Skip to main content

High-risk security reports

Browse 43,809 Guard analyses across this slice of the directory — NIS2 / GDPR readiness, SSL/TLS, DNS hygiene and email authentication.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

149561
Websites
130
Industries
113
Countries
52
Avg Score
Page 661 of 877|Showing 33001-33050 of 43809
G

Grigeo

grigeo.lt

45
ManufacturingLithuanialargeHIGH

Grigeo is a Lithuanian manufacturing group specializing in paper and wood industry products, including hygienic paper, packaging materials, corrugated cardboard, and wood fiberboards. The company holds a Nasdaq Baltic listing, indicating a significant market presence and investor interest. Their website reflects a professional corporate identity with consistent branding and a focus on sustainability, evidenced by international certifications such as 'Preferred by Nature'. The target audience includes investors, business partners, and customers within the manufacturing sector. Technically, the website employs modern JavaScript libraries and tracking tools, ensuring a functional and moderately performant user experience with good mobile optimization. Security posture is strong with HTTPS enforcement and use of Google reCAPTCHA Enterprise, though the absence of explicit security headers suggests room for improvement. Privacy compliance is well addressed through a comprehensive privacy policy and cookie consent mechanisms aligned with GDPR requirements. However, the lack of publicly available WHOIS data reduces transparency, though the website content and Nasdaq listing support its legitimacy. Overall, the site scores well in content quality, technical implementation, security, and privacy compliance, with minor penalties for missing WHOIS data and security headers.

25
50
2
70
72
60
-
manufacturingpaperwoodsustainabilitylithuania+2 more
jQueryModernizrGoogle AnalyticsFacebook Pixel+5
2025-06-27T12:56:15.887Z
S

Swire Seabed

swireseabed.com

47
EnergyN/asmallHIGH

Swire Seabed appears to be a business operating in the energy and transportation sectors, likely providing seabed or subsea services. However, the website is currently inaccessible due to a Cloudflare error 521 indicating the web server is down. This prevents access to any meaningful business content or contact information. The domain is registered since 2021 with a 5-year expiry, suggesting a legitimate business intent, but no registrant organization details are publicly available. The site uses Cloudflare as a CDN and security provider but lacks DNSSEC and currently suffers from server unavailability. From a technical perspective, the website relies on Cloudflare but shows no evidence of modern CMS or frameworks due to the error page content. No analytics, scripts, or tracking mechanisms are detected. Security posture is weak due to lack of DNSSEC, absence of security headers, and the current downtime. Privacy and cookie policies are not found, indicating poor compliance with GDPR or other privacy regulations. Overall, the security posture is limited by the server downtime and lack of visible security best practices. The business credibility is low due to absence of contact details and business content. The domain registration is consistent but lacks transparency on registrant details. Strategic recommendations include restoring server availability, enabling DNSSEC, publishing privacy and cookie policies, and implementing security headers and incident response policies.

-
35
2
60
75
75
100
cloudflareerror521webserverdownenergytransportation
Cloudflare
2025-06-27T12:56:15.711Z
arbor.lv favicon

Arbor Medical Korporācija

arbor.lv

45
HealthcareLatviamediumHIGH

Arbor Medical Korporācija is a Latvian-based medical equipment and supplies company serving the Baltic region. The company operates a professional website offering a broad catalog of medical, veterinary, beauty, and safety products, positioning itself as an official Philips Healthcare representative in Latvia. Their business model focuses on B2B sales, equipment rental, user training, and servicing, targeting hospitals, clinics, and healthcare providers. The website content is well-structured, primarily in Latvian, and includes active social media engagement and participation in medical congresses and exhibitions, indicating a solid market presence. Technically, the website is built on the PrestaShop CMS platform, utilizing common web technologies such as jQuery, Font Awesome, Google Fonts, and integrates Google Analytics and Facebook Pixel for tracking. The site is HTTPS secured with a cookie consent mechanism compliant with GDPR. However, some security best practices like security headers and vulnerability disclosure policies are missing, and WHOIS data could not be retrieved due to query limits, limiting full domain legitimacy verification. From a security perspective, the site demonstrates a moderate security posture with HTTPS enforcement and no visible sensitive data exposure. The absence of security headers and lack of explicit incident response or security policies are areas for improvement. Privacy compliance is good with a clear privacy policy and cookie consent, but contact information lacks direct emails or phone numbers, which could affect user trust. Overall, Arbor Medical Korporācija presents a professional and credible online presence with room for technical and security enhancements. The lack of WHOIS data reduces the trust score slightly, but the business appears legitimate and well-established in its sector.

15
10
2
85
67
85
20
healthcaremedicalequipmentlatviaprestashopgdpr+2 more
jQuery 1.11.0jQuery Migrate 1.2.1Font Awesome 4.7.0Google Fonts (Open Sans)+3

Partner Domains:

medveikals.lv
partner
arborbeauty.lv
partner

+1 more partners

2025-06-27T12:56:15.548Z
A

A TurboC 4U

aa.lv

41
FinanceLatviasmallHIGH

A TurboC 4U is a Latvian insurance brokerage firm established in 1996, recognized as the oldest and one of the most experienced brokers in Latvia. The company offers a wide range of insurance brokerage and consulting services, including vehicle, travel, health, property, and liability insurance. It positions itself as a trusted intermediary collaborating with all Latvian insurance companies and emphasizes ethical business practices and client-centric service. The website content is primarily in Latvian with options for English and Russian, targeting local insurance clients. Technically, the website is built on WordPress and uses legacy JavaScript libraries such as jQuery 1.12.4. It integrates Google Analytics and Google Tag Manager for tracking. The site lacks HTTPS, which is a significant security concern, and does not implement modern security headers or cookie consent mechanisms. Mobile optimization and accessibility are basic, and SEO practices are minimal but functional. From a security perspective, the absence of HTTPS and security headers exposes users to risks such as data interception and man-in-the-middle attacks. The outdated JavaScript libraries may also introduce vulnerabilities. No explicit security policies, incident response contacts, or vulnerability disclosure mechanisms are present, indicating a low maturity in security governance. Privacy compliance is partially addressed with a comprehensive privacy policy, but cookie consent is missing. Overall, the website presents a moderate risk profile due to missing HTTPS and outdated technologies. The business credibility is supported by consistent branding and trust signals such as association membership and a clean legal record. Strategic improvements in security infrastructure and privacy compliance are recommended to enhance trust and protect client data.

15
-
-
85
-
75
100
insurancebrokerlatviaconsultingfinance
jQueryGoogle AnalyticsWordPress

Partner Domains:

paba.eu
partner
2025-06-27T12:56:15.542Z
rpksoft.com favicon

CSL Computer Service Langenbach GmbH

rpksoft.com

39
TechnologyGermanysmallHIGH

The website rpksoft.com is currently a parked domain hosted by Joker.com, a domain registration and reseller platform operated by CSL Computer Service Langenbach GmbH. The site primarily promotes domain registration services with a simple landing page and no active business content. The target audience includes individuals and businesses looking to register or manage domain names. The business model is focused on domain registration and reseller services, with key offerings such as domain management control panels, reseller APIs, email forwarding, and URL forwarding. The company behind the registrar is based in Germany and has been operating since 2009. From a technical perspective, the website uses basic HTML5 and Bootstrap CSS for layout and styling. The site is mobile optimized and has moderate performance but lacks advanced technical features or CMS integration. No analytics or tracking technologies are detected, indicating minimal data collection. However, the site does not enforce HTTPS in the provided content, and DNSSEC is not enabled, which are notable security gaps. Security posture is limited with no visible security headers or HTTPS enforcement in the provided HTML content. The domain status clientTransferProhibited is a positive indicator against unauthorized transfers. No privacy or cookie policies are present, and no contact information is provided, which impacts compliance and trust. Overall, the site is low risk but lacks maturity in security and privacy practices. Strategically, the domain appears to be parked and not actively used for business operations, which limits exposure but also reduces trust signals. Recommendations include enabling HTTPS, adding privacy and cookie policies, and providing clear contact information to improve compliance and user trust.

15
25
-
40
-
75
100
domaindomainsfreecheapreseller+5 more
Bootstrap CSSHTML5JavaScript
2025-06-27T12:56:15.519Z
R

For Sale! renesource.com

renesource.com

48
OtherN/asmallHIGH

The website renesource.com is a single landing page dedicated to offering the premium domain name for sale. It does not represent an active business or service but rather functions as a domain marketplace listing. The site targets individuals or businesses interested in acquiring a premium domain to launch their brand. The business model is domain resale, with no additional services or content provided. The domain itself is well aged, registered since 2001, which supports its premium status. From a technical perspective, the website is minimalistic, built with basic HTML and CSS, and uses Google Fonts for typography. It is hosted behind Cloudflare DNS, but no advanced CMS or frameworks are detected. The site is moderately optimized for mobile and performance but lacks advanced SEO or accessibility features. There are no analytics or tracking scripts present, indicating minimal data collection. Security posture is weak due to the absence of security headers, no DNSSEC enabled, and no visible HTTPS enforcement details. The site lacks privacy, cookie, or terms of service policies, and no contact or incident response information is provided. These factors reduce trust and compliance levels. The WHOIS data is consistent and legitimate, showing a long registration period without privacy protection, which aligns with the domain sale purpose. Overall, the site serves a narrow purpose as a domain sale landing page with minimal content and security features. Strategic improvements should focus on adding basic security headers, enabling DNSSEC, providing privacy and cookie policies, and including contact information to enhance trust and compliance.

15
35
2
40
75
70
100
domainsalepremiumdomaindomainmarketplaceforsale
HTML5CSS3Google Fonts
2025-06-27T12:56:15.497Z
G

Games OS

games-os.com

32
TechnologyN/asmallHIGH

Games OS is a newly established company specializing in the development of turnkey iGaming software solutions, including online casino software and white label platforms. The company targets iGaming operators seeking to launch or improve their gaming businesses. Their market position is that of an innovative and efficient software provider within the technology sector. The website content is basic but functional, offering clear navigation and a concise description of their services. Technically, the website uses JavaScript and Yandex Metrika for analytics, hosted by REG.RU LLC. The site lacks HTTPS, which is a significant security concern. The design and mobile optimization are basic, with no detected CMS or advanced frameworks. Performance is moderate, and accessibility features are minimal. From a security perspective, the absence of HTTPS, security headers, and cookie consent mechanisms indicates a low security posture. No incident response or security policies are published, and no certifications or trust badges are visible. The WHOIS data shows a consistent and legitimate recent domain registration, but the lack of security best practices reduces trust. Overall, the website scores moderately due to content and business credibility but is critically impacted by security shortcomings. Strategic improvements in security and privacy compliance are recommended to enhance trust and protect users.

15
28
-
70
-
70
20
igamingonlinecasinosoftwareturnkeysolutionsgamestechnology
JavaScriptYandex MetrikaRuffle.js (Flash emulator)Custom JS bundles
2025-06-27T12:56:15.474Z
hm.lv favicon

Hanzas Maiznīca

hm.lv

48
RetailLatvialargeHIGH

Hanzas Maiznīca is the largest and most tradition-rich bakery company in Latvia, specializing in the manufacturing and retail of bread and bakery products. The company operates a professional website built on WordPress, showcasing its product range, recipes, and educational content. It is part of the Lantmännen Unibake group, indicating a strong market position and backing by a reputable parent company. The website targets Latvian consumers interested in bakery goods and related culinary content. Technically, the website uses a modern CMS platform with SEO optimization via Yoast SEO, and integrates analytics and marketing tools such as Google Analytics, Google Tag Manager, and Facebook Pixel. The site is mobile-optimized and provides a cookie consent mechanism, reflecting compliance with GDPR requirements. However, some technical improvements are recommended, including updating outdated libraries and implementing stronger security headers. From a security perspective, the site enforces HTTPS and has basic privacy and cookie policies in place. No critical vulnerabilities or exposed sensitive data were detected in the analyzed content. The absence of WHOIS data limits domain trust verification, but the presence of consistent branding, contact information, and parent company affiliation supports legitimacy. Overall, Hanzas Maiznīca's website demonstrates a solid digital presence with good content quality and business credibility. Strategic enhancements in security headers and updated technical components would further strengthen its security posture and compliance standing.

15
25
17
85
62
85
20
bakeryfoodlatviaretailwordpress+3 more
WordPress 6.8.1Yoast SEO pluginjQuery 1.11.3Google Tag Manager+3

Partner Domains:

lantmannenunibake.com
parent
vilniausduona.lt
partner

+2 more partners

2025-06-27T12:56:15.421Z
coaltech.com.br favicon

COALTECH

coaltech.com.br

42
EnergyBrazilmediumHIGH

COALTECH is a Brazilian company specializing in engineering consultancy, automation, and monitoring solutions, serving industrial, forestry, and agrarian sectors. The company offers proprietary systems such as CARBONTECH for carbonization monitoring, SYSFOREST for forest and agrarian monitoring, and COALTRACK for GPS and satellite tracking. Their business model focuses on B2B services including equipment rental and technical support, positioning them as a niche provider with innovative technological solutions. The website reflects a medium-sized enterprise with a professional online presence and active social media engagement. Technically, the website employs modern web technologies including HTML5, CSS3, JavaScript, jQuery, and Swiper.js for UI components. Hosting is provided by HostGator Brazil, and analytics tools such as Google Analytics and LinkedIn Insight Tag are integrated. The site is mobile-optimized with good SEO practices but lacks some accessibility features. Performance is moderate with room for improvement. From a security perspective, the site uses HTTPS and avoids exposing sensitive data but lacks explicit security headers and incident response information. No privacy or cookie policies were found, indicating compliance gaps with GDPR and other privacy regulations. Forms exist for newsletter subscription and support ticketing but lack visible anti-CSRF protections. Overall, the security posture is moderate but could be enhanced with standard best practices. The overall risk is moderate with no critical vulnerabilities detected. Strategic recommendations include implementing privacy and cookie policies with consent mechanisms, adding security headers, and publishing incident response contacts to improve trust and compliance. The domain registration data is consistent with the business claims, supporting legitimacy and trustworthiness.

15
35
2
85
62
60
-
engineeringautomationmonitoringtelecommunicationsconsulting+3 more
HTML5CSS3JavaScriptjQuery+5

Partner Domains:

adroittecnologia.com.br
partner
2025-06-27T12:56:15.120Z
lff.lv favicon

Latvijas Futbola federācija

lff.lv

42
GovernmentLatviamediumHIGH

The Latvijas Futbola federācija (LFF) is the official governing body for football in Latvia, providing comprehensive services including national team management, competition organization, coach and referee education, and fan engagement. The website serves as a central hub for football-related news, events, and resources targeted at players, clubs, fans, and stakeholders within Latvia. The site is well-branded, consistent, and professionally maintained, reflecting its authoritative position in the national sports sector. Technically, the website employs a modern technology stack including jQuery, Google Analytics, Facebook Pixel, Hotjar, and Cloudflare for hosting and security. It uses ASP.NET MVC technology as indicated by session and security cookies. The site is mobile-optimized, accessible, and SEO-friendly, with a good performance profile. Security posture is strong with HTTPS enforced, CSRF protection, and cookie consent mechanisms, although some security headers could be improved. Privacy compliance is robust with clear privacy and cookie policies and user consent mechanisms. Contact information is transparent and complete, enhancing business credibility. Overall, the website is a reliable and professional digital presence for the Latvian Football Federation.

-
10
2
75
-
65
100
sportsfootballlatvianationalfederationsoccer+2 more
jQueryGoogle AnalyticsFacebook PixelHotjar+7

Partner Domains:

passportix.eu
partner
sportland.lv
partner

+1 more partners

2025-06-27T12:56:15.090Z
ochounos.com favicon

OCHOUNOS.COM

ochounos.com

46
TechnologyN/asmallHIGH

Ochounos.com is a small technology service provider specializing in web development, graphic design, photography, web hosting, and software projects including game and Android app development. The company has a long-standing domain since 2008 and offers a diverse portfolio of services targeting businesses and individuals seeking custom digital solutions. The website content is well-structured and provides detailed descriptions of services and projects, reflecting a good level of professionalism and technical capability. The technical infrastructure includes a custom PHP MVC framework (Almanzor Framework), use of modern game engines like Unreal Engine 4 and CRYENGINE, and hosting via Hetzner Online GmbH. The site is moderately optimized for performance and mobile devices but lacks advanced accessibility features. No CMS or third-party analytics tools are detected, indicating a custom-built platform. From a security perspective, the site uses HTTPS but lacks important security headers and formal privacy or cookie policies, which are critical for GDPR compliance and user trust. No contact or incident response information is provided, limiting transparency and responsiveness to security issues. DNSSEC is not enabled, and no vulnerability disclosure or security certifications are present. Overall, the website presents a solid business offering with good technical foundations but requires improvements in security posture, privacy compliance, and transparency to enhance trustworthiness and regulatory adherence.

15
50
2
75
85
70
20
webdevelopmentgraphicdesignphotographywebhostinggamedevelopment+1 more
JavascriptPHPHTMLCSS+3
2025-06-27T12:56:15.061Z
eswagner.com favicon

E.S. Wagner Company

eswagner.com

42
TransportationUnited StateslargeHIGH

E.S. Wagner Company is a large regional construction firm specializing in a broad range of infrastructure projects including highway construction, bridges, rail facilities, airport construction, and energy services. The company operates multiple physical locations across Ohio, South Carolina, and North Carolina, indicating a significant operational footprint. Their website presents a professional image with detailed service offerings and clear contact information, targeting clients in the transportation and energy sectors as well as potential employees. Technically, the website employs a modern but standard technology stack including Bootstrap, jQuery, Font Awesome, and Google Fonts. The site is mobile optimized and provides a good user experience with clear navigation and professional design. However, performance is moderate and accessibility features are basic. The site uses Google Analytics for user tracking but lacks advanced privacy compliance mechanisms such as cookie consent banners or privacy policies. From a security perspective, the site lacks visible security headers and published security policies. The absence of WHOIS registration data is a notable concern, potentially indicating domain registration privacy or data unavailability, which impacts trustworthiness. No critical vulnerabilities or exposed sensitive data were detected in the HTML content. Overall, the security posture is moderate but could be improved with better SSL configuration, security headers, and published policies. The overall risk assessment suggests the company operates a legitimate business with a professional web presence but should address compliance gaps and improve transparency around domain registration and security policies to enhance trust and reduce risk.

15
35
2
70
72
75
-
constructionhighwayinfrastructureequipmentcareers+1 more
jQueryBootstrap 3.3.5Font Awesome 4.4.0Google Fonts (Roboto, Open Sans)+2
2025-06-27T12:56:15.016Z
rs.lv favicon

AS "Rīgas Siltums"

rs.lv

40
EnergyLatvialargeHIGH

AS "Rīgas Siltums" is a prominent energy company based in Riga, Latvia, specializing in the supply of heat energy and related services. The company targets residential customers, building managers, and other energy consumers within Riga, offering services such as heat energy tariffs, construction planning, energy efficiency initiatives, and customer support. The website reflects a professional and consistent brand presence, supported by certifications like ISO 50001, indicating a commitment to energy management standards. Technically, the website is built on the Drupal CMS platform, utilizing modern web technologies including jQuery and Leaflet.js for interactive maps. Google Analytics and Google Tag Manager are employed for analytics and marketing purposes. The site demonstrates good mobile optimization and SEO practices, although accessibility features could be enhanced. Performance is moderate, with room for improvement in loading speed and technical modernization. From a security perspective, the website enforces HTTPS and implements a comprehensive cookie consent mechanism aligned with GDPR requirements. However, it lacks several security headers that could strengthen its defense against common web vulnerabilities. No exposed sensitive data or vulnerable libraries were detected, and forms appear to be securely implemented. The absence of a published security policy or incident response contact limits transparency in security governance. Overall, the website scores well on content quality, privacy compliance, and business credibility, reflecting a trustworthy and professional online presence. Strategic recommendations include enhancing security headers, publishing a security policy, improving accessibility, and maintaining regular audits of third-party scripts to mitigate potential risks.

50
10
2
85
72
70
-
energyutilityheatsupplyrigalatvia+4 more
Drupal CMSjQuery 2.1Leaflet.jsGoogle Fonts+1
2025-06-27T12:56:15.009Z
A

AS Liepājas Papīrs

liepajaspapirs.lv

43
ManufacturingLatviamediumHIGH

AS Liepājas Papīrs is a well-established Latvian manufacturing company specializing in customized label and sticker printing services. With over 125 years of experience, the company offers a full service from design and layout to printing, post-processing, and delivery. Their market position is strong with over 500 international clients and a certified environmental management system, indicating a mature and reputable business. The website targets businesses requiring personalized labeling solutions and emphasizes quality and service completeness. Technically, the website employs modern analytics and marketing tools including Google Analytics, Google Tag Manager, and Facebook Pixel, alongside a map integration using OpenLayers. The CMS appears to be MODX Evolution, and the site shows moderate performance and basic mobile optimization. SEO practices are good with proper meta tags and Open Graph data, though accessibility could be improved. From a security perspective, the site uses HTTPS and implements Google reCAPTCHA v2 on its contact form, which is positive. However, no security headers were detected, and there is no visible cookie consent mechanism or comprehensive privacy policy linked, which are areas for improvement. No critical vulnerabilities or exposed sensitive data were found. Overall, the website is professional and trustworthy with a solid business foundation. Strategic improvements in privacy compliance and security headers would enhance its security posture and regulatory adherence.

15
10
17
70
72
60
20
labelsstickersprintingmanufacturinglatvia+1 more
Google AnalyticsGoogle Tag ManagerFacebook PixelOpenLayers (map library)+1
2025-06-27T12:56:14.890Z