Skip to main content

High-risk security reports

Browse 44,242 Guard analyses across this slice of the directory — NIS2 / GDPR readiness, SSL/TLS, DNS hygiene and email authentication.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

150709
Websites
130
Industries
113
Countries
52
Avg Score
Page 473 of 885|Showing 23601-23650 of 44242
E

ept GmbH

ept.de

46
ManufacturingGermanymediumHIGH

ept GmbH is a German-based manufacturer specializing in electronic connectors and related solutions, serving primarily industrial and automotive sectors. The company offers a broad product portfolio including highspeed, miniaturized, robust, power, and automotive connectors, alongside customized solutions and competencies in injection molding, galvanizing, and SMT technologies. Their market position is that of an established medium-sized manufacturer with international subsidiaries and multilingual web presence. Technically, the website is built on the bee.tools® CMS platform, with modern HTML5 and JavaScript usage, and hosted likely by Deutsche Telekom. The site is mobile optimized with good navigation and professional design, though SEO and accessibility features are basic. No advanced analytics or tracking scripts were detected, indicating a privacy-conscious approach. From a security perspective, the site uses HTTPS with good SSL configuration but lacks visible security headers and formal security policies such as privacy, cookie, or vulnerability disclosure pages. No incident response contacts or security.txt files are present, which limits transparency and readiness indicators. No vulnerabilities or exposed sensitive data were found in the content. Overall, the website is professional and trustworthy with strong business credibility but could improve privacy compliance and security posture by adding formal policies and security headers. The risk level is moderate with no critical issues detected.

40
33
2
75
72
65
-
connectorsmanufacturingelectronicsautomotiveindustrial+1 more
JavaScriptIntersectionObserver APICSS3HTML5

Partner Domains:

www.eptusa.com
subsidiary
www.ept-connectors.com
subsidiary

+2 more partners

2025-07-29T05:46:13.204Z
S

Služby pro rodinu, z.ú.

sluzby-pro-rodinu.cz

40
Non-profitCzech RepublicsmallHIGH

Služby pro rodinu, z.ú. is a Czech non-profit organization dedicated to supporting families with children, particularly foster families, through a range of social and educational services. The organization operates regionally within the Karlovarský, Plzeňský, and Ústecký regions, offering services such as foster care agreements, self-help group meetings, weekend educational retreats, seminars on child development, assisted contacts, professional counseling, and family conferences. The website reflects a well-structured and content-rich platform aimed at its target audience of families and social workers. Technically, the website is built on an older version of WordPress (4.7.29) with common plugins like Revolution Slider and Bootstrap for responsive design. While the site is accessible and functional, it uses outdated libraries which may pose security risks. The site lacks modern security headers and does not display privacy or cookie policies, indicating gaps in compliance and security best practices. Performance is moderate with basic mobile optimization and SEO. From a security perspective, HTTPS is enabled, but the absence of security headers and outdated software versions reduce the overall security posture. No incident response or vulnerability disclosure information is provided. The WHOIS data is unavailable, which limits transparency but the website content and official documents support the legitimacy of the organization. Overall, the site is a credible and professional resource for its community, but improvements in security, privacy compliance, and technical modernization are recommended to enhance trust and protect user data.

15
10
2
60
85
75
-
non-profitfamilysupportsocialserviceseducationczechrepublic
WordPress 4.7.29jQuery 1.12.4Revolution Slider pluginBootstrap 3.1.1+4
2025-07-29T05:45:52.314Z
campusvsfs.cz favicon

Vysoká škola finanční a správní, a.s.

campusvsfs.cz

40
EducationCzech RepublicmediumHIGH

The website campusvsfs.cz represents Vysoká škola finanční a správní, a.s., offering student accommodation services primarily for its own students and others in Prague. The site provides detailed information about multiple housing locations, pricing, and amenities, targeting students seeking affordable and comfortable housing options. The business model revolves around long-term and short-term student housing rentals, with a clear focus on the education sector. The website is professionally designed with consistent branding and clear navigation, supporting a positive user experience. Technically, the site employs modern web technologies including Bootstrap 5, jQuery, Google Analytics, Google Tag Manager, and Google reCAPTCHA for form security. The site is mobile-optimized and uses HTTPS, ensuring secure data transmission. However, some security best practices such as security headers are missing, and no explicit privacy or cookie policies are present, which could impact compliance and user trust. From a security perspective, the site demonstrates good posture with HTTPS and CAPTCHA protection on forms, but lacks published security policies or incident response contacts. The absence of WHOIS data reduces domain trustworthiness, though the website content and contact details align with a legitimate educational institution. No vulnerabilities or malicious content were detected. Overall, the website is a credible and professional platform for student housing services affiliated with VŠFS. Strategic improvements in privacy compliance, security headers, and transparency around data protection would enhance trust and compliance. The domain WHOIS data gap should be investigated to ensure full legitimacy and reduce risk.

15
10
2
30
82
85
20
studentaccommodationeducationpraguevfshousing+1 more
Bootstrap 5jQueryGoogle AnalyticsGoogle Tag Manager+2
2025-07-29T05:45:01.546Z
chotes.cz favicon

Chodovské technicko-ekologické služby s.r.o.

chotes.cz

36
GovernmentCzech RepublicmediumHIGH

Chodovské technicko-ekologické služby s.r.o. is a municipal service company founded in 2000 by the city of Chodov, Czech Republic. It specializes in communal services including waste collection, public lighting operation, road maintenance, and environmental management. The company holds a strong regional position as a trusted partner for local government and residents, offering a broad range of public utility services. The website reflects a professional municipal service provider with clear service offerings and local community focus. Technically, the website employs modern JavaScript libraries and frameworks such as jQuery, Leaflet, and the Nette framework, providing a responsive and user-friendly experience. The site includes GDPR-compliant cookie consent mechanisms and links to a comprehensive privacy policy document. Security posture is adequate with HTTPS enforced and email obfuscation implemented, though the absence of visible HTTP security headers and incident response contacts suggests room for improvement. The lack of WHOIS data reduces domain trustworthiness, but the overall business credibility remains high due to consistent branding, certifications, and official partner links. Strategic recommendations include enhancing security headers, publishing incident response contacts, and improving WHOIS transparency to strengthen trust and compliance.

30
40
2
40
-
75
20
municipalserviceswastemanagementpubliclightingroadmaintenanceenvironment+2 more
jQuery 3.7.1LeafletNette Framework (ajax, forms)BaguetteBox+2

Partner Domains:

www.mestochodov.cz
partner
www.ekokom.cz
partner

+2 more partners

2025-07-29T05:42:39.180Z
theblissfulmind.com favicon

The Blissful Mind

theblissfulmind.com

47
OtherN/asmallHIGH

The Blissful Mind is a well-established personal lifestyle and mindfulness blog founded in 2013. It focuses on providing readers with thoughtful content about navigating life's challenges, self-care routines, and meaningful living. The website operates on a WordPress platform using Elementor and Yoast SEO, supported by SiteGround hosting. It integrates advertising through Mediavine and tracking via Google Analytics and Tag Manager, balanced with privacy compliance including cookie consent and a comprehensive privacy policy. The site maintains a consistent brand presence with active social media channels on Instagram, Pinterest, and X (Twitter). Technically, the website demonstrates a modern and functional infrastructure with good mobile optimization and SEO practices. Security posture is solid with HTTPS enforced and domain transfer protection, though it lacks DNSSEC and explicit security policies or incident response contacts. No critical vulnerabilities or exposed sensitive data were detected. Privacy compliance is well addressed, though some enhancements in security headers and incident response transparency could improve the overall security maturity. Overall, The Blissful Mind presents a trustworthy and professional online presence with a clear business model centered on content publishing and community engagement. Strategic improvements in security configurations and explicit policy disclosures would further strengthen its risk profile and user trust.

30
58
2
70
62
75
-
mindfulnessself-carelifestyleblogwell-being
WordPressElementorYoast SEOGoogle Tag Manager+3
2025-07-29T04:34:28.835Z
ministerievanvisuelezaken.nl favicon

Ministerie van Visuele Zaken

ministerievanvisuelezaken.nl

42
MediaNetherlandssmallHIGH

Ministerie van Visuele Zaken is a creative marketing and communication agency based in the Netherlands, founded in 2005. The company specializes in graphic design, interactive presentations, audiovisual production, and creative artworks, targeting businesses and organizations seeking visual marketing solutions. The website reflects a professional and consistent brand image with a focus on showcasing their portfolio and services. Technically, the website is built on WordPress using the Yootheme theme and UIkit framework, indicating a modern and flexible infrastructure. The site is mobile-optimized with moderate performance and basic accessibility features. Hosting is provided by Hosting Secure, and HTTPS is properly enabled, ensuring secure communications. From a security perspective, the site lacks several best practices such as DNSSEC, security headers, and privacy or cookie policies, which are critical for GDPR compliance and overall security posture. No incident response or vulnerability disclosure information is provided, which limits transparency. However, no obvious vulnerabilities or malicious content were detected, and the domain registration is consistent and longstanding, supporting legitimacy. Overall, the website presents a trustworthy and professional business presence but requires improvements in privacy compliance and security hardening to enhance trust and regulatory adherence.

15
25
17
70
72
65
-
creativemarketingdesigncommunicationmedia+2 more
WordPressYootheme themeUIkitHTML5+2
2025-07-29T03:29:00.936Z
iavceivolcano.org favicon

International Association of Volcanology and Chemistry of the Earth's Interior

iavceivolcano.org

47
OtherN/asmallHIGH

The International Association of Volcanology and Chemistry of the Earth's Interior (IAVCEI) is a specialized scientific association dedicated to advancing research and knowledge in volcanology and the chemistry of the Earth's interior. The organization provides a platform for scientists and professionals through membership services, scientific meetings, newsletters, awards, and educational resources. The website reflects a well-established entity with a clear focus on community engagement and scientific dissemination. Technically, the website is built on WordPress and leverages modern JavaScript libraries such as jQuery, Barba.js, and others to enhance user experience. It employs HTTPS for secure communication and integrates Google Analytics with a compliant cookie consent mechanism. The site is mobile-optimized, accessible, and SEO-friendly, indicating a mature digital presence. From a security perspective, the site demonstrates good practices including secure login forms and privacy policies. However, the absence of explicit security headers and vulnerability disclosure information suggests areas for improvement. The WHOIS data is privacy protected, which is common for non-profit organizations, and does not raise immediate concerns given the website's professional presentation and active content updates. Overall, the website presents a low-risk profile with strong trust indicators and a professional online presence. Strategic enhancements in security headers and incident response transparency would further strengthen its security posture.

-
-
-
55
85
50
100
volcanologyscienceresearchearthsciencesmembership+4 more
jQueryBarba.jsPristine.jsMicroModal+3

Partner Domains:

iavcei.gmem.eu
partner
sa2025.iavceivolcano.org
related

+1 more partners

2025-07-29T03:27:50.613Z
eu4dual.education favicon

EU4Dual

eu4dual.education

44
EducationUnited KingdommediumHIGH

EU4Dual is a European alliance of universities and partners focused on delivering high-quality dual education programs that combine academic theory with practical experience. The alliance offers joint master's degrees, mobility programs, research initiatives, and partnership opportunities aimed at students, researchers, partners, and university staff. The organization positions itself as a leading educational alliance shaping Europe's future workforce and societal challenges. Technically, the website is built on WordPress with Elementor and uses modern web technologies and SEO best practices. It is hosted with Amazon Registrar and uses AWS DNS servers, with HTTPS properly configured. Security posture is solid but could be improved by adding security headers and enabling DNSSEC. Privacy compliance is weak due to the absence of privacy and cookie policies and consent mechanisms. No contact emails or phone numbers are visible, which may impact user trust. The domain is privacy protected but registered with a reputable registrar, consistent with the organization's profile. Overall, the website is professional, content-rich, and trustworthy but should enhance privacy and security disclosures to improve compliance and user confidence.

15
35
2
60
42
80
40
educationdualstudiesuniversityallianceresearcheuropeaneducation+3 more
WordPress 6.8.2Elementor 3.29.2Elementor ProPremium Addons for Elementor+4

Partner Domains:

dhbw.de
partner
estia.fr
partner

+3 more partners

2025-07-29T03:27:45.564Z
johnsoncreativetn.com favicon

Johnson Creative Tennessee

johnsoncreativetn.com

46
Real EstateUnited StatessmallHIGH

Johnson Creative Tennessee is a specialized real estate media provider offering a comprehensive suite of services including photography, video production, drone imagery, floor plans, 3D tours, and property websites. The company targets real estate professionals and agencies, positioning itself as a trusted partner with next-day delivery of media content. The website reflects a professional and consistent brand image, supported by client logos from reputable real estate firms, indicating a solid market presence in the United States. Technically, the site is built on WordPress and hosted by SiteGround, utilizing modern web technologies such as Google Tag Manager, Google Analytics, and Slider Revolution. The site is mobile-optimized and performs moderately well, though there is room for improvement in accessibility and SEO. Security posture is adequate with HTTPS enforced and no visible sensitive data exposure; however, the absence of security headers and vulnerability disclosure policies suggests areas for enhancement. Privacy compliance is lacking due to missing privacy and cookie policies, which could pose regulatory risks. Overall, the site is trustworthy and professional but would benefit from improved privacy and security practices.

15
53
2
70
72
80
-
realestatemediaphotographyvideodrone+3 more
WordPressSiteGround OptimizerGoogle Tag ManagerGoogle Analytics (MonsterInsights plugin)+3

Partner Domains:

portal.johnsoncreativeteam.com
partner
book.johnsoncreativeteam.com
partner
2025-07-29T03:22:17.022Z
R

raleighrealtorstore.com | 521: Web server is down

raleighrealtorstore.com

44
OtherN/asmallHIGH

The website raleighrealtorstore.com is currently inaccessible due to a Cloudflare error 521 indicating the web server is down. As a result, no business content, contact information, or policies are available for analysis. The site appears to be protected by Cloudflare, but the origin server is not responding, preventing content delivery. This severely limits the ability to assess the company's market position, services, or technical infrastructure. The lack of accessible content also means no privacy, cookie, or security policies can be evaluated, and no contact or trust indicators are present. From a technical perspective, the site relies on Cloudflare as a CDN and security layer, but the origin server failure is a critical issue impacting availability and user experience. No CMS, analytics, or marketing technologies are detectable due to the blocked content. Security posture is weak given the server downtime and absence of security headers or SSL configuration details. Overall, the website's risk profile is high due to unavailability and lack of transparency. Immediate remediation to restore server availability and implement robust monitoring is essential. Without access to actual content or policies, compliance and business credibility cannot be verified, representing a significant operational and reputational risk.

-
35
2
60
75
70
100
errorcloudflareserverdownblocked
Cloudflare
2025-07-29T03:21:06.706Z
N

National Newspaper Association

nnafoundation.org

48
MediaUnited StatesmediumHIGH

The National Newspaper Association (NNA) is a well-established non-profit organization dedicated to protecting, promoting, and enhancing community newspapers since 1885. The website serves as a comprehensive resource hub offering government relations advocacy, educational programs, publications such as Publishers' Auxiliary, events, and membership benefits targeted at community newspaper publishers, journalists, advertisers, and policy officials. The organization holds a strong market position as a leader in community newspaper advocacy with a medium-sized operational scale based in the United States. Technically, the website employs a legacy/custom CMS with a technology stack including jQuery, Bootstrap, FontAwesome, and Google Analytics. While the site is functional and moderately optimized for mobile, it uses outdated JavaScript libraries and lacks advanced security headers, indicating room for modernization and security enhancements. Hosting is provided by GoDaddy, and the domain uses privacy protection services. From a security perspective, the site uses HTTPS (assumed), but lacks DNSSEC and security headers, and employs outdated libraries that may introduce vulnerabilities. No privacy or cookie policies were detected, which is a compliance gap. The WHOIS data shows privacy protection but aligns with the organization's US-based identity and long history, supporting legitimacy. Overall, the site is safe, professional, and trustworthy but would benefit from improved security and privacy compliance. Strategically, the NNA should prioritize updating its technical stack, implementing comprehensive privacy and cookie policies, enabling DNSSEC, and adding security headers to strengthen its security posture and compliance. Enhancing mobile optimization and accessibility would further improve user experience and engagement.

20
35
2
70
62
80
40
communitynewspapersjournalismnon-profitnewsmembership+3 more
jQuery 1.11.1jQuery UI 1.11.2Google Analytics (gtag.js)Bootstrap 4.3.1+3
2025-07-29T02:19:34.859Z
M

Merck & Co., Inc.

meinediagnosekrebs.at

42
HealthcareAustriaenterpriseHIGH

The website MeineDiagnoseKrebs.at is currently in maintenance mode and serves as a placeholder page branded by Merck & Co., Inc., a major global healthcare company. The site appears intended to provide cancer diagnosis-related information or services, targeting patients and healthcare professionals in Austria or German-speaking regions. However, the current content is minimal, offering no direct services or detailed information. From a technical perspective, the website uses basic HTML5 and CSS3 with no detected CMS or advanced frameworks. The hosting and DNS are managed through reputable providers, including MarkMonitor Inc. as registrar and NS1 DNS services. The site is mobile-optimized to a basic degree but lacks SEO optimization and accessibility features. No analytics or tracking technologies are present, indicating minimal digital maturity at this time. Security posture is limited due to the absence of visible security headers and lack of published privacy or cookie policies. HTTPS status is unknown from the provided data but is recommended. No forms or data collection mechanisms are present, reducing immediate risk but also limiting user engagement. The WHOIS data aligns well with the business entity, showing consistent registration through a trusted registrar. Overall, the website is low risk but also low functionality in its current maintenance state. Strategic recommendations include implementing comprehensive privacy and cookie policies, enhancing security headers, improving SEO and accessibility, and providing clear contact and incident response information to build trust and compliance.

15
25
2
70
72
85
20
maintenancehealthcarecancerdiagnosismerckaustria
HTML5CSS3
2025-07-29T02:15:40.161Z
veiovis.com favicon

TakeCare Insurance Company, Inc.

veiovis.com

48
HealthcareUnited StatesmediumHIGH

Veiovis.com represents the digital presence of TakeCare Insurance Company, Inc., a healthcare insurance provider selected by the U.S. Federal Employee Health Benefit Program as the sole Guam-based provider. The company offers a range of healthcare services including medical management, wellness programs, and global access healthcare options. The website reflects a medium-sized healthcare business with a focus on patient-centered care and sustainable healthcare business practices. The market position is strong within Guam and extends globally through its Veiovis brand. Technically, the website is built on Drupal CMS with modern front-end libraries such as jQuery, Bootstrap, and Slick Slider. It uses Google Analytics and Google Tag Manager for analytics with IP anonymization enabled, indicating some privacy consideration. The site is mobile optimized and includes accessibility features via the UserWay widget. Hosting appears to be through GoDaddy, consistent with the domain registrar. From a security perspective, the site uses HTTPS with a good SSL configuration but lacks advanced security headers and explicit security policies. No vulnerability disclosure or incident response information is published. The domain registration is consistent and long-standing, supporting legitimacy. However, cookie consent mechanisms and GDPR compliance indicators are minimal, suggesting room for improvement in privacy compliance. Overall, the website is professional and trustworthy with moderate security posture and privacy compliance. Strategic improvements in security headers, privacy policies, and contact transparency would enhance trust and compliance.

40
35
17
55
62
75
20
healthcareinsuranceguamwellnessmedicalmanagement
jQueryDrupalGoogle AnalyticsFont Awesome+3
2025-07-29T01:05:46.882Z
guam.gov favicon

Government of Guam

guam.gov

38
GovernmentGuammediumHIGH

The website www.guam.gov serves as the official government portal for the Island of Guam, providing comprehensive information and services to residents, visitors, businesses, and government employees. It offers access to government news, directories, transparency reports, emergency guides, and various resident and visitor services. The site positions itself as the authoritative source for all official Guam government information. Technically, the site is built on WordPress 6.0.9 using the Divi child theme and employs caching and performance optimization plugins. It uses modern web technologies including jQuery and Bootstrap for responsive design. The site is mobile optimized and accessibility tested, ensuring a good user experience across devices and for users with disabilities. From a security perspective, the site enforces HTTPS and does not expose sensitive data or vulnerable libraries. However, it lacks important security headers and a cookie consent mechanism, which are recommended for enhanced security and privacy compliance. The WHOIS data is incomplete, which is unusual for a government .gov domain, but the website content and domain usage strongly indicate legitimacy. Overall, the site is a well-maintained government portal with good content quality and user experience. Strategic improvements in security headers, privacy compliance, and transparency around incident response would further strengthen its security posture and trustworthiness.

-
-
-
75
72
75
-
governmentofficialguampublicservicesresidentservices+2 more
WordPress 6.0.9Divi Child Theme v2.7.8jQueryBootstrap 3.3.0+2

Partner Domains:

governor.guam.gov
partner
ghs.guam.gov
partner

+3 more partners

2025-07-28T23:59:37.423Z
web.money favicon

WebMoney Transfer

web.money

48
FinanceRussialargeHIGH

WebMoney Transfer is a well-established international online payment system and business platform primarily targeting Russian-speaking individuals and businesses. The company offers a broad range of financial services including cryptocurrency wallets, P2P exchanges, payment acceptance, mass payouts, loans, crowdfunding, and secure transaction mechanisms such as escrow and arbitration. The website demonstrates a high level of professionalism with consistent branding, comprehensive service descriptions, and integration with multiple partner and subsidiary domains. Technically, the site employs modern web technologies including JavaScript frameworks, Google Analytics, and Microsoft SignalR for real-time features. It supports multiple platforms including iOS, Android, Windows, and MacOS, with excellent mobile optimization and accessibility. Security posture is strong with HTTPS enforced, secure authentication via E-NUM, and transaction protection services, though some security headers could be more explicitly declared. Privacy compliance is partially addressed with a comprehensive privacy policy but lacks visible cookie consent mechanisms. WHOIS data is privacy protected, which is typical for financial services, and does not raise immediate concerns. Overall, WebMoney Transfer presents a trustworthy and mature digital financial ecosystem.

-
-
-
70
62
70
100
onlinepaymentscryptocurrencyfinancialservicesbusinesstoolscrowdfunding+3 more
HTML5CSS3JavaScriptGoogle Analytics+2

Partner Domains:

digiseller.ru
partner
cashbox.ru
partner

+3 more partners

2025-07-28T23:58:20.920Z
filmvysocina.cz favicon

Vysočina Tourism, p. o.

filmvysocina.cz

47
MediaCzech RepublicsmallHIGH

Vysočina Film Office operates as a regional film office under Vysočina Tourism, providing support and facilitation services to filmmakers interested in shooting in the Vysočina region of the Czech Republic. The website presents a professional and well-structured digital presence with clear navigation, multilingual support, and relevant content focused on film locations, services, and regional promotion. The business targets filmmakers and production companies, positioning itself as a key regional facilitator for film projects. Technically, the website is built on the xartCMS platform, utilizing modern JavaScript libraries such as MooTools, Leaflet.js for mapping, and integrates third-party analytics tools including Microsoft Clarity and Google Tag Manager. The site demonstrates good mobile optimization, accessibility features, and SEO practices, although performance is moderate and could benefit from further optimization. From a security perspective, the site uses HTTPS and implements a cookie consent mechanism aligned with GDPR requirements. However, no explicit security headers or published security policies were detected, and WHOIS data for the domain is unavailable, which reduces trust in domain registration transparency. No vulnerabilities or exposed sensitive data were found in the content, but improvements in security posture and transparency are recommended. Overall, the website is a credible and professional resource for its intended audience, but the lack of WHOIS data and security policy disclosures present moderate risks. Strategic recommendations include enhancing security headers, publishing incident response contacts, and verifying domain registration details to improve trust and compliance.

15
25
17
60
85
75
20
filmregionalofficevysoinatourismfilmmaking+2 more
xartCMSMooToolsjQuery (implied by magnific-popup)Leaflet.js+3
2025-07-28T22:50:42.942Z