Skip to main content

High-risk security reports

Browse 43,528 Guard analyses across this slice of the directory — NIS2 / GDPR readiness, SSL/TLS, DNS hygiene and email authentication.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

148887
Websites
130
Industries
113
Countries
52
Avg Score
Page 71 of 871|Showing 3501-3550 of 43528
magfin.pl favicon

Firma usługowo-konsultingowa MAGFIN

magfin.pl

36
OtherPolandsmallHIGH

Firma usługowo-konsultingowa MAGFIN is a Polish consulting and service company established in 2012, offering a broad range of services including accounting, tax advisory, legalization of stay and work, construction cost estimates, company formation, and consultations. The website targets businesses and individuals in Poland, providing multi-language support in Polish, Russian, and English. The company positions itself as experienced with a professional team, aiming to serve clients requiring comprehensive business and legal services in Poland. Technically, the website is built on WordPress 6.8.3, integrated with Bitrix24 CRM and live chat for customer engagement. It uses modern web technologies including jQuery and Google Tag Manager for analytics and marketing. The site is hosted by cyber_Folks S.A., a reputable Polish hosting provider. Performance and mobile optimization are moderate to good, with basic accessibility features and good SEO practices. From a security perspective, the site uses HTTPS with a good SSL configuration but lacks DNSSEC and advanced security headers. Cookie consent mechanisms are implemented, indicating some GDPR compliance awareness, but no explicit privacy policy, terms of service, or security policy documents are found. No vulnerability disclosure or incident response contacts are published, which could be improved to enhance trust and compliance. Overall, the website is professional and trustworthy with a stable domain registration consistent with the business history. The main risks relate to incomplete privacy and security documentation. Strategic improvements in these areas would strengthen compliance and security posture.

20
10
17
55
27
80
-
consultingaccountingtaxlegalizationconstruction+2 more
WordPress 6.8.3jQueryGoogle Tag ManagerBitrix24 CRM and live chat+1
2025-10-28T08:21:42.120Z
purelog.cz favicon

PureLog s.r.o.

purelog.cz

48
E-commerceCzech RepublicsmallHIGH

PureLog s.r.o. is a Czech-based small business specializing in e-commerce development, online project financing, and consulting services. The website positions the company as a top Czech e-commerce developer offering tailored solutions for new online projects. The target audience appears to be businesses seeking professional e-commerce development and financing support within the Czech Republic. The business model focuses on service provision in the e-commerce sector with a localized market approach. Technically, the website is built using the Yola site builder platform, leveraging standard web technologies such as HTML5, CSS3, and JavaScript. External resources include web fonts and analytics scripts from Yola and SiteWit. The site demonstrates basic mobile optimization and moderate performance but lacks advanced accessibility and SEO features. Hosting and domain registration are managed by Active24, a known Czech provider. From a security perspective, the site lacks explicit security headers and does not provide visible privacy or security policies. The SSL configuration status is unknown from the provided data, and no incident response or vulnerability disclosure information is present. Analytics usage indicates moderate user tracking without clear data retention policies. The WHOIS data raises concerns due to a domain creation date set in the future (2025), which is inconsistent and suspicious, potentially indicating data errors or registration anomalies. Overall, the website is functional and provides basic business information but lacks comprehensive security and privacy compliance measures. The suspicious WHOIS data and absence of contact details reduce trustworthiness. Strategic improvements in security posture, privacy transparency, and contact information disclosure are recommended to enhance credibility and compliance.

15
25
2
70
57
60
100
ecommerceecommercedeveloperpurelogsro
HTML5CSS3JavaScriptWebFontLoader
2025-10-28T08:21:12.043Z
klikbazar.cz favicon

KlikBazar.cz

klikbazar.cz

49
RetailCzech RepublicmediumHIGH

KlikBazar.cz is a Czech online classifieds marketplace offering free advertising and sales of new and used items without requiring user registration. The platform targets a general audience in the Czech Republic and provides a wide range of product categories including automotive, electronics, home goods, and more. The website is built using modern web technologies such as SvelteKit and integrates Google Adsense for monetization and Senoweb Analytics for user tracking. The site demonstrates good design quality, clear navigation, and mobile optimization, making it accessible and user-friendly. From a technical perspective, the website employs HTTPS ensuring secure communication, and uses contemporary JavaScript frameworks that support performance and responsiveness. However, the absence of explicit privacy and cookie policies, as well as lack of visible contact information, indicates gaps in privacy compliance and business transparency. The WHOIS data for the domain is unavailable, which raises concerns about domain registration legitimacy and trustworthiness. Security posture is moderate with HTTPS enabled and no obvious vulnerabilities detected in the HTML content. The site lacks security headers and formal incident response or vulnerability disclosure mechanisms, which are recommended for enhanced security. Overall, while the platform serves its business purpose effectively, improvements in privacy compliance, domain registration transparency, and security best practices are advised to strengthen trust and regulatory adherence. The risk assessment suggests moderate risk primarily due to missing WHOIS data and privacy compliance gaps. Strategic recommendations include implementing comprehensive privacy and cookie policies, publishing clear contact and incident response information, and enhancing security headers and vulnerability disclosure practices.

15
33
17
70
72
75
40
onlinebazarinzercezdarmafreeclassifiedsczechrepublice-commerce+1 more
JavaScriptSvelteKitGoogle AdsenseSenoweb Analytics
2025-10-28T08:21:07.030Z
R

RED magazin

redmag.sk

39
MediaSlovakiasmallHIGH

RED magazin operates as a regional media outlet focused on finance, business, and investment topics primarily targeting Czech and Slovak audiences. The website provides news, advice, and articles related to the economy and personal finance. The business model centers on content publishing with potential monetization through advertising and affiliate marketing. The site is relatively young, with domain registration dating back to 2021, consistent with its content and market positioning. Technically, the website is built on WordPress with common plugins such as All in One SEO and td-composer, leveraging jQuery and Google Analytics for tracking. The site is mobile optimized and has a moderate performance profile. SEO practices are implemented adequately, but accessibility features are basic. Security-wise, HTTPS and DNSSEC are enabled, but the absence of key security headers and privacy policies indicates room for improvement in compliance and protection. The security posture is moderate; no critical vulnerabilities or WAF protections are detected. However, the lack of privacy and cookie policies, as well as missing incident response and vulnerability disclosure information, represent compliance gaps. The site does not expose sensitive data and uses secure forms for login, but overall security best practices could be enhanced. Overall, the website is a functional and professional media platform with good content quality and technical foundation but requires improvements in privacy compliance, security headers, and transparency to strengthen trust and regulatory adherence.

15
10
17
55
52
65
20
financebusinessinvestmentmagazineczech+2 more
WordPressjQueryGoogle AnalyticsAIOSEO plugin+3
2025-10-28T07:16:09.897Z
freddy-datenfresser.de favicon

Freddy

freddy-datenfresser.de

45
Non-profitGermanysmallHIGH

Freddy is a German-based organization focused on the collection and recycling of old mobile phones and smartphones. Their core business revolves around secure data deletion, environmental sustainability, and supporting social projects. The website positions Freddy as a socially responsible entity with certifications such as DEKRA and ISO, and media coverage that enhances its credibility. The target audience includes individuals and organizations interested in sustainable electronic waste management and data security. Technically, the website is built on WordPress with the Avada theme and uses modern plugins like Slider Revolution. Hosting is provided by Innofabrik, a reputable German hosting provider. The site demonstrates good mobile optimization and SEO practices but lacks some accessibility features. Security posture is moderate with HTTPS enabled but missing security headers and explicit privacy and cookie policies. No direct contact emails or phone numbers are found, only a contact form. There is no evidence of tracking or analytics services, indicating a privacy-conscious approach but also a lack of transparency in privacy compliance. Overall, the website is professional and trustworthy but could improve in privacy compliance and security best practices.

15
33
2
70
62
65
40
recyclingdatadeletionenvironmentsocialprojectsmobilephones+2 more
WordPress 6.8.3jQuery 3.7.1Slider Revolution 6.7.29Avada Theme+1
2025-10-28T06:11:21.722Z
E

ESC S.A.

dobrybip.pl

49
GovernmentPolandmediumHIGH

ESC S.A. operates the DobryBIP.pl website, offering a specialized Biuletyn Informacji Publicznej (BIP) system tailored for Polish public institutions. The company positions itself as a reliable provider of government-focused software solutions, emphasizing usability, mobile responsiveness, and compliance with accessibility standards. The website features client testimonials and reference letters, reinforcing its credibility in the public sector market. The target audience primarily includes municipal and governmental offices in Poland seeking efficient public information management tools. Technically, the website employs a mix of legacy and modern web technologies including jQuery 1.11.3, Bootstrap, Google Maps API, and Google reCAPTCHA for security on forms. While the design is professional and mobile-optimized, the use of outdated JavaScript libraries presents potential security risks. The site includes a cookie consent mechanism and basic SEO metadata but lacks structured data and comprehensive privacy or terms of service documentation. From a security perspective, the site uses HTTPS and implements Google reCAPTCHA to protect its contact forms. However, no security headers were detected in the provided data, and the outdated jQuery version could expose the site to vulnerabilities. There is no public security policy or incident response information, which limits transparency and preparedness visibility. The WHOIS data aligns well with the website's claims, showing a legitimate registration under ESC S.A. in Poland. Overall, the website is functional, professional, and trustworthy for its niche audience but would benefit from updating its technical stack, enhancing security headers, and publishing comprehensive privacy and security policies to improve compliance and user trust.

15
10
17
60
42
75
100
governmentbippublicinformationpolandsoftware+4 more
jQuery 1.11.3Modernizr 1.6BootstrapGoogle Maps API+3

Partner Domains:

escsa.pl
partner
vela.net.pl
partner
2025-10-28T06:10:56.660Z
A

Allianz gegen Rechtsextremismus in der Metropolregion Nürnberg

allianz-gegen-rechtsextremismus.de

48
Non-profitGermanysmallHIGH

The Allianz gegen Rechtsextremismus in der Metropolregion Nürnberg is a small non-profit organization dedicated to combating right-wing extremism and promoting democratic values within the Nuremberg metropolitan area. Their website serves as an informational and engagement platform, offering details about their alliance, members, events, and educational initiatives. The organization maintains an active presence on social media platforms such as Facebook and Instagram to reach a broader audience. Technically, the website is built on TYPO3 CMS, leveraging Bootstrap for responsive design and FontAwesome for iconography. The site demonstrates moderate performance and good mobile optimization, with a clear navigation structure and consistent branding. Hosting appears to be managed by agenturserver, as indicated by the nameservers. From a security perspective, the site uses HTTPS and does not expose sensitive data in the HTML content. However, it lacks explicit security headers and a cookie consent mechanism, which are recommended for enhanced security and privacy compliance. No vulnerability disclosure or incident response information is publicly available, suggesting areas for improvement in transparency and security readiness. Overall, the website is trustworthy, professionally presented, and aligned with its mission. The domain registration data supports the legitimacy of the organization. Strategic recommendations include implementing security headers, adding cookie consent, publishing security policies, and enhancing privacy compliance to strengthen the site's security posture and user trust.

65
28
2
70
77
45
20
non-profitanti-right-wingextremismdemocracyeducationgermany+1 more
TYPO3 CMSBootstrapFontAwesome
2025-10-28T06:10:16.345Z
gemeinde-creativ.de favicon

Landeskomitee der Katholiken in Bayern

gemeinde-creativ.de

43
Non-profitGermanysmallHIGH

The website www.gemeinde-creativ.de serves as a platform for engaged Catholics primarily in Bavaria, Germany, operated by the Landeskomitee der Katholiken in Bayern. It offers a digital magazine, resources, and community engagement tools focused on religious education, liturgy, and pastoral work. The platform targets a niche audience of Catholic community members and church workers, positioning itself as a trusted non-profit resource provider. Technically, the site uses a modern front-end stack including Bootstrap, jQuery, and popular JavaScript libraries for UI components and image galleries. Hosting is managed via DomainControl nameservers, likely GoDaddy, with Matomo analytics implemented in a privacy-conscious manner (cookies disabled). The site is mobile-optimized and presents a professional design with clear navigation, though some SEO and accessibility features could be enhanced. From a security perspective, the site uses HTTPS (implied by canonical URLs), but lacks visible security headers and cookie consent mechanisms. No forms are present on the main page, reducing attack surface, but no vulnerability disclosure or incident response policies are published. WHOIS data is minimal but consistent with the organization's profile, showing no suspicious patterns. Overall, the website is a well-maintained, niche non-profit platform with good content quality and business credibility. Security posture is moderate with room for improvement in headers and compliance transparency. Privacy compliance is good given the presence of a privacy policy and minimal tracking. Strategic improvements in security policies and cookie consent would enhance trust and compliance.

20
28
2
60
77
60
20
catholicnon-profitcommunitymagazinereligious+2 more
BootstrapjQueryMagnific PopupSlick Carousel+1
2025-10-28T06:09:36.086Z