Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157326
Websites
130
Industries
113
Countries
52
Avg Score
Page 649 of 656|Showing 32401-32450 of 32764
R

Restoration Hardware

restorationhardware.com

69
home furnishingsUnited StateslargeMEDIUM

The website demonstrates a mixed security posture with no critical vulnerabilities but several high and medium-risk issues that could expose the business to significant threats. Major gaps exist in security headers, GDPR compliance, and adherence to the NIS2 directive, particularly around incident response and information security frameworks. The absence of essential security headers like Content-Security-Policy and X-Frame-Options increases the risk of web-based attacks such as clickjacking and cross-site scripting. GDPR compliance weaknesses, including missing cookie consent and privacy policy concerns, expose the business to regulatory penalties and reputational damage. Key NIS2 deficiencies highlight a lack of documented security policies and incident management, which could impair response to cyber incidents. SSL/TLS weaknesses and missing DNS security measures further elevate risk by potentially allowing interception or manipulation of data. Positively, email security and network security postures are strong, reducing some risks related to email spoofing and network-based attacks. Overall, urgent remediation is needed to protect the business, customer data, and ensure regulatory compliance while maintaining stakeholder trust.

30
58
25
90
72
85
100
Restoration Hardwarefurniturehome accessorieslightingluxury+1 more
ReactGoogle Analytics

Partner Domains:

rh.com
servicepending
adyen.com
payment68

+2 more partners

2025-06-13T18:10:51.514Z
fmssolutions.com favicon

FMS Solutions

fmssolutions.com

60
Profit maximization, technology, outsourcingUnited StatesmediumMEDIUM

The website demonstrates significant security weaknesses, particularly in critical HTTP security headers, GDPR compliance, and adherence to NIS2 cybersecurity requirements. No critical vulnerabilities were found, but twelve high-severity issues indicate substantial risk exposure, especially related to missing security headers and lack of privacy policies. The absence of key headers like Strict-Transport-Security, X-Frame-Options, and Content-Security-Policy increases susceptibility to common web attacks such as clickjacking, man-in-the-middle, and cross-site scripting. GDPR compliance gaps, including missing privacy and cookie policies and consent mechanisms, expose the business to regulatory penalties and reputational damage. Additionally, the lack of documented information security frameworks, incident response, and business continuity plans under NIS2 requirements presents operational risks. SSL/TLS implementation is weak due to expiring certificates, weak key lengths, and mixed content, which may undermine user trust and data confidentiality. DNS and network security are relatively strong, but DNSSEC and CAA records should be configured to enhance domain integrity. Immediate remediation is necessary to protect customer data, maintain compliance, and safeguard business continuity.

25
25
25
100
50
85
100
profit maximizationtechnologyoutsourcingBPOtax management+2 more
WordPress 6.8.1jQuery 3.7.1Google Tag Manager (gtag.js)Formsite embed+5
2025-06-13T18:10:51.492Z
volkerrail.nl favicon

VolkerRail

volkerrail.nl

51
rail infrastructureNetherlandslargeMEDIUM

The website exhibits critical vulnerabilities that severely impact its security posture, notably the absence of HTTPS encryption, which exposes all data transmissions to interception and undermines trust. Compliance with GDPR is critically deficient, with missing privacy measures, cookie consent, and policy elements, risking significant legal and financial penalties for operating as an EU business without proper safeguards. The lack of an information security framework, incident response procedures, and security policies further amplifies operational risks and regulatory non-compliance under NIS2 requirements. While network security and email security show strengths, foundational issues such as weak security headers and DNS security gaps must be addressed to prevent exploitation. Overall, the site is at high risk of data breaches, legal repercussions, and reputational damage unless urgent remediation occurs. Immediate focus on encryption, privacy compliance, and security governance is essential to protect business interests and customer trust. The current security posture scores indicate critical gaps in GDPR, NIS2, and SSL/TLS domains that require rapid attention. Addressing these will significantly improve compliance, resilience, and stakeholder confidence.

75
-
15
95
-
85
100
rail infrastructureconstructionmaintenancesustainabilitysafety+1 more
Drupal 10Google Tag ManagerGoogle Tag (gtag.js)jQuery Validation+5

Partner Domains:

volkerwessels.com
subsidiarypending
werkenbijvolkerwessels.nl
related businesspending

+1 more partners

2025-06-13T18:10:50.407Z
superyachtsociety.org favicon

International Superyacht Society

superyachtsociety.org

39
yachtingunspecifiedmediumHIGH

The website’s security posture is currently inadequate and exposes the business to significant risks including data breaches, regulatory non-compliance, and reputational damage. The absence of HTTPS encryption is a critical vulnerability affecting confidentiality and integrity of user data, severely undermining trust and violating GDPR and NIS2 requirements. Key security headers that mitigate common web attacks are largely missing, leaving the site vulnerable to clickjacking, content injection, and cross-site scripting exploits. Additionally, the lack of privacy and cookie policies, along with no cookie consent mechanism, poses serious compliance risks with GDPR regulations, potentially leading to legal penalties. The organization also lacks essential security governance components such as incident response procedures, security policies, and business continuity plans, which are vital for operational resilience. While some areas like DNS health and network security show moderate strength, critical gaps in email authentication and SSL/TLS further increase exposure to phishing and man-in-the-middle attacks. Immediate remediation is necessary to protect sensitive data, ensure regulatory compliance, and maintain customer trust. Without swift action, the business risks financial loss, legal consequences, and damage to brand reputation.

15
-
5
75
-
85
90
yachtingsuperyachtmembershipawardseducation+1 more
WordPress 6.7.2Yoast SEO plugin v20.3Google Analytics by MonsterInsights v8.13.1Modern Events Calendar Lite plugin v6.7.2+15

Partner Domains:

naiad.com
partnerpending
quantumstabilizers.com
partnerpending

+2 more partners

2025-06-13T18:10:50.378Z