Skip to main content

High-risk security reports

Browse 46,998 Guard analyses across this slice of the directory — NIS2 / GDPR readiness, SSL/TLS, DNS hygiene and email authentication.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157371
Websites
130
Industries
113
Countries
52
Avg Score
Page 330 of 940|Showing 16451-16500 of 46998
portal.hr favicon

Plus Hosting Grupa d.o.o.

portal.hr

43
MediaCroatiasmallHIGH

Portal.hr is a regional news portal serving the Kaštela area and nearby cities such as Solin, Trogir, and Split in Croatia. The website provides daily news, local stories, event coverage, and community information, targeting local residents and visitors interested in regional updates. The business operates on an advertising-supported model, leveraging Google Adsense and other ad networks to monetize content. The domain is relatively new, registered in 2022, and is managed by Plus Hosting Grupa d.o.o., a Croatian hosting and domain registrar. Technically, the site is built on Joomla CMS with a modern frontend stack including Bootstrap 5, jQuery, FontAwesome, and Google Fonts. It uses Cloudflare for DNS and likely some security benefits. The site is mobile-optimized, accessible, and SEO-friendly with proper meta tags and structured navigation. Performance is moderate, with some reliance on third-party advertising and tracking scripts. From a security perspective, the site enforces HTTPS, uses CSRF tokens in forms, and includes accessibility features. However, explicit security policies, incident response contacts, and vulnerability disclosure mechanisms are absent. The presence of multiple third-party scripts increases the attack surface slightly. Privacy compliance is basic, with cookie consent mechanisms but limited GDPR-specific disclosures. Overall, Portal.hr presents a professional and trustworthy local news platform with good technical implementation and moderate security posture. Strategic improvements in privacy transparency, security policy publication, and third-party script management would enhance compliance and trustworthiness.

20
10
17
85
62
75
-
localnewsmediacroatiakatelajoomla+2 more
jQueryBootstrap 5.3FontAwesomeCloudflare DNS+3
2025-10-09T01:12:17.787Z
coca-colahellenickosovo.com favicon

Coca-Cola Hellenic Kosova

coca-colahellenickosovo.com

47
RetailKosovomediumHIGH

Coca-Cola Hellenic Kosova operates as a major distributor of Coca-Cola products in Kosovo, serving as a key player in the non-alcoholic beverage industry since 2003. The website reflects a regional branch of the larger Coca-Cola Hellenic Bottling Company, with consistent branding and a focus on beverage distribution. The business targets a general audience including consumers and partners in Kosovo, leveraging a business model centered on product distribution and sales within the retail sector. Technically, the website is built on WordPress with modern plugins such as Yoast SEO and integrates Google Analytics and Google Tag Manager for analytics and marketing purposes. Hosting and DNS services are provided via Cloudflare, enhancing performance and security. The site includes a OneTrust cookie consent mechanism, indicating awareness of privacy compliance requirements, although explicit privacy and terms of service pages are not detected. From a security perspective, the site uses HTTPS with a good SSL configuration and Cloudflare DNS, but lacks DNSSEC and some recommended security headers. No critical vulnerabilities or WAF blocking were detected. The WHOIS data is consistent with the business claims, showing a well-maintained domain with no privacy protection, supporting legitimacy. Overall, the website presents a professional and trustworthy digital presence for Coca-Cola Hellenic Kosova, with room for improvement in privacy policy transparency and enhanced security headers to strengthen compliance and security posture.

15
88
2
70
62
60
-
beveragescoca-colakosovodistributionnon-alcoholicdrinks+3 more
WordPress 6.7.4jQuery 3.7.1Google AnalyticsGoogle Tag Manager+1

Partner Domains:

coca-colahellenic.com
parent
am.coca-colahellenic.com
subsidiary

+3 more partners

2025-10-09T01:11:07.615Z
R

rtl-api.com

rtl-api.com

29
OtherN/asmallHIGH

The analyzed URL corresponds to an internal Chrome browser error page (chrome-error://chromewebdata/), which is not a public website but a local error display. The page content primarily consists of embedded Chromium open-source code for the offline T-Rex runner game and error styling. There is no business-related content, no privacy or cookie policies, no contact information, and no external links. The domain 'chromewebdata' is an internal placeholder and does not represent a registered public domain. Consequently, no WHOIS or business registration data is available. From a technical perspective, the page uses standard web technologies including HTML5, CSS3, and JavaScript, specifically Chromium BSD-licensed code for the offline game. The page is optimized for mobile and desktop with responsive design and accessibility features for the game. However, it lacks SEO metadata, business branding, or any marketing elements. Security-wise, the page is minimal and does not expose any sensitive data or forms. However, it lacks HTTPS (as it is a local error page), security headers, or any security policies. No incident response or vulnerability disclosure information is present. The overall security posture is minimal due to the nature of the page. Overall, this is not a public-facing website but an internal browser error page. The analysis is limited due to the lack of real content and business information. For accurate website analysis, a valid public URL with accessible content is required.

-
25
-
60
-
25
100
errorpagechromeofflinedinogameinternal
JavaScriptHTML5CSS3Canvas API
2025-10-09T01:10:01.777Z
inware.ch favicon

Inware AG

inware.ch

49
TechnologySwitzerlandsmallHIGH

Inware AG is a Swiss-based technology company specializing in web development, online shops, and web applications tailored for small and medium-sized enterprises (KMU). Established in 2002, the company has served over 2,000 customers, positioning itself as a reliable and experienced service provider in the Swiss market. Their website reflects a professional and modern design, targeting KMU clients with a focus on delivering tailored digital solutions across various budgets. Technically, the website employs a modern tech stack including jQuery, Google Analytics, Google Tag Manager, and Google reCAPTCHA v3 for form security. The site is mobile-optimized and demonstrates good SEO practices, although it lacks a CMS indication, suggesting a custom-built platform. Performance is moderate, with room for optimization. From a security perspective, the site uses HTTPS with an excellent SSL configuration and implements Google reCAPTCHA v3 to protect forms from abuse. However, it lacks several security headers and does not provide a privacy policy or cookie consent mechanism, which are important for GDPR compliance. No vulnerability disclosure or incident response information is available, indicating areas for improvement in security transparency and readiness. Overall, the website is trustworthy and professional but would benefit from enhanced privacy compliance and security best practices to reduce risk and improve user trust. Strategic recommendations include publishing comprehensive privacy and cookie policies, adding security headers, and establishing clear incident response contacts.

30
58
2
85
62
75
-
webdevelopmentonlineshopswebapplicationskmuswitzerland+1 more
jQuery 3.3.1Google AnalyticsGoogle Tag ManagerGoogle reCAPTCHA v3+2
2025-10-09T01:09:56.769Z
varbamisteenused.ee favicon

CV-Online värbamisteenused

varbamisteenused.ee

44
OtherEstonialargeHIGH

CV-Online värbamisteenused is a professional recruitment and personnel search service provider operating primarily in Estonia. The company leverages a large candidate network and the largest job posting distribution channels in Estonia to offer flexible recruitment solutions tailored to various business needs. Their key services include pre-selection recruitment, targeted search recruitment, and full-cycle recruitment solutions, supported by experienced specialists. The website reflects a strong market position with a focus on delivering comprehensive recruitment services to employers of all sizes and sectors. Technically, the website is built on a modern WordPress platform using Elementor for page building and Yoast SEO for search engine optimization. It integrates Cookiebot for cookie consent management and employs Google Analytics and Facebook Pixel for analytics and marketing purposes. The site is mobile-optimized and demonstrates good performance and accessibility standards, although some security headers are missing. From a security perspective, the site uses HTTPS with a good SSL configuration and implements cookie consent mechanisms. However, it lacks explicit security headers and publicly available security or incident response policies. No vulnerabilities or exposed sensitive data were detected in the provided content. The WHOIS data is consistent with the website's business claims, indicating a trustworthy domain registration. Overall, the website presents a professional and credible business front with good technical implementation and moderate privacy compliance. Strategic improvements in security headers, privacy policy publication, and incident response transparency would enhance the security posture and compliance standing.

30
25
2
55
72
65
20
recruitmentpersonnelsearchhrservicescv-onlineestonia+1 more
WordPressElementorYoast SEOjQuery+4
2025-10-09T00:05:19.191Z
hudi.hr favicon

Hrvatska udruga digitalnih izdavača

hudi.hr

36
MediaCroatiamediumHIGH

Hrvatska udruga digitalnih izdavača (HUDI) is a leading professional association in Croatia that unites online media and other industries involved in digital publishing and advertising. The organization focuses on standardizing digital media metrics, advocating for fair regulation of global tech platforms, and supporting the growth and sustainability of the Croatian digital media market. HUDI collaborates with major Croatian media companies and provides research, factchecking, and technological innovation services to its members. Technically, the website is built on WordPress with modern web technologies including Google Fonts and Google Tag Manager. It is mobile-optimized and includes standard privacy and cookie compliance mechanisms. The site uses HTTPS with a valid SSL certificate and anonymizes IP addresses in Google Analytics, reflecting a good security posture. However, some security headers are missing, and there is no public security policy or incident response information. The security posture is solid with no visible vulnerabilities or exposed sensitive data. GDPR compliance is evident through privacy and cookie policies. The WHOIS data is privacy protected due to GDPR, which is common and justified for this type of organization. The website is trustworthy, professionally maintained, and linked to reputable Croatian media entities. Overall, HUDI presents a credible and professional digital presence with a strong focus on the Croatian digital media ecosystem. Strategic improvements could include enhanced security headers, publishing security policies, and adding terms of service for completeness.

15
10
2
55
-
80
40
digitalmediaadvertisingcroatiamediaassociationdigitalpublishing+3 more
WordPressGoogle FontsGoogle Tag Manager (gtag.js)jQuery+1

Partner Domains:

jutarnji.hr
partner
index.hr
partner

+3 more partners

2025-10-09T00:00:35.324Z
eldra.hr favicon

Eldra d.o.o.

eldra.hr

47
OtherCroatiamediumHIGH

Eldra d.o.o. is a well-established Croatian company specializing in the rental of high-quality audio, video, lighting equipment, and technical production services. Founded in 1991, the company has a strong market presence and serves businesses and event organizers requiring professional event production solutions. Their website reflects a professional and consistent brand image, with clear navigation and relevant content tailored to their target audience. The business model focuses on equipment rental and technical support, positioning Eldra as a trusted local leader in their sector. Technically, the website is built on WordPress and utilizes common plugins such as Contact Form 7 for forms, Akismet for spam protection, and Cookiebot for cookie consent management. The site uses HTTPS with Cloudflare DNS, ensuring secure connections. Performance is moderate with good mobile optimization and basic accessibility features. SEO practices are adequately implemented with proper meta tags and Open Graph data. From a security perspective, the site enforces HTTPS and employs cookie consent mechanisms, but lacks explicit security headers and documented security policies or incident response plans. No vulnerabilities or exposed sensitive data were detected. The WHOIS data confirms domain legitimacy, consistent with the company's history and location. Overall, the security posture is solid but could be improved with additional headers and transparency. The overall risk assessment is low, with no critical issues found. Strategic recommendations include enhancing security headers, publishing security policies, and improving accessibility. The website is trustworthy, professional, and compliant with GDPR requirements, making it a reliable digital presence for Eldra d.o.o.

15
25
2
88
42
85
40
audiovideolightingequipmentrentalproductionservices+5 more
jQueryContact Form 7AkismetCookiebot+2
2025-10-09T00:00:30.244Z
restyloh.hr favicon

ReStyloh

restyloh.hr

47
E-commerceCroatiasmallHIGH

ReStyloh is a Croatian e-commerce platform focused on the buying and selling of second-hand clothing and footwear. The website targets general consumers interested in sustainable fashion and offers a marketplace model where users can list and purchase used apparel. The platform is positioned as a niche player in the local market, emphasizing unique fashion finds and environmental consciousness. The website features clear navigation with categorized product listings and search capabilities for both products and users. Technically, the site employs common web technologies including jQuery, Bootstrap, Owl Carousel, and Select2 for UI components, along with Google Fonts for typography. Analytics are implemented via Google Analytics and Clicky, indicating a moderate level of digital maturity. The site uses HTTPS, ensuring encrypted communication, but lacks visible advanced security headers and formal privacy or cookie policies. From a security perspective, the site demonstrates basic good practices such as HTTPS usage and no visible exposure of sensitive data. However, the absence of security headers, privacy policies, and incident response information suggests room for improvement in compliance and security posture. No WAF or blocking mechanisms were detected, and the site content is fully accessible. Overall, ReStyloh presents a functional and professional e-commerce platform with a focus on second-hand fashion in Croatia. To enhance trust and compliance, the site should implement comprehensive privacy and cookie policies, security headers, and clear contact information. These improvements would strengthen the site's security posture and user confidence.

20
10
2
75
72
80
40
secondhandclothingfootweare-commercemarketplace+1 more
jQuery 3.3.1Bootstrap CSSOwl CarouselSelect2+3
2025-10-08T22:51:20.360Z
C

Costa Coffee

costacoffee.hr

48
RetailCroatialargeHIGH

Costa Coffee's Croatian website serves as a localized digital presence for the internationally recognized coffeehouse brand. The site primarily focuses on showcasing coffee products and brand information tailored to the Croatian market. The business operates within the retail sector, targeting general consumers and coffee enthusiasts. The website reflects a consistent brand identity aligned with Costa Coffee's global image and is supported by The Coca-Cola Company as its parent entity. Technically, the website leverages modern web technologies including React and Gatsby, supported by Akamai CDN for optimized performance. The site is mobile-optimized and employs standard security best practices such as HTTPS enforcement and security headers. Cookie consent is managed through OneTrust, indicating a basic level of privacy compliance. From a security perspective, the site demonstrates a solid posture with no detected vulnerabilities or exposed sensitive data. However, the absence of explicit privacy policy, terms of service, and incident response contact details suggests areas for improvement in compliance and transparency. The WHOIS data confirms the domain's legitimacy and consistency with the brand's regional presence. Overall, the website is professional, secure, and trustworthy, but would benefit from enhanced privacy and security disclosures to meet higher compliance standards.

-
40
17
70
-
75
100
coffeeretailbrandcroatiacostacoffee
ReactGatsbyGoogle Tag ManagerOneTrust Cookie Consent+1
2025-10-08T22:49:04.277Z