasseral.ch
partner
prr-bienne.ch
partner
2025-10-10T05:19:23.621Z
aubouquet.ch favicon

Blumen Au Bouquet AG

aubouquet.ch

36
RetailSwitzerlandsmallHIGH

Blumen Au Bouquet AG is a well-established family-run florist business based in Basel, Switzerland, operating since 1953. The company offers a wide range of floristry services including flower subscriptions, orchids, cacti, succulents, green plants, creative workshops, and event floristry, supported by an online shop. Their market position is strong locally, recognized as a leading address for elevated floristry in Basel. The website reflects a professional retail business model targeting general consumers interested in quality floral products and services. Technically, the website is built on the Contao Open Source CMS platform and uses jQuery for interactive elements. The site is mobile optimized with good SEO practices and clear navigation, though performance is moderate. The absence of advanced security headers and cookie consent mechanisms indicates room for improvement in security and privacy compliance. The site uses HTTPS with a good SSL configuration, and forms are secured via POST methods. From a security perspective, the website demonstrates a solid baseline with HTTPS and secure form handling but lacks explicit security policies, incident response contacts, and vulnerability disclosure mechanisms. No critical vulnerabilities or exposed sensitive data were detected. Privacy compliance is partial, with a privacy policy present but no cookie consent banner. Business credibility is high, supported by consistent WHOIS data, clear contact information, and a professional online presence. Overall, the website is trustworthy and professionally maintained but would benefit from enhanced security headers, explicit cookie consent, and published security policies to improve compliance and user trust.

80
35
2
50
-
40
-
floristryflowerssubscriptionorchidssucculents+5 more
jQueryContao Open Source CMS
2025-10-10T05:18:47.413Z
L

Latvijas tirgotaju savieniba, SIA

e-latts.lv

36
RetailLatviamediumHIGH

The website e-latts.lv operates as an online grocery retail platform serving primarily Latvian consumers. It offers a wide range of food and household products with a focus on convenience through online ordering and delivery services. The business is represented by Latvijas tirgotaju savieniba, SIA, a Latvian legal entity, indicating a legitimate commercial presence in the local market. The website's content is rich with product listings, promotions, and categories tailored to grocery shopping needs. From a technical perspective, the site employs common web technologies including Bootstrap, jQuery, FontAwesome, and Owl Carousel for UI components and animations. It integrates Google Tag Manager, Google Analytics, and Facebook Pixel for marketing and analytics purposes. The site appears moderately optimized for performance and mobile usage, though accessibility features are basic. No CMS or hosting provider details were identified. Security posture shows room for improvement. While HTTPS is presumably enabled (not explicitly confirmed), no security headers were detected in the provided data, and no explicit privacy or cookie policies are visible. The WHOIS data is incomplete but consistent with the business entity and location. No WAF or blocking mechanisms were detected, allowing full content access. Overall, the site presents a professional and functional e-commerce platform with moderate technical maturity and business credibility. Enhancements in security headers, privacy compliance, and transparency would strengthen trust and compliance posture.

20
10
17
60
52
60
-
e-commercegroceryretaillatviaonlineshopping
BootstrapjQueryFontAwesomeOwl Carousel+4
2025-10-10T05:18:01.424Z