Skip to main content

High-risk security reports

Browse 46,998 Guard analyses across this slice of the directory — NIS2 / GDPR readiness, SSL/TLS, DNS hygiene and email authentication.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157372
Websites
130
Industries
113
Countries
52
Avg Score
Page 567 of 940|Showing 28301-28350 of 46998
backcountryaccess.com favicon

Backcountry Access

backcountryaccess.com

49
RetailUnited StatesmediumHIGH

Backcountry Access is a well-established company founded in 2001, specializing in backcountry safety products and consumer education. The website positions itself as a trusted name in the outdoor safety retail sector, targeting backcountry enthusiasts and consumers seeking reliable safety equipment. The business model is primarily e-commerce combined with educational content to support safe outdoor activities. The company maintains a consistent brand presence with professional design and structured data to enhance search visibility. Technically, the website uses modern web technologies including JavaScript, Typekit fonts, and integrates third-party services such as Klarna for payments and Yotpo for reviews. Hosting is managed via NS1 DNS services, and the site is mobile optimized with good SEO practices. Security posture is adequate with HTTPS enabled and domain transfer protections, but lacks DNSSEC and security headers, which are recommended for enhanced protection. Privacy compliance is weak due to absence of visible privacy and cookie policies, and no GDPR compliance indicators. Contact information and incident response details are not explicitly provided, which may impact user trust and compliance. Overall, the site is professional and trustworthy but would benefit from improved privacy and security disclosures.

15
73
17
67
42
-
100
backcountrysafetyoutdoorretailecommerce
JavaScriptTypekit fontsTermly cookie consentKlarna payment SDK+1
2025-07-17T17:46:55.269Z
naturpark-verein.de favicon

Naturpark Zittauer Gebirge e. V.

naturpark-verein.de

43
OtherGermanysmallHIGH

Naturpark Zittauer Gebirge e. V. operates a regional nature park website focused on promoting the unique cultural and natural landscape of the Zittauer Gebirge region in Saxony, Germany. The site provides information on nature experiences, educational programs, events, and regional development initiatives, targeting tourists, local residents, and educational institutions. The organization appears to be a small non-profit entity dedicated to environmental and cultural preservation. Technically, the website is built on the BLUEPAGE-CMS platform with modern JavaScript libraries such as jQuery and bxSlider, and employs lazy loading for images to optimize performance. The site is mobile responsive and uses HTTPS with a valid SSL configuration. Cookie consent mechanisms are implemented to comply with GDPR requirements, and privacy is respected by using YouTube's nocookie domain for embedded videos. From a security perspective, the website enforces HTTPS and includes a cookie consent banner with granular controls, but lacks explicit security headers and incident response contact information. No vulnerabilities or exposed sensitive data were detected. The WHOIS data indicates consistent domain registration and hosting with no suspicious patterns. Overall, the site demonstrates a good security posture for its size and purpose. The overall risk is low given the nature of the business and the absence of critical security issues. Strategic recommendations include enhancing security headers, publishing a security policy or incident response contact, and maintaining regular audits of third-party scripts to further strengthen security and trust.

65
40
2
55
52
50
-
naturetourismeducationregionalenvironment+2 more
jQuery 3.7.1BLUEPAGE-CMS V3.40.0bxSliderlazysizes (lazy loading images)+1
2025-07-17T17:46:10.149Z
wugtorino2025.it favicon

Official FISU TORINO 2025 Product's Store

wugtorino2025.it

45
E-commerceItalysmallHIGH

The website www.wugtorino2025.it/en is the official e-commerce store for the FISU Torino 2025 World University Games, offering official merchandise such as apparel, accessories, and memorabilia. It targets fans, participants, and the general public interested in event-related products. The site is built on the PrestaShop CMS platform and incorporates modern web technologies including Google reCAPTCHA for form security and structured data for SEO enhancement. The design is professional and mobile-optimized, providing a good user experience with clear navigation and consistent branding. From a security perspective, the site enforces HTTPS and includes several security headers, demonstrating a good security posture. The use of Google reCAPTCHA helps mitigate automated abuse on forms. However, the absence of explicit privacy and terms of service pages indicates gaps in compliance and transparency. No critical vulnerabilities or exposed sensitive data were detected. The WHOIS data aligns well with the website's purpose and geographic focus, supporting legitimacy. Overall, the site is a trustworthy and functional e-commerce platform for official event merchandise, but it would benefit from enhanced privacy compliance and clearer legal documentation to improve user trust and regulatory adherence.

20
25
2
85
72
60
20
e-commercesportsuniversitygamesmerchandiseofficialstore
PrestaShopjQueryGoogle reCAPTCHA v2Font Awesome+2

Partner Domains:

wugtorino2025.com
partner
2025-07-17T17:38:35.367Z
B

BergBuchBrig

bergbuchbrig.ch

47
MediaSwitzerlandsmallHIGH

BergBuchBrig is a Swiss-based multimedia festival focused on nature, culture, leisure, and mountain adventures. Established in 2006, it has grown into a recognized cultural event with a diverse program including book presentations, exhibitions, film screenings, concerts, and excursions. The website serves as an information portal for the festival, providing event dates, program details, and organizational information. The target audience includes culture and nature enthusiasts primarily in Switzerland and neighboring regions. Technically, the website is built on WordPress using a professional theme and plugins such as Essential Grid and All in One SEO Pro, indicating a moderate level of digital maturity. The site is mobile-optimized and includes structured data for SEO benefits. However, there is room for improvement in performance optimization and accessibility. From a security perspective, the site uses HTTPS and employs some email cloaking to protect contact information. However, it lacks visible security headers and formal security policies such as a security.txt or incident response contacts. Privacy compliance is weak due to the absence of privacy and cookie policies, which could pose regulatory risks. Overall, the website is trustworthy and professional but would benefit from enhanced privacy compliance and security best practices to reduce risk and improve user trust.

25
35
2
85
72
75
-
multimediafestivalculturenaturemountainsswitzerland+2 more
WordPressPHPjQueryEssential Grid plugin+2
2025-07-17T17:36:34.868Z
televize-pribor.cz favicon

Televize Příbor

televize-pribor.cz

36
MediaCzech RepublicsmallHIGH

Televize Příbor operates as a local television broadcaster and media portal serving the community of Příbor, Czech Republic. The website offers a variety of local news, historical archives, municipal council meeting broadcasts, and cultural programming. It targets residents and community members interested in local affairs and events. The business model appears to be community-focused media with possible municipal support and local advertising revenue streams. The site maintains a consistent brand presence with active social media channels on Facebook and YouTube, enhancing community engagement. Technically, the website is built on WordPress 6.6.1 with a modern tech stack including Bootstrap, jQuery, and various media plugins. The site is mobile-optimized and uses structured data (JSON-LD) for SEO benefits. Performance is moderate with good navigation and content relevance. However, Google Analytics is installed but not configured, indicating incomplete analytics setup. From a security perspective, the site uses HTTPS but lacks visible security headers and does not display privacy or cookie policies, which are compliance gaps. No vulnerabilities or exposed sensitive data were detected in the HTML content. The absence of WHOIS data limits domain trust assessment, but the site content and structure suggest a legitimate local media entity. Overall, the website is functional, content-rich, and serves its local audience well but should improve privacy compliance and security headers to enhance trust and regulatory adherence.

15
10
2
60
47
60
20
localnewsmediamunicipalvideoczech+2 more
WordPress 6.6.1Yoast SEO pluginGoogle FontsjQuery 3.7.1+5
2025-07-17T17:33:08.697Z
modemedia.com.au favicon

Modemedia

modemedia.com.au

46
MediaAustraliamediumHIGH

Modemedia is a well-established Australian creative branding and digital agency based in Parramatta, with over 25 years of experience in growing brands through strategic design and storytelling. The company offers a comprehensive suite of services including strategy, design, digital marketing, retail design, and brand management, targeting businesses seeking to enhance their brand presence. The website reflects a professional and consistent brand image, supported by active social media channels and structured data for SEO. Technically, the website is built on WordPress with modern plugins and tools such as Slider Revolution, WPBakery Page Builder, and tracking integrations like Facebook Pixel and Hotjar. The site demonstrates good mobile optimization and SEO practices, although performance is moderate and accessibility features are basic. Security posture is adequate with HTTPS enabled, but lacks some recommended security headers and explicit privacy and cookie policies. The absence of WHOIS registration details limits the ability to fully verify domain legitimacy, though the website content and social presence support its authenticity. Tracking and marketing tools are used with some GDPR prior consent mechanisms, but explicit privacy and cookie policies are not found, indicating room for compliance improvement. Overall, Modemedia presents a credible and professional digital presence with solid business and technical foundations. Enhancing security headers, privacy compliance, and WHOIS transparency would further strengthen trust and reduce risk.

15
35
2
85
72
60
20
brandingdigitalagencycreativemarketingdesign+2 more
WordPress 5.4.16PHPjQueryGoogle Fonts+5
2025-07-17T15:51:25.563Z
e-infra.cz favicon

CESNET, zájmové sdružení právnických osob

e-infra.cz

49
TechnologyCzech RepublicmediumHIGH

e-INFRA CZ is a Czech Republic-based consortium providing unique e-infrastructure services for scientific research and development. The organization offers network infrastructure, high-performance computing, data storage, security, digital identity, and user collaboration services primarily targeting research institutions and scientific communities within the country. The website reflects a professional and consistent brand presence with clear navigation and relevant content focused on its mission. Technically, the website employs modern web technologies including jQuery, Google Analytics, and a cookie consent management system (KookieCheck.cz). It is mobile-optimized and uses HTTPS, ensuring secure communication. However, some security headers are missing, and there is no explicit security policy or incident response information published. From a security perspective, the site demonstrates good practices such as encrypted connections and user consent for cookies, but lacks published vulnerability disclosure or security contact details. No critical vulnerabilities or exposed sensitive data were detected. The absence of WHOIS data limits domain registration insights, but the website's professional appearance and association with CESNET suggest legitimacy. Overall, the website is safe, well-maintained, and compliant with GDPR requirements, serving its target audience effectively. Strategic improvements in security transparency and contact information would enhance trust and compliance further.

60
25
17
60
62
70
20
e-infrastructureresearchscienceczechrepublichpc+5 more
jQuery 3.2.1Google Analytics (gtag.js)KookieCheck.cz (cookie consent)SVG images+1
2025-07-17T15:50:55.437Z
naturpark-zittauer-gebirge.de favicon

Naturpark Zittauer Gebirge e. V.

naturpark-zittauer-gebirge.de

43
Non-profitGermanysmallHIGH

Naturpark Zittauer Gebirge e. V. operates as a non-profit organization dedicated to preserving and promoting the unique cultural and natural landscape of the Zittauer Gebirge region in Saxony, Germany. The website serves as an informational portal offering details about nature experiences, educational programs, regional development, and recreational opportunities. The organization targets nature enthusiasts, families, schools, and tourists interested in the cultural and natural heritage of the area. The business model focuses on conservation, education, and community engagement rather than commercial activities. Technically, the website is built on the proprietary BLUEPAGE-CMS platform and utilizes modern web technologies including jQuery, lazy loading for images, and responsive design tailored for desktop, tablet, and mobile devices. Hosting is provided via kasserver.com nameservers. The site demonstrates moderate performance and good SEO practices, though accessibility features are basic. No advanced analytics or tracking tools are detected, reflecting a privacy-conscious approach. From a security perspective, the website enforces HTTPS and implements a cookie consent mechanism compliant with GDPR. However, it lacks explicit security headers and published incident response or vulnerability disclosure policies. No vulnerabilities or exposed sensitive data were detected in the content. The WHOIS data is limited but does not raise immediate concerns. Overall, the security posture is good but could be improved with additional headers and transparency. The overall risk assessment is low given the nature of the organization and the content provided. Strategic recommendations include enhancing security headers, publishing incident response contacts, and considering a vulnerability disclosure policy to improve trust and security culture. The website is professional, trustworthy, and well-suited for its audience and purpose.

65
40
2
55
52
50
-
natureparkeducationtourismnon-profit+2 more
jQuery 3.7.1BLUEPAGE-CMS V3.40.0bxSliderlazysizes (lazy loading images)+1
2025-07-17T15:50:00.265Z
installeronline.co.uk favicon

Installer Online

installeronline.co.uk

49
EnergyUnited KingdommediumHIGH

Installer Online is a UK-based digital media platform providing essential news, updates, and resources for professionals in the heating, plumbing, and renewable energy sectors. It serves as a key information hub for installers, offering industry news, event coverage, training information, and product updates. The site is part of the Nineteen Group, a known media company, which enhances its credibility and market position. The website targets heating and plumbing professionals, installers, and related stakeholders in the UK energy sector. Technically, the website is built on WordPress with a modern tech stack including Bootstrap, jQuery, and integrates multiple marketing and analytics tools such as Google Analytics, HubSpot, Facebook Pixel, and Parsely. The site is mobile-optimized and demonstrates good SEO practices. Performance is moderate, with room for improvement in accessibility and security headers. From a security perspective, the site enforces HTTPS and implements cookie consent mechanisms aligned with GDPR requirements. However, it lacks visible security headers and publicly available security policies or incident response information. The WHOIS data is unavailable due to a domain registration error from Nominet UK, which is unusual but the site appears legitimate and professionally maintained. Overall, Installer Online presents a professional and trustworthy digital presence with strong content quality and business credibility. Strategic improvements in security headers, incident response transparency, and WHOIS registration clarity would enhance its security posture and trustworthiness further.

15
83
2
70
72
65
-
energyplumbingheatingrenewablesinstaller+4 more
WordPress 6.8.2jQueryBootstrap 3.3.5Google Tag Manager+6

Partner Domains:

www.installershow.com
partner
www.nineteengroup.com
parent
2025-07-17T15:47:09.229Z
cafe24corp.com favicon

카페24 주식회사

cafe24corp.com

45
E-commerceSouth KorealargeHIGH

Cafe24 Corp. is a South Korean technology company specializing in providing a comprehensive global e-commerce platform. Their services include commerce platform solutions, global market expansion support, store and design services, marketing, hosting, and entrepreneurship education. The company positions itself as a leader in the Korean e-commerce ecosystem with a strong partner network and a focus on enabling global online business success. The website content is professionally presented in Korean with multilingual support, targeting online merchants and businesses seeking e-commerce solutions. Technically, the website uses modern JavaScript libraries such as jQuery 3.6.0 and Google Tag Manager for analytics and marketing. The site is mobile-optimized with good SEO practices and a moderate performance profile. However, some accessibility features are basic, and no CMS or specific frameworks are detected. Hosting appears to be managed internally or through Cafe24's own infrastructure. From a security perspective, the site enforces HTTPS and uses standard tracking scripts without visible vulnerabilities or exposed sensitive data. However, the absence of security headers and cookie consent mechanisms indicates room for improvement in security best practices and privacy compliance. The WHOIS data is missing or unavailable, which raises some concerns about domain registration transparency, though the website content and branding suggest a legitimate business. Overall, Cafe24's website is a well-structured, professional platform supporting a large e-commerce business. Strategic recommendations include enhancing security headers, implementing GDPR-compliant cookie consent, publishing security policies, and clarifying domain registration information to improve trust and compliance.

15
53
2
55
77
80
-
e-commercetechnologyplatformglobalkorean+1 more
jQuery 3.6.0jQuery Migrate 3.3.2Google Tag ManagerGoogle Analytics+2

Partner Domains:

store.cafe24.com
partner
d.cafe24.com
partner

+3 more partners

2025-07-17T15:43:53.304Z
kancelar-sabe.cz favicon

Sabe, spol. s r.o.

kancelar-sabe.cz

45
RetailCzech RepublicmediumHIGH

Sabe, spol. s r.o. operates as a retail business specializing in office supplies, calendars, diaries, and office furniture primarily serving customers in the Czech Republic. The company maintains multiple physical stores, with the website indicating at least one active location in Blansko. The website is currently in maintenance mode, preparing a new e-shop, but provides a catalog link and contact information for customers. The business targets both individual and corporate customers seeking office-related products with options for personal pickup. Technically, the website uses standard HTML5 and CSS3 with custom fonts and basic responsive design. There is no detected CMS or advanced frameworks. The site lacks active analytics or tracking scripts, and no social media presence is linked. The website's SEO and accessibility features are basic, and performance is moderate. Security features such as HTTPS and security headers are not verifiable from the provided data, and no privacy or cookie policies are published. From a security perspective, the absence of WHOIS data and domain registration details is a concern, reducing trust in domain legitimacy. The site does not expose any forms or user input fields, minimizing attack surface, but also lacks visible security best practices such as security headers or vulnerability disclosure policies. The lack of privacy and cookie policies indicates non-compliance with GDPR and related regulations, which could pose legal risks. Overall, the website presents a legitimate retail business with moderate digital maturity but requires improvements in security posture, privacy compliance, and technical modernization to enhance trust and user experience. The domain registration opacity is a notable risk factor that should be addressed to improve credibility.

55
10
2
80
72
85
-
officesuppliesretailczechrepublicmaintenancecatalog
HTML5CSS3Custom fonts (neuzeit-grotesk)Google Maps links
2025-07-17T14:41:37.232Z
hartzellswag.com favicon

Hartzell Swag

hartzellswag.com

44
RetailN/asmallHIGH

Hartzell Swag is a small retail e-commerce business specializing in corporate branded merchandise such as apparel and accessories. The website offers a variety of products including t-shirts, hoodies, polos, vests, jackets, caps, and blankets, targeting corporate clients and employees. The business appears to be newly established in 2024 and is associated with KSM Promotions as the parent company. The website is professionally designed with consistent branding and a clear product catalog, but lacks comprehensive privacy and cookie policies, as well as explicit contact information. Technically, the website uses a basic technology stack including jQuery and a slideshow plugin, hosted by GoDaddy. The site is moderately optimized for performance and mobile use but lacks advanced SEO and accessibility features. Security posture is average with HTTPS enabled but missing important security headers and DNSSEC. No advanced security or compliance frameworks are evident. From a security perspective, the site shows basic protections but lacks privacy compliance elements such as GDPR indicators, cookie consent, and incident response contacts. No vulnerabilities or malware were detected, but improvements are recommended in security headers and privacy disclosures. Overall, the site is functional and trustworthy for its business purpose but requires enhancements in privacy, security, and contact transparency to improve compliance and user trust. Strategically, the business should focus on implementing privacy and cookie policies, enhancing security headers, and providing clear contact information to strengthen compliance and customer confidence. Technical modernization and SEO improvements would also benefit the site's visibility and user experience.

15
35
2
85
72
75
-
e-commercecorporatemerchandiseapparelbrandedclothingretail
jQuery 1.10.2Slippry slideshow pluginGoogle Fonts (Source Sans Pro)Google Translate widget
2025-07-17T14:40:21.359Z
sprat.org favicon

Society of Professional Rope Access Technicians

sprat.org

36
EnergyUnited StatesmediumHIGH

The Society of Professional Rope Access Technicians (SPRAT) is a well-established non-profit organization founded in 1998, specializing in rope access certification, standards development, and education. The organization serves a diverse audience including companies, technicians, and government agencies involved in rope access work, primarily within the energy sector. SPRAT offers certification programs, membership benefits, regulatory support, and networking opportunities, positioning itself as a leading authority in the rope access industry globally. Technically, the website is built on WordPress with a Divi child theme, leveraging common libraries such as jQuery, Bootstrap, and Font Awesome. The site demonstrates moderate performance and good mobile optimization but lacks advanced SEO and accessibility features. Hosting details are limited, but the domain registrar is Network Solutions, LLC, with a long-standing domain age consistent with the organization's history. From a security perspective, the site uses HTTPS and has domain transfer protections but lacks DNSSEC and important security headers. There is no visible privacy or cookie policy, nor incident response or vulnerability disclosure information, which indicates gaps in compliance and security transparency. Tracking is minimal, limited to Jetpack stats, and no advertising or affiliate programs are detected. Overall, the website is professional and trustworthy with good business credibility but requires improvements in privacy compliance, security headers, and explicit policies to enhance its security posture and regulatory adherence.

15
35
17
70
-
70
-
ropeaccesscertificationnon-profitmembershipsafety+2 more
WordPress 6.5.5Divi Theme (Child)jQueryBootstrap 4.3.1+3
2025-07-17T13:32:46.815Z
I

International Water-Guard

water.aero

46
TransportationCanadamediumHIGH

International Water-Guard (IWG) is a Canadian-based company specializing in potable water treatment and distribution solutions for business and commercial aircraft. With over 30 years of industry experience, IWG positions itself as a leading provider of flight-certified water treatment units, pumps, heaters, and touchless lavatory technologies. The company targets aircraft manufacturers and operators seeking innovative and sustainable water management solutions to enhance passenger experience and comply with environmental standards. Technically, the website is built on a modern WordPress platform using Bootstrap and jQuery, with integrations such as Google Analytics and reCAPTCHA to support analytics and security. The site demonstrates good mobile optimization, SEO practices, and a professional design, although some accessibility features could be improved. The absence of explicit privacy and cookie policies suggests room for enhancement in compliance. From a security perspective, the site enforces HTTPS and uses reCAPTCHA to protect forms, but lacks visible security headers and published security policies or incident response contacts. No vulnerabilities or exposed sensitive data were detected in the content. The WHOIS data is unavailable, which limits domain trust verification, but the website's certifications and social media presence support its legitimacy. Overall, the website is professional and trustworthy with moderate technical maturity and security posture. Strategic improvements in privacy compliance, security headers, and domain registration transparency would enhance trust and compliance.

20
35
2
70
72
75
20
watertreatmentaviationpotablewateraircrafttouchlesstechnology+2 more
WordPress 6.8.2BootstrapjQueryGoogle Analytics+4
2025-07-17T13:30:51.014Z