Skip to main content

High-risk security reports

Browse 43,527 Guard analyses across this slice of the directory — NIS2 / GDPR readiness, SSL/TLS, DNS hygiene and email authentication.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

148885
Websites
130
Industries
113
Countries
52
Avg Score
Page 56 of 871|Showing 2751-2800 of 43527
bohdanec.cz favicon

Město Lázně Bohdaneč

bohdanec.cz

45
GovernmentCzech RepublicsmallHIGH

Lázně Bohdaneč is the official municipal website for the town of Lázně Bohdaneč in the Czech Republic. It serves as a comprehensive portal providing residents and visitors with access to municipal services, news updates, event calendars, job vacancies, and contact information. The site targets local citizens and stakeholders interested in town governance and community activities. The business model is that of a local government authority focused on public service and information dissemination. Technically, the website employs modern web technologies including Blazor WebAssembly for interactive components, Google Translate for multilingual support, and a chatbot for user assistance. The site is built on the Vismo CMS platform, which is specialized for municipal websites. The design is responsive and accessible, with good SEO practices and clear navigation, although some performance optimizations could be considered. From a security perspective, the site uses HTTPS and secure form submissions but lacks visible security headers and explicit cookie consent mechanisms. No critical vulnerabilities or exposed sensitive data were detected. However, the absence of WHOIS registration data for the domain raises concerns about domain legitimacy and trustworthiness, which should be investigated further. Overall, the website is professional, trustworthy, and well-suited for its purpose, but improvements in security headers, privacy compliance, and domain registration transparency are recommended to enhance trust and compliance.

15
25
17
70
62
75
20
municipalgovernmentlocalservicesczechrepublicofficial+1 more
HTML5CSSJavaScriptBlazor WebAssembly+2
2025-10-29T16:39:55.391Z
stork-alu.de favicon

STORK ALU Recycling GmbH

stork-alu.de

44
ManufacturingGermanymediumHIGH

STORK ALU Recycling GmbH operates as a specialized industrial company focused on the efficient and innovative recovery of metals, particularly aluminum, copper, and stainless steel. Their core business revolves around advanced metal recycling technologies such as the Schwimm-Sink-Anlage (sink-float separation) to ensure high purity in metal recovery. The company is positioned as a competent player within the German manufacturing and recycling sector, serving industrial clients requiring sustainable raw material cycles. The website reflects a professional and consistent brand image aligned with its parent company, Stork Gruppe, and targets industry stakeholders and partners. From a technical perspective, the website is built on the TYPO3 CMS platform, leveraging modern web technologies including JavaScript and CSS, with good mobile optimization and SEO practices. The site is served over HTTPS with a cookie consent mechanism in place, indicating compliance with GDPR requirements. However, some security best practices such as comprehensive security headers and published security policies are absent, representing areas for improvement. Security posture is moderate with no critical vulnerabilities detected in the visible content. The absence of incident response contacts and vulnerability disclosure policies suggests limited transparency in security governance. WHOIS data is minimal but does not raise immediate concerns, though more detailed registrant information would enhance trust. Overall, the site is safe, professional, and compliant with privacy norms but could benefit from enhanced security documentation and technical hardening. Strategically, the company should focus on strengthening its security framework, publishing clear policies, and improving accessibility features to maintain trust and compliance. The digital infrastructure is solid but could be modernized further to improve performance and resilience against emerging threats.

25
43
2
70
72
60
-
metalrecyclingaluminiumrecoveryindustrialservicestypo3germanindustry
TYPO3 CMSJavaScriptCSSHyphenopoly.js

Partner Domains:

www.stork-gruppe.de
parent
2025-10-29T16:33:32.266Z
aszod.hu favicon

Aszód város

aszod.hu

47
GovernmentHungarysmallHIGH

Aszód.hu is the official website of Aszód city in Hungary, serving as a municipal information portal. It provides comprehensive information about the city's geography, history, economy, community life, and events. The website targets residents and visitors seeking official city information and services. The business model is that of a government/public service entity, with a focus on transparency and community engagement. Technically, the site is built on WordPress 6.8.3 using the Astra theme and Elementor page builder, supplemented by plugins for events, search, accessibility, and GDPR compliance. The infrastructure reflects a modern WordPress ecosystem with performance optimizations via WP Rocket. Mobile optimization and accessibility are well addressed, enhancing user experience. From a security perspective, the site enforces HTTPS and uses performance and accessibility plugins that indirectly support security and compliance. However, explicit security headers are missing, and no dedicated security or privacy policies are found. There is no visible incident response or vulnerability disclosure information, which could be improved to enhance trust and compliance. Overall, the website is legitimate, consistent with the domain's WHOIS data, and professionally maintained. The risk level is low, but improvements in privacy transparency and security headers would strengthen the security posture and user trust.

15
40
17
85
62
75
-
governmentmunicipalhungaryofficialcity+3 more
WordPress 6.8.3PHPjQueryElementor+5
2025-10-29T16:30:55.991Z
karpatskanadacia.sk favicon

Karpatská nadácia

karpatskanadacia.sk

47
Non-profitSlovakiamediumHIGH

Karpatská nadácia is a well-established non-profit organization founded in 2007, focused on fostering prosperity and social development in Eastern Slovakia. The foundation offers grant funding, community development programs, and humanitarian aid, with a strong emphasis on supporting excluded Roma communities and aiding Ukraine. Their market position is solid within the regional non-profit sector, supported by partnerships with UNICEF and other organizations. The website reflects a professional and consistent brand image, targeting individuals and organizations committed to regional development. Technically, the website is built on a modern WordPress CMS platform using Elementor and Astra theme, hosted by Websupport. It employs contemporary web technologies including jQuery, Google Tag Manager, and CookieYes for cookie consent management. The site is mobile-optimized with good SEO and accessibility basics, though some accessibility features could be enhanced. Performance is moderate, with room for optimization. From a security perspective, the site enforces HTTPS with DNSSEC enabled, employs cookie consent with granular user controls, and integrates tracking tools like Google Analytics, Microsoft Clarity, and Facebook Pixel responsibly. No critical vulnerabilities or exposed sensitive data were detected. However, the site lacks a published security policy and incident response contact information, which are recommended for improved transparency and readiness. Overall, the website is trustworthy, compliant with GDPR, and professionally maintained. Strategic recommendations include enhancing security headers, publishing explicit security and incident response policies, and improving accessibility compliance to further strengthen the security posture and user trust.

30
40
17
70
62
50
20
non-profitcommunitygranthumanitarianslovakia+5 more
WordPressElementorAstra ThemejQuery+4

Partner Domains:

karpatskanadacia.egrant.sk
service
kngranty.karpatskanadacia.sk
service

+3 more partners

2025-10-29T16:29:00.253Z
Z

Zartbitter e.V.

zartbitter-shop.de

46
Non-profitGermanysmallHIGH

Zartbitter e.V. operates an online webshop focused on educational and preventive materials related to child protection, sexual abuse prevention, and child rights. The website offers a variety of products including books, brochures, posters, and multimedia targeted primarily at parents, educators, and professionals working with children and youth. The business model is a niche non-profit e-commerce platform serving the German-speaking market (Germany, Austria, Switzerland). Technically, the website is built on WordPress with WooCommerce and uses several plugins for product display, discount rules, and GDPR compliance. The site is mobile-optimized and uses HTTPS, but lacks some advanced security headers. Performance is moderate with a good user experience and clear navigation. From a security perspective, the site enforces HTTPS and has a cookie consent mechanism compliant with GDPR. No critical vulnerabilities or exposed sensitive data were detected in the HTML content. However, security headers like Content-Security-Policy and HSTS are not evident and should be implemented. There is no published security policy or incident response contact information. Overall, the website is safe, professional, and trustworthy for its target audience. The lack of direct contact information and detailed WHOIS data slightly limits business credibility assessment. Strategic improvements in security headers and transparency around security policies would enhance trust and compliance.

15
60
2
70
62
60
20
e-commerceeducationchildprotectionnon-profitwoocommerce+2 more
WordPressWooCommercejQueryBootstrap+4
2025-10-29T16:27:55.060Z
T

Tribune Group GmbH

tribunegroup.com

42
MediaGermanymediumHIGH

Tribune Group GmbH is a Berlin-based investment, holding, and management company specializing in media, education, and lifestyle projects globally. The company operates multiple subsidiaries and partner platforms primarily focused on dental and pharmaceutical continuing education, as well as lifestyle media. Their market position is supported by recognized certifications such as ADA CERP and ACPE accreditation, indicating a strong foothold in professional education sectors. Technically, the website employs modern frontend technologies including Bootstrap 4.3.1, jQuery, and Owl Carousel, providing a responsive and user-friendly experience. However, the site lacks some advanced security headers and explicit privacy and cookie policies, which are critical for compliance and trust. The domain registration is consistent with the business claims, showing a well-established presence since 2009. Security posture is moderate; while HTTPS is implied, no security headers or DNSSEC are enabled, and no incident response or vulnerability disclosure information is provided. The absence of privacy and cookie policies reduces privacy compliance scores. Overall, the website is professional and trustworthy but would benefit from enhanced security and compliance measures. Strategic recommendations include implementing comprehensive privacy and cookie policies, enabling security headers and DNSSEC, establishing incident response contacts, and improving accessibility and SEO features to strengthen digital maturity and trustworthiness.

15
35
2
70
62
55
20
investmentmediaeducationlifestyledental+3 more
Bootstrap 4.3.1jQuery 3.3.1 slimPopper.js 1.14.7Owl Carousel

Partner Domains:

dental-tribune.com
subsidiary
dtstudyclub.com
subsidiary

+3 more partners

2025-10-29T15:45:43.636Z
djk-spandau.de favicon

Sportvereinigung Deutsche Jugendkraft Spandau (DJK Spandau)

djk-spandau.de

47
Non-profitGermanysmallHIGH

Sportvereinigung Deutsche Jugendkraft Spandau (DJK Spandau) is a German non-profit sports club offering a variety of sports activities such as badminton, boule, gymnastics, Nordic walking, skate biathlon, sports shooting, table tennis, volleyball, and archery. The club targets local community members including children, adults, and people interested in inclusive sports programs. The website reflects a well-structured and accessible platform with clear navigation and content relevant to its audience. It maintains partnerships with reputable sports organizations, enhancing its community presence and trustworthiness. Technically, the website is built on Joomla CMS with modern web technologies including Bootstrap and jQuery. It is hosted on servers associated with kasserver.com and employs HTTPS with a cookie consent mechanism compliant with GDPR. Accessibility features such as screen reader support and contrast modes are implemented, indicating a commitment to inclusive design. Performance is moderate with good mobile optimization. From a security perspective, the site uses HTTPS and cookie consent banners but lacks visible security headers and dedicated security or incident response policies. No vulnerabilities or exposed sensitive data were detected in the provided content. The WHOIS data is minimal but consistent with a legitimate hosting setup. Overall, the security posture is adequate but could be improved with additional headers and documented policies. The overall risk assessment is low with recommendations to enhance security headers, add incident response contact information, and maintain regular updates to Joomla and plugins. The website is professional, trustworthy, and compliant with privacy regulations, serving its community effectively.

30
95
2
55
62
50
-
sportsnon-profitcommunitygdprjoomla+2 more
Joomla CMSjQueryBootstrapFontAwesome+2

Partner Domains:

djk-berlin.de
partner
djk.de
partner

+1 more partners

2025-10-29T15:41:31.137Z
study-platform.eu favicon

Oranto GmbH

study-platform.eu

49
TechnologyGermanysmallHIGH

Oranto GmbH operates the Study-Platform.eu website, offering a comprehensive software solution for clinical and non-clinical study management. Their platform integrates survey systems, content management, participant management (CRM), learning management (LMS), and statistical monitoring tools, emphasizing GDPR compliance and data protection. The company targets researchers and organizations requiring flexible, customizable study design and execution tools. The website reflects a niche market position with a decade of experience in customized study software development. Technically, the website is built on TYPO3 CMS, leveraging modern web technologies and Matomo analytics configured to disable cookies, indicating a privacy-conscious approach. The site is mobile-optimized, accessible, and well-structured with good SEO practices. However, some improvements are needed in cookie consent mechanisms and publishing security policies. From a security perspective, the site uses HTTPS with good SSL configuration and avoids third-party API integrations, reducing attack surface. No critical vulnerabilities or exposed sensitive data were detected. The absence of explicit security headers and incident response information suggests room for enhancement in security posture. WHOIS data is unavailable due to EURid privacy policies, which is common but slightly reduces transparency. Overall, the website presents a professional, trustworthy front for a small technology company specializing in study software solutions. Strategic recommendations include implementing cookie consent, publishing terms and security policies, adding security headers, and providing vulnerability disclosure contacts to strengthen compliance and trust.

25
40
2
65
72
85
20
studyplatformclinicalstudiessurveysoftwarecrmlms+2 more
TYPO3 CMSMatomo AnalyticsHTML5 VideoJavaScript ES6+

Partner Domains:

www.oranto.de
partner
2025-10-29T15:41:01.060Z
ata-dag.de favicon

Deutsche Atlantische Gesellschaft e.V.

ata-dag.de

38
GovernmentGermanymediumHIGH

The Deutsche Atlantische Gesellschaft e.V. is a German non-profit organization dedicated to informing and engaging the public on German and European security policy, NATO objectives, and transatlantic relations. The organization operates through events, seminars, lectures, podcasts, and publications, targeting individuals and entities interested in security and defense topics. Their market position is that of an established, reputable non-profit within the government and policy sector in Germany. Technically, the website is built on WordPress, utilizing common libraries such as jQuery, Bootstrap, and Font Awesome, with SEO optimization via Yoast. Hosting appears to be managed through kasserver.com. The site is moderately performant, mobile-optimized, and includes analytics via Matomo, reflecting a reasonable level of digital maturity. From a security perspective, the site enforces HTTPS and uses CAPTCHA on contact forms, alongside a cookie consent mechanism. However, it lacks explicit security headers, a published security policy, and vulnerability disclosure mechanisms. No critical vulnerabilities or exposed sensitive data were detected. Privacy compliance is partial, with no explicit privacy policy or terms of service pages found. Overall, the website presents a professional and trustworthy front for the organization, with good content quality and business credibility. Security and privacy practices could be enhanced to meet higher compliance standards and improve user trust.

15
68
17
75
-
50
-
securitynatonon-profitgermanyevents+3 more
WordPressjQueryMediaElement.jsMatomo Analytics+4
2025-10-29T15:40:45.991Z
iwd.de favicon

Institut der deutschen Wirtschaft

iwd.de

45
GovernmentGermanylargeHIGH

The website www.iwd.de serves as the information service of the Institut der deutschen Wirtschaft, providing up-to-date economic analyses, research results, and background information on current economic topics primarily focused on Germany and Europe. It targets professionals, policymakers, academics, and the general public interested in economic affairs. The business model revolves around disseminating economic knowledge through articles, dossiers, newsletters, and interactive graphics, positioning itself as a reputable and authoritative source in the German economic research landscape. Technically, the site is built on the TYPO3 CMS platform, leveraging modern web technologies including JavaScript, CSS, and integrates analytics tools such as Matomo and Google Tag Manager. It employs Usercentrics for GDPR-compliant consent management. The site is mobile-optimized, accessible, and SEO-friendly, with structured data enhancing search engine visibility. Hosting is managed via domaincontrol.com (GoDaddy), a common and reliable provider. From a security perspective, the website enforces HTTPS with a strong SSL configuration and uses consent management for cookies, reflecting good privacy practices. However, it lacks explicit security headers and published security policies or incident response contacts, which are areas for improvement. No vulnerabilities or exposed sensitive data were detected in the content. The site demonstrates a moderate to high security posture but could enhance transparency and technical security controls. Overall, www.iwd.de is a professional, trustworthy, and content-rich platform with strong compliance to privacy regulations and a solid technical foundation. Strategic recommendations include implementing security headers, publishing a security policy and incident response information, and adding a security.txt file to facilitate vulnerability disclosures. These steps would further strengthen the site's security posture and trustworthiness.

45
28
17
60
62
65
-
economicsresearchnewsgermanyfinance+1 more
TYPO3 CMSMatomo AnalyticsGoogle Tag ManagerUsercentrics Consent Management+2

Partner Domains:

www.iwkoeln.de
partner
2025-10-29T15:40:25.936Z
extraviv.de favicon

Vereinigte Industrieverbände von Düren, Jülich, Euskirchen und Umgebung e.V.

extraviv.de

38
ManufacturingGermanysmallHIGH

The website extraviv.de serves as a members-only information portal for the Vereinigte Industrieverbände von Düren, Jülich, Euskirchen und Umgebung e.V., a regional industry association in Germany. It provides employers and association members with access to documents, newsletters, event information, and other resources relevant to their business operations and networking. The site is primarily in German and targets local employers within the manufacturing and non-profit sectors. Technically, the site uses a custom or unknown CMS with JavaScript libraries such as jQuery UI and Modernizr, hosted on servers associated with kasserver.com. The design is professional and consistent, though mobile optimization and accessibility are basic. Security posture is moderate with a login form secured by POST but lacks advanced security headers and cookie consent mechanisms. No WAF or blocking mechanisms were detected, and the domain registration data aligns well with the website's business purpose, indicating legitimacy. Overall, the site scores well on business credibility and content quality but could improve technical implementation and security practices.

20
28
2
70
62
45
-
industryassociationmembershipinformationportalemployerresourcesgermany
jQuery UI 1.10.3Modernizr 2.6.2JavaScriptCSS3+1

Partner Domains:

vivdueren.de
partner
pixelproduction.de
partner
2025-10-29T15:39:55.854Z
artebunkering.com favicon

Arte Bunkering OÜ

artebunkering.com

34
EnergyEstoniamediumHIGH

Arte Bunkering OÜ is a specialized marine fuel supply company founded in 2012, operating globally with offices in Europe, Asia, and the Americas. The company focuses on delivering marine fuel oil, gas oil, lube oil, and eco-friendly fuels such as LNG to over 3000 vessels annually across more than 650 ports. Their business model centers on providing personalized, efficient, and timely bunkering services with competitive pricing, targeting shipping companies and vessel operators worldwide. The website reflects a professional and consistent brand image with clear contact information and a global presence, supporting their market position as an experienced player in the marine energy sector. Technically, the website employs modern web standards including HTML5, CSS with LESS preprocessing, and JavaScript. It is hosted likely by Loginet, with responsive design elements and basic accessibility features. However, the site lacks advanced SEO optimization and does not appear to use a CMS or analytics tools based on the provided data. Performance is moderate, and mobile optimization is good. From a security perspective, the site uses HTTPS (implied by base href https URL), includes a CSRF token meta tag indicating some security awareness, but lacks DNSSEC and visible security headers. There is no privacy or cookie policy found, which is a compliance gap, especially under GDPR. Incident response and vulnerability disclosure information are absent. The WHOIS data is consistent and supports the legitimacy of the domain and business. Overall, the security posture is moderate but could be improved with better policy transparency and technical security controls. The overall risk assessment is moderate with no critical vulnerabilities or blocking detected. Strategic recommendations include implementing privacy and cookie policies, enabling DNSSEC, adding security headers, and publishing incident response and vulnerability disclosure information to enhance trust and compliance.

-
-
-
70
32
70
20
marinefuelbunkeringenergyshippinglubeoil+2 more
HTML5CSS (LESS preprocessor)JavaScript
2025-10-29T14:34:24.173Z