Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157327
Websites
130
Industries
113
Countries
52
Avg Score
Page 36 of 37|Showing 1751-1800 of 1844
vwr.com favicon

Avantor, Inc.

vwr.com

40
HealthcareUnited StatesenterpriseHIGH

VWR.com is the online presence of Avantor, Inc., a large enterprise specializing in providing life science products and service solutions. The website targets life science professionals and organizations globally, offering a broad range of scientific supplies and services. The business model is primarily B2B, with a strong market position as an established global supplier in the healthcare sector. The site uses localized subdomains to serve different countries, indicating a mature international presence. Technically, the website employs a variety of modern JavaScript libraries and tracking tools, including Google Analytics, Hotjar, and Cloudflare for CDN and security. However, the site lacks a valid SSL certificate and does not enable modern TLS protocols, which is a significant security concern. The content is professionally presented with good navigation and branding consistency, but mobile optimization and accessibility are basic. From a security perspective, while the site implements a comprehensive Content Security Policy and some security headers, the absence of HTTPS and modern TLS support severely impacts the security posture. No incident response or vulnerability disclosure information is provided, and no explicit contact details are available on the landing page, limiting transparency. Overall, the website is functional and professional but requires urgent improvements in SSL/TLS implementation and privacy compliance mechanisms to enhance trust and security. Strategic recommendations include installing a valid SSL certificate, enabling modern TLS protocols, implementing cookie consent mechanisms, and providing clear contact and security policy information.

55
18
5
85
-
85
100
lifesciencehealthcareb2benterprisescientificsupplies
JavaScriptGoogle AnalyticsCloudflareModernizr+2

Partner Domains:

avantorsciences.com
parentpending
2025-06-15T21:57:22.997Z
M

MS Design GmbH

ms-design.com

26
ManufacturingAustriamediumHIGH

MS Design GmbH is a medium-sized manufacturing company based in Tirol, Austria, specializing as a system supplier to the automotive industry. Founded in 1983, the company offers comprehensive services from design and prototyping to production start, emphasizing quality, innovation, and customer satisfaction. Their market position is supported by multiple certifications including IATF 16949 and ISO standards, reflecting a strong commitment to quality and environmental management. Technically, the website is built on TYPO3 CMS with a modern but basic technology stack including jQuery and various UI libraries. While the site is well-structured, mobile-optimized, and SEO-friendly, it lacks HTTPS support and a valid SSL certificate, which is a critical security gap. The hosting environment appears to be a Plesk-managed Apache server without advanced security configurations such as HSTS or DNSSEC. From a security perspective, the absence of HTTPS and modern TLS protocols severely impacts the site's security posture. Although some security headers are present and email obfuscation is implemented, the lack of encryption exposes users to risks. Privacy compliance is addressed with visible privacy and cookie policies and consent mechanisms, but incident response and vulnerability disclosure information are missing. Overall, the website demonstrates good business credibility and content quality but suffers from critical security shortcomings. Strategic improvements in SSL implementation and enhanced security headers are recommended to elevate trust and compliance.

-
-
-
50
-
85
-
automotivemanufacturingdesignsystemsupplieraustria+4 more
TYPO3 CMSjQueryModernizrFont Awesome+6

Partner Domains:

ms-automobile.at
partnerpending
amfeuerstein.at
partnerpending

+1 more partners

2025-06-15T21:56:58.127Z
glacier.co.za favicon

Glacier Financial Solutions (PTY) LTD

glacier.co.za

40
FinanceSouth AfricalargeHIGH

Glacier by Sanlam is a South African licensed financial services provider specializing in wealth management and investment solutions, including unit trusts, retirement products, and financial planning. The website serves as a comprehensive portal for personal and business clients, offering detailed product information and access to intermediary and client login portals. The business is positioned as a significant player within the Sanlam group, leveraging its brand and resources to serve a broad market segment. Technically, the website is built on Microsoft SharePoint with integration of common web technologies such as jQuery and Google Tag Manager, indicating a mature but somewhat traditional digital infrastructure. However, the absence of a valid SSL certificate and HTTPS severely undermines the site's security posture, exposing users to risks and impacting trust. Security headers are partially implemented, but critical modern security practices like HSTS and TLS are missing. Privacy and terms of service policies are linked to the parent Sanlam domain, suggesting centralized compliance management, though explicit cookie consent mechanisms are lacking. Overall, the site is professionally designed with good content quality and navigation but requires urgent security improvements to protect user data and maintain regulatory compliance.

65
18
-
50
-
85
100
financeinvestmentretirementfinancialplanningsanlam+1 more
Microsoft SharePointjQueryModernizrGoogle Tag Manager+2
2025-06-15T21:56:46.671Z
S

Summit Printing LLC

summitprintingpro.com

29
OtherUnited StatesmediumHIGH

Summit Printing LLC operates as an established online commercial printing company founded in 2010, offering a wide range of printing services including banners, brochures, business cards, mailing services, and graphic design. The company targets businesses and graphic designers across the United States and Canada, leveraging multiple plant locations to provide fast production and free shipping. The website presents a professional and consistent brand image with clear navigation and relevant content tailored to its audience. Technically, the site uses PHP 7.0.33, jQuery, Modernizr, and is hosted behind Cloudflare with LiteSpeed server technology. However, the absence of a valid SSL certificate and HTTPS implementation is a significant security shortfall. Security headers such as HSTS, X-Frame-Options, and X-Content-Type-Options are present, but the lack of TLS protocols and certificate transparency compliance reduces the overall security posture. Privacy compliance is basic, with a privacy policy and terms of service present but no cookie consent mechanism. Contact information is clearly provided, enhancing business credibility. Overall, the site scores moderately on content quality and business credibility but is penalized heavily for security deficiencies.

55
18
-
50
-
75
20
commercialprintingcolorprintingonlineprintingprintingservicesgraphicdesign+1 more
PHP 7.0.33jQueryModernizrLiteSpeed+1
2025-06-15T21:56:06.532Z
rohde-schwarz.com favicon

Rohde & Schwarz GmbH & Co. KG

rohde-schwarz.com

40
TechnologyFinlandenterpriseHIGH

Rohde & Schwarz GmbH & Co. KG is a well-established global technology company specializing in test and measurement, technology systems, networks, and cybersecurity solutions. With a history spanning over 90 years and a strong family ownership model, the company serves industries, governments, and public authorities worldwide. Their product and service portfolio includes advanced measurement equipment, cybersecurity services, and technology systems designed to ensure security and connectivity. The website reflects a mature, professional enterprise with consistent branding and comprehensive content targeting technology professionals and institutional clients. Technically, the website employs modern JavaScript libraries such as RequireJS, Adobe Launch for tag management, and accessibility tools like UserWay. The site is well-structured with good SEO and accessibility practices, and it is mobile-optimized. However, a critical security gap is the absence of a valid SSL/TLS certificate and HTTPS support, which severely impacts the security posture and user trust. Security-wise, while the site implements several security headers and cookie protections, the lack of HTTPS and TLS protocols is a major vulnerability. No incident response or vulnerability disclosure information is publicly available, which could be improved. Privacy and cookie policies are comprehensive and GDPR compliant, reflecting good privacy practices. Overall, the website is professional and trustworthy from a business perspective but requires urgent security improvements to enable HTTPS and strengthen its security posture. Strategic recommendations include immediate SSL certificate deployment, enabling modern TLS protocols, and enhancing security header configurations to protect users and data integrity.

85
-
5
50
-
85
100
technologycybersecuritytestandmeasurementbroadcastnetworks+2 more
RequireJSAdobe Launch (Adobe DTM)UserWay accessibility widgetLazySizes (lazy loading images)+1
2025-06-15T21:55:30.911Z
psolutions.at favicon

101domain GRS Limited

psolutions.at

37
TechnologyN/asmallHIGH

The website psolutions.at is currently a parked domain page managed by 101domain GRS Limited, a domain registration and related services provider. The site offers no original business content but promotes domain registration, Google Workspace, web hosting, and corporate brand services through 101domain. The target audience is individuals or businesses interested in acquiring this domain or other domains. The site is minimalistic with basic design and navigation, primarily serving as a placeholder and sales funnel for domain services. Technically, the site is hosted on an AWS IP with nginx server and uses modern frontend technologies such as jQuery and Modernizr. However, it lacks SSL/TLS encryption, serving content over HTTP only, which is a significant security shortfall. Performance metrics are not available, but the site appears lightweight. Mobile optimization is good due to responsive CSS, but accessibility and SEO are basic. Security posture is weak due to the absence of HTTPS, no HSTS, no DMARC, no DNSSEC, and no valid SSL certificate. Some security headers like Content-Security-Policy and X-Frame-Options are present, but overall security best practices are not fully implemented. There are no signs of vulnerabilities like Heartbleed or POODLE, but the lack of encryption is critical. Overall, the site poses low risk as it is a parked domain with no user data collection or business operations. However, the lack of HTTPS and privacy policies reduces trustworthiness and compliance. Strategic recommendations include implementing SSL/TLS, adding privacy and cookie policies, and improving security headers to enhance trust and security posture.

45
-
5
50
-
75
100
domainparkingdomainregistration101domainparkedpage
nginxjQuery 3.6.0Modernizrwoff2 fonts+1
2025-06-15T21:54:26.570Z
heinzelpaper.com favicon

Laakirchen Papier AG

heinzelpaper.com

26
ManufacturingAustrialargeHIGH

Heinzelpaper, operated by Laakirchen Papier AG, is a well-established paper manufacturing company with a history dating back to the late 19th century. As a subsidiary of the Heinzel Group, it focuses on sustainable paper production, renewable energy integration, and wood processing. The company targets business customers in the packaging and paper sectors, emphasizing sustainability and circular economy principles. The website reflects a professional business presence with clear navigation and relevant content, though it lacks advanced SEO and accessibility features. Technically, the website uses common web technologies such as nginx, jQuery, Bootstrap, and FontAwesome. However, it suffers from critical security shortcomings, notably the absence of a valid SSL certificate and HTTPS support, which significantly impacts its security posture. The site lacks modern TLS protocols, HSTS, and other security headers, exposing it to potential risks. Performance is rated slow, and while mobile optimization is good, accessibility and SEO are basic. From a security perspective, the lack of HTTPS is a critical vulnerability that undermines user trust and data protection. No incident response or security policy information is provided, and no vulnerability disclosure or security.txt files are found. Cookie consent and privacy policies are implemented, indicating some compliance with GDPR requirements. Overall, the website presents a moderate risk profile due to its security deficiencies, despite good business credibility and content quality. Strategic improvements in SSL deployment, security headers, and incident response transparency are recommended to enhance trust and compliance.

20
18
5
50
-
90
20
sustainabilitypaperproductionmanufacturingrenewableenergyheinzelgroup+1 more
nginxjQueryBootstrapFontAwesome+3

Partner Domains:

heinzel.com
parentpending
heinzelpoels.com
subsidiarypending

+3 more partners

2025-06-15T21:50:28.354Z
sensorbis.com favicon

Sensorbis GmbH

sensorbis.com

18
TechnologyGermanysmallCRITICAL

Sensorbis GmbH operates a cloud-based telemetry data management platform focused on Internet of Things (IoT) devices and sensors. The company provides subscription services enabling users to acquire, store, visualize, and export telemetry data with real-time charts, maps, and alert notifications. Their target audience includes IoT device operators, industrial machinery managers, and fleet tracking services. The business model centers on SaaS subscriptions with API and web interface management capabilities. The website content is professionally presented with consistent branding and relevant business descriptions, positioning Sensorbis as a niche player in the IoT telemetry cloud market. Technically, the website is built on ASP.NET WebForms with jQuery and Bootstrap, indicating a mature but somewhat dated technology stack. Performance is moderate to slow with a page load time exceeding 5 seconds and a large page size. Mobile optimization and accessibility are basic but functional. The site includes cookie consent mechanisms and privacy policy documentation, though GDPR compliance is not explicitly confirmed. Analytics tracking is present but disabled. From a security perspective, the site suffers from critical issues including the absence of a valid SSL certificate, missing DNS records, and lack of security headers. HTTPS is enforced in the application logic but without a valid certificate, exposing users to risks. No advanced security policies or incident response contacts are published. These vulnerabilities significantly reduce the security posture and trustworthiness of the site. Overall, Sensorbis GmbH presents a credible small technology company with a focused IoT telemetry service offering. However, critical security improvements are necessary to protect user data and enhance trust. Addressing SSL and DNS issues should be prioritized to improve the security score and user confidence.

15
-
-
50
-
50
-
iottelemetryclouddatavisualizationsensors+2 more
ASP.NET WebFormsjQuery 2.2.4BootstrapGoogle Fonts (Lato)+1

Partner Domains:

sensorbis.cloud
partnerpending
2025-06-15T21:49:26.025Z
leeds.ac.uk favicon

University of Leeds

leeds.ac.uk

40
EducationUnited KingdomlargeHIGH

The University of Leeds is a large, well-established higher education institution in the United Kingdom, recognized as part of the prestigious Russell Group and ranked among the world's top 100 universities. The website serves a broad audience including prospective and current students, staff, researchers, and alumni, offering comprehensive information on undergraduate, masters, and research degree programs, as well as scholarships and events. The content is professionally presented with consistent branding and clear navigation, reflecting a high level of digital maturity. Technically, the website is built on the Jadu CMS platform, utilizing modern web technologies such as Typekit fonts and Modernizr for enhanced user experience and accessibility. Hosting appears to be on cloud infrastructure, likely AWS, with content delivered via a dedicated CDN. The site demonstrates good mobile optimization and accessibility features, alongside solid SEO practices. From a security perspective, the site implements several important HTTP security headers and uses secure cookie flags. However, a critical vulnerability is the absence of a valid SSL/TLS certificate and the lack of HTTPS protocol support, which severely impacts the security posture. No explicit security or incident response policies are publicly available, and advanced TLS features like OCSP stapling and session resumption are not implemented. Privacy compliance is strong, with clear privacy and cookie policies and consent mechanisms in place. Overall, while the University of Leeds website excels in content quality, user experience, and privacy compliance, it faces significant security risks due to missing SSL/TLS configuration. Addressing these security gaps is essential to protect user data and maintain trust. Strategic improvements in security infrastructure and transparency around incident response would enhance the site's resilience and credibility.

65
-
5
50
-
70
100
educationuniversityhighereducationresearchuk+1 more
Jadu CMSTypekit fontsModernizrJavaScript bundle from Jadu CDN
2025-06-15T21:49:18.625Z
V

Vorarlberger Krankenhaus-Betriebsgesellschaft.m.b.H.

lkhf.at

36
HealthcareAustrialargeHIGH

The website represents the Landeskrankenhaus Feldkirch, a leading healthcare institution in Vorarlberg, Austria, serving as a regional specialty hospital and academic teaching hospital. It provides comprehensive medical services, education, research, and social care, targeting patients, visitors, and healthcare professionals. The organization is well-established with a history dating back to 1972 and operates under the Vorarlberger Krankenhaus-Betriebsgesellschaft.m.b.H. umbrella. Technically, the website uses a modern stack including nginx, Google Analytics, Matomo, and CookieHub for privacy compliance. The site is well-structured, mobile-optimized, and accessible, with good SEO practices. However, performance is slow, and no CMS or advanced frameworks were detected. Security posture is weak due to the absence of a valid SSL certificate and lack of HTTPS support, exposing users to risks. While some security headers like HSTS are present, critical improvements are needed to secure communications and protect user data. Privacy compliance is strong with clear policies and consent mechanisms. Overall, the site is professional and trustworthy but requires urgent security enhancements to protect visitors and maintain compliance. Strategic recommendations include implementing HTTPS, enhancing security headers, and continuous security audits.

30
-
5
50
-
85
100
healthcarehospitalmedicalaustriavorarlberg+3 more
nginxGoogle AnalyticsMatomo AnalyticsCookieHub+1
2025-06-15T21:48:58.303Z
borealisgroup.com favicon

Borealis GmbH

borealisgroup.com

34
EnergyAustriaenterpriseHIGH

Borealis GmbH is a leading global provider of advanced and sustainable polyolefin and base chemical solutions, with a strong focus on innovation and circular economy principles. Operating in over 120 countries and headquartered in Vienna, Austria, the company employs approximately 6,000 people and reported a net profit of EUR 2.1 billion in 2022. Their business model centers on manufacturing and supplying high-quality polymer products and base chemicals to diverse industries including energy, consumer products, mobility, healthcare, and infrastructure. Technically, the website employs modern JavaScript libraries such as jQuery, Algolia Search, and Visual Website Optimizer, and is hosted on Amazon CloudFront CDN, indicating a mature digital infrastructure. The site is well-structured with comprehensive metadata and SEO optimizations, providing a good user experience and mobile responsiveness. However, performance metrics are not available. From a security perspective, the site has several security headers implemented, but critically lacks a valid SSL certificate and proper HTTPS configuration, exposing it to significant risks. TLS protocols are disabled, and advanced security features like OCSP stapling and session resumption are missing. Privacy and compliance policies are well documented, including GDPR-compliant privacy and cookie policies, terms of service, and a responsible disclosure policy. Overall, while the business credibility and content quality are high, the lack of HTTPS and SSL is a critical vulnerability that severely impacts the security posture and overall risk profile. Strategic remediation of SSL/TLS issues is urgently recommended to protect user data and maintain trust.

85
15
15
50
-
85
40
polyolefinsbasechemicalssustainabilityinnovationcirculareconomy+2 more
jQuery 3.7.0Vimeo Player APIAlgolia SearchVisual Website Optimizer (VWO)+3

Partner Domains:

borouge.com
partner40
mtm-plastics.eu
partnerpending

+1 more partners

2025-06-15T21:48:11.040Z
dst.dk favicon

Danmarks Statistik

dst.dk

40
GovernmentDenmarklargeHIGH

Danmarks Statistik is the central authority responsible for collecting, processing, and publishing official statistics about Danish society. As a government entity, it holds a strong market position as the authoritative source of statistical data in Denmark, serving researchers, government agencies, businesses, and the general public. The website provides comprehensive statistical data, thematic articles, and support services for data reporters and customers. Technically, the site employs modern JavaScript libraries such as jQuery and uses Monsido for accessibility and analytics. However, the website suffers from a critical security weakness due to the absence of a valid SSL certificate and lack of HTTPS, which significantly impacts its security posture. Other security features like HSTS, DNSSEC, and security headers are also missing, indicating room for improvement in securing the digital infrastructure. Privacy compliance is well addressed with comprehensive privacy and cookie policies, and the site demonstrates good mobile optimization and accessibility. Overall, while the business credibility and content quality are high, the technical and security shortcomings reduce the overall risk profile and user trust. Strategic improvements in SSL/TLS implementation and security best practices are recommended to enhance the site's security and user confidence.

75
-
17
70
100
70
100
statisticsgovernmentdenmarkdataanalytics+2 more
jQuery 3.7.0Monsido heatmapsGlobalsign domain verificationDigiCert SSL certificates+1
2025-06-15T13:42:05.429Z
cbi-prv.org favicon

Confederazione Boccistica Internazionale

cbi-prv.org

40
OtherSwitzerlandsmallHIGH

The Confederazione Boccistica Internazionale (CBI) is an international sports federation dedicated to the bocce sport. The organization provides comprehensive information about bocce events, news, rules, and membership. The website serves as a hub for bocce enthusiasts, players, and affiliated organizations worldwide, positioning itself as a key international governing body in this niche sport. The business model is non-profit, focusing on sport promotion and community engagement. Technically, the website is built on the 3WTURK CMS platform and uses legacy technologies such as jQuery and FlexSlider. While the site offers rich content and a consistent brand experience, it suffers from slow load times and basic mobile optimization. The absence of modern frameworks and performance optimizations indicates room for technical modernization. From a security perspective, the site lacks a valid SSL certificate and does not support HTTPS, which is a critical vulnerability. Although SPF and DMARC records are configured for email security, the lack of HTTPS and security headers exposes users to risks. No privacy or cookie policies are present, indicating compliance gaps with GDPR and other privacy regulations. Overall, the site is functional and content-rich but requires urgent improvements in security and privacy compliance to protect users and enhance trust. Performance optimizations and modernization of the technology stack would further improve user experience and operational resilience.

20
25
25
50
90
80
20
sportsbocceinternationalfederationeventsnews+1 more
jQuerySmartMenus jQuery pluginGoogle Translate widgetFlexSlider+1
2025-06-15T09:14:05.372Z
B

BHW Bausparkasse AG

bhw.it

39
FinanceItalymediumHIGH

BHW Bausparkasse AG is a well-established financial institution specializing in mortgage and loan services primarily for the Italian market. The company operates with a mature domain registered since 1999 and offers a range of services including credit management and administrative support, some of which are outsourced to reputable partners like Cerved Credit Management Group. The website provides clear contact information and legal references, supporting its credibility in the finance sector. Technically, the website employs legacy technologies such as jQuery and Modernizr and demonstrates moderate performance with good mobile optimization. However, the absence of a valid SSL certificate and HTTPS support significantly undermines the site's security posture. The lack of security headers and cookie consent mechanisms further highlights compliance and security gaps. From a security perspective, while SPF and DMARC records are properly configured, the missing HTTPS and security headers expose users to potential risks. The domain's WHOIS data is consistent with the business claims, showing a low expiry risk and no privacy protection, which supports legitimacy. Overall, the site requires urgent security improvements to protect user data and comply with privacy regulations. Strategic recommendations include implementing HTTPS with a valid SSL certificate, enabling security headers and HSTS, introducing cookie consent mechanisms to comply with GDPR, and enhancing domain protection. These measures will improve trust, security, and compliance, aligning the website with industry best practices.

30
-
5
75
-
65
100
financemortgageloanitalycustomerservice
jQueryModernizr
2025-06-15T08:35:25.194Z
nostresscommerce.cz favicon

NoStress Commerce s.r.o.

nostresscommerce.cz

40
E-commerceCzech RepublicmediumHIGH

Koongo, operated by NoStress Commerce s.r.o., is a mature SaaS platform specializing in product feed management and marketplace integrations for e-commerce sellers. The company offers extensive integrations with over 500 sales channels and supports numerous e-commerce platforms, positioning itself as a comprehensive solution for online sellers seeking to expand their marketplace presence. The website content is professionally designed, rich in detail, and targets online sellers and businesses requiring automated order and inventory synchronization. Technically, the site is built on WordPress with a modern tech stack including jQuery, Google Analytics, and Intercom, hosted on Forpsi infrastructure. However, the absence of a valid SSL certificate and lack of TLS protocol support represent critical security weaknesses. While security headers and content security policies are partially implemented, the site’s security posture is significantly impacted by the missing HTTPS, which is a fundamental requirement for secure web operations. Privacy compliance is well addressed with clear privacy and cookie policies, consent mechanisms, and GDPR alignment. Overall, the site demonstrates strong business credibility and user experience but requires urgent security improvements to protect user data and maintain trust.

60
18
25
70
90
85
100
e-commercemarketplaceintegrationproductfeedmanagementsaaswordpress+4 more
WordPress 6.8.1jQueryModernizrGoogle Analytics+17

Partner Domains:

getreditus.com
partner54
koongo.com
service68
2025-06-14T19:59:03.255Z