Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

149091
Websites
130
Industries
113
Countries
52
Avg Score
Page 517 of 523|Showing 25801-25850 of 26142
hoozin.com favicon

Hoozin

hoozin.com

40
software / digital workplace solutionsUSAmediumHIGH

The website's overall security posture is critically weak, exposing the business to significant risks including data breaches, regulatory non-compliance, and operational disruptions. The absence of HTTPS encryption is a critical vulnerability that undermines data confidentiality and trust, while missing essential security headers leave the site open to common web attacks such as clickjacking and cross-site scripting. GDPR compliance is severely lacking, with no cookie policy or consent mechanisms, creating legal exposure and reputational damage risks. Network security is compromised by the exposure of high-risk services like FTP and MySQL without adequate protections, increasing the attack surface. The lack of incident response, security policies, and business continuity planning under the NIS2 framework indicates immature security governance. Although email security and DNS health score relatively well, these strengths do not offset the critical deficiencies elsewhere. Immediate remediation is required to protect customer data, maintain regulatory compliance, and safeguard business continuity. Without urgent action, the organization risks financial penalties, loss of customer trust, and potential service outages.

15
18
5
85
-
85
50
digital workplaceworkflowssocial intranetemployee collaborationintegration+1 more
WordPress 6.8.1W3 Total CacheRodller BlocksContact Form 7+8

Partner Domains:

rodller.com
partnerpending
2025-06-13T18:10:49.566Z
wyser-search.com favicon

Wyser

wyser-search.com

47
recruitment and human resourcesmultiple including Brazil, Bulgaria, Chile, China, France, Hungary, Italy, Poland, Portugal, Romania, Serbia, Spain, TurkeymediumHIGH

The website's current security posture is critically weak, with multiple severe vulnerabilities exposing it to significant risk. The absence of HTTPS encryption is a fundamental flaw, affecting data confidentiality and trust, and violates GDPR and NIS2 requirements. Key security headers such as Strict-Transport-Security and Content-Security-Policy are missing, increasing exposure to common web attacks like XSS and protocol downgrade attacks. GDPR compliance is notably poor, lacking essential elements like a cookie policy and consent mechanisms, which can lead to regulatory fines and reputational damage. The absence of documented information security frameworks, security policies, and incident response procedures indicates immature organizational security governance. While email security and network security are relatively strong, this does not compensate for the critical gaps in web application and data protection. Immediate remediation is necessary to protect customer data, maintain regulatory compliance, and preserve business reputation. Without swift action, the organization risks data breaches, regulatory penalties, and loss of customer trust.

30
18
-
90
-
85
100
recruitmentsearch and selectionsenior managementhuman resourcesglobal+4 more
WordPressYoast SEO pluginWP RocketElementor+10

Partner Domains:

gigroupholding.com
subsidiarypending
2025-06-13T18:10:49.545Z
insidesystems.com favicon

Inside Systems A/S

insidesystems.com

50
Information TechnologyDenmarkmediumHIGH

The website's overall security posture is critically weak, primarily due to the absence of HTTPS encryption, which exposes all data in transit to interception and manipulation. Key security headers are missing, increasing the risk of cross-site scripting, clickjacking, and other web-based attacks. GDPR compliance is severely lacking, with no cookie policy or consent banner, potentially leading to regulatory penalties and loss of customer trust. The absence of an information security framework, incident response procedures, and security policy documentation further exacerbates the organization's vulnerability to cyber threats and operational disruptions. While email and network security are strong, these isolated strengths do not mitigate the critical risks posed by the core deficiencies. The low scores in NIS2 compliance indicate the organization is unprepared to meet mandatory cybersecurity standards, risking legal and financial consequences. Immediate remediation is necessary to protect sensitive data, maintain regulatory compliance, and uphold the company's reputation. Failure to address these issues may result in data breaches, regulatory fines, and significant business disruption.

25
18
10
100
-
85
100
IT hardwarerefurbished ITITADsustainabilitysecure data erasure+1 more
WordPressWooCommercejQueryFlatsome Theme+12

Partner Domains:

sustainableelectronics.org
partnerpending
co2neutralwebsite.com
partnerpending

+1 more partners

2025-06-13T18:10:49.540Z
flyprivate.com favicon

FlyPrivate

flyprivate.com

50
private aviationUSmediumHIGH

The website’s current security posture exhibits significant vulnerabilities that expose the business to substantial risks, particularly due to the absence of HTTPS encryption which is flagged as critical across multiple compliance frameworks including GDPR, NIS2, and SSL/TLS standards. Key security controls such as Content-Security-Policy and X-Frame-Options headers are missing, increasing the risk of web-based attacks like clickjacking and cross-site scripting. Compliance with GDPR is severely lacking, with no cookie policy or consent mechanism in place, potentially exposing the business to regulatory fines and reputational damage. Additionally, the absence of documented security policies, incident response procedures, and vulnerability disclosure mechanisms under NIS2 requirements indicates immature information security governance. While email and network security are strong points, foundational gaps in encryption and security headers undermine overall defenses. The DNS configuration is moderately healthy but could be improved with DNSSEC and CAA records. Immediate remediation is needed to protect customer data, ensure regulatory compliance, and safeguard business continuity. Without prompt action, the business faces operational disruptions, legal penalties, and loss of customer trust.

30
18
5
100
-
85
100
private jetcharterbusiness flightspersonal flightsaviation+2 more
WordPressJetpackGutenbergGoDaddy Styles+7
2025-06-13T18:10:49.493Z
growup-hr.com favicon

GrowUp Consulting

growup-hr.com

44
Human Resources ConsultingFrancesmallHIGH

The website demonstrates significant security deficiencies, particularly a complete lack of HTTPS encryption, which poses critical risks to data confidentiality and user trust. Missing essential security headers such as Strict-Transport-Security, X-Frame-Options, and Content-Security-Policy increase vulnerability to common web attacks including clickjacking and cross-site scripting. The absence of a privacy policy, cookie policy, and consent mechanisms exposes the business to regulatory non-compliance and potential legal penalties under GDPR. Furthermore, critical gaps in security governance, including missing information security frameworks, incident response procedures, and security policy documentation, indicate immature cybersecurity management. While email security and network security posture are strong, the overall security posture is weak, making the business susceptible to data breaches, reputational damage, and compliance violations. Immediate remediation is necessary to protect customer data, maintain regulatory compliance, and safeguard business continuity. Prioritizing HTTPS implementation and establishing a comprehensive security and privacy framework will significantly enhance risk mitigation. DNS security and some network controls are adequate but insufficient to compensate for the critical issues identified.

15
-
-
100
-
85
100
HR ConsultingManagement ConsultingLeadership TrainingWorkshopsPublic Speaking+3 more
WordPressWPBakery Page BuilderContact Form 7WP Rocket+6

Partner Domains:

maj.mc
servicepending
cycledudirigeant.com
partnerpending

+1 more partners

2025-06-13T18:10:49.479Z
westeve.com favicon

Western Stevedoring Company Limited

westeve.com

69
marine terminal and stevedoringCanadalargeMEDIUM

The website demonstrates a moderate to low overall security posture with no critical vulnerabilities but several high and medium risk issues that could expose the business to significant security, compliance, and reputational risks. Key weaknesses include missing essential security headers, lack of GDPR compliance elements such as cookie policies and consent mechanisms, and major gaps in NIS2 framework adherence including absence of incident response and security policies. While email security, SSL/TLS, DNS health, and network security show strong configurations, the lack of governance and protective controls on the web application layer and privacy compliance may lead to data breaches, regulatory penalties, and loss of customer trust. The website’s SSL certificate nearing expiration adds urgency to maintain encrypted communication uninterrupted. Addressing these gaps will enhance resilience against common web attacks, ensure regulatory compliance, and protect the organization’s brand. Immediate focus should be on implementing security headers, GDPR cookie compliance, and establishing formal security policies and incident response plans. Strengthening these areas will provide a solid foundation for ongoing security and compliance maturity.

25
43
25
100
87
85
100
marinestevedoringterminal servicescargo handlinglogistics+2 more
WordPressYoast SEO pluginGoogle Tag ManagerFont Awesome+3

Partner Domains:

ssamarine.com
subsidiarypending
intermodex.com
partnerpending

+1 more partners

2025-06-13T18:10:49.000Z
dreamcatcher.mc favicon

DreamCatcher

dreamcatcher.mc

61
Destination Management and EntertainmentMonacosmallMEDIUM

The website demonstrates notable security weaknesses primarily in its HTTP security headers, GDPR compliance, and adherence to the NIS2 cybersecurity framework, resulting in a low overall security posture in these critical areas. While there are no critical vulnerabilities detected, multiple high and medium severity issues expose the business to risks such as data breaches, regulatory fines, reputational damage, and operational disruptions. The absence of essential security headers like Strict-Transport-Security and Content-Security-Policy increases susceptibility to man-in-the-middle and cross-site scripting attacks. Non-compliance with GDPR requirements, including missing privacy and cookie policies and lack of a consent banner, elevates legal risk and undermines customer trust. Deficiencies in NIS2-related documentation and procedures reflect inadequate organizational readiness for incident response and business continuity. Conversely, strong network security and good email, SSL/TLS, and DNS configurations provide a solid foundation to build upon. Addressing these gaps promptly will significantly improve security resilience, regulatory compliance, and stakeholder confidence.

15
25
25
85
85
85
100
Destination ManagementEntertainment AgencyMonacoLuxuryTailor-made experiences
WordPress 6.4.2jQuery 3.7.1Avada Theme 3.11.3Apache+3

Partner Domains:

meb.mc
partner65
monaco-welcome.mc
partnerpending
2025-06-13T18:10:48.994Z
carolineolds.com favicon

Caroline Olds Real Estate

carolineolds.com

68
real estateMonacosmallMEDIUM

The website demonstrates a concerning security posture with no critical issues but multiple high and medium risk vulnerabilities, primarily related to missing security headers, insufficient GDPR compliance, and lack of key NIS2 security frameworks. The absence of crucial HTTP security headers such as Strict-Transport-Security and Content-Security-Policy exposes the site to man-in-the-middle attacks, clickjacking, and cross-site scripting risks. GDPR non-compliance, including the lack of a cookie consent banner and incomplete privacy policies, poses legal and reputational risks, especially in jurisdictions enforcing data protection laws. Additionally, the site lacks documented security policies, incident response plans, and business continuity procedures required under the NIS2 directive, increasing operational risk and regulatory exposure. SSL/TLS configurations are suboptimal, with weak key lengths and impending certificate expiry risking data confidentiality and trust. DNS security is moderate but could be strengthened by enabling DNSSEC and configuring CAA records. While email and network security appear robust, the overall low scores in security headers and NIS2 compliance indicate urgent remediation is necessary to protect business assets and maintain customer trust.

20
58
25
100
60
85
100
real estateMonacoproperty salesproperty rentalsnew developments+2 more
WordPressGravity FormsYoast SEOWP Rocket+11

Partner Domains:

chambre-immobiliere-monaco.mc
partnerpending
2025-06-13T18:10:48.989Z