Skip to main content

High-risk security reports

Browse 44,242 Guard analyses across this slice of the directory — NIS2 / GDPR readiness, SSL/TLS, DNS hygiene and email authentication.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

150709
Websites
130
Industries
113
Countries
52
Avg Score
Page 474 of 885|Showing 23651-23700 of 44242
C

Capsis B.V.

capsis.nl

42
TechnologyNetherlandssmallHIGH

Capsis B.V. is a specialized technology company based in the Netherlands, founded in 2004, offering professional web archiving solutions including software packages and online services. Their market position is niche-focused, targeting organizations that require reliable and user-friendly website archiving to preserve digital cultural heritage and ensure compliance with public records requirements. The company provides two main products: NetTrack, an online archiving service, and Presurf, a software package for large-scale archiving. Technically, the website employs standard web technologies such as HTML, CSS, JavaScript, and jQuery 1.7.1, along with the Nivo Slider plugin for image display. The site is moderately optimized for performance and basic mobile responsiveness but lacks modern frameworks or CMS platforms. DNSSEC is enabled on the domain, indicating some attention to domain security, but no security headers or HTTPS enforcement details were found in the provided data. From a security perspective, the site shows moderate maturity with no visible vulnerabilities or exposed sensitive data. However, the absence of privacy and cookie policies, outdated JavaScript libraries, and lack of security headers represent areas for improvement. No incident response or vulnerability disclosure information is provided, which could impact trust and compliance. The domain's WHOIS data is consistent and legitimate, supporting the company's credibility. Overall, Capsis B.V. presents a professional and trustworthy web presence with solid business credibility but would benefit from enhanced security practices and privacy compliance measures to strengthen its risk posture and regulatory alignment.

20
25
2
70
62
60
20
websitearchivingwebarchivingdigitalpreservationcapsisnettrack+1 more
HTMLCSSJavaScriptjQuery 1.7.1+1
2025-07-28T21:45:04.994Z
azarts.gov favicon

Arizona Commission on the Arts

azarts.gov

44
GovernmentUnited StatesmediumHIGH

The Arizona Commission on the Arts is a state government agency dedicated to supporting and promoting the arts across Arizona. It provides grants, programs, and services to artists, arts organizations, schools, and communities to foster cultural development and arts education. The agency holds a strong market position as the official state arts agency with a clear mission to enhance quality of life and economic growth through the arts. The website reflects this mission with comprehensive content, clear navigation, and active community engagement through events and social media. Technically, the website is built on WordPress with a modern tech stack including Bootstrap, jQuery, and SEO plugins like Yoast. It is hosted on Google Cloud infrastructure, uses HTTPS, and integrates analytics tools such as Google Analytics and Siteimprove. The site demonstrates good mobile optimization and accessibility features, though some improvements in cookie consent and DNS security could be made. From a security perspective, the site enforces HTTPS and has domain transfer protections but lacks DNSSEC and explicit public security policies or incident response contacts. No critical vulnerabilities or blocking mechanisms were detected. Privacy compliance is basic with a privacy policy present but no cookie consent mechanism. The WHOIS data shows a long-established domain with privacy protection justified for a government entity. Overall, the site is professional, trustworthy, and well-maintained with minor areas for improvement in privacy compliance and DNS security. Strategic recommendations include enabling DNSSEC, implementing cookie consent, publishing security policies, and adding vulnerability disclosure information to enhance trust and compliance.

15
53
2
60
62
75
-
artsgovernmenteducationgrantsarizona+2 more
jQueryBootstrapGoogle AnalyticsYoast SEO+5
2025-07-28T21:43:49.600Z
mijnfeelingz.nl favicon

Feelingz

mijnfeelingz.nl

47
E-commerceNetherlandssmallHIGH

MijnFeelingz.nl is an e-commerce platform based in the Netherlands specializing in personalized gift selection accessible via a personal order code. The website presents a clean, modern login interface with a focus on privacy and compliance with GDPR, as evidenced by the cookie consent banner and privacy policy. The business holds the Thuiswinkel Waarborg certification, a recognized trust mark in Dutch e-commerce, enhancing its credibility. The domain has been active since 2013, indicating a stable online presence. Technically, the site uses modern JavaScript modules and CSS with some React-like structure implied. Hosting appears to be managed by Novulo, a known hosting provider. The site is mobile-optimized with good design quality and basic accessibility features. However, no advanced SEO or structured data markup was detected, which could be improved for better search visibility. From a security perspective, HTTPS is used, and cookie policies are transparent with no third-party tracking cookies detected. However, the absence of explicit security headers such as CSP and HSTS is a gap. No incident response or vulnerability disclosure information is provided, which could be a concern for security maturity. The site does not expose sensitive data or show signs of vulnerabilities in the analyzed content. Overall, the website scores well in content quality, privacy compliance, and business credibility but has room for improvement in security posture and technical SEO. Strategic recommendations include implementing security headers, publishing incident response contacts, enhancing SEO with structured data, and maintaining transparency in data protection practices.

30
28
2
5
72
65
100
e-commerceloginprivacycookie-consentpersonalized-gifts+1 more
JavaScript ES ModulesCSSSweetAlert2 (swal2)React (implied by root div and JSX-like structure)
2025-07-28T21:40:38.230Z
webdizaini.lv favicon

Sabiedriba ar ierobezotu atbildibu "WEB DIZAINI"

webdizaini.lv

46
TechnologyLatviasmallHIGH

The website webdizaini.lv represents a small Latvian company specializing in WordPress web design and development services. The company offers customized and ready-made WordPress themes, plugin development, and ongoing maintenance and support. The business targets local Latvian clients seeking professional and functional websites built on the popular WordPress platform. The website content is well-structured, professionally presented, and clearly communicates the company's offerings and value proposition. Technically, the website uses a legacy JavaScript stack including jQuery 1.3.2 and several plugins such as Masonry and Fancybox. It integrates Google Analytics for visitor tracking and JivoSite for live chat support. While the site is accessible and functional, the use of outdated libraries and lack of visible security headers indicate moderate technical maturity. Mobile optimization and accessibility are basic but adequate for the target audience. From a security perspective, the site lacks explicit security headers and uses outdated JavaScript libraries, which could expose it to vulnerabilities. The presence of a cookie consent banner shows some privacy awareness, but no privacy policy or terms of service pages were found, indicating gaps in compliance. WHOIS data confirms the domain is actively maintained by a Latvian legal entity consistent with the website's business claims, supporting legitimacy. Overall, the website presents a credible small business with a solid service offering but would benefit from technical and security improvements to enhance trust and compliance. Strategic recommendations include updating libraries, implementing security headers, publishing privacy and security policies, and enforcing HTTPS to strengthen the security posture and regulatory compliance.

35
25
2
85
72
60
20
webdizainswordpressmjaslapuizstrdewebdesignlatvia
jQuery 1.3.2jQuery MasonryjQuery FancyboxGoogle Analytics (ga.js)+4
2025-07-28T20:35:08.897Z
N

National Newspaper Association

nnaweb.org

48
MediaUnited StatesmediumHIGH

The National Newspaper Association (NNA) is a well-established non-profit organization dedicated to supporting and advocating for community newspapers across the United States. Founded in 1885, it offers a broad range of services including government relations, education, industry news, postal consulting, and events such as conventions and webinars. The website reflects a mature digital presence with consistent branding and a clear focus on its target audience of community newspaper publishers, journalists, advertisers, and policy officials. Technically, the website employs a mix of legacy and modern technologies including jQuery, Bootstrap, and Google Analytics. It is hosted via GoDaddy with domain privacy protection enabled. The site is mobile optimized and provides a good user experience, though some technical improvements such as updating outdated libraries and enabling DNSSEC could enhance security and performance. From a security perspective, the site uses HTTPS and domain status protections but lacks DNSSEC and security headers, which are recommended best practices. Privacy compliance is weak due to the absence of explicit privacy and cookie policies, which poses a risk in jurisdictions with strict data protection laws. No incident response or vulnerability disclosure information is provided. Overall, the website is trustworthy and professional, serving a niche non-profit media sector effectively. Strategic improvements in privacy compliance and security hardening would strengthen its posture and user trust.

20
35
2
70
62
75
40
communitynewspapersjournalismnon-profitmediaassociationeducation+4 more
jQuery 1.11.1jQuery UI 1.11.2Google Analytics (gtag.js)Bootstrap 4.3.1+3

Partner Domains:

nnafoundation.org
partner
nnanewslink.creativecirclemedia.com
partner

+3 more partners

2025-07-28T20:34:38.244Z
gskinner.com favicon

gskinner

gskinner.com

46
TechnologyCanadamediumHIGH

gskinner is a well-established digital innovation company founded in 2002, specializing in creating world-class applications, digital experiences, virtual reality, and web-based solutions. The company targets smart, motivated clients primarily in technology, sports, and entertainment sectors. Their business model focuses on delivering innovative, customized digital products and tools, supported by a strong portfolio and industry recognition. The website reflects a mature digital presence with a professional design and clear communication of services and expertise. Technically, the website employs modern web technologies including HTML5, CSS3, JavaScript, jQuery, CreateJS libraries, and Bootstrap framework. Hosting is provided by DreamHost, and the site integrates Google Tag Manager for analytics. The site is mobile-optimized and demonstrates good SEO practices, though accessibility features are basic. Performance is moderate, with room for improvement in loading speed and accessibility. From a security perspective, the site uses HTTPS and has domain transfer protections in place. However, it lacks visible security headers and DNSSEC is not enabled. There is no published privacy policy or cookie consent mechanism, which poses compliance risks. No vulnerability disclosure or incident response information is provided. Overall, the security posture is adequate but could be enhanced with standard best practices. The overall risk assessment is low, with no signs of malicious activity or content safety concerns. Strategic recommendations include publishing privacy and cookie policies, enabling DNSSEC, implementing security headers, and establishing a vulnerability disclosure process to improve compliance and trust. Enhancing accessibility and performance would also benefit user experience and SEO.

20
35
17
40
62
70
40
digitalexperiencesnativeappsvirtualrealitywebsolutionstechnology+2 more
HTML5CSS3JavaScriptjQuery 2.0.3+3
2025-07-28T20:34:28.160Z
vanstijl.nl favicon

vanStijl

vanstijl.nl

43
MediaNetherlandssmallHIGH

vanStijl is a Netherlands-based full-service creative agency specializing in on- and offline design, branding, events, and communication services. The company positions itself as an external creative department for clients, offering tailored solutions such as website creation, newsletters, print media, and event communication. The website reflects a mature business with a portfolio showcasing diverse projects and clients, indicating a stable market presence since its founding in 2016. Technically, the website is built on WordPress 6.8 with modern libraries like jQuery 3.7.1 and integrates Google Analytics and Google Tag Manager for tracking. It uses HTTPS with good SSL configuration and employs anti-spam and CAPTCHA tools to protect forms. The site is mobile-optimized and SEO-friendly, though accessibility features are basic. Security posture is solid with HTTPS and spam protection, but lacks explicit security headers and public security policies. Privacy compliance is limited as no privacy or cookie policies are found, which could be improved to meet GDPR standards. Contact information is clearly presented, enhancing business credibility. Overall, vanStijl's website is professional, trustworthy, and well-structured, suitable for its target audience of businesses seeking creative services. Strategic improvements in privacy compliance and security policy transparency would further strengthen its risk profile and user trust.

15
25
2
70
65
65
20
creativeagencybrandingwebdesigneventsofflinemedia+1 more
WordPress 6.8jQuery 3.7.1Google AnalyticsGoogle Tag Manager+2
2025-07-28T20:30:54.537Z
ifsda.org favicon

IFSDA

ifsda.org

46
OtherSwitzerlandsmallHIGH

IFSDA (International Federation of Stamp Dealers Associations) is a non-profit organization established in 2000, headquartered in Switzerland, dedicated to promoting safe and honest trade of philatelic materials worldwide. The website serves as an informational platform for stamp dealers and collectors, providing event listings, membership information, and a contact portal. The organization positions itself as a reputable international federation with a focus on community and trust within the philatelic trade. Technically, the website is built on WordPress 5.7.12, utilizing common plugins such as ProfileGrid and The Events Calendar. It is hosted on Tophost.ch with HTTPS enabled, ensuring secure communications. The site demonstrates moderate performance and good mobile optimization, though accessibility and SEO optimizations are basic. The technical stack is modern but could benefit from enhanced security headers and DNSSEC implementation. From a security perspective, the site uses HTTPS and has domain transfer protections in place. However, it lacks DNSSEC and security headers that could mitigate common web vulnerabilities. There is no evidence of a formal security policy, incident response contacts, or vulnerability disclosure mechanisms. Privacy compliance is partial, with a privacy policy present but no cookie consent or terms of service pages, which are recommended for GDPR compliance. Overall, the website is trustworthy and professional, with a clear business purpose and consistent WHOIS data supporting legitimacy. The site is safe for general audiences, with no adult or questionable content. Strategic improvements in privacy compliance, security hardening, and user engagement features would enhance its digital maturity and trustworthiness.

15
53
17
70
62
75
-
philatelystampdealersnon-profitinternationalfederationstampcollecting+1 more
WordPress 5.7.12jQuery 3.5.1MediaElement.jsProfileGrid plugin+3
2025-07-28T20:29:23.883Z
northernforest.org favicon

The Northern Forest Center

northernforest.org

49
Non-profitUnited StatessmallHIGH

The Northern Forest Center is a well-established non-profit organization focused on investing in people and communities to foster regional prosperity and environmental resilience across the Northern Forest region of the northeastern United States. Their website clearly communicates their mission, impact, and ongoing projects, targeting residents, community leaders, and donors interested in sustainable forest stewardship and rural economic development. The organization maintains a strong regional presence with multiple staff locations and active social media engagement. Technically, the website is built on WordPress with a modern tech stack including SEO optimization via Yoast, caching, and analytics tools such as Google Analytics and Hotjar. The site is mobile-optimized and provides a good user experience with clear navigation and relevant content. However, there is room for improvement in security practices, such as enabling DNSSEC and implementing security headers. From a security perspective, the site uses HTTPS with a valid SSL certificate and has domain transfer protections in place. No critical vulnerabilities or exposed sensitive data were detected. Privacy compliance is basic, with a privacy policy and terms of service present but lacking a cookie consent mechanism. The WHOIS data aligns well with the organization's identity, supporting legitimacy and trust. Overall, the Northern Forest Center's website is professional, trustworthy, and serves its audience effectively. Strategic improvements in security headers, DNSSEC, and privacy compliance would enhance its security posture and user trust.

15
53
10
75
62
75
20
non-profitenvironmentcommunityforeststewardshipregionaldevelopment+1 more
WordPressjQueryGoogle Analytics (MonsterInsights plugin)Yoast SEO+3
2025-07-28T19:26:02.978Z
C

Capsis B.V.

presurf.nl

42
TechnologyNetherlandssmallHIGH

Capsis B.V. is a specialized technology company based in the Netherlands that provides website archiving solutions to organizations seeking to preserve their web communications and digital heritage. Their offerings include an online archiving service (NetTrack) and a software package (Presurf) designed for professional and large-scale website archiving. The company positions itself as a niche provider with a clear focus on digital preservation and compliance with public records requirements. The website infrastructure is built on standard web technologies including HTML, CSS, JavaScript, and jQuery, with a slider component for visual presentation. While functional and professionally designed, the technical stack shows signs of aging (e.g., use of jQuery 1.7.1) and lacks modern security headers and advanced SEO or accessibility features. The site is moderately optimized for performance and mobile use but could benefit from modernization. From a security perspective, the site is accessible without WAF or blocking mechanisms and does not expose sensitive data. However, it lacks visible security headers and privacy compliance documentation such as privacy and cookie policies, which are critical for GDPR compliance. No forms or user input fields are present on the analyzed page, reducing immediate data protection risks. WHOIS data confirms the legitimacy of the domain and company, with consistent registrant information matching the website's claims. Overall, Capsis B.V. presents a trustworthy and professional web presence with room for improvement in privacy compliance and security best practices. Strategic enhancements in these areas would strengthen their security posture and regulatory adherence, supporting their business credibility and customer trust.

20
25
2
70
62
60
20
websitearchivingdigitalpreservationwebarchivecapsisnettrack+1 more
HTMLCSSJavaScriptjQuery 1.7.1+1
2025-07-28T19:24:02.343Z
G

403 Forbidden

generalipartner.com

47
OtherN/asmallHIGH

The website generalipartner.com is currently inaccessible, returning a 403 Forbidden error page with no visible content or metadata. This prevents any meaningful analysis of the business, services, or security posture from the website itself. The domain is registered since June 2021 with Register.com and uses AWS DNS servers, indicating a legitimate registration and hosting infrastructure. However, the lack of accessible content and absence of security or privacy policies significantly limits the ability to assess the company's digital maturity or compliance status. No contact information, forms, or external links are available for further investigation. From a technical perspective, the site appears to be blocked or restricted, possibly by server configuration or access control rules, but no specific Web Application Firewall (WAF) vendor or challenge page is detected. The absence of DNSSEC and security headers suggests room for improvement in domain and site security hardening. Without HTTPS or SSL configuration details, the security posture cannot be fully evaluated. Overall, the risk assessment is elevated due to the lack of transparency and accessibility. Strategic recommendations include enabling proper website access, publishing privacy and cookie policies, implementing security headers, and providing clear contact and incident response information to improve trust and compliance. Until the site is accessible, further detailed analysis is not feasible.

15
40
17
40
77
70
100
2025-07-28T19:23:32.225Z
rkca.com favicon

RKCA

rkca.com

47
FinanceUnited StatessmallHIGH

RKCA is a specialized investment banking firm providing comprehensive advisory and financing services to companies at various stages, with a strong focus on the middle market. Established in 1986, the firm positions itself as a trusted advisor with proven strategies and diverse experience, supported by client testimonials and regulatory compliance as a registered broker-dealer and member of FINRA/SIPC. The website reflects a professional and consistent brand image targeting businesses seeking investment banking expertise. Technically, the website is built on WordPress using Elementor and Yoast SEO, incorporating modern web technologies and third-party analytics tools such as HubSpot. The site is mobile-optimized, accessible, and SEO-friendly, though performance is moderate. Security posture is good with HTTPS enabled and secure forms, but lacks some advanced security headers and explicit incident response information. Overall, the security posture is solid with no visible vulnerabilities or exposed sensitive data. Privacy compliance is basic with a privacy policy and cookie consent mechanism present, but GDPR compliance details could be enhanced. The absence of WHOIS registration data introduces some uncertainty regarding domain legitimacy, though the website content and trust signals mitigate this concern. Strategic recommendations include improving security headers, publishing vulnerability disclosure policies, and enhancing privacy transparency.

15
68
10
55
67
80
-
investmentbankingfinancebroker-dealermiddlemarketadvisory+3 more
WordPressElementorYoast SEOjQuery+6

Partner Domains:

rkca.smartvault.com
partner
2025-07-28T19:22:16.794Z
medivet.pl favicon

MEDiVET S.A.

medivet.pl

45
HealthcarePolandmediumHIGH

MEDiVET S.A. is a well-established Polish company specializing in veterinary healthcare products and services. The company operates a professional website providing information about its offerings, including veterinary products, equipment, and an online ordering platform. The site targets veterinary professionals and partners within Poland, reflecting a medium-sized business with a solid market presence since 1999. The website content is relevant and professionally presented, supporting the company's credibility in the veterinary sector. Technically, the website is built on Drupal CMS with standard modules and uses jQuery and Google Analytics for tracking. The site is moderately optimized for performance and mobile use, with basic accessibility and SEO features. Hosting and domain registration are consistent with the business claims, with the domain registered through home.pl S.A. since 1999. From a security perspective, the website uses HTTPS but lacks advanced security headers and DNSSEC, which are recommended to enhance protection. Cookie consent mechanisms are implemented in compliance with EU regulations, but no explicit privacy policy or security incident response information is prominently available. Suspicious hidden external links in the footer suggest possible injected spam content, which should be addressed to maintain trust. Overall, the website presents a moderate risk profile with good business credibility but room for improvement in security posture and privacy compliance. Strategic enhancements in security headers, DNS security, and removal of suspicious links would strengthen the site's trustworthiness and compliance.

40
25
2
65
67
90
-
veterinaryhealthcareecommercedrupalpoland+2 more
Drupal CMSjQueryGoogle Analytics
2025-07-28T17:41:29.310Z