Skip to main content

High-risk security reports

Browse 46,427 Guard analyses across this slice of the directory — NIS2 / GDPR readiness, SSL/TLS, DNS hygiene and email authentication.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

156014
Websites
130
Industries
113
Countries
52
Avg Score
Page 35 of 929|Showing 1701-1750 of 46427
U

UK Health Forum

ukhealthforum.org.uk

41
HealthcareUnited KingdomsmallHIGH

The UK Health Forum website serves as a legacy portal for a UK-based public health organization that ceased operations in 2019. The site primarily offers archival information and directs users to a new company, HealthLumen, which took over its modeling unit. The organization targeted public health professionals and policymakers, operating as a non-profit entity focused on health research and policy advocacy. The domain is well-established since 2012, consistent with the organization's timeline. Technically, the website is built on WordPress using the Divi theme, with standard libraries such as jQuery and Google Fonts. The site is moderately optimized for performance and mobile devices but lacks advanced SEO and accessibility features. No analytics or tracking tools are detected, indicating minimal user tracking. From a security perspective, the site uses HTTPS but lacks important security headers, privacy policies, and incident response information. No vulnerabilities or exposed sensitive data were found, but the absence of privacy and cookie policies indicates compliance gaps. The WHOIS data is transparent and consistent with the organization's UK presence, supporting legitimacy. Overall, the website is a basic legacy informational site with limited interactivity or data collection. It is safe for general audiences but requires improvements in privacy compliance, security headers, and contact transparency to enhance trust and compliance.

40
60
60
47
35
15
2
healthpublichealthuknon-profitlegacy+2 more
WordPress 7.0Divi Theme 4.5.3jQuery 3.7.1Google Fonts (Roboto, Roboto Slab)

Partner Domains:

healthlumen.com
partner
2026-07-07T07:05:28.641Z
C

Cottam & Preedy Ltd

cottamandpreedy.co.uk

40
EnergyUnited KingdomsmallHIGH

Cottam & Preedy Ltd is a UK-based company specializing in the manufacture and supply of valves and plumbing brassware, including their flagship CP961 Wondervalve product. The website targets trade customers and industry professionals, providing product data, pricing, and technical support. The business operates primarily in the energy sector with a focus on flow control solutions. The website content is basic but functional, with limited mobile optimization and moderate navigation clarity. Technically, the website uses legacy JavaScript libraries such as jQuery 1.6.1 and plugins like Colorbox and Nivo Slider. While the site loads with moderate performance, it lacks modern security headers and uses outdated libraries that pose security risks. Google Analytics and Tag Manager are implemented for user tracking, but no cookie consent mechanism is present, indicating partial privacy compliance. From a security perspective, the site uses HTTPS as indicated by resource URLs, but no explicit security headers or policies are visible. The absence of contact emails, phone numbers, or incident response information reduces transparency. The WHOIS lookup failed due to querying the 'www' subdomain, but the domain appears legitimate and consistent with a small UK business. Overall, the security posture is moderate but could be improved by updating libraries, adding security headers, and enhancing privacy compliance. The overall risk is moderate with recommendations to modernize the technical stack, implement security best practices, and improve transparency and privacy mechanisms to enhance trust and compliance.

85
-
60
47
53
2
15
valvesplumbingbrasswarewondervalveenergy+2 more
jQuery 1.6.1jQuery ColorboxNivo Slider
2026-07-07T07:04:34.325Z
stoneguard.co.uk favicon

Stoneguard Projects Limited

stoneguard.co.uk

42
ManufacturingUnited KingdommediumHIGH

Stoneguard Projects Limited is a specialist building envelope contractor based in the United Kingdom, with a history dating back to 1963. The company focuses on façade restoration, maintenance, cladding, and structural framing services, targeting construction industry clients and property managers. The website presents a professional image with clear service offerings and contact information, supporting its market position as an established specialist contractor. Technically, the website employs modern front-end technologies including Bootstrap, jQuery, and Google Tag Manager for analytics. The site is mobile-optimized and features multimedia content, though some accessibility features could be improved. Security posture is moderate with HTTPS usage implied but lacking visible security headers and formal privacy or cookie policies, indicating room for compliance enhancements. The WHOIS data for the domain is unavailable due to an error indicating the domain name is invalid per Nominet UK rules, which raises concerns about domain legitimacy or possible misconfiguration. Despite this, the website content and contact details suggest a legitimate business presence. Overall, the site scores well on content quality and business credibility but needs improvements in privacy compliance and security best practices. Strategic recommendations include implementing comprehensive privacy and cookie policies, adding security headers, publishing vulnerability disclosure information, and resolving domain registration inconsistencies to enhance trust and compliance.

70
70
52
20
2
15
35
buildingenvelopefaaderestorationconstructioncladdingmaintenance+1 more
BootstrapjQuerySwiperGoogle Tag Manager+3
2026-07-07T07:03:01.808Z
L

Security Verification

lakes-lodge.co.uk

48
OtherN/asmallHIGH

The website www.lakes-lodge.co.uk is currently inaccessible beyond a security verification page implementing Google reCAPTCHA v3, indicating the presence of a Web Application Firewall or bot protection mechanism. Due to this, no actual business content, contact information, or company details are available for analysis. The domain WHOIS lookup failed with an error indicating the domain name contains too many parts, suggesting the domain queried may be invalid or misconfigured. This severely limits the ability to assess the legitimacy or business operations of the entity behind the website. From a technical perspective, the site uses Bootstrap 5.3.3 and Google reCAPTCHA v3 for security verification. However, no other technologies, CMS, or hosting details are discernible. The lack of visible security headers, privacy policies, or contact forms further reduces the site's transparency and trustworthiness. The security posture is minimal, relying solely on reCAPTCHA without evident HTTPS enforcement or additional security best practices. Overall, the website's risk profile is elevated due to the lack of accessible content, absence of business and privacy information, and invalid WHOIS data. This suggests either a misconfigured domain or a site under heavy protection that prevents normal user access. Strategic recommendations include correcting domain registration issues, implementing HTTPS and security headers, publishing privacy and cookie policies, and providing clear business contact information to improve trust and compliance.

57
100
65
70
15
50
2
securityverificationcaptchablockedwaf
Bootstrap 5.3.3Google reCAPTCHA v3
2026-07-07T07:02:29.273Z
S

403 Forbidden

spectacularopticians.co.uk

36
OtherN/asmallHIGH

The website www.spectacularopticians.co.uk is currently inaccessible, returning a 403 Forbidden error with no accessible content or metadata. The domain WHOIS lookup failed due to the domain name violating Nominet UK naming rules, indicating the domain is likely invalid or misconfigured. No business information, contact details, or policies are available on the site. Technically, the site lacks security headers, HTTPS enforcement, and any detectable technologies or frameworks. This results in a very low digital maturity and security posture. Overall, the site cannot be evaluated for business credibility or compliance due to lack of access and data. From a security perspective, the absence of HTTPS and security headers, combined with the domain registration issues, represent critical vulnerabilities and trust concerns. There is no evidence of privacy compliance or incident response readiness. The site is effectively non-functional and does not provide any user-facing content or services. Strategically, the business should urgently address domain registration issues, ensure proper DNS and hosting configuration, and implement HTTPS with security headers. Publishing clear privacy and cookie policies, contact information, and business details is essential to establish trust and compliance. Without these improvements, the website cannot serve its intended audience or meet basic security and regulatory standards.

60
70
20
57
17
40
15
2026-07-06T07:27:11.446Z
T

The Freelance FD Ltd

thefreelancefd.co.uk

41
FinanceUnited KingdomsmallHIGH

The Freelance FD Ltd operates as a freelance finance director consultancy specializing in providing part-time financial leadership and CFO services to small and medium-sized enterprises (SMEs) and startups, particularly in the UK market. The company targets fast-growing businesses needing flexible, high-level financial expertise without the commitment of full-time recruitment. Their service portfolio includes SME freelance finance, interim assignments, non-executive director roles, projects and investigations, education and training, and inward investment support. Technically, the website employs basic web technologies including jQuery 1.11.1, Spry MenuBar, and Google Fonts. The site is functional with good content quality and navigation but lacks modern security features such as HTTPS and security headers. Mobile optimization and accessibility are basic, and no advanced CMS or analytics tools are detected. From a security perspective, the absence of HTTPS and security headers, use of outdated JavaScript libraries, and lack of privacy or cookie policies indicate a low security posture. No forms or data collection mechanisms are present on the homepage, reducing immediate risk but also limiting user engagement. The WHOIS lookup failed due to domain naming rules violation, raising legitimacy concerns about the domain registration, though the website content appears professional and business-focused. Overall, the site presents a moderate risk profile with recommendations to implement HTTPS, update libraries, add privacy and cookie policies, and improve security headers to enhance trust and compliance.

57
60
20
85
35
15
2
financesmefreelancefinancedirectorconsulting
jQuery 1.11.1Spry MenuBarGoogle Fonts (Scada)HTML5+1
2026-07-06T07:21:20.622Z
ronset.co.uk favicon

Ronset Printers Ltd

ronset.co.uk

46
OtherUnited KingdomsmallHIGH

Ronset Printers Ltd is a well-established family-run digital printing company based in Blackburn, UK, with over 50 years of experience. They specialize in a wide range of printing services including business cards, leaflets, posters, brochures, banners, stickers, large format printing, and signage. The company targets local businesses and organizations, offering high-quality print solutions with fast turnaround and excellent customer service. Their market position is that of a trusted local printing specialist with a strong reputation supported by positive Google reviews. Technically, the website is built on WordPress CMS and employs a modern technology stack including jQuery, Google Tag Manager, Google Analytics, Hotjar, and Sendinblue for marketing and analytics. The site is mobile-optimized with good SEO practices and a moderate performance profile. Security posture is solid with HTTPS enforced and use of reCAPTCHA, though some security headers are missing and could be improved. From a security and compliance perspective, the site implements cookie consent mechanisms but lacks an explicit privacy policy and terms of service pages on the homepage. No incident response or security policy information is found. WHOIS data lookup failed due to querying the subdomain rather than the registered domain, but this is a technical issue rather than a trust concern. Overall, the site demonstrates a good security baseline with room for improvement in policy transparency and security headers. The overall risk assessment is low, with the site appearing legitimate and professionally maintained. Strategic recommendations include publishing comprehensive privacy and security policies, enhancing security headers, and maintaining up-to-date software to mitigate vulnerabilities.

47
65
70
20
65
2
15
printingdigitalprintingbusinesscardsleafletsbrochures+6 more
jQuery 2.2.4Google Tag ManagerGoogle Analytics (gtag.js)Sendinblue (sibautomation.com)+7
2026-07-06T07:18:00.987Z
bridges.insure favicon

Bridges Insurance Brokers Ltd

bridges.insure

47
OtherUnited KingdomsmallHIGH

Bridges Insurance Brokers Ltd is a well-established independent insurance brokerage firm based in the United Kingdom, with over 54 years of experience serving commercial, property, high-net-worth, charity, and community sectors. The company offers tailored insurance solutions and prides itself on personalized service and specialist knowledge, particularly in niche markets such as church and charity insurance. Their market position is supported by strong trust indicators including FCA registration, client testimonials, and partnerships with major insurers. Technically, the website employs modern web technologies including Google Analytics, Facebook SDK, and cookie consent mechanisms, ensuring a user-friendly and compliant digital presence. The site is mobile-optimized with good navigation and content relevance, although some security headers are missing which could be improved. The website is fully accessible without any WAF or blocking mechanisms, indicating stable hosting and infrastructure. From a security perspective, the site enforces HTTPS and implements cookie consent, but lacks explicit security policies or incident response contacts. No vulnerabilities or exposed sensitive data were detected in the HTML content. Privacy compliance is strong with clear policies and GDPR adherence. The WHOIS data is unavailable due to privacy protection, but the business legitimacy is supported by consistent contact information and FCA registration. Overall, Bridges Insurance demonstrates a solid business and digital presence with good security hygiene and privacy compliance. Strategic improvements in security headers and incident response transparency would further enhance their security posture and trustworthiness.

47
75
-
70
20
83
2
insurancecommercialinsurancepropertyinsurancehigh-net-worthcharityinsurance+3 more
Google AnalyticsGoogle Tag ManagerFacebook SDKCookieConsent.js+2

Partner Domains:

oneclickcover.com
partner
smartstep.it
partner
2026-07-06T07:17:29.583Z
R

Security Verification

rwjoinery.co.uk

49
OtherN/asmallHIGH

The website www.rwjoinery.co.uk currently serves a security verification page employing Google reCAPTCHA v3 to prevent automated access. This indicates the site is protected by a bot mitigation mechanism or WAF, limiting content accessibility. No substantive business information, contact details, or policies are present on the page, preventing a full assessment of the company's digital presence or operations. The WHOIS lookup failed due to domain naming rules violations, suggesting the domain may be misconfigured or invalid, which raises concerns about legitimacy. Technically, the site uses Bootstrap 5.3.3 and Google reCAPTCHA v3, but lacks visible HTTPS confirmation or security headers in the provided data. The minimal content and blocking mechanisms result in poor user experience, low trustworthiness, and limited SEO or accessibility features. Privacy and cookie policies are absent, indicating non-compliance with common data protection standards. From a security perspective, the use of reCAPTCHA is a positive control against bots, but the absence of other security headers and lack of visible HTTPS configuration are weaknesses. The domain registration issues further reduce trust in the website's legitimacy. Overall, the site’s security posture is weak, and the business credibility is low due to lack of accessible information. Strategically, the site requires urgent remediation to resolve domain registration issues, implement HTTPS, add security headers, and provide clear business and privacy information to improve trust and compliance. Until then, the site remains inaccessible to normal users and vulnerable to trust and security concerns.

62
65
70
100
15
2
50
securityverificationcaptchabotprotection
Bootstrap 5.3.3Google reCAPTCHA v3
2026-07-06T07:17:03.426Z
G

Geraint Davies Picture Framing

geraintdaviesframes.co.uk

40
RetailUnited KingdomsmallHIGH

Geraint Davies Picture Framing is a small bespoke picture framing business located in Frome, Somerset, UK. The company specializes in hand-finished bespoke frames, conservation housing for works on paper, and offers art consultancy services. The business targets local customers and art collectors, with additional delivery and collection services in London. The website content is basic but relevant, providing essential information about the business and contact details, primarily a phone number and physical address. Technically, the website is built using basic HTML, CSS, and JavaScript without modern frameworks or CMS. There is no evidence of HTTPS or advanced security measures, and no privacy or cookie policies are present. The site lacks forms, social media integration, and analytics tools, indicating a low level of digital maturity and minimal data collection. From a security perspective, the absence of HTTPS and security headers is a concern. The WHOIS lookup failed due to domain naming rules violations, which raises questions about domain legitimacy or configuration, although the website content appears legitimate. No vulnerabilities or tracking technologies were detected. Overall, the site has a low security posture and lacks compliance documentation. The overall risk is moderate due to the lack of HTTPS and privacy compliance, combined with WHOIS inconsistencies. Strategic recommendations include implementing HTTPS, adding privacy and cookie policies, improving mobile responsiveness, and clarifying domain registration details to enhance trust and security.

60
60
62
20
50
15
2
bespokepictureframingfromesomersetartconsultancy+1 more
HTMLCSSJavaScript
2026-07-06T07:14:25.809Z