Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157325
Websites
130
Industries
113
Countries
52
Avg Score
Page 405 of 408|Showing 20201-20250 of 20394
U

united-domains AG

noack-vision.com

35
TechnologyGermanymediumHIGH

The website noack-vision.com is currently a placeholder page hosted by united-domains AG, indicating that the domain has been newly registered but not yet configured with any business content or services. The page serves solely to confirm domain registration and availability, providing links to the registrar's main site for domain management and related services. There is no direct business presence or operational content on this domain at this time. From a technical perspective, the site is minimalistic, using basic HTML and CSS without any advanced frameworks or CMS. It is hosted on united-domains' webspace platform but lacks HTTPS support, security headers, and performance optimizations. No analytics, tracking, or advertising technologies are present, reflecting the placeholder nature of the site. Security posture is weak due to the absence of SSL/TLS encryption and security headers, exposing visitors to potential risks if sensitive data were to be transmitted. However, since the site contains no forms or user inputs, the immediate risk is low. Privacy compliance is minimal, with no cookie consent or privacy policy hosted on the domain itself, only links to the registrar's policies. Overall, the domain is legitimate and consistent with a newly registered domain awaiting configuration. The lack of content and security features results in a low AI score and indicates no active business operations or risk factors beyond the absence of HTTPS. Strategic recommendations include securing the domain with SSL, deploying actual business content, and implementing privacy and security best practices before going live.

15
18
-
50
-
85
100
domainregistrationplaceholderunited-domainsnewdomain
HTML5CSS3
2025-06-15T21:51:16.135Z
M

Microsoft Corporation

movere.io

40
TechnologyUnited StatesenterpriseHIGH

The website analyzed is a Microsoft Learn documentation page dedicated to Azure Migrate, a cloud migration service by Microsoft. It provides detailed, up-to-date information about new features, updates, and capabilities of Azure Migrate, targeting IT professionals and enterprises planning cloud migration. The site is part of the Microsoft Learn platform, reflecting a mature and well-established business with a strong market position in cloud services. Technically, the site leverages Microsoft Azure hosting and content delivery networks, uses modern JavaScript libraries, and integrates analytics and marketing tools such as Azure Monitor and Adobe Target. The content is well-structured, accessible, and optimized for SEO and mobile devices, providing an excellent user experience. However, a critical security issue is present: the SSL/TLS certificate is invalid or missing, and no TLS protocols are enabled, despite the presence of strict security headers like HSTS. This significantly undermines the security posture and trustworthiness of the site. Privacy policies and cookie consent mechanisms are comprehensive and GDPR compliant, consistent with Microsoft's standards. Overall, the site demonstrates high business credibility and technical maturity but requires urgent remediation of SSL/TLS configuration to ensure secure communications and maintain trust.

80
15
-
50
-
90
100
azurecloudmigrationmicrosoftlearnazuremigratedocumentation+1 more
HTML5CSS3JavaScriptAzure CDN+4
2025-06-15T21:50:51.831Z
moalach.at favicon

Moalach

moalach.at

25
HospitalityAustriasmallHIGH

Moalach is a small consultancy firm specializing in online marketing and data protection services tailored for the tourism sector in Austria, particularly the Tirol region. Founded in 2016 by Dominik Neuner, the company leverages deep industry experience and academic involvement to provide practical and strategic digital marketing solutions to small and medium-sized tourism businesses. The website presents a professional image with clear service offerings and client references, targeting tourism operators and destinations seeking digital transformation and compliance support. Technically, the website employs standard web technologies including Matomo analytics for user tracking, but lacks modern security implementations such as HTTPS and security headers. The site suffers from slow load times and does not implement cookie consent mechanisms, which may impact user trust and regulatory compliance. Hosting is provided by kasserver.com, and the domain registration aligns well with the business profile. From a security perspective, the absence of a valid SSL certificate and HTTPS support is a critical vulnerability, exposing users to potential data interception. The lack of security headers and session management features further weakens the site's security posture. Privacy compliance is partially addressed with a privacy policy present, but cookie consent and detailed data retention disclosures are missing. Overall, while the business model and content quality are solid and relevant to its niche, the technical and security shortcomings present risks that should be addressed promptly to enhance trust, compliance, and user experience.

80
-
5
50
-
85
-
onlinemarketingtourismdatenschutzconsultingdigitaltransformation
Matomo AnalyticsCustom JavaScriptCSS3HTML5
2025-06-15T21:49:49.306Z
gentics.com favicon

Gentics Software GmbH

gentics.com

37
TechnologyAustriamediumHIGH

Gentics Software GmbH is a medium-sized technology company based in Austria specializing in enterprise content management solutions, e-government digital services, and customized software applications. Their website presents a professional and consistent brand image targeting enterprises and government agencies seeking digital transformation and content management platforms. The company offers a range of products including the Gentics Content Management Platform and related extensions. Technically, the website uses modern frameworks such as Bootstrap 5 and implements a GDPR-compliant cookie consent mechanism with opt-in functionality. However, the site lacks a valid SSL certificate and does not serve content over HTTPS, which is a critical security shortfall. Performance is moderate with acceptable load times and resource counts, and the site is mobile optimized with basic accessibility features. From a security perspective, the absence of HTTPS and security headers significantly lowers the security posture. No incident response or security policy information is publicly available, and no contact information is provided on the site, which may impact user trust and compliance. DNS records show standard email protection via SPF but lack DNSSEC and CAA records. WHOIS data is consistent and supports the legitimacy of the domain and business. Overall, while the business and content quality are good, the lack of HTTPS and security best practices present a significant risk. Strategic improvements in SSL deployment, security headers, and contact transparency are recommended to enhance trust and compliance.

15
18
-
50
-
85
100
enterprisecontentmanagemente-governmentsoftwaredigitaltransformationcookieconsent+1 more
Bootstrap 5.3.2CookieConsent v3HTML5CSS3+2
2025-06-15T21:49:25.670Z
s-itsolutions.com favicon

Erste Digital GmbH

s-itsolutions.com

39
FinanceAustrialargeHIGH

Erste Digital GmbH is the digital and IT services arm of Erste Group, the largest banking group in Central and Eastern Europe. The company focuses on delivering best-in-class IT solutions and digital transformation services to banking entities across the region, supporting both operational and innovation activities. The website reflects a professional and modern digital presence with rich content describing the business and its mission to enhance financial health for millions of customers. Technically, the site uses modern web technologies including JavaScript modules, service workers, and ElasticSearch for search functionality, hosted behind Amazon CloudFront CDN for performance and reliability. However, a critical security gap exists as the site lacks a valid SSL/TLS certificate and does not serve content over HTTPS, which significantly impacts the security posture and trustworthiness. Privacy and cookie policies are present and appear comprehensive, indicating good compliance with GDPR requirements. Contact information such as emails and phone numbers are not explicitly provided on the homepage, which may affect user engagement. Overall, the site demonstrates strong business credibility and technical maturity but requires urgent security improvements to enable HTTPS and strengthen its security framework.

65
-
5
50
-
85
100
bankingtechnologydigitaltransformationitservicesfinance+2 more
ApacheElasticSearchJavaScriptCSS+3
2025-06-15T21:49:24.888Z
hyperwave.com favicon

Hyperwave GmbH

hyperwave.com

40
TechnologyAustriamediumHIGH

Hyperwave GmbH is an established Austrian technology company specializing in intranet and private cloud solutions designed to facilitate efficient and secure information management within enterprises. With over 20 years of market presence, the company offers a range of services including document management, knowledge management, collaboration tools, and consulting services. The website targets businesses seeking robust data and information processing solutions, emphasizing ease of use, security, and adaptability. Technically, the website is built on a modern stack including Apache, Bootstrap, and JavaScript with Lottie animations, hosted via World4You DNS services. While the site is mobile-optimized and well-structured with good SEO practices, it suffers from critical security shortcomings, notably the absence of a valid SSL certificate and proper HTTPS configuration, which undermines user trust and data security. Performance metrics are unavailable, suggesting potential monitoring gaps. From a security perspective, the site implements some security headers but lacks a valid SSL/TLS setup, OCSP stapling, and DNSSEC, exposing it to potential risks. No explicit security policies or incident response contacts are published, indicating gaps in security governance and transparency. Privacy compliance is partially addressed with cookie consent mechanisms and a privacy policy, but no data protection officer or vulnerability disclosure information is provided. Overall, the website presents a professional business front with solid content and branding but requires urgent improvements in security infrastructure and transparency to enhance trustworthiness and compliance. Strategic recommendations include immediate SSL certificate deployment, DNS record corrections, and publication of security and incident response policies to align with best practices and regulatory requirements.

45
18
5
50
-
90
100
intranetprivatecloudinformationmanagementdatasecurityenterprisesoftware
ApacheHTML5CSS3JavaScript+3
2025-06-15T21:49:13.355Z
U

UniCredit Bank Austria AG

bankaustria.at

38
FinanceAustriaenterpriseHIGH

UniCredit Bank Austria AG operates as a major financial institution in Austria, providing a wide range of banking services including retail, corporate, and private banking. The website targets private customers, corporate clients, and private banking customers with comprehensive offerings such as accounts, credit cards, loans, insurance, and investment products. The bank is part of the UniCredit Group, indicating a strong market position and enterprise scale. The website is professionally designed with consistent branding and rich content, supporting a high level of user engagement and trust. Technically, the website employs modern JavaScript libraries and third-party services such as Tag Commander for tag management and Genesys for customer service. Hosting is supported by Akamai CDN infrastructure, enhancing availability and performance. However, the site suffers from slow load times and lacks a valid SSL certificate, which is a critical security flaw for a banking website. Accessibility and SEO optimizations are well implemented, and mobile responsiveness is good. Security posture is weak due to the absence of HTTPS, missing security headers, and no HSTS policy. While no immediate vulnerabilities are detected, these gaps expose the site to risks and reduce user trust. Privacy compliance is strong with clear privacy and cookie policies, GDPR adherence, and consent mechanisms in place. Business credibility is high, supported by certifications and transparent legal information. Overall, the site is a professional and comprehensive banking portal but requires urgent security improvements, especially SSL/TLS implementation, to meet industry standards and protect user data effectively.

20
-
5
50
-
85
100
bankingfinanceonlinebankingmobilebankingloans+5 more
JavaScriptGenesys (customer service widget)Tag Commander (tag management)Owl Carousel (JS carousel)+2

Partner Domains:

wien-ticket.at
partnerpending
cashbackonline.at
partnerpending

+3 more partners

2025-06-15T21:48:49.087Z
becom.at favicon

BECOM Electronics GmbH

becom.at

40
ManufacturingAustriamediumHIGH

BECOM Electronics GmbH is a medium-sized Austrian company specializing in electronic manufacturing services (EMS) and embedded solutions, serving industries such as automotive, medical technology, and industrial electronics. The company operates internationally with subsidiaries in Germany, Hungary, China, and the USA, positioning itself as a reliable partner for end-to-end electronic product development and production. Their website reflects a professional and comprehensive digital presence with detailed service offerings and strong branding consistency. Technically, the website is built on TYPO3 CMS and hosted likely via Kabelplus infrastructure. It features modern web design, good mobile optimization, and accessibility. However, the absence of a valid SSL certificate and HTTPS support is a critical security gap, despite the presence of some security headers and HSTS configuration. The site uses Google Analytics for user tracking and implements a cookie consent mechanism aligned with GDPR requirements. From a security perspective, the lack of HTTPS and TLS support significantly lowers the security posture, exposing users to potential risks. The DNS configuration is mostly sound but lacks DMARC and DNSSEC, which are recommended for enhanced email and DNS security. No explicit security or incident response policies are published, which could be improved to enhance trust and compliance. Overall, while the business and website demonstrate professionalism and strong market positioning, addressing the critical security issues and enhancing compliance documentation would improve trustworthiness and reduce risk exposure.

55
-
5
50
-
75
100
emselektronikproduktiontime-of-flightembeddedlsungenautomotive+4 more
ApacheTYPO3 CMSJavaScriptCSS+1

Partner Domains:

becom-group.com
partnerpending
2025-06-15T21:48:48.760Z
brokenrul.es favicon

Broken Rules

brokenrul.es

35
TechnologyN/asmallHIGH

Broken Rules is an independent game development studio established in 2009, specializing in designing, developing, and publishing original digital games. The website showcases multiple award-winning titles, targeting gamers and digital entertainment audiences. The business model focuses on creative game production and distribution across multiple platforms including Apple Arcade, Nintendo Switch, Steam, and itch.io. The company maintains a consistent and professional brand presence with high-quality content and clear navigation. Technically, the website is hosted on an Apache server with basic HTML5 and CSS3 technologies. However, it lacks modern security implementations such as HTTPS, HSTS, and security headers, which significantly impacts its security posture. Performance data is unavailable, but the site appears to have basic mobile optimization and accessibility features. SEO is reasonably well implemented with proper meta tags and Open Graph data. From a security perspective, the absence of SSL/TLS encryption is a critical vulnerability, exposing users to potential data interception risks. No security policies, incident response contacts, or vulnerability disclosure mechanisms are publicly available, indicating a low maturity in security governance. The DNS configuration lacks DNSSEC and CAA records, further reducing domain security assurance. Overall, the website is functional and professional in content and design but requires urgent security improvements to protect users and enhance trust. Strategic recommendations include enabling HTTPS, implementing security headers, and establishing clear privacy and incident response policies.

15
-
5
50
-
85
100
gamedevelopmentdigitalgamesindiegamescreativestudioaward-winninggames
ApacheHTML5CSS3Web
2025-06-15T21:47:19.743Z
strabag.com favicon

STRABAG SE

strabag.com

40
TransportationAustriaenterpriseHIGH

STRABAG SE is a leading European construction and technology company specializing in infrastructure, building construction, and specialized construction sectors. The company emphasizes innovation, sustainability, and quality, positioning itself as a market leader with a comprehensive portfolio of services including road construction, civil engineering, and tunneling. The website content reflects a mature enterprise with a strong focus on ESG principles and investor relations, targeting investors, clients, and partners in the construction and infrastructure sectors. Technically, the website employs standard web technologies such as jQuery and custom JavaScript, hosted on Microsoft Azure with DNS managed via AWS. While the site is content-rich and well-structured with good SEO and mobile optimization, it suffers from critical security shortcomings, notably the absence of a valid SSL/TLS certificate and HTTPS support, which severely impacts its security posture. Security analysis reveals a lack of essential security headers, no DNSSEC or CAA records, and no advanced SSL features like OCSP stapling or session resumption. Privacy compliance is well addressed with a comprehensive privacy policy and cookie consent mechanism, but incident response and vulnerability disclosure policies are not evident. Overall, STRABAG SE's website demonstrates strong business credibility and content quality but requires urgent security improvements to protect user data and enhance trust. Strategic recommendations include implementing HTTPS, enabling security headers, and adopting DNS security measures to align with best practices.

60
18
-
50
-
70
100
constructionesgsustainabilityinvestorrelationscorporategovernance+2 more
jQuery 3.3.1JavaScriptCSSHTML5
2025-06-15T21:47:18.712Z
agi-world.com favicon

Spark

agi-world.com

37
MediaN/amediumHIGH

The website agi-world.com serves as a minimal landing page for the company now branded as Spark, which has a long history of over 50 years in marketing transformation and creative production services. The business is positioned as a trusted partner delivering localized marketing solutions. The site itself is minimalistic, with no forms, contact details, or privacy policies, and primarily directs visitors to the main corporate site sparkbrighterthinking.com. From a technical perspective, the site is hosted on Amazon S3 with CloudFront CDN, uses basic HTML5 and CSS3 technologies, and includes a video background and SVG logo for branding. Mobile optimization is basic but functional. However, the site lacks HTTPS support, security headers, and any analytics or tracking technologies, indicating a low level of digital maturity. Security posture is weak due to the absence of SSL/TLS encryption, no HSTS, and no security headers. There are no detected vulnerabilities such as subdomain takeover or SSL vulnerabilities, but the lack of HTTPS is a critical issue. Privacy compliance is poor, with no privacy or cookie policies present, and no GDPR compliance indicators. Business credibility is moderate based on the company's history and branding but is weakened by the lack of contact information and policies on this domain. Overall, the site presents a basic online presence with significant room for improvement in security, privacy compliance, and content richness. Strategic recommendations include implementing HTTPS, adding privacy and cookie policies, enhancing security headers, and providing clear contact information to improve trust and compliance.

15
15
5
50
-
85
100
marketingcreativeproductionbrandingmediabusinessservices
HTML5CSS3SVGVideo (HTML5 video tag)
2025-06-15T21:47:08.728Z
R

RA Manuel Metz

manuel-metz.de

22
OtherGermanysmallCRITICAL

RA Manuel Metz operates a small legal practice based in Germany, providing professional legal services with a focus on client engagement, reliability, and expertise. The website presents clear contact information and a straightforward description of services aimed at individuals seeking legal counsel. The business is positioned as a local/regional legal service provider with a simple, content-focused web presence. Technically, the website is built on a basic Apache server with static HTML and CSS, lacking modern CMS or frameworks. Performance data is minimal, indicating slow loading or unmeasured performance. The site is not optimized for mobile or accessibility beyond basic levels and lacks advanced SEO features. From a security perspective, the website does not implement HTTPS, exposing visitors to risks. There are no advanced security headers or mechanisms such as HSTS or CSP. Privacy compliance is minimal, with a basic privacy policy present but no cookie consent or GDPR compliance indicators. No incident response or security policy information is available, indicating a low security maturity level. Overall, the website is functional but has critical security shortcomings that reduce trustworthiness and user safety. Strategic improvements in SSL implementation, security headers, and privacy compliance are recommended to enhance the site's professionalism and protect users.

15
-
5
50
-
70
20
legallawyergermanyrechtsanwaltcontact+1 more
ApacheHTML5CSS
2025-06-15T21:47:06.638Z
boyden.com favicon

Boyden

boyden.com

36
OtherN/alargeHIGH

Boyden is a globally recognized leadership and talent advisory firm specializing in executive search, interim management, and leadership consulting services. The company operates through a broad international network with over 75 offices in more than 45 countries, serving a diverse range of industries and markets. Their website reflects a professional and comprehensive presentation of their services, targeting corporate clients seeking high-level talent solutions worldwide. Technically, the website employs standard web technologies including HTML5, CSS3, and jQuery. While the site is well-structured with good SEO and mobile optimization basics, performance data is unavailable. The absence of a valid SSL certificate and lack of modern TLS protocols represent significant technical and security shortcomings. Despite strong security headers and cookie consent mechanisms, the invalid SSL undermines overall security posture. From a security perspective, the site demonstrates awareness of best practices through implemented headers and cookie policies but critically fails in SSL deployment, exposing users to potential risks. No incident response or vulnerability disclosure information is provided, indicating gaps in security transparency and readiness. The WHOIS data supports the legitimacy of the domain and business identity, with no suspicious patterns detected. Overall, Boyden's website is professionally designed and content-rich, supporting its market position as a leading talent advisory firm. However, urgent remediation of SSL/TLS issues is necessary to ensure secure user interactions and maintain trust. Enhancements in security transparency and incident response communication would further strengthen their security posture and compliance.

85
18
5
50
-
90
40
executivesearchinterimmanagementleadershipconsultingprofessionalservicesglobal+1 more
jQuery 3.7.1HTML5CSS3
2025-06-15T21:47:05.975Z
porkbun.shop favicon

porkbun.shop

porkbun.shop

63
E-commerceUnited StatessmallMEDIUM

porkbun.shop is an e-commerce website currently in a 'Coming Soon' state, hosted on the Shopify platform. The site offers a newsletter signup form to notify visitors of upcoming promotions and product launches. The business model is typical of online retail stores leveraging Shopify's infrastructure. The website is password protected and lacks substantive content or business information at this time, indicating it is not yet operational. Technically, the site uses Shopify's Debut theme and standard JavaScript libraries, including CryptoJS and Shopify's own analytics and pixel tracking scripts. However, the site suffers from a critical security issue: the SSL certificate is invalid or missing, resulting in no HTTPS support. This severely impacts the security posture and trustworthiness of the site. Performance is slow with a large page size and many resource requests, and SEO and accessibility optimizations are basic. Security-wise, the site has minimal protections beyond HSTS being enabled. There is no valid SSL certificate, no modern TLS protocols enabled, and no OCSP stapling or session resumption. No privacy, cookie, or terms of service policies are present, and no incident response or vulnerability disclosure information is available. The site collects email addresses via a newsletter form but lacks GDPR compliance indicators. Overall, the website is in an early stage of development with significant security and compliance gaps. The lack of HTTPS is a critical issue that must be addressed before launch. Strategic recommendations include obtaining a valid SSL certificate, implementing privacy and cookie policies, improving performance, and enhancing security headers and compliance measures.

75
25
25
85
92
85
100
e-commerceshopifycomingsoonpasswordprotectednewsletter
ShopifyJavaScriptCSSHTML5+3
2025-06-15T15:51:29.500Z
stm.dk favicon

Statsministeriet

stm.dk

40
GovernmentDenmarklargeHIGH

Statsministeriet.dk is the official website of the Danish Prime Minister's Office, serving as a primary information portal for government activities, press releases, speeches, and legislative programs. The site targets Danish citizens, government officials, media, and international visitors interested in Denmark's executive branch. It operates as a government public service entity with a large organizational footprint and a mature digital presence dating back over 30 years. Technically, the website uses modern web technologies including React and the Umbraco CMS, hosted via Sitnet infrastructure. The site demonstrates good content quality, clear navigation, and accessibility features, with moderate performance metrics. However, the absence of a valid SSL certificate and HTTPS support is a critical security shortfall, exposing users to potential risks. From a security perspective, the site benefits from properly configured SPF and DMARC email policies, reducing spoofing risks. Yet, the lack of DNSSEC, security headers, HSTS, and TLS support significantly weakens its security posture. Privacy compliance is well addressed with accessible privacy and cookie policies, though no active cookie consent mechanism is present. Overall, the site is trustworthy and authoritative but requires urgent security improvements, especially regarding HTTPS implementation and enhanced transport security measures, to protect user data and maintain government digital trust.

15
-
17
50
50
70
100
governmentofficialprimeministerdenmarkpublicservice
JavaScriptCSSHTML5React (indicated by main-react-SDt6PkkM.js script)
2025-06-15T14:39:27.787Z
iqsoft.company favicon

ООО "Айкюсофт"

iqsoft.company

47
TechnologyRussiasmallHIGH

ООО "Айкюсофт" is a Russian technology company specializing in software development and integration, primarily serving financial institutions and businesses requiring advanced IT solutions. Their product portfolio includes modules for the National Payment Card System, Escrow services, and AML monitoring systems, positioning them as a niche player in fintech. The company maintains partnerships with notable payment processors and financial service providers, enhancing its market credibility. Technically, the website is built with standard web technologies including HTML5, CSS3, and JavaScript, with moderate performance and good mobile optimization. However, the absence of HTTPS and security headers significantly undermines the site's security posture. No advanced frameworks or CMS platforms are detected, indicating a relatively simple but functional technical infrastructure. Security evaluation reveals critical vulnerabilities due to lack of SSL/TLS encryption, missing security headers, and absence of domain-level protections such as DNSSEC and DMARC. While the company holds PCI DSS certifications, the website itself does not reflect strong security practices, posing risks to user data confidentiality and trust. Overall, the business appears legitimate and established with consistent WHOIS data and clear contact information. Strategic improvements in website security and privacy compliance are essential to enhance trust and protect business operations.

15
25
25
50
50
60
100
softwaredevelopmentfinancialtechnologypaymentsystemsconsultingtraining+1 more
HTML5CSS3JavaScriptGoogle Fonts (Roboto)

Partner Domains:

guarantee.money
partner65
webmoney.ru
partner55

+3 more partners

2025-06-15T10:28:22.739Z