Skip to main content

High-risk security reports

Browse 46,997 Guard analyses across this slice of the directory — NIS2 / GDPR readiness, SSL/TLS, DNS hygiene and email authentication.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157370
Websites
130
Industries
113
Countries
52
Avg Score
Page 722 of 940|Showing 36051-36100 of 46997
mdac.org favicon

Mental Disability Advocacy Center

mdac.org

47
Non-profitHungarysmallHIGH

Mental Disability Advocacy Center (MDAC) is a well-established non-profit organization founded in 1998, focused on advocating for the human rights of persons with mental disabilities. The organization operates internationally with a clear mission to influence policy, provide legal advocacy, and raise awareness. Their website reflects a professional and consistent brand presence with relevant content targeted at stakeholders including persons with disabilities, NGOs, and donors. The business model is donor-funded advocacy, positioning MDAC as a specialized entity in the human rights non-profit sector. Technically, the website runs on Drupal 7 with common web technologies such as jQuery and Google Analytics for tracking. The site is moderately optimized for performance and mobile use but shows signs of aging technology. Security posture is adequate with HTTPS enabled and domain transfer protection, but lacks advanced DNS security (DNSSEC) and security headers. No explicit privacy or cookie policies were found, indicating gaps in compliance with modern privacy regulations. Security-wise, the site does not expose sensitive data and uses secure forms, but the absence of security headers and incident response information suggests room for improvement. The WHOIS data is consistent and transparent, supporting the legitimacy of the domain and organization. Overall, the website is functional and credible but would benefit from enhanced privacy compliance and security hardening. Strategic recommendations include implementing DNSSEC, publishing privacy and cookie policies, adding security headers, and establishing a vulnerability disclosure process to improve trust and compliance.

40
35
2
70
62
70
20
non-profithumanrightsmentaldisabilityadvocacydrupal+1 more
Drupal 7jQueryGoogle AnalyticsGoogle Tag Manager+2

Partner Domains:

validity.ngo
partner
mdac.nationbuilder.com
partner
2025-06-27T12:56:19.523Z
D

Domains By Proxy, LLC

videodone.io

26
OtherUnited StatessmallHIGH

The website videodone.io operates as an adult content affiliate platform, primarily linking to third-party adult image galleries. It targets adult users interested in explicit content, leveraging affiliate marketing to monetize traffic. The site lacks direct business transparency, with domain registration protected by a privacy service, and no clear company contact information or policies presented on the site. The business model is typical for small-scale adult affiliate sites, focusing on volume of external links rather than original content creation. Technically, the site uses basic web technologies including JavaScript and CSS with Google Fonts, hosted via GoDaddy. The site is served over HTTP without HTTPS, lacks modern security headers, and includes a pop-under ad script that opens a suspicious external domain, raising security concerns. The site’s design and user experience are poor, with minimal mobile optimization and accessibility features. SEO practices are basic, with minimal metadata and no structured data. From a security perspective, the absence of HTTPS and security headers, combined with the presence of potentially malicious pop-under scripts, significantly lowers the security posture. There is no evidence of privacy or cookie policies, nor GDPR compliance mechanisms. Incident response contact is limited to an abuse removal link, with no dedicated security or data protection contacts. These factors collectively indicate a high risk for users and low trustworthiness. Overall, the site scores poorly on content quality, technical implementation, security, privacy compliance, and business credibility. Strategic improvements are necessary to enhance security, transparency, and user trust, including enabling HTTPS, implementing security headers, providing clear privacy and cookie policies, and removing suspicious scripts.

15
10
-
85
-
50
20
adultpornaffiliateimagegalleriesteen+1 more
JavaScriptCSSGoogle Fonts
2025-06-27T12:56:19.317Z
eiroeksperts.lv favicon

SIA Eiroeksperts

eiroeksperts.lv

43
Real EstateLatviasmallHIGH

SIA Eiroeksperts is a Latvian company specializing in valuation services for businesses, real estate, and technological equipment, with over 20 years of experience. The company positions itself as a trusted partner emphasizing honesty, openness, and objectivity. Their website reflects a professional image with clear service offerings and certifications from recognized valuation organizations such as Vertetaji.lv, TEGOVA, RICS, and NACVA. Contact information is clearly provided, enhancing business credibility. Technically, the website uses a modern frontend stack including jQuery, Bootstrap 4, FontAwesome 5, and Google reCAPTCHA for bot protection. The site is mobile-optimized with good navigation and content quality. However, some technical improvements are recommended, such as implementing security headers and cookie consent mechanisms to improve privacy compliance and security posture. From a security perspective, the site uses HTTPS (assumed but not explicitly confirmed), and employs Google reCAPTCHA to protect forms. No critical vulnerabilities or exposed sensitive data were detected. However, the absence of security headers and published security policies indicates room for improvement in security maturity. The lack of WHOIS data due to query limits restricts full domain trust assessment, but the website content and certifications support a moderate to high trust level. Overall, the website scores well in business credibility and content quality but should enhance privacy compliance and security best practices. Strategic recommendations include adding cookie consent, publishing security policies, and improving technical security configurations to strengthen trust and compliance.

20
10
2
75
62
80
20
valuationbusinessrealestateconsultinglatvia
jQueryBootstrap 4FontAwesome 5Popper.js+2
2025-06-27T12:56:19.286Z
B

B.F. Fields Moving & Storage

jhbennett-moving.com

46
TransportationUnited StatesmediumHIGH

B.F. Fields Moving & Storage is a well-established moving and storage company based in Erie, Pennsylvania, with a history dating back to 1905. The company offers a comprehensive range of services including household relocation, office and industrial moving, warehousing, storage, and logistics. They maintain a strong market position locally and nationally through their partnership with North American Van Lines and certifications from industry bodies such as the American Moving & Storage Association and the Better Business Bureau. The website is professionally designed, mobile-optimized, and provides clear navigation and contact information, supporting a positive user experience. From a technical perspective, the website employs modern tracking and marketing technologies including Google Analytics, Google Tag Manager, and Podium widgets. The site is served over HTTPS with secure forms, indicating a good baseline security posture. However, the absence of security headers and privacy/cookie policies suggests areas for improvement in compliance and security best practices. The WHOIS data for the domain is missing, which raises questions about domain registration transparency but does not necessarily undermine the business legitimacy given the detailed content and certifications presented. Security-wise, the site shows no immediate vulnerabilities or exposed sensitive data, but lacks published incident response or vulnerability disclosure policies. The use of secure forms and HTTPS is positive, yet the lack of privacy and cookie policies indicates potential GDPR compliance gaps. Overall, the security posture is moderate with room for enhancement in policy transparency and header implementation. The overall risk assessment is moderate; the business appears credible and professional, but the missing WHOIS data and privacy compliance gaps should be addressed to strengthen trust and regulatory adherence. Strategic recommendations include publishing privacy and cookie policies, implementing security headers, and providing clear incident response contacts to improve security culture and compliance.

20
35
2
75
62
80
20
movingstoragelogisticseriepatransportation+2 more
Google AnalyticsGoogle Tag ManagerGoogle AdWordsPodium widget+1

Partner Domains:

northamerican.com
partner
2025-06-27T12:56:19.264Z
dtb.lv favicon

DTB group

dtb.lv

45
FinanceLatviasmallHIGH

DTB group is a Latvian financial and legal services company specializing in providing financing solutions for individuals and legal entities. Their offerings include mortgage loans, transport financing, overdrafts, credit lines, factoring, refinancing, investment attraction, real estate acquisition, purchase of receivables, and comprehensive legal services. The company positions itself as a conservative and experienced player in the Latvian financial market, collaborating with multiple banks and financial institutions to deliver tailored financial products and legal support. The website content is primarily in Russian, targeting clients in Latvia and surrounding regions. The presence of partner logos from reputable banks enhances their market credibility. Technically, the website is built using Adobe Muse with jQuery 1.8.3 and RequireJS, indicating a static site with limited modern CMS features. The site is moderately optimized for performance and mobile devices but lacks advanced SEO and accessibility features. Security posture shows room for improvement, with no explicit security headers detected and use of an outdated jQuery version that may expose vulnerabilities. The site uses HTTPS and AJAX for form submissions but lacks privacy and cookie policies, which impacts compliance. Overall, the security posture is moderate with no detected blocking or WAF interference. The lack of WHOIS data limits domain trust verification, but the website's professional content and partner affiliations suggest legitimacy. Strategic improvements in security headers, library updates, and privacy compliance would enhance trust and reduce risk.

15
25
2
85
72
75
20
financelegalservicescreditrefinancinginvestment+3 more
Adobe MusejQuery 1.8.3RequireJSCreative Cloud Web Fonts (Ubuntu)

Partner Domains:

danske.lv
partner
altum.lv
partner

+2 more partners

2025-06-27T12:56:19.254Z
beetrootlab.com favicon

Beetroot Lab

beetrootlab.com

49
TechnologyN/asmallHIGH

Beetroot Lab is a specialized mobile game development studio focusing on creating engaging games for iOS and Android platforms. The company showcases multiple published games with active presence on major app stores including Apple App Store, Google Play, Huawei AppGallery, and Samsung Galaxy Store. Their website presents a professional and consistent brand image with clear descriptions of their games and services, targeting mobile gamers and potential collaborators in the gaming industry. Technically, the website employs modern web technologies such as Google reCAPTCHA for bot protection, Google Tag Manager for analytics, and uses responsive design principles to ensure good mobile optimization. The site is served over HTTPS, ensuring secure communication. However, there is room for improvement in security headers and accessibility features. From a security perspective, the site demonstrates good practices like secure forms with CAPTCHA and cookie consent mechanisms aligned with GDPR. No critical vulnerabilities or exposed sensitive data were detected in the content. However, the absence of WHOIS data raises concerns about domain registration legitimacy, which should be verified to ensure trustworthiness. Overall, Beetroot Lab's digital presence is solid with a good balance of content quality, technical implementation, and security posture. Strategic improvements in domain registration transparency, security policies, and direct contact information would enhance trust and compliance.

15
53
2
70
72
60
40
mobilegamesgamedevelopmentiosandroidbeetrootlab
Google reCAPTCHAGoogle Tag ManagerTingle.js (modal library)Google Fonts (Source Sans Pro)
2025-06-27T12:56:19.231Z
primuserp.com favicon

SIA "Primus ERP"

primuserp.com

30
TechnologyLatviasmallHIGH

Primus ERP Ltd. is a Latvia-based small technology company specializing in end-to-end SAP ERP solutions, particularly focused on financial modules such as SAP FI/CO, FI-CA, and Shared Service Framework for Financials. The company targets businesses seeking to optimize their enterprise resource planning and financial management processes through SAP implementations. The website reflects a niche market positioning with a B2B business model centered on SAP consulting and software services. Technically, the website is built on an older WordPress platform with legacy jQuery and uses plugins like Yoast SEO and Google Analytics for SEO and analytics purposes. The site lacks HTTPS encryption and modern security headers, which impacts its security posture negatively. Performance and mobile optimization are basic, and the design is functional but dated. Security-wise, the absence of HTTPS, privacy policies, and cookie consent mechanisms are significant gaps, especially given the use of Google Analytics. No incident response or security contact information is provided, and the site uses outdated software versions, increasing risk exposure. The domain registration data is consistent with the business information, indicating legitimacy. Overall, the website presents moderate business credibility but requires urgent improvements in security and privacy compliance to reduce risk and enhance trustworthiness.

15
10
-
70
-
70
20
erpsapfinancialsenterpriseresourceplanningtechnology
WordPress 4.9.26jQuery 1.12.4Yoast SEO plugin v11.7Google Analytics+1
2025-06-27T12:56:19.218Z
perfectsales.lv favicon

SIA Perfect Sales Academy

perfectsales.lv

27
OtherLatviasmallHIGH

Perfect Sales Academy is a Latvian-based company specializing in seminars, business consulting, and training services, operating since 2001. The website targets businesses seeking to improve growth, profitability, and product introduction through professional seminars and consultations. The site supports multiple languages including Latvian, English, Russian, Estonian, and Lithuanian, indicating a regional Baltic market focus. Technically, the website employs legacy technologies such as jQuery 1.8.2, Nivo Slider, and Lightbox, with Google Analytics for user tracking. The site lacks HTTPS, which is a critical security shortfall. The design and content quality are basic, with limited SEO and accessibility features. No CMS or modern frameworks are detected, suggesting a static or custom-built site. From a security perspective, the absence of HTTPS and outdated JavaScript libraries pose significant risks. No privacy, cookie, or terms of service policies are present, indicating poor privacy compliance. Contact information is not explicitly provided, reducing business credibility. WHOIS data could not be retrieved, limiting domain legitimacy verification. Overall, the website presents moderate business credibility but requires urgent improvements in security, privacy compliance, and technical modernization to reduce risk and enhance trustworthiness.

20
-
-
60
-
75
20
seminarsbusinessconsultingtraininglatviamultilingual
jQuery 1.8.2Google AnalyticsNivo SliderLightbox+2
2025-06-27T12:56:19.203Z
F

Fundación SAFA

fundacionsafa.es

41
EducationSpainmediumHIGH

Fundación SAFA operates as a non-profit educational foundation in Spain, providing a centralized login portal named Brocal for its community of professors, families, and students. The website serves as a gateway to multiple educational applications and resources, reinforcing its role as a digital facilitator for the foundation's educational services. The foundation maintains an established regional presence with multiple campuses, targeting the Spanish educational sector. Technically, the website employs a modern technology stack including Bootstrap, jQuery, and various JavaScript libraries to deliver a responsive and visually consistent user experience. While the site demonstrates good mobile optimization and a professional design, some accessibility and SEO optimizations are basic and could be improved. The hosting and CMS details are not explicitly disclosed. From a security perspective, the site uses HTTPS and secure form submission but lacks critical HTTP security headers such as Content Security Policy and HSTS. There is no visible cookie consent mechanism, which is a compliance gap under GDPR. No contact information or security policies are published on the login page, limiting transparency. No critical vulnerabilities were detected in the visible content, but improvements in security headers and privacy compliance are recommended. Overall, the website is functional and professional but would benefit from enhanced security practices and privacy compliance measures to strengthen trust and regulatory adherence. Strategic improvements in these areas will support Fundación SAFA's digital maturity and protect its user community effectively.

15
10
2
85
77
65
-
educationloginnon-profitfoundationsafa
jQueryBootstrapSelect2Backstretch+8
2025-06-27T12:56:19.131Z
baltikit.lv favicon

SIA BALTIK IT

baltikit.lv

38
TechnologyLatviamediumHIGH

Baltik IT is a Latvia-based company specializing in business process outsourcing, document management, and IT services. The company positions itself as a key player in business process reengineering and document management, offering a comprehensive suite of services including electronic storage, semantic analysis, and learning management systems. It is part of the larger Gruppo MPH group, indicating a strong market presence and partnership ecosystem. The website is professionally designed using WordPress and includes detailed service descriptions and partner information, targeting businesses seeking outsourcing and IT solutions. Technically, the website employs a modern WordPress stack with popular plugins such as Slider Revolution, Visual Composer, and Contact Form 7. The site is mobile optimized and uses HTTPS with a valid SSL certificate, ensuring secure communications. However, some security best practices like security headers are missing, and no explicit privacy or security policies are published, which could be improved. Security posture is moderate with secure forms and cookie consent mechanisms in place, but the absence of privacy policies and WHOIS data limits full trust verification. The domain WHOIS data could not be retrieved due to query limits, which restricts the ability to fully assess domain legitimacy and registration consistency. Overall, Baltik IT presents as a credible and professional business with a solid technical foundation but would benefit from enhanced transparency in privacy, security policies, and domain registration information to improve trust and compliance.

15
25
17
60
32
80
-
businessprocessoutsourcingdocumentmanagementitservicessemanticanalysislearningmanagementsystem
WordPressPHPjQuerySlider Revolution+4

Partner Domains:

smartpaper.it
partner
intemaweb.com
partner

+2 more partners

2025-06-27T12:56:19.129Z
transocean.ee favicon

Transocean Eesti OÜ

transocean.ee

46
TransportationEstoniamediumHIGH

Transocean Eesti OÜ is a well-established maritime logistics company based in Tallinn, Estonia, with branch offices in Latvia and Lithuania. Founded in 1993, it offers a comprehensive range of transportation services including container, RoRo, road, air, project cargo transport, and tank-container logistics. The company holds official representation and agency agreements with major international shipping lines, positioning it as a reputable player in the Baltic maritime logistics market. The website reflects a professional digital presence with good content quality and clear navigation, targeting businesses requiring freight and logistics services in the Baltic region and beyond. Technically, the site is built on WordPress with modern plugins and APIs, providing moderate performance and good mobile optimization. Security posture is adequate with HTTPS enabled and no obvious vulnerabilities, though it lacks explicit security headers and published security policies. Privacy compliance is limited due to the absence of privacy and cookie policies, despite having a cookie consent mechanism. Overall, the domain registration details align well with the business claims, supporting the legitimacy of the website and company.

15
25
17
80
62
70
20
shippinglogisticscontainerfreightrorotransportprojectcargo+3 more
WordPressYoast SEO pluginGoogle FontsGoogle Maps API+1

Partner Domains:

one-line.com
partner
samskipmultimodal.com
partner

+3 more partners

2025-06-27T12:56:18.803Z
J

JEFF DEMETRIOU

jeffdemetriou.com

42
OtherN/asmallHIGH

The website jeffdemetriou.com serves as an online portfolio for Jeff Demetriou, an abstract artist specializing in highly conceptual and large-scale mixed media works. The site targets art enthusiasts, collectors, and galleries, focusing on showcasing artwork and promoting exhibitions. The business model is primarily artist-centric, relying on portfolio presentation and exhibition promotion without evident e-commerce or transactional capabilities. The market position is that of an independent artist with a niche audience. Technically, the website employs legacy JavaScript libraries such as Prototype.js and Scriptaculous, alongside Lightbox for image display, hosted on DreamHost. The site uses Google Analytics for visitor tracking but lacks modern CMS or frameworks. Performance is moderate with basic SEO and poor mobile optimization. Accessibility features are minimal, and the site structure is simple but functional. From a security perspective, the site uses HTTPS but lacks DNSSEC and security headers, which are critical for modern web security. The use of outdated JavaScript libraries may expose vulnerabilities. No privacy, cookie, or terms of service policies are present, and no explicit contact emails or phone numbers are provided, limiting transparency and compliance with privacy regulations such as GDPR. Google Analytics is implemented without visible consent mechanisms, indicating poor privacy compliance. Overall, the website presents a moderate risk profile with room for improvement in security posture, privacy compliance, and technical modernization. Strategic recommendations include implementing security headers, updating JavaScript libraries, adding privacy and cookie policies with consent mechanisms, and improving mobile responsiveness and accessibility to enhance user experience and trust.

15
35
17
70
62
60
20
abstractartartistportfoliomixedmediamodernartatlantaartist
JavaScriptPrototype.jsScriptaculousLightbox+1
2025-06-27T12:56:18.796Z
Q

QWE.lv

qwe.lv

47
OtherN/asmallHIGH

The website qwe.lv presents a minimal online presence with very limited content, primarily consisting of a single email contact link and basic HTML structure. There is no visible business description, no privacy or cookie policies, and no forms or interactive elements. The site uses Google Analytics and Google Tag Manager for tracking purposes but lacks transparency regarding data protection and user privacy. The absence of WHOIS data due to query limits further complicates trust assessment. Technically, the site is basic with no detected CMS or advanced frameworks, and no security headers or HTTPS status information is available, indicating potential security weaknesses. From a security perspective, the site shows a low maturity level. The lack of HTTPS, security headers, and privacy compliance mechanisms exposes visitors to risks. No incident response or vulnerability disclosure information is provided, and no certifications or trust indicators are present. The domain's legitimacy cannot be confidently established due to missing WHOIS data and minimal website content, resulting in a low trust score. Overall, qwe.lv appears to be a small-scale or placeholder website with insufficient business and security information. The risk assessment is elevated due to the lack of transparency and security best practices. Strategic recommendations include implementing HTTPS, adding privacy and cookie policies, improving content quality, and providing clear business and security contact information to enhance trust and compliance.

15
10
2
65
72
85
100
minimaltrackingemail-contactbasic-html
Google AnalyticsGoogle Tag ManagerJavaScript
2025-06-27T12:56:18.761Z
G

Granat Holding

granat-invest.com

46
FinanceN/amediumHIGH

Granat Holding is an international multi-disciplinary investment holding company focusing on sectors such as finance, real estate, production, social projects, and development. The company positions itself as a trusted private investor with a presence in multiple countries, targeting investors and business partners interested in diversified investment opportunities. The website reflects a professional and consistent brand image with clear navigation and good content quality, although some areas like privacy compliance and direct contact information could be improved. Technically, the website uses a modern tech stack including jQuery, Bootstrap, and Google Maps API, with good mobile optimization and moderate performance. However, there is a lack of advanced security headers and DNSSEC is not enabled, which are areas for improvement. The site uses HTTPS and has a stable domain registration, which supports its legitimacy. From a security perspective, the site has a moderate posture with HTTPS enabled and domain transfer protection, but lacks security headers and cookie consent mechanisms. No incident response or security policies are published, and no direct company contact emails or phone numbers are provided, which may impact user trust and compliance with privacy regulations. Overall, the website is functional and professional but would benefit from enhanced privacy compliance, improved security practices, and more transparent contact information to strengthen trust and regulatory adherence.

20
35
2
70
77
75
20
investmentfinancerealestatebusinessholding+1 more
jQueryGoogle Maps APIBootstrap CSS
2025-06-27T12:56:18.591Z
geoconsultantsllc.com favicon

GEO Consultants Corporation

geoconsultantsllc.com

49
EnergyN/asmallHIGH

GEO Consultants Corporation is a specialized consulting firm providing environmental, geological, and engineering services primarily to corporations and government entities. The company operates in the energy sector with a focus on environmental and geological engineering consulting. The website reflects a professional and consistent brand image, with clear descriptions of services and target audience. The business appears to be small-sized and was founded in 2016, consistent with the domain registration date. Technically, the website is built on WordPress using the Divi theme, leveraging Google Fonts and some SEO plugins. The site is mobile-optimized and has moderate performance. However, some technical improvements could enhance accessibility and SEO further. The Google Analytics plugin is installed but not configured, indicating incomplete analytics setup. From a security perspective, the site uses HTTPS but lacks advanced security headers and DNSSEC. No privacy, cookie, or terms of service policies are published, which is a compliance gap. There is no visible incident response or vulnerability disclosure information, limiting transparency in security matters. The domain registration is consistent and transparent, with no privacy protection, supporting legitimacy. Overall, the website is functional and professional but requires improvements in privacy compliance, security best practices, and analytics configuration to enhance trustworthiness and regulatory adherence.

15
35
25
75
72
80
20
environmentalgeologicalconsultingengineeringcorporate+1 more
WordPressDivi ThemeGoogle FontsMonsterInsights (not configured)
2025-06-27T12:56:18.530Z
welton.de favicon

Sebastian Welton

welton.de

44
TechnologyGermanysmallHIGH

The website welton.de represents Sebastian Welton, a seasoned systems consultant with over 35 years of experience in cross-platform systems programming and project management, particularly in IBM mainframe and related technologies. The site targets businesses and professionals seeking expert consulting services in legacy and modern IT environments. The business model is consulting-focused, with a niche market position emphasizing deep technical expertise. Technically, the website is built on WordPress using the Twenty Seventeen theme, leveraging standard web technologies such as jQuery and Google Fonts. The site is accessible, mobile-optimized, and presents content in both English and German, reflecting its German origin. However, hosting provider details are not explicitly identified, and performance is moderate. From a security perspective, the site uses HTTPS, but lacks important security headers and policies such as privacy, cookie, and terms of service. No incident response or vulnerability disclosure information is provided. No analytics or tracking scripts are detected, indicating minimal user tracking. The security posture is adequate but could be improved with standard best practices. Overall, the website is professional and credible but lacks formal privacy and security documentation. The risk level is moderate, with recommendations to enhance security headers, add privacy and cookie policies, and provide incident response contacts to improve compliance and trust.

15
10
2
65
100
70
20
consultingsystemsprogrammingibmmainframetechnologyprofessionalservices
WordPress 5.6.14jQuery 3.5.1Google FontsSVG icons
2025-06-27T12:56:18.525Z