Skip to main content

High-risk security reports

Browse 44,242 Guard analyses across this slice of the directory — NIS2 / GDPR readiness, SSL/TLS, DNS hygiene and email authentication.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

150709
Websites
130
Industries
113
Countries
52
Avg Score
Page 494 of 885|Showing 24651-24700 of 44242
O

OYA media GmbH

eberl-online.cloud

37
OtherGermanysmallHIGH

The website eberl-online.cloud is currently a parked domain page reserved for a customer of Eberl Online, operated under the registrant OYA media GmbH, a German company. The site content is minimal, serving only as a placeholder with no active business services or user interaction features. The domain is relatively new, created in 2021, and is set to expire in 2026, indicating a legitimate reservation rather than an abandoned or suspicious domain. From a technical perspective, the website lacks modern infrastructure elements such as HTTPS, security headers, and any form of content management system or analytics. The hosting and domain name servers are linked to SpeedKom, a known service provider, but the site itself shows no advanced technology or optimization. The absence of privacy, cookie, or terms of service policies highlights a lack of compliance readiness. Security posture is weak due to missing HTTPS and security headers, and no incident response or vulnerability disclosure information is present. No tracking or analytics scripts were detected, indicating minimal data collection. The WHOIS data is transparent and consistent with the business context, with no privacy protection or suspicious patterns. Overall, the site is low risk but also low value in its current state. It is recommended to enable HTTPS, add compliance policies, and develop actual business content to improve trust and security posture.

15
50
2
55
62
65
20
domainparkingplaceholderreserveddomainspeedkomeberlonline
2025-07-25T03:46:15.991Z
nerdy-apps.com favicon

Nerdy Apps

nerdy-apps.com

44
TechnologyN/asmallHIGH

Nerdy Apps is a small technology company specializing in developing public Shopify applications aimed at enhancing e-commerce businesses. Their website presents a professional image focused on delivering high-quality e-commerce solutions, customer support, and mobile-friendly applications tailored for Shopify store owners. The company was founded in 2020, aligning with the domain registration date, and positions itself as a niche developer within the Shopify ecosystem. Technically, the website uses a standard modern tech stack including Bootstrap, Font Awesome, and jQuery, hosted on DigitalOcean with DNS managed by DigitalOcean's name servers. The site is moderately optimized for performance and mobile responsiveness, though accessibility and SEO optimizations are basic. No CMS or advanced analytics/tracking tools are detected, indicating a lean infrastructure. From a security perspective, the website lacks several best practices such as DNSSEC, security headers, and published privacy or cookie policies. The domain is registered with clientTransferProhibited status, which is a positive trust indicator. However, absence of direct contact emails, phone numbers, and incident response information limits transparency. No WAF or blocking mechanisms are detected, and no vulnerabilities or exposed sensitive data were found during analysis. Overall, the website is functional and professional but would benefit from enhanced privacy compliance, security hardening, and improved contact transparency to increase trustworthiness and compliance with regulations such as GDPR.

15
50
2
85
62
70
-
shopifye-commercewebapplicationssoftwaredevelopment
Bootstrap CSSFont AwesomejQueryDigitalOcean DNS
2025-07-25T03:43:10.512Z
cleo.com favicon

Cleo

cleo.com

45
TechnologyUnited StatesenterpriseHIGH

Cleo is a leading enterprise technology company specializing in EDI and API integration solutions that enable organizations to automate and orchestrate their supply chains efficiently. Their platform supports any-to-any integrations directly into ERP, TMS, and WMS systems, targeting large enterprises in logistics, manufacturing, and wholesale sectors. The website demonstrates a mature digital presence with comprehensive resources, professional design, and a strong focus on customer engagement through demos, webinars, and managed services. Technically, the site is built on Drupal 11, leveraging modern web technologies and integrations such as Google Tag Manager, reCAPTCHA, and Intellimize for optimization and security. The platform is mobile-optimized, accessible, and SEO-friendly, reflecting a high level of digital maturity. Security practices include HTTPS enforcement, security headers, and managed transactional monitoring services, although explicit incident response and vulnerability disclosure policies are not prominently published. Overall, the security posture is strong with no evident vulnerabilities or exposed sensitive data. Privacy compliance is well addressed with clear privacy and cookie policies, including GDPR considerations. The absence of WHOIS data is a notable anomaly but does not detract significantly from the website's legitimacy given the professional presentation and trust indicators. Strategically, Cleo should consider publishing explicit incident response and vulnerability disclosure information and providing direct security contact channels to enhance trust and compliance further. Regular audits of third-party scripts and continued investment in security best practices will sustain their strong security posture.

-
53
17
80
-
85
40
ediapiintegrationsupplychainb2bmanagedservices+2 more
Drupal 11Google Tag ManagerGoogle reCAPTCHAIntellimize+1
2025-07-25T02:42:04.584Z
pixelproduction.de favicon

PixelProduction GmbH & Co. KG

pixelproduction.de

47
OtherGermanymediumHIGH

PixelProduction GmbH & Co. KG is a full-service marketing, web, and design agency based in Wuppertal, Germany, serving primarily medium-sized B2B and B2C companies in the NRW region. The company offers a broad range of services including marketing strategy, online marketing, web solutions, corporate design, print media, event organization, and digital marketing tools such as HubSpot CRM. Their market position is that of a regional full-service agency with a strong focus on integrated communication solutions and digital transformation for their clients. The website reflects a professional and comprehensive presentation of their services, targeting businesses seeking strategic marketing partnerships. Technically, the website is built on WordPress 6.8.1 using the Enfold theme and incorporates modern plugins such as Yoast SEO for search engine optimization, Borlabs Cookie for GDPR-compliant cookie management, and Matomo Tag Manager for analytics. The site is hosted on servers associated with kasserver.com, with HTTPS enforced and no detected mixed content issues. The site is mobile-optimized and demonstrates good SEO and accessibility practices, although some security headers could be improved. From a security perspective, the site employs HTTPS, cookie consent mechanisms, and GDPR-compliant contact forms with explicit user consent. No critical vulnerabilities or exposed sensitive data were detected in the HTML content. However, there is no explicit security policy or incident response information published on the site, which could be enhanced to improve trust and compliance. Overall, PixelProduction's website is a well-structured, professional digital presence that aligns with their business model and target audience. The site demonstrates good technical maturity and compliance with privacy regulations, making it a trustworthy platform for prospective clients. Strategic recommendations include enhancing security headers, publishing a security policy, and considering a vulnerability disclosure program to further strengthen their security posture.

30
43
2
70
72
70
-
marketingwebdesignseoonlinemarketingfull-serviceagency+4 more
WordPress 6.8.1Enfold Theme 7.1Yoast SEO pluginContact Form 7+6
2025-07-25T02:39:18.076Z
huehocoacp.com.br favicon

Huehoco ACP do Brasil

huehocoacp.com.br

42
ManufacturingBrazillargeHIGH

Huehoco ACP do Brasil is a large manufacturing company specializing in high-performance metal coatings and surface technology solutions for diverse industrial applications. With a strong presence in Brazil and Latin America, the company serves sectors such as construction, automotive, white goods, packaging, and personal protective equipment. Their product portfolio includes customized metal coils, stretched and stamped metal strips, and coil coating painting technology. The company is part of the GRUPO HUEHOCO, which operates globally across multiple continents and countries. The website reflects a professional and consistent brand image, targeting industrial clients with detailed product and segment information. Technically, the website is built on WordPress using Elementor and enhanced with GDPR compliance plugins like Complianz. It employs modern web technologies including WebP image optimization and integrates Google Analytics and Google Ads for tracking and marketing. The site is mobile-optimized and provides a good user experience with clear navigation and relevant content. From a security perspective, the site uses HTTPS with good SSL configuration and implements cookie consent mechanisms. However, it lacks explicit security headers and a dedicated security policy or incident response page. No vulnerabilities or exposed sensitive data were detected in the analysis. WHOIS data is consistent with the business claims, showing no privacy protection or suspicious patterns. Overall, the website demonstrates a solid digital presence with good privacy compliance and business credibility. Strategic improvements in security headers and incident response documentation would enhance the security posture and trustworthiness further.

30
50
17
70
-
90
-
manufacturingmetalcoatingsindustrialsolutionsconstructionautomotive+4 more
WordPress 6.8.1Elementor 3.30.0Complianz GDPR pluginjQuery 3.7.1+2
2025-07-25T02:39:07.677Z
assocham.com favicon

The Associated Chambers of Commerce & Industry of India

assocham.com

45
GovernmentIndialargeHIGH

The Associated Chambers of Commerce & Industry of India (ASSOCHAM) operates as India's oldest apex chamber, providing a broad range of services including industry advocacy, knowledge dissemination, and sector-specific initiatives. The organization targets Indian businesses, government bodies, and international trade partners, leveraging a large membership base to influence policy and promote sustainable growth. The website reflects a professional and consistent brand image with comprehensive sector and regional coverage, positioning ASSOCHAM as a key player in India's business ecosystem. Technically, the website employs a mature technology stack including jQuery, Bootstrap, and Google Analytics, hosted with DNS services via Cloudflare. The site is moderately optimized for performance and mobile use, with basic accessibility and SEO features. However, there is room for improvement in security headers and privacy compliance mechanisms. From a security perspective, the site uses HTTPS and Cloudflare DNS but lacks visible security headers and DNSSEC. Forms for user registration and login are present but do not show advanced security features. No critical vulnerabilities or malicious content were detected, but privacy and cookie policies are absent, indicating compliance gaps. Overall, the website is trustworthy and professionally maintained, with a strong business credibility score. Strategic improvements in privacy compliance and security headers would enhance its security posture and regulatory adherence.

20
53
17
70
62
60
-
businesscommerceindustryindiaapexchamber+4 more
jQueryBootstrap 3.4.1SweetAlertGoogle Analytics+4

Partner Domains:

startupmahakumbh.org
partner
green-assocham.com
partner

+1 more partners

2025-07-25T01:31:23.260Z
indsoft.com favicon

Indsoft, Inc.

indsoft.com

44
TechnologyUnited StatesmediumHIGH

Indsoft, Inc. is a well-established software development company founded in 1998 and based in the United States. The company specializes in delivering IT innovations and scalable solutions across the USA, serving startups, SMBs, and government agencies. Their key services include staffing solutions, SAP solutions, business integration, EDI support, software development, and program management. The company has expanded its presence notably into Texas, a major IT hub, reflecting growth and market penetration. The website is professionally designed, mobile-optimized, and provides clear navigation and contact information, supporting a positive user experience and business credibility. Technically, the website is built on WordPress using the The7 theme and Elementor page builder, with WooCommerce and Stripe Payments integration. The hosting is provided by GoDaddy.com, LLC, and the domain is well-aged and consistent with the company's history. Performance is moderate with good mobile optimization, though accessibility features are basic. SEO practices are adequately implemented with proper meta tags and Open Graph data. From a security perspective, the website uses HTTPS with a good SSL configuration and domain registration protections. However, it lacks DNSSEC, security headers, and explicit security or incident response policies on the site. There is no visible privacy or cookie policy, which is a compliance gap. No vulnerabilities or malicious content were detected in the analysis. Overall, Indsoft presents a trustworthy and professional online presence with room for improvement in privacy compliance and security hardening. Strategic recommendations include implementing privacy and cookie policies, enabling DNSSEC, adding security headers, and publishing incident response information to enhance trust and compliance.

15
35
2
70
72
80
-
softwaredevelopmentitservicesstaffingsolutionssapsolutionsprogrammanagement+1 more
WordPressWooCommerceElementorjQuery+3

Partner Domains:

sap.com
partner
cleo.com
partner

+2 more partners

2025-07-25T01:31:18.123Z
zusteller-az.de favicon

Mediengruppe Allgäuer Zeitung

zusteller-az.de

47
MediaGermanymediumHIGH

The website www.zusteller-az.de serves as a recruitment platform for newspaper and flyer delivery personnel for the Mediengruppe Allgäuer Zeitung, a regional media company in Germany. It offers various job types including full-time, part-time, and minijobs, targeting individuals seeking reliable income sources and flexible working hours. The site features testimonials, clear contact information, and a professional design that supports user engagement and trust. Technically, the site is built on WordPress using Elementor and optimized with WP Rocket, ensuring good performance and mobile responsiveness. The presence of Borlabs Cookie plugin indicates strong privacy compliance with GDPR, including a consent mechanism for cookies. Hosting is provided by SchlundTech, consistent with the domain's WHOIS data. From a security perspective, the site enforces HTTPS and employs cookie consent best practices. However, explicit security policies and incident response contacts are absent, representing an area for improvement. No vulnerabilities or suspicious content were detected, and the domain registration data aligns well with the website's business claims, supporting legitimacy. Overall, the website demonstrates a solid business presence with good technical and privacy standards. Strategic enhancements in security transparency and incident response readiness would further strengthen its posture.

15
68
2
55
72
65
20
jobrecruitmentnewspaperdeliveryminijobmediaprivacycompliant+1 more
WordPressElementorWP RocketjQuery+1

Partner Domains:

blauergockel.de
partner
landsichten.de
partner
2025-07-25T01:30:42.902Z
pixel-tal.de favicon

PixelProduction GmbH & Co. KG

pixel-tal.de

45
OtherGermanysmallHIGH

PixelProduction GmbH & Co. KG is a professional marketing, web, and advertising agency based in Wuppertal, Germany, with a branch in Cologne. The company focuses on providing full-service marketing solutions primarily to medium-sized B2B and B2C companies in the NRW region. Their key services include strategy development, web solutions, creative design, and online marketing. The website reflects a solid regional market position with clear branding and a consistent digital presence supported by social media channels and structured data for enhanced SEO. Technically, the website is built on WordPress using the Enfold theme and integrates popular plugins such as Yoast SEO for search optimization, Contact Form 7 for user inquiries, and Borlabs Cookie for GDPR-compliant cookie management. The site demonstrates good mobile optimization and accessibility features, including an advanced accessibility tool for users with disabilities. Hosting is provided by kasserver.com, as indicated by the nameservers. From a security perspective, the site uses HTTPS with a strong SSL configuration and employs cookie consent mechanisms. However, explicit security headers and a published security policy or incident response information are absent. No vulnerabilities or exposed sensitive data were detected in the provided content. The site does not currently provide a privacy policy or terms of service pages explicitly, which is a compliance gap. Overall, PixelProduction's website presents a professional and trustworthy digital front with good technical and security practices. To enhance compliance and security posture, the company should consider publishing comprehensive privacy and security policies, adding security headers, and providing incident response contacts. These steps will strengthen user trust and regulatory adherence.

30
43
2
70
62
70
-
marketingwebagencyb2bb2cseo+3 more
WordPress 6.8.1Enfold Theme 7.1Yoast SEO pluginContact Form 7+5
2025-07-25T01:29:02.214Z
dsm-olympia.de favicon

Deutsche Sport Marketing GmbH

dsm-olympia.de

46
OtherGermanymediumHIGH

Deutsche Sport Marketing GmbH is a specialized sports marketing agency operating in Germany, focusing on the comprehensive marketing and promotion of German sports, including Olympic and Paralympic movements. The company collaborates closely with major sports organizations such as the Deutscher Olympischer Sportbund (DOSB) and the Deutscher Behindertensportverband (DBS), offering services in marketing, concept development, communication, and product innovation. Their market position is strong within the German sports ecosystem, supported by partnerships with leading brands and institutions. Technically, the website is built on TYPO3 CMS with modern frontend technologies including Bootstrap and jQuery, ensuring good mobile optimization, accessibility, and SEO. The site uses Matomo for analytics with privacy-conscious configurations such as Do Not Track and cookie disabling. Performance is moderate, with room for optimization. Hosting and DNS are managed via standard providers, with HTTPS enforced and no visible security vulnerabilities. From a security perspective, the site demonstrates good practices such as HTTPS usage and no exposed sensitive data. However, it lacks explicit security headers and published security policies or incident response contacts. No vulnerability disclosure or security.txt files are present. Privacy compliance is strong with a comprehensive privacy policy and cookie consent mechanisms aligned with GDPR requirements. Overall, the website and business present a low-risk profile with professional content, clear contact information, and a trustworthy digital presence. Strategic improvements in security headers and incident response transparency would enhance the security posture further.

25
28
2
70
72
65
20
sportsmarketinggermanytypo3olympics+3 more
TYPO3 CMSBootstrapjQueryAOS (Animate On Scroll)+2

Partner Domains:

studios.teamdeutschland.de
partner
linkedin.com
partner
2025-07-25T00:21:42.356Z
dsv-jahrbuch.de favicon

Deutscher Skiverband

dsv-jahrbuch.de

49
OtherGermanymediumHIGH

The DSV Jahrbuch website is an official digital platform of the Deutscher Skiverband (German Ski Association) that provides comprehensive information about skiing disciplines, athletes, and staff. It serves as a yearbook and directory for members and enthusiasts, positioning itself as a trusted source within the German skiing sports community. The site targets athletes, coaches, and fans interested in detailed sports data and organizational information. Technically, the website employs a moderate technology stack including jQuery, Matomo analytics for privacy-conscious tracking, PureCSS for styling, and service workers for progressive web app capabilities. The site is mobile optimized and offers a good user experience with clear navigation and search functionality. However, there is room for improvement in accessibility and SEO optimization. From a security perspective, the site uses HTTPS and registers a service worker, indicating a baseline of modern security practices. However, it lacks important security headers and does not display a cookie consent mechanism, which are important for GDPR compliance and enhanced security posture. No critical vulnerabilities or exposed sensitive data were detected. Overall, the website is trustworthy and professionally maintained but would benefit from enhanced privacy compliance and security hardening. Strategic improvements in security headers, cookie consent, and incident response transparency would strengthen its risk profile and user trust.

15
28
2
70
42
60
100
sportsskiingassociationathletesgermany+1 more
jQuery 3.0.0Matomo AnalyticsPureCSSFont Awesome 4.7.0+1

Partner Domains:

snowboardgermany.com
partner
2025-07-25T00:15:46.062Z
diabetes-und-recht.de favicon

DiabetesUndRecht

diabetes-und-recht.de

38
HealthcareGermanysmallHIGH

DiabetesUndRecht is a specialized legal consultancy website providing expert legal advice for people with diabetes, focusing on issues such as driving licenses, disability rights, school accompaniment, care levels, medical aids, and labor law. The business operates primarily in Germany and targets individuals affected by diabetes who require legal support. The website is professionally designed with consistent branding and clear navigation, offering a niche service with a strong reputation supported by the credentials of RA Oliver Ebert, including membership in relevant committees and extensive publications. Technically, the site is built on WordPress 6.8.2 using the Gantry5 framework, with common plugins like Contact Form 7 and Borlabs Cookie for consent management. The hosting uses GoDaddy DNS servers, and the site enforces HTTPS with good SEO practices. Mobile optimization and accessibility are adequate, though some improvements in accessibility could be made. Performance is moderate, suitable for the site's content and audience. From a security perspective, the site uses HTTPS and cookie consent mechanisms but lacks explicit security headers and documented security policies or incident response plans. No vulnerabilities or exposed sensitive data were detected in the HTML content. The absence of a vulnerability disclosure policy or security.txt file is noted. Overall, the security posture is good but could be enhanced with additional headers and policies. The overall risk assessment is low, with no signs of malicious activity or content safety concerns. Strategic recommendations include implementing security headers, publishing security policies, and enhancing accessibility. The website demonstrates a trustworthy and professional presence in its niche market.

15
43
2
40
62
60
-
legaladvicediabeteshealthcaredisabilityrightsgermany+3 more
WordPress 6.8.2PHP (implied by WordPress)jQuery 3.7.1Gantry5 framework+3
2025-07-24T23:06:33.845Z
tacheles-investmentgespraech.de favicon

Drescher & Cie AG

tacheles-investmentgespraech.de

46
FinanceGermanymediumHIGH

Drescher & Cie AG operates the TACHELES investment discussion event, a well-established forum since 2010 that brings together fund industry representatives, politicians, and media in Germany. The website serves as an information and event platform targeting financial professionals and investors, emphasizing transparency and open dialogue in the investment sector. The company positions itself as an important player in the German financial event landscape with a focus on quality and professionalism. Technically, the website is built on TYPO3 CMS with modern frontend technologies including Bootstrap and Font Awesome. It integrates a professional video player and uses structured data for SEO enhancement. The site is mobile-optimized and performs moderately well, though some accessibility features could be improved. Cookie consent is implemented, but explicit privacy and terms of service pages are missing. From a security perspective, the site uses HTTPS and modern libraries but lacks visible security headers and formal security policies. No critical vulnerabilities or exposed sensitive data were detected. WHOIS data is minimal but consistent with the business profile. Overall, the site is trustworthy but could benefit from enhanced privacy compliance and security best practices. Strategic recommendations include publishing comprehensive privacy and terms policies, implementing security headers, improving accessibility, and formalizing incident response and vulnerability disclosure processes to strengthen trust and compliance.

25
95
17
70
-
60
20
financeinvestmenteventtypo3media+1 more
TYPO3 CMSFont Awesome 6 ProBootstrap 4jQuery+2

Partner Domains:

drescher-cie.de
partner
diefondsplattform.de
partner

+3 more partners

2025-07-24T22:00:56.142Z
I

igus

igus.be

48
ManufacturingBelgiumlargeHIGH

The website www.igus.be represents a manufacturer specializing in high-performance polymer components for motion applications, including energy chains, cables, bearings, and robot joints. The site serves primarily as a language selection splash page with minimal content, indicating a larger main site likely exists beyond this entry point. The business appears to be established in Belgium and targets industrial and manufacturing sectors requiring specialized polymer motion components. The business model is direct manufacturing and supply, positioning itself as a key player in its niche. Technically, the site uses basic HTML and JavaScript with Google Tag Manager for analytics. There is no evidence of a CMS or advanced frameworks. The site shows moderate performance and basic mobile optimization but lacks comprehensive SEO and accessibility features. Security headers and HTTPS configuration details are not available from the provided data, limiting the security posture assessment. Security-wise, the site does not expose sensitive data or forms on this splash page, but lacks visible privacy, cookie, or terms policies, which are important for GDPR compliance. The WHOIS data is blocked by the .be registry policy, which is common but reduces transparency. No WAF or blocking mechanisms were detected, and the content is safe with no adult or questionable material. Overall, the site is functional but minimal, with room for improvement in privacy compliance, security best practices, and richer content. The domain appears legitimate but would benefit from enhanced transparency and security measures.

15
-
2
60
77
80
100
manufacturingpolymersenergychainsindustrialmotioncomponents
JavaScriptGoogle Tag Manager
2025-07-24T21:56:08.413Z
star.de favicon

ORLEN Deutschland GmbH

star.de

46
EnergyGermanylargeHIGH

The website www.star.de represents ORLEN Deutschland GmbH's star brand, offering fuel stations, e-mobility solutions, fleet cards, and promotional services primarily in Germany. The site is professionally designed using TYPO3 CMS, with a clear focus on quality, service, and comfort for its customers. The target audience includes general consumers and fleet operators seeking fuel and mobility services. The business operates in the energy and transportation sectors with a strong regional presence. Technically, the website employs a modern CMS (TYPO3) and integrates Cookiebot for GDPR-compliant cookie consent management. The site is hosted on managed IP infrastructure with secure HTTPS connections and appropriate security headers. Performance and mobile optimization are adequate, though accessibility features could be improved. The site uses multiple third-party analytics and advertising services, all integrated with user consent mechanisms. From a security perspective, the website demonstrates good practices including HTTPS enforcement, cookie consent, and no visible vulnerabilities or exposed sensitive data. However, explicit security policies, incident response contacts, and vulnerability disclosure mechanisms are absent, representing areas for improvement. Privacy compliance is strong with a comprehensive privacy policy and cookie management. Overall, the website is trustworthy, professionally maintained, and compliant with relevant privacy regulations. Strategic recommendations include publishing security and incident response policies, enhancing accessibility, and adding terms of service to further strengthen business credibility and user trust.

25
83
2
70
62
45
-
fuelenergye-mobilitygasstationcookieconsent+2 more
TYPO3 CMSJavaScriptCSSCookiebot
2025-07-24T20:52:34.695Z