Skip to main content

High-risk security reports

Browse 43,626 Guard analyses across this slice of the directory — NIS2 / GDPR readiness, SSL/TLS, DNS hygiene and email authentication.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

149092
Websites
130
Industries
113
Countries
52
Avg Score
Page 734 of 873|Showing 36651-36700 of 43626
Y

Young Woo Digital

etechsystem.co.kr

45
TechnologySouth KoreamediumHIGH

ETECH SYSTEM, operated by Young Woo Digital, is a Korean IT company specializing in digital transformation solutions and IT services. Established in 2010, the company has a medium-sized presence with overseas offices in China, Japan, India, and the USA. Their offerings include IT consulting, infrastructure system integration, cloud and big data services, and maintenance. The website reflects a professional and consistent brand image with clear navigation and relevant business content targeting corporate clients seeking IT innovation. Technically, the website uses a modern but somewhat dated technology stack including jQuery 1.7.1, Bootstrap, and fullpage.js, hosted on AWS infrastructure. The site is mobile-optimized and SEO-friendly but lacks advanced accessibility features and some modern security headers. No analytics or tracking scripts were detected, indicating minimal user tracking. From a security perspective, the site uses HTTPS (assumed from domain and AWS hosting), but no explicit security headers were found in the HTML. The use of an outdated jQuery version poses a minor risk. There is no visible cookie consent mechanism or published security policy, which may impact privacy compliance. WHOIS data is transparent and consistent with the business claims, supporting legitimacy. Overall, the website is functional and professional with moderate security and privacy compliance. Strategic improvements in security headers, updated libraries, and privacy mechanisms would enhance trust and compliance.

15
53
2
65
62
85
-
etechsystemdigitaltransformationitservicestechnologykorea
jQuery 1.7.1jQuery Migrate 1.4.1jQuery UIBootstrap+5

Partner Domains:

group.etevers.com
partner
etevers.com
partner

+3 more partners

2025-06-23T18:14:04.525Z
E

ETEVERS

etevers.com

46
TechnologySouth KoreamediumHIGH

ETEVERS is a South Korean IT innovation company specializing in providing optimized IT infrastructure and solutions to support sustainable growth and transformation. The company has a solid market presence with multiple partnerships with major technology providers such as Cisco, Oracle, AWS, and others. Their website reflects an active business with recent news updates and a clear focus on partnership and innovation. Technically, the site uses a modern JavaScript stack including jQuery, Bootstrap, Swiper, and fullPage.js, hosted on AWS infrastructure, indicating a moderate level of digital maturity. The website is mobile-optimized and SEO-friendly, though accessibility features are basic. From a security perspective, the domain is registered with a reputable Korean registrar and has a long registration period with transfer protection enabled, supporting legitimacy. However, the site lacks DNSSEC and visible security headers, and no cookie consent mechanism is implemented despite cookie usage, which are areas for improvement. No incident response or security policy information is published, limiting transparency in security posture. Overall, the security posture is moderate but could be enhanced with standard best practices. The overall risk assessment is moderate with no critical vulnerabilities or blocking detected. Strategic recommendations include enabling DNSSEC, implementing security headers, adding cookie consent for compliance, and publishing security policies to improve trust and compliance. The company demonstrates a professional online presence with consistent branding and active engagement with partners and customers.

15
53
2
80
62
80
-
ittechnologyinnovationcloudpartnership+1 more
jQueryBootstrapSwiperfullPage.js+3

Partner Domains:

eteversebt.com
partner
group.etevers.com
partner

+3 more partners

2025-06-23T18:13:59.507Z
sparkplus.co favicon

SPARKPLUS

sparkplus.co

36
Real EstateSouth KoreamediumHIGH

SPARKPLUS is a South Korean company specializing in providing tailored office spaces and coworking environments primarily in Seoul and the greater metropolitan area. Their business model focuses on flexible office rentals, subscription-based personal workspaces, event space rentals, and promotional offerings such as pre-booking and free trial periods. The company positions itself as a modern, customer-centric real estate service provider with a strong emphasis on convenience and practical workspace solutions. Technically, the website is built on a modern JavaScript stack including jQuery, Swiper, and Axios, hosted on Cafe24, a popular Korean hosting platform. The site is mobile-optimized and features rich multimedia content, including embedded Vimeo videos and interactive UI components. Security-wise, the site enforces HTTPS and uses some security best practices but lacks certain headers like Content-Security-Policy and cookie consent mechanisms, which are recommended for enhanced protection and compliance. The WHOIS data is transparent and consistent with the business information presented on the site, indicating a legitimate and trustworthy operation. Overall, the website demonstrates good digital maturity and business credibility, though there is room for improvement in privacy compliance and security hardening.

15
53
2
52
-
85
-
officespacerealestateworkspacerentalcoworkingbusinessdesk+2 more
jQuery 3.6.0jQuery UISwiper.jsAOS (Animate On Scroll)+2

Partner Domains:

www.sparkplus.co
partner
careers.sparkplus.co
partner

+1 more partners

2025-06-23T18:08:01.797Z
mijnkinddossier.nl favicon

Mijn Kinddossier

mijnkinddossier.nl

48
HealthcareNetherlandsmediumHIGH

Mijn Kinddossier is a Dutch healthcare digital portal focused on providing parents access to their children's health data and youth healthcare services. The platform offers functionalities such as questionnaire completion, personalized advice, growth tracking, appointment scheduling, and vaccination record viewing. It integrates DigiD authentication, a trusted Dutch government identity system, enhancing user trust and security. The website is well-branded and targets Dutch parents and youth healthcare organizations, positioning itself as a specialized service in the healthcare sector. Technically, the website uses a modern JavaScript stack including jQuery, jQuery UI, Pickadate, Slick Carousel, Popper.js, Tippy.js, Cropper.js, and Modernizr, built on the Wicket Java web framework. The site is moderately optimized for performance and mobile devices, with a good user experience and clear navigation. However, no CMS or hosting provider information is evident, and SEO and accessibility features are basic. From a security perspective, the site uses HTTPS and DigiD authentication, which are positive indicators. A responsible disclosure link is present, showing some security awareness. However, no privacy or cookie policies are found, no contact information is provided, and no security headers are detected, which are gaps in compliance and security best practices. The use of Sentry indicates error tracking but no extensive analytics or tracking is observed. Overall, the website is functional and professional but would benefit from improved privacy compliance, explicit security policies, and enhanced transparency. Strategic recommendations include publishing privacy and cookie policies, implementing security headers, and providing clear contact and incident response information to strengthen trust and compliance.

95
10
20
55
75
55
-
mijnkinddossierhealthcareyouthhealthdigitalhealthportaldigid
jQueryjQuery UIPickadateSlick Carousel+4
2025-06-23T15:57:19.857Z
saferinternet.hu favicon

Nemzetközi Gyermekmentő Szolgálat

saferinternet.hu

49
Non-profitHungarymediumHIGH

The website saferinternet.hu represents a Hungarian non-profit organization dedicated to promoting safer internet usage among children, parents, and educators. It operates as a national safer internet center with strong ties to European Union initiatives and partnerships with recognized organizations such as the Nemzetközi Gyermekmentő Szolgálat. The site offers educational content, awareness campaigns, and events aimed at fostering conscious and confident online behavior among children. The business model is focused on non-profit educational services with a medium organizational size and a founding year of 2019. Technically, the website employs a modern technology stack including Aurelia and React frameworks, alongside popular libraries like jQuery and Chart.js. The site demonstrates good mobile optimization, accessibility, and SEO practices, with moderate performance. The CMS appears custom or proprietary, and no hosting provider details were identified. The site uses advanced front-end technologies and animations to enhance user experience. From a security perspective, the site enforces HTTPS with excellent SSL configuration and includes CSRF tokens and reCAPTCHA v2 for form security. However, it lacks explicit security headers and published security policies or incident response contacts. No vulnerabilities or exposed sensitive data were detected. Privacy compliance is strong, with clear cookie consent mechanisms and a comprehensive privacy policy aligned with GDPR requirements. Overall, the website is trustworthy and professional, with a high level of content quality and business credibility. Recommendations include implementing additional security headers, publishing a security policy and incident response contacts, and adding a vulnerability disclosure or security.txt file to enhance transparency and security posture.

55
10
2
60
72
75
40
childsafetyonlinesafetyeducationnon-profithungary+1 more
Aurelia frameworkReactjQueryChart.js+3

Partner Domains:

www.gyermekmento.hu
partner
www.betterinternetforkids.eu
partner

+3 more partners

2025-06-23T15:57:14.155Z
gyermekmento.hu favicon

Nemzetközi Gyermekmentő Szolgálat Magyar Egyesület

gyermekmento.hu

49
Non-profitHungarymediumHIGH

Nemzetközi Gyermekmentő Szolgálat Magyar Egyesület is a well-established non-profit organization dedicated to supporting disadvantaged children in Hungary and internationally. Founded in 1988, the organization operates multiple programs aimed at improving the lives of physically and mentally disabled, orphaned, and socially disadvantaged children. Their activities include healthcare services, organizing charity events, and community outreach. The website reflects a professional and consistent brand with a focus on transparency and engagement through events and social media. Technically, the website employs modern JavaScript frameworks such as Aurelia and React, along with Bootstrap for responsive design. It uses Google Analytics and Google Tag Manager for tracking and performance monitoring. The site is hosted securely with HTTPS and includes CSRF tokens for form security. However, some security headers are not explicitly detected, and privacy compliance elements like privacy and cookie policies are missing. From a security perspective, the site demonstrates basic good practices but lacks comprehensive security policies and vulnerability disclosures. No WAF or blocking mechanisms are detected, and the domain's WHOIS data is consistent with the organization's history, supporting legitimacy. The absence of explicit contact emails and phone numbers in the analyzed content suggests these may be located on other pages. Overall, the website is credible and professionally maintained but would benefit from enhanced privacy compliance and security policy transparency to improve trust and regulatory adherence.

55
10
2
70
62
75
40
non-profitchildwelfarecharityhungaryevents+2 more
Aurelia frameworkReactjQueryBootstrap+6
2025-06-23T15:57:04.129Z
ualg.pt favicon

Universidade do Algarve

ualg.pt

44
EducationPortugalmediumHIGH

The Universidade do Algarve operates a comprehensive and professionally designed website that serves as the official portal for academic programs, research activities, international collaborations, and student services. The site targets students, researchers, and academic staff, providing detailed information about courses, research units, and institutional services. The university holds a solid market position as a regional public higher education institution in Portugal, founded in 1979. Technically, the website is built on Drupal 10, incorporating modern analytics and marketing tools such as Google Analytics, Google Tag Manager, Facebook Pixel, and TikTok Pixel. The site demonstrates good mobile optimization, accessibility, and SEO practices, although performance is moderate. The absence of explicit security headers and privacy/cookie policies indicates areas for improvement in security and compliance. From a security perspective, the site uses HTTPS and avoids exposing sensitive data, but lacks visible security policies, incident response contacts, and vulnerability disclosure mechanisms. The WHOIS data confirms the domain's legitimacy and consistency with the university's identity, supporting a high trustworthiness rating. Overall, the website is professional and credible but would benefit from enhanced privacy compliance, security header implementation, and clearer contact information to strengthen user trust and regulatory adherence.

40
10
17
70
-
35
100
educationuniversityacademicresearchstudentservices+1 more
Drupal 10Google Tag ManagerGoogle AnalyticsFacebook Pixel+2
2025-06-23T15:49:32.824Z
thdsecurity.com favicon

The Hacking Day (THD'S)

thdsecurity.com

45
TechnologyN/asmallHIGH

The Hacking Day (THD'S) is a cybersecurity education platform offering practical workshops and certifications focused on hacking, pentesting, and information security. The website positions itself as a regional leader in Central and South America, providing hands-on training led by experts. The business model revolves around educational services delivered through courses, workshops, and certifications, targeting individuals seeking to enhance their cybersecurity skills. Technically, the website employs a modern tech stack including Bootstrap, jQuery, Owl Carousel, and Google reCAPTCHA, hosted via NameCheap. The site is mobile optimized with good design and navigation, though SEO and accessibility features are basic. No CMS is detected, indicating a custom or static site approach. Security posture is moderate: HTTPS is enforced and reCAPTCHA is used to protect forms, but the absence of DNSSEC and security headers represents gaps. No privacy or cookie policies are present, and no vulnerability disclosure or incident response information is published, which limits compliance and transparency. Overall, the website is professional and functional with moderate trustworthiness. Strategic improvements in privacy compliance, security headers, and transparency would enhance its security posture and user trust.

15
35
2
85
72
75
-
cybersecuritypentestinghackingeducationworkshops+1 more
jQueryBootstrapOwl CarouselFontAwesome+2
2025-06-23T14:41:58.142Z
S

Robot Challenge Screen

socialenergy.es

37
OtherN/asmallHIGH

The website socialenergy.es is currently inaccessible to normal visitors due to a proof-of-work CAPTCHA challenge page designed to verify the visitor is not a bot. This security mechanism effectively blocks access to the actual website content, preventing any meaningful analysis of business information, services, or user experience. The page is served with assets from Cloudfront CDN and uses advanced JavaScript to perform cryptographic challenges. WHOIS data for the domain is unavailable due to IP authorization restrictions imposed by the .es registry, limiting transparency about domain ownership and registration details. From a technical perspective, the site employs modern JavaScript features and a CDN for content delivery, but lacks visible SEO, accessibility, or privacy compliance features. The security posture is partially demonstrated by the presence of a proof-of-work CAPTCHA, but no other security headers or policies are observable. The absence of contact information, privacy policies, or terms of service further reduces trust and compliance confidence. Overall, the site’s risk profile is elevated due to the lack of accessible information, inability to verify domain legitimacy, and absence of compliance indicators. The security challenge page, while protecting the site from automated abuse, also hinders legitimate user access and third-party assessments. Strategic recommendations include improving transparency by enabling WHOIS access, publishing privacy and cookie policies, providing clear contact details, and enhancing SEO and accessibility to improve user trust and compliance.

20
25
2
70
72
80
-
security-challengecaptchablockedwaf
JavaScriptWeb Crypto APIBlobTextEncoder+1
2025-06-23T13:39:50.649Z
C

ERROR: The request could not be satisfied

cruzcampo.es

49
OtherN/asmallHIGH

The website cruzcampo.es is currently inaccessible due to a CloudFront 403 error indicating a Web Application Firewall (WAF) block or configuration issue. This prevents any meaningful content or metadata extraction, severely limiting the ability to analyze the business, technical infrastructure, or security posture. The WHOIS data for the domain is also unavailable due to query restrictions imposed by the .es domain registry (Red.es), further complicating legitimacy and ownership verification. As a result, the overall risk assessment is elevated due to lack of transparency and accessibility. From a technical perspective, the site is hosted behind Amazon CloudFront, but the current configuration or traffic conditions are causing access denial. No information about the technology stack, CMS, or performance can be determined. Security headers, SSL configuration, and compliance indicators cannot be evaluated due to the blocked content. Security posture evaluation is limited by the absence of accessible content and metadata. The presence of a WAF block suggests some level of security control, but the inability to access the site hinders assessment of vulnerabilities, incident response readiness, or data protection practices. No contact or policy information is available to assess GDPR compliance or incident response capabilities. Overall, the site’s inaccessibility and lack of WHOIS transparency pose significant challenges for trust and security evaluation. Strategic recommendations include resolving the WAF or CloudFront configuration issues to restore access, implementing comprehensive security headers and HTTPS enforcement, and ensuring public availability of privacy and contact information to improve compliance and trustworthiness.

15
25
2
65
77
85
100
2025-06-23T13:39:40.630Z