Skip to main content

High-risk security reports

Browse 44,067 Guard analyses across this slice of the directory — NIS2 / GDPR readiness, SSL/TLS, DNS hygiene and email authentication.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

150251
Websites
130
Industries
113
Countries
52
Avg Score
Page 560 of 882|Showing 27951-28000 of 44067
hest.cz favicon

HESTIA

hest.cz

45
Non-profitCzech RepublicsmallHIGH

HESTIA is a Czech non-profit organization established in 2001, specializing in volunteer services, coordination, and educational programs. The website presents a well-structured platform offering multiple volunteer programs, corporate volunteering initiatives, and training courses. It targets volunteers, non-profit organizations, companies interested in corporate social responsibility, donors, and media. The organization maintains partnerships with government bodies and foundations, enhancing its credibility and market position within the Czech Republic's volunteer sector. Technically, the website uses a custom CMS (Toolkit) hosted by ECN Studio, with integration of Google Analytics and Google Tag Manager for visitor tracking. The site is mobile-optimized with good navigation and content quality. However, some technical improvements are recommended, including the implementation of security headers and enhanced accessibility features. From a security perspective, the site uses HTTPS (implied by external Google Analytics scripts loaded over HTTPS), has a cookie consent mechanism compliant with GDPR, and does not expose sensitive data. There is no visible security or incident response policy, and no contact emails or phone numbers are provided on the homepage, which could be improved for transparency and user trust. Overall, the website is professional, trustworthy, and serves its non-profit mission effectively. Strategic recommendations include enhancing security headers, publishing explicit security and incident response policies, and providing clearer contact information to improve user confidence and compliance posture.

25
10
2
85
62
75
20
volunteeringnon-profitcharityczechrepubliccorporatevolunteering+2 more
JavaScriptGoogle AnalyticsGoogle Tag ManagerSmart EU Cookies script

Partner Domains:

dobrovolnik.cz
partner
dobromani.cz
partner

+3 more partners

2025-07-10T08:09:26.796Z
ekolo.cz favicon

ekolo.cz s.r.o.

ekolo.cz

47
RetailCzech RepublicmediumHIGH

Ekolo.cz s.r.o. operates a leading Czech e-commerce and physical retail platform specializing in electric bicycles and related accessories. Established in 2007, the company has built a strong market position with over 18 years of experience, offering a wide range of products including over 700 e-bike variants from 16 manufacturers. Their services include sales, rental, and servicing of e-bikes, targeting cycling enthusiasts and urban commuters primarily in the Czech Republic. The website is professionally designed, mobile-optimized, and provides clear navigation and comprehensive product information. Technically, the site leverages modern JavaScript libraries such as Swiper.js, Google Tag Manager, and integrates security features like Google reCAPTCHA to protect user interactions. Hosting is inferred to be on DigitalOcean with CDN support for performance. Security posture is strong with HTTPS enforced and secure form handling, though some HTTP security headers could be improved. Privacy compliance is well addressed with clear privacy and cookie policies, GDPR adherence, and consent mechanisms. Contact information is transparent and includes multiple channels. Overall, the site demonstrates high professionalism, trustworthiness, and digital maturity.

50
25
2
70
32
70
40
electricbikese-bikecyclinge-commerceczechrepublic+2 more
HTML5CSS3JavaScriptSwiper.js+5

Partner Domains:

greatebike.eu
partner
tollebike.de
partner

+3 more partners

2025-07-10T08:09:05.891Z
praha4.cz favicon

Městská část Praha 4

praha4.cz

45
GovernmentCzech RepublicmediumHIGH

Městská část Praha 4 operates as the official municipal government website for the Prague 4 district in the Czech Republic. It provides residents and visitors with comprehensive information on local government services, news, events, and public resources. The site targets local citizens and stakeholders, offering key services such as online forms, contact directories, event calendars, and public announcements. The website is well-positioned as a trusted source of municipal information with a consistent brand and clear communication channels including social media integration. Technically, the website is built on legacy ASP.NET WebForms technology with Telerik UI components and uses older versions of jQuery. It employs security scripts like Barracuda and FingerprintJS for visitor identification and basic protection. Hosting and domain registration are managed by Active24, a reputable provider. Performance and mobile optimization are moderate, with room for modernization and improved accessibility. From a security perspective, the site enforces HTTPS and includes cookie consent mechanisms, but lacks modern security headers such as CSP and X-Frame-Options. The use of outdated JavaScript libraries presents potential vulnerabilities. No explicit security or incident response policies are published. Overall, the security posture is adequate but could benefit from updates and enhanced controls. The domain WHOIS data is consistent with the website's municipal nature, showing a long-established registration since 1998 without privacy protection, reinforcing legitimacy. No suspicious or malicious content was detected, and the site is safe for general audiences. Strategic recommendations include updating technical components, enhancing security headers, and improving privacy and accessibility compliance to strengthen trust and resilience.

15
10
17
70
72
75
20
municipalgovernmentpragueczechrepublicpublicservices+1 more
jQuery 1.7.1Telerik Web UIASP.NET WebFormsFingerprintJS (for visitor identification)+1
2025-07-10T08:08:45.848Z
openhouseeurope.org favicon

Open House Europe

openhouseeurope.org

47
Non-profitLithuaniasmallHIGH

Open House Europe is a non-profit cultural organization founded in 2023 and coordinated by the Public institution Architektūros fondas in Lithuania. It operates a network of architecture festivals across Europe, focusing on themes such as sustainability, accessibility, inclusion, and future heritage. The organization engages the public through events, volunteer programs, and annual summits, supported by European cultural funding and media partnerships. The website reflects a professional and consistent brand presence with rich content targeting architecture enthusiasts and the general public interested in urban heritage. Technically, the website is built on WordPress with modern technologies including Bootstrap, jQuery, and Lottie animations. It uses Yoast SEO for optimization and integrates Google Analytics and MailerLite for marketing and analytics. The site is mobile-optimized and performs moderately well, with good SEO and accessibility basics. From a security perspective, the site uses HTTPS with a valid SSL certificate and employs secure form handling with nonce tokens. However, DNSSEC is not enabled, and security headers are not explicitly detected. There is no visible security or incident response policy, and no cookie consent mechanism is implemented, which may impact GDPR compliance. The WHOIS data is consistent with the organization's claims, showing a legitimate and recently registered domain. Overall, the website presents a low-risk profile with strong business credibility and good technical implementation but could improve in privacy compliance and security best practices to enhance trust and regulatory adherence.

20
53
2
85
72
60
-
architectureculturefestivalnon-profiteurope+1 more
WordPress 6.8.1Yoast SEO pluginBootstrap 4.3.1jQuery 3.7.1+5

Partner Domains:

archfondas.lt
partner
english.lithuanianculture.lt
partner

+2 more partners

2025-07-10T08:08:30.818Z
dckkzz-krapina.hr favicon

Društvo Crvenog križa Krapinsko-zagorske županije

dckkzz-krapina.hr

36
Non-profitCroatiamediumHIGH

Društvo Crvenog križa Krapinsko-zagorske županije is a regional non-profit humanitarian organization serving the Krapinsko-zagorska County in Croatia. The organization coordinates local Red Cross societies and provides key services such as blood donation campaigns, social welfare activities, emergency response, and addiction prevention programs. It also manages EU-funded projects to enhance its infrastructure and outreach. The website reflects a well-structured and content-rich platform that supports community engagement and transparency. Technically, the website is built on WordPress 6.8.1 with a modern tech stack including jQuery and several plugins for event management and content display. The site is mobile-optimized and uses HTTPS, ensuring secure communication. However, some security headers are not explicitly detected, and there is no cookie consent mechanism, which could be improved for better privacy compliance. From a security perspective, the site demonstrates good practices such as HTTPS enforcement and nonce usage in AJAX calls. The absence of exposed sensitive data and vulnerabilities in the visible content is positive. The WHOIS data is privacy protected, which is common for non-profits, but limits transparency. No incident response or security policies are published, which could be a gap in organizational security posture. Overall, the website is professional, trustworthy, and serves its community well. Strategic improvements in privacy compliance and security headers would enhance its security posture and regulatory adherence.

15
10
2
65
-
80
40
humanitariannon-profitcroatiaredcrosscommunity+3 more
WordPress 6.8.1jQueryModern Events Calendar Lite pluginThe Post Grid plugin+4
2025-07-10T08:07:25.640Z
P

Prijatelji životinja

veganopolis.net

45
Non-profitCroatiasmallHIGH

Veganopolis is a Croatian non-profit online platform operated by the association Prijatelji životinja, dedicated to promoting veganism and plant-based lifestyles. The website offers a variety of community and educational services including a vegan product guide, a 30-day vegan challenge, vegan buddy support, nutritionist advice, cooking workshops, and vegan restaurant listings. The target audience is primarily Croatian-speaking individuals interested in veganism and animal rights. The platform positions itself as a niche non-profit resource with a focus on community engagement and education. Technically, the website uses a traditional tech stack including jQuery 1.10.2, Bootstrap, and Google Fonts. It is mobile optimized with good navigation and content quality, though some technologies are outdated. No CMS or hosting provider details are evident. The site lacks advanced security headers and explicit privacy or terms of service pages, though it includes a cookie consent banner. No analytics or tracking scripts were detected, indicating a privacy-conscious approach. From a security perspective, the site uses HTTPS (assumed), employs POST methods for forms, and does not expose sensitive data. However, the absence of security headers and use of an outdated jQuery version present moderate risks. The WHOIS data is missing or indicates the domain is unregistered, which is inconsistent with the active website and raises concerns about domain legitimacy. Overall, the security posture is moderate but could be improved with better policies and technical controls. The overall risk is moderate with recommendations to verify domain registration status, implement security headers, update libraries, and publish privacy and security policies. The site is safe for general audiences and serves a clear non-profit mission with good business credibility.

15
50
17
70
62
75
-
veganveganismnutritionnon-profitcroatia+2 more
jQuery 1.10.2BootstrapjQuery FancyboxGoogle Fonts (Open Sans)

Partner Domains:

www.prijatelji-zivotinja.hr
partner
2025-07-10T08:06:05.454Z
eceae.org favicon

European Coalition to End Animal Experiments (ECEAE)

eceae.org

48
Non-profitGermanysmallHIGH

The European Coalition to End Animal Experiments (ECEAE) is a well-established non-profit umbrella organization founded in 1990, representing 18 animal protection and scientific organizations across Europe. Their mission focuses on abolishing animal experiments and promoting humane, animal-free research methods. The organization holds a recognized position with official stakeholder status in several EU bodies, enhancing their influence in policy and advocacy. The website reflects this mission with clear, relevant content targeted at animal welfare advocates, researchers, and policymakers. Technically, the website is built on Joomla CMS with a modern and responsive design, delivering a good user experience across devices. The infrastructure is moderate in performance, with no blocking or WAF challenges detected. However, some security best practices such as DNSSEC and security headers are missing, and no cookie consent mechanism is implemented, which is a compliance gap given GDPR relevance. Security posture is adequate with HTTPS enabled and domain transfer protection, but lacks published security policies or incident response contacts. The WHOIS data is transparent and consistent with the organization's identity and location, supporting legitimacy. Overall, the site is professional and trustworthy but could improve privacy compliance and security hardening. Strategic recommendations include enabling DNSSEC, implementing security headers, adding cookie consent for GDPR compliance, and publishing security and incident response policies to enhance trust and compliance.

50
53
2
70
72
55
-
animalprotectionantivivisectionnon-animalresearcheuropeancoalitionanimalexperiments
JavaScriptCSSHTML5
2025-07-10T08:05:40.408Z
eurogroupforanimals.org favicon

Eurogroup for Animals

eurogroupforanimals.org

49
Non-profitN/amediumHIGH

Eurogroup for Animals is a pan-European non-profit advocacy organization dedicated to improving animal welfare and defending animal interests across Europe. The website serves as a platform to communicate their mission, campaigns, and policy initiatives to a broad audience including NGOs, policymakers, and the general public interested in animal welfare. The organization positions itself as a key voice in European animal advocacy with a focus on policy influence and public awareness. Technically, the website is built on Drupal 10, leveraging modern web technologies including Font Awesome for icons, Google Tag Manager for analytics, and Cookiebot for cookie consent management. The site demonstrates good digital maturity with mobile optimization, accessibility features, and a cookie consent mechanism that complies with GDPR requirements. Performance is moderate, with room for optimization. From a security perspective, the site uses HTTPS and implements cookie consent with granular user controls. However, explicit security headers like Content-Security-Policy and X-Frame-Options were not detected in the provided data, suggesting an area for improvement. No vulnerabilities or exposed sensitive data were found. The WHOIS data is unavailable or privacy protected, which is typical for non-profit organizations and does not raise immediate concerns. Overall, the website is professional, trustworthy, and compliant with privacy regulations, though it would benefit from enhanced security header implementation and clearer contact information. The risk profile is low, with no critical issues detected.

40
83
17
55
-
80
40
animalwelfarenon-profitadvocacyeuropecookieconsent+1 more
Drupal 10Font Awesome 6 ProGoogle Tag ManagerCookiebot
2025-07-10T08:05:35.392Z
lmih.lu favicon

Luxembourg - Let's Make It Happen (LMIH)

lmih.lu

47
GovernmentLuxembourgmediumHIGH

Luxembourg - Let's Make It Happen (LMIH) is an official government-backed platform designed to inspire and connect actors involved in promoting Luxembourg internationally. The website offers a rich selection of multimedia tools, branding guidelines, and partnership opportunities to support the promotion of Luxembourg's values and talents. It targets both national and international audiences including ministries, public administrations, businesses, and associations. The platform is positioned as a central resource for Luxembourg's national branding efforts, leveraging modern web technologies and a multilingual approach to maximize reach and engagement. Technically, the website is built on WordPress 6.8.1 with a modern tech stack including Yoast SEO, jQuery, Select2, Swiper.js, and Matomo analytics for privacy-conscious tracking. It employs HTTPS with good SSL configuration and integrates Google reCAPTCHA v2 for form security. Accessibility features and SEO optimizations are well implemented, contributing to a positive user experience across devices. However, explicit privacy and cookie policy pages are not detected in the provided content, which is a compliance gap. From a security perspective, the site follows best practices such as HTTPS enforcement and CAPTCHA protection on forms. The use of Matomo analytics and Axeptio cookie consent indicates a privacy-aware approach. Nonetheless, the absence of security headers and vulnerability disclosure policies suggests room for improvement in security posture. No vulnerabilities or suspicious activities were detected in the analysis. Overall, the website presents a professional, trustworthy, and well-structured platform aligned with its government branding mission. Strategic recommendations include publishing comprehensive privacy and cookie policies, implementing security headers, and establishing a vulnerability disclosure mechanism to enhance compliance and security maturity.

20
25
17
70
62
80
20
governmentluxembourgbrandingpromotionmultimedia+5 more
WordPress 6.8.1Yoast SEO pluginjQuerySelect2+4
2025-07-10T08:03:44.275Z
oca.lu favicon

OCA Luxembourg

oca.lu

41
FinanceLuxembourgsmallHIGH

OCA Luxembourg is a professional insurance brokerage firm operating in the Grand Duchy of Luxembourg, providing tailored insurance solutions for both professionals and individuals. The company offers a range of services including professional insurance, personal insurance, and specialty insurance products such as Lifestyle & Fine Art, construction guarantees, and coverage for European officials and sports professionals. The website reflects a well-structured and professional digital presence with clear navigation and relevant content targeting Luxembourg-based clients. Technically, the website employs modern web technologies including Bootstrap, jQuery, and specialized plugins like Revolution Slider and tarteaucitron for cookie consent management. The site is mobile-optimized and demonstrates good SEO practices, although some improvements in accessibility and security headers could enhance its technical maturity. From a security perspective, the site uses HTTPS and implements cookie consent mechanisms, indicating awareness of privacy regulations such as GDPR. However, the absence of visible security headers and incident response information suggests room for improvement in security posture. The lack of WHOIS data limits the ability to fully verify domain legitimacy, but the professional content and business registration number lend credibility. Overall, the website presents a trustworthy and professional image suitable for its business domain, with moderate technical and security maturity. Strategic enhancements in security headers, incident response transparency, and WHOIS data availability would strengthen trust and compliance.

20
28
2
70
52
75
-
insuranceluxembourgbrokerprofessionalpersonal+2 more
HTML5CSS3JavaScriptjQuery+3
2025-07-10T06:54:54.457Z
ala.lu favicon

Association Luxembourg Alzheimer

ala.lu

45
HealthcareLuxembourgmediumHIGH

Association Luxembourg Alzheimer is a well-established non-profit organization based in Luxembourg, dedicated to supporting people affected by dementia and their families. The organization offers a comprehensive range of services including counseling, a 24/7 helpline, ambulatory care, day centers, and a specialized care home. Their website reflects a strong commitment to accessibility and user support, with multilingual options and detailed service information. The organization maintains an active presence on social media platforms such as Facebook, LinkedIn, and Instagram, enhancing community engagement and outreach. Technically, the website is built on WordPress with modern plugins like Yoast SEO and accessibility tools, ensuring good SEO and compliance with accessibility standards. The site uses Matomo for analytics, indicating a privacy-conscious approach to user tracking. Performance and mobile optimization are good, though some improvements could be made in hosting transparency and performance metrics. From a security perspective, the site enforces HTTPS and provides a cookie consent mechanism with granular user control, aligning with GDPR requirements. However, it lacks published privacy policies, terms of service, and explicit security or incident response policies, which are important for compliance and user trust. No critical vulnerabilities or suspicious content were detected. Overall, the website is professional, trustworthy, and well-aligned with its mission, but would benefit from enhanced privacy and security disclosures to improve compliance and user confidence.

15
25
17
60
62
75
20
healthcaredementianon-profitaccessibilityfrench+1 more
WordPressYoast SEO pluginjQuerySlick Slider+3

Partner Domains:

fondation.alzheimer.lu
partner
2025-07-10T05:50:26.279Z
airt.at favicon

Wiener Städtische Versicherungsverein

airt.at

48
OtherAustriamediumHIGH

The website www.airt.at represents the cultural exhibition series "Architektur im Ringturm" managed by the Wiener Städtische Versicherungsverein, part of the Vienna Insurance Group. It serves as a platform to showcase architectural and cultural exhibitions primarily focused on Central and Eastern Europe. The site offers detailed information about current and past exhibitions, architecture talks, and historical context of the Ringturm building. It targets architecture and culture enthusiasts and operates as a free-entry exhibition series supported by sponsorships. Technically, the site is built on WordPress with modern plugins and libraries, including multilingual support and spam protection via Google reCAPTCHA. The website demonstrates good digital maturity with responsive design, SEO optimization, and accessibility considerations. Security posture is solid with HTTPS enforced and spam prevention on forms, though some security headers could be improved. Privacy compliance is strong, featuring a comprehensive privacy policy, cookie consent banner with opt-in, and GDPR-aligned data collection practices. Overall, the site is professional, trustworthy, and well-maintained, reflecting the reputable parent organization. No critical security or compliance issues were detected.

15
43
2
70
62
85
20
architecturecultureexhibitionviennainsurance+4 more
WordPress 6.8.1PHPjQuery 3.7.1Google reCAPTCHA v2+5

Partner Domains:

www.wst-versicherungsverein.at
partner
2025-07-10T05:47:45.945Z
Z

Жук Це-Це – Мой сайт о работе, хобби и прочем

zhuk.cc

47
TechnologyN/asmallHIGH

The website zhuk.cc is a personal blog primarily focused on technology topics, especially Joomla extensions, Oracle, Java, and various hobbies. It serves a niche audience of developers and technology enthusiasts interested in Joomla components and related software. The site offers technical articles, extension releases, and community forums, positioning itself as a resource hub for Joomla users. The business model revolves around content publishing and software extension distribution, with demonstration sites and forums supporting user engagement. Technically, the site is built on WordPress 6.8.1 using the Total theme and incorporates multiple JavaScript libraries such as jQuery, Owl Carousel, and Font Awesome. The platform is moderately optimized for performance and mobile use, with basic SEO and accessibility features. The site is fully accessible over HTTPS, indicating good SSL configuration, but lacks advanced security headers and privacy compliance mechanisms. From a security perspective, the site shows a moderate security posture with HTTPS enabled and no exposed sensitive data. However, it lacks explicit security headers, privacy and cookie policies, and incident response contacts, which are important for compliance and trust. No WAF or blocking mechanisms are detected, and the site content is safe for general audiences with no adult or questionable material. Overall, the site is a well-maintained personal technology blog with good content quality and business credibility but has room for improvement in privacy compliance and security best practices. Strategic recommendations include implementing privacy and cookie policies, adding security headers, and providing clear contact information for security incidents to enhance trust and compliance.

15
35
10
60
62
75
40
joomlawordpressoraclejavaextensions+4 more
WordPress 6.8.1jQueryjQuery MigrateFont Awesome 4.7.0 and 5.2.0+8
2025-07-10T05:46:40.618Z
O

Otok Krk energija d.o.o.

oke.hr

40
EnergyCroatiasmallHIGH

Otok Krk energija d.o.o. is a Croatian limited liability company focused on producing and supplying renewable energy, primarily solar, to achieve energy independence for the island of Krk. The company is relatively new, founded in 2019, and is owned by the local municipality of Baška with plans to include other local government units as co-owners. Their business model centers on local investment and sustainable energy production, positioning themselves as a key player in the regional green energy market. The website reflects this mission with content in Croatian and some English, targeting local residents, investors, and governmental bodies interested in renewable energy projects. Technically, the website uses common web technologies such as Bootstrap, jQuery, and popular carousel libraries, with integration of Google Analytics and Facebook SDK for tracking and marketing purposes. The site is moderately optimized for mobile and SEO but lacks advanced accessibility features. Security posture is moderate; HTTPS is used but no explicit security headers or incident response policies are published. Privacy and cookie policies exist but lack active consent mechanisms. Overall, the website is professional and trustworthy but could improve in security and privacy compliance. Recommendations include implementing security headers, adding cookie consent, publishing incident response information, and enhancing contact transparency.

15
10
2
85
62
75
-
energyrenewablesolarcroatialocalcommunity+2 more
jQueryBootstrapOwl CarouselPrettyPhoto+3

Partner Domains:

ezok.hr
partner
solarniklaster.org
partner

+2 more partners

2025-07-10T04:40:35.691Z
pikavuorot.fi favicon

Aittakoodi Oy

pikavuorot.fi

47
TransportationFinlandsmallHIGH

Pikavuorot.fi is a Finnish transportation price comparison website operated by Aittakoodi Oy, founded in 2015. The platform aggregates and compares prices and schedules for bus and train travel across multiple Finnish transportation providers, including major companies such as VR, Matkahuolto, Onnibus, and airlines like Finnair and Norwegian. It serves a general audience seeking convenient travel planning and ticket purchasing options within Finland. The website enjoys a moderate market position as a leading price comparison tool in its niche. Technically, the site employs a modern but somewhat dated technology stack including Bootstrap 3, jQuery, DataTables, and Socket.io for real-time data updates. It integrates multiple third-party services for fonts, advertising, and analytics, including Google Adsense and Facebook SDK. The site is mobile-optimized with good navigation and SEO practices, though accessibility features are basic. From a security perspective, HTTPS is used, but explicit security headers are not detected in the provided data. No critical vulnerabilities or exposed sensitive data were found. Privacy compliance is basic, with a cookie consent banner and a privacy policy page present, but no detailed security or incident response policies are published. Contact information is limited to an email address, with no phone or physical address provided. Overall, Pikavuorot.fi presents a trustworthy and functional service with room for improvement in security hardening, privacy transparency, and expanded contact options. The domain registration data aligns well with the business claims, supporting legitimacy. Strategic recommendations include enhancing security headers, publishing comprehensive policies, and improving user trust signals.

15
25
17
60
72
75
40
transportationpricecomparisonbusticketstrainticketsfinland+2 more
jQueryBootstrap 3DataTablesMoment.js+4

Partner Domains:

onnibus.fi
partner
vr.fi
partner

+3 more partners

2025-07-10T04:40:20.613Z