Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

149092
Websites
130
Industries
113
Countries
52
Avg Score
Page 740 of 775|Showing 36951-37000 of 38713
A

Arjo

arjohuntleigh.com

40
HealthcareSwedenlargeHIGH

Arjo is a well-established global healthcare company specializing in medical devices and solutions aimed at improving mobility and care for patients with reduced mobility and age-related health challenges. The company operates in over 100 countries with a large workforce and offers a broad portfolio including patient handling equipment, medical beds, hygiene solutions, disinfection products, and prevention systems for pressure injuries and venous thromboembolism. The website reflects a mature digital presence with comprehensive content, clear navigation, and professional design tailored to healthcare providers and institutions. Technically, the website leverages modern web technologies including Episerver CMS, Azure hosting, and multiple analytics and marketing tools such as Google Analytics, Siteimprove, Hotjar, and Microsoft Application Insights. The site is hosted on Microsoft Azure with Cloudflare CDN, ensuring global availability and performance. However, performance metrics were not available, and accessibility is rated as basic, suggesting room for improvement. From a security perspective, the site implements several important HTTP security headers and a detailed Content Security Policy. Nevertheless, the SSL certificate is currently invalid or missing, which is a critical vulnerability that undermines user trust and data security. HSTS is configured but not fully enabled, and session resumption mechanisms are absent. No known vulnerabilities or malware were detected, and no WAF or blocking mechanisms interfere with site access. Overall, the website demonstrates strong business credibility and privacy compliance with clear policies and consent mechanisms. The main risk lies in the SSL certificate issue, which should be addressed promptly to maintain security posture and user confidence. Strategic recommendations include renewing the SSL certificate, enabling full HSTS, and enhancing accessibility and performance monitoring.

70
43
17
50
-
85
40
healthcaremedicaldevicespatienthandlingmedicalbedshygiene+6 more
JavaScriptWistia video embedsAzure Application InsightsSiteimprove Analytics+8
2025-06-15T21:58:28.695Z
krausnaimer.com favicon

Kraus & Naimer

krausnaimer.com

38
ManufacturingFinlandlargeHIGH

Kraus & Naimer is a globally recognized leader in the manufacturing of cam switches and industrial switchgear, offering a broad portfolio of products including main switches, control switches, and customized solutions. The company emphasizes mass customization and international certifications, serving a diverse industrial clientele worldwide. Their website reflects a professional and consistent brand presence with clear navigation and relevant content tailored to industrial customers. Technically, the website is built on TYPO3 CMS and served via Apache, incorporating modern JavaScript libraries and privacy-focused analytics (Matomo). However, the site suffers from a critical security shortfall due to the absence of a valid SSL certificate and HTTPS support, which severely impacts the security posture and user trust. Privacy compliance is well addressed with visible cookie consent mechanisms and comprehensive privacy policies. Security-wise, while some security headers are implemented, the lack of HTTPS and modern TLS protocols is a significant vulnerability. No explicit security or incident response policies are published, which could be improved to enhance trust and compliance. Overall, the site is functional and professional but requires urgent security upgrades to meet modern standards and protect user data. Strategically, Kraus & Naimer should prioritize SSL certificate installation and TLS configuration, enhance security policy transparency, and continue leveraging privacy-compliant analytics to maintain regulatory compliance and customer trust.

55
-
-
50
-
85
100
industrialswitchescamswitchesmainswitchescustomizedswitchesmanufacturing+2 more
ApacheTYPO3 CMSJavaScriptMatomo Analytics+1
2025-06-15T21:57:31.033Z
vwr.com favicon

Avantor, Inc.

vwr.com

40
HealthcareUnited StatesenterpriseHIGH

VWR.com is the online presence of Avantor, Inc., a large enterprise specializing in providing life science products and service solutions. The website targets life science professionals and organizations globally, offering a broad range of scientific supplies and services. The business model is primarily B2B, with a strong market position as an established global supplier in the healthcare sector. The site uses localized subdomains to serve different countries, indicating a mature international presence. Technically, the website employs a variety of modern JavaScript libraries and tracking tools, including Google Analytics, Hotjar, and Cloudflare for CDN and security. However, the site lacks a valid SSL certificate and does not enable modern TLS protocols, which is a significant security concern. The content is professionally presented with good navigation and branding consistency, but mobile optimization and accessibility are basic. From a security perspective, while the site implements a comprehensive Content Security Policy and some security headers, the absence of HTTPS and modern TLS support severely impacts the security posture. No incident response or vulnerability disclosure information is provided, and no explicit contact details are available on the landing page, limiting transparency. Overall, the website is functional and professional but requires urgent improvements in SSL/TLS implementation and privacy compliance mechanisms to enhance trust and security. Strategic recommendations include installing a valid SSL certificate, enabling modern TLS protocols, implementing cookie consent mechanisms, and providing clear contact and security policy information.

55
18
5
85
-
85
100
lifesciencehealthcareb2benterprisescientificsupplies
JavaScriptGoogle AnalyticsCloudflareModernizr+2

Partner Domains:

avantorsciences.com
parentpending
2025-06-15T21:57:22.997Z
S

Spencer Stuart

spencerstuartportal.com

40
OtherN/aenterpriseHIGH

The Spencer Stuart Portal website serves as a client or internal portal for Spencer Stuart, a global executive search and leadership advisory firm. The site is minimalistic, primarily acting as a loading or shell page that dynamically loads resources and scripts from local bundles and external services such as Pendo for analytics. The business focus is on executive search and leadership consulting, targeting enterprise clients and internal users. The portal likely supports client engagement and administrative functions rather than public marketing. Technically, the site is hosted on Amazon S3 with CloudFront CDN, leveraging AngularJS framework and JavaScript for dynamic content loading. However, the site lacks a valid SSL certificate and does not support HTTPS, which is a critical security deficiency. The absence of modern TLS protocols, security headers, and privacy policies further weakens the security posture. Performance data is unavailable, but the site appears slow and basic in design and user experience. Security evaluation reveals no WAF or blocking mechanisms, but the lack of HTTPS and security best practices exposes the site to risks. No privacy or cookie policies are present, and no contact or legal information is provided, limiting trust and compliance. Pendo analytics is integrated, indicating moderate user tracking without visible privacy compliance measures. Overall, the site is functional as a portal shell but requires urgent improvements in security, privacy compliance, and content completeness to meet enterprise standards and user trust expectations.

15
40
17
50
-
85
100
portalexecutivesearchleadershipadvisoryenterpriseaws+1 more
JavaScriptAmazon S3CloudFrontPendo Analytics+2
2025-06-15T21:57:12.151Z
streambreak.tv favicon

StreamBreak Interactive GmbH

streambreak.tv

56
TechnologyAustriasmallMEDIUM

StreamBreak Interactive GmbH operates a niche technology platform focused on enhancing live streaming experiences by providing interactive minigames and ads that engage viewers during breaks. The company targets streamers, eSports organizers, and advertisers, offering a dashboard for analytics and community interaction. Founded in 2017 and based in Austria, StreamBreak has established a consistent brand presence and has been recognized with awards such as the Twitch Extension Winner in 2019. Technically, the website is built using modern web technologies including Bootstrap and JavaScript, hosted on Uberspace with DNS managed by world4you.at. While the site supports modern TLS protocols and has HSTS enabled, performance is suboptimal with a slow page load time. Mobile optimization and SEO are good, but accessibility is basic. No CMS is detected, indicating a custom or static site. From a security perspective, the site employs HTTPS with strong protocols but lacks DNSSEC, CAA records, and domain protection locks, which are recommended to enhance DNS and domain security. OCSP stapling and certificate transparency are also not implemented. Privacy compliance is basic with a cookie banner and privacy policy present, but no terms of service or explicit GDPR compliance statements. Contact information is limited to an email address. Overall, the website is professional and trustworthy with minor security and performance improvements needed. The domain registration data aligns well with the business claims, supporting legitimacy. Strategic recommendations include improving DNS security, enhancing performance, and expanding privacy and security policies to strengthen compliance and user trust.

70
43
25
50
69
55
40
interactiveadsstreamingminigamesviewerengagementtwitch+2 more
BootstrapJavaScriptHTML5CSS3+4
2025-06-15T21:56:58.032Z
bose.com favicon

Bose

bose.com

40
RetailUnited StatesenterpriseHIGH

Bose.com is the official e-commerce website of Bose Corporation, a leading premium audio equipment brand. The site offers a wide range of products including headphones, earbuds, speakers, soundbars, and home theater systems, targeting consumers seeking high-quality audio solutions. The business model focuses on direct-to-consumer sales supported by comprehensive customer service and product support. The website demonstrates a strong brand presence with consistent messaging and professional design, reflecting Bose's market position as a trusted leader in the audio retail sector. Technically, the website is built on Salesforce Commerce Cloud, hosted on AWS infrastructure, and integrates multiple modern marketing and analytics technologies such as Google Tag Manager, Bazaarvoice, Qualtrics, and Forter. While the site is mobile-optimized and accessible, performance is somewhat slow, and there is room for improvement in technical implementation, particularly in SSL configuration and security headers. From a security perspective, the site currently lacks a valid SSL certificate, which is a critical issue impacting user trust and data protection. No security headers are detected, and advanced security policies or incident response information are not publicly available. Privacy and cookie policies are present and include consent mechanisms, indicating good privacy compliance. WHOIS data confirms the domain's legitimacy and consistency with the brand's identity. Overall, Bose.com is a professionally managed, content-rich e-commerce platform with strong business credibility but requires urgent improvements in SSL and security configurations to enhance its security posture and user trust.

45
18
5
50
-
85
100
e-commerceaudioretailconsumerelectronicsbrand+3 more
JavaScriptBazaarvoiceGoogle Tag ManagerQualtrics+6

Partner Domains:

automotive.bose.com
subsidiary
reseller.bose.com
partner

+2 more partners

2025-06-15T21:56:47.120Z
commscope.com favicon

CommScope

commscope.com

36
TelecommunicationsUnited StatesenterpriseHIGH

CommScope is a leading global provider of broadband, enterprise, and wireless network infrastructure solutions. The company offers a broad portfolio of products and services including broadband access systems, cable assemblies, connectors, networking systems, and video processing solutions. Their website reflects a mature enterprise with a strong market position, targeting telecommunications professionals, enterprises, and government agencies. The site is well-structured, multilingual, and professionally designed, showcasing their extensive product lines and corporate information. Technically, the website uses modern JavaScript frameworks, cloud hosting via Cloudflare, and integrates multiple marketing and analytics tools such as Google Tag Manager, Microsoft Application Insights, and OneTrust for cookie consent. However, a critical security weakness is the absence of a valid SSL certificate and HTTPS support, which significantly impacts the security posture and user trust. Security headers are partially implemented but lack completeness, and no explicit security or incident response policies are publicly disclosed. Overall, the website demonstrates strong business credibility and digital maturity but requires urgent remediation of SSL/TLS issues to ensure secure communications and compliance.

30
-
5
50
-
85
85
broadbandenterprisewirelessnetworktelecommunication+4 more
JavaScriptReact (site-react.js)Google Tag ManagerMicrosoft Application Insights+7
2025-06-15T21:56:46.319Z
W

Waters Corporation

waters.com

40
TechnologyUnited StatesenterpriseHIGH

Waters Corporation is a leading enterprise in the technology sector specializing in analytical system solutions, software, and services for scientific research, particularly in liquid chromatography and mass spectrometry. The company targets scientists and laboratories globally, offering a comprehensive portfolio of products and services that position it as a market leader. The website reflects a mature digital presence with consistent branding, rich content, and extensive navigation options tailored to its B2B audience. Technically, the website leverages modern web technologies including React and Adobe Experience Manager, supported by Akamai CDN for performance. The site is mobile-optimized and SEO-friendly, with structured data enhancing search visibility. However, performance metrics are moderate, indicating room for optimization. From a security perspective, while several best practices are implemented such as security headers and cookie flags, the absence of a valid SSL certificate and lack of HTTPS enforcement significantly weaken the security posture. This exposes the site to risks and undermines user trust. Privacy compliance is strong, with comprehensive policies and consent mechanisms in place. Overall, Waters Corporation's website demonstrates high business credibility and digital maturity but requires urgent remediation of SSL and HTTPS issues to enhance security and trustworthiness. Strategic improvements in security infrastructure will align the site with enterprise-grade standards and protect its valuable user base.

75
-
5
50
-
85
100
analyticalsystemsliquidchromatographymassspectrometryscientificinstrumentslaboratoryequipment+4 more
ApacheReactAdobe Experience Manager (AEM)Typekit Fonts+5
2025-06-15T21:56:46.101Z