Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

149091
Websites
130
Industries
113
Countries
52
Avg Score
Page 755 of 775|Showing 37701-37750 of 38713
nifty.com favicon

NIFTY Corporation

nifty.com

82
TelecommunicationsJapanlargeLOW

NIFTY Corporation operates as a major Japanese internet service provider offering a wide range of broadband, mobile SIM, security, and media services primarily targeting Japanese consumers. The company maintains a strong market position with a comprehensive portfolio including @nifty光 broadband, NifMo mobile SIM, and various security and lifestyle services. Their digital presence is built on modern web technologies such as Next.js and is hosted via Amazon CloudFront, ensuring fast content delivery and good mobile optimization. However, the website currently lacks a valid SSL certificate, which is a critical security concern that undermines user trust and data protection. Security headers are partially implemented, but the absence of DNSSEC, CAA records, and HSTS reduces domain and transport security. The site uses multiple advertising and tracking services, with moderate user tracking and basic privacy compliance. Contact information is limited to a phone number with no visible email addresses or contact forms on the main page. Overall, the website is professionally designed with good content relevance and navigation clarity but requires urgent security improvements to protect users and enhance trust.

55
-
-
70
100
85
100
ISPInternet Service ProviderJapanTelecommunicationsSecurity+3 more
Next.jsReactJavaScriptAmazon CloudFront+1

Partner Domains:

lifemedia.jp
partnerpending
nojima.co.jp
partnerpending

+3 more partners

2025-06-14T12:17:00.411Z
bluebridge.lv favicon

Blue Bridge Technologies SIA

bluebridge.lv

56
HealthcareLatviamediumMEDIUM

Blue Bridge Technologies SIA is a Latvian IT company specializing in healthcare and health insurance IT solutions. Their offerings include the SmartMedical system for healthcare providers, insurance claims processing solutions, and a patient portal called Piearsta.lv. The company serves healthcare institutions, insurance companies, medical practices, and patients, positioning itself as a key regional player with a solid client base including major insurance companies and healthcare providers. The website content is primarily in Latvian and targets both B2B and B2C audiences in the healthcare and insurance sectors. Technically, the website runs on Apache with jQuery 1.8.2 and uses Cloudflare DNS services. The SSL certificate is valid but lacks modern TLS protocol support, and DNSSEC and CAA records are not implemented, indicating room for security improvements. The site includes a cookie consent mechanism but lacks visible privacy policy and terms of service pages, which could impact compliance and user trust. Social media presence includes Facebook, LinkedIn, YouTube, and legacy Google+ links. Overall, the website is professionally designed with good content relevance and navigation clarity, but technical and security enhancements are recommended.

25
-
25
85
77
85
100
HealthcareInsuranceIT SolutionsSmartMedicalPatient Portal+2 more
ApachejQuery 1.8.2JavaScriptCSS

Partner Domains:

smartmedical.lv
partneranalyzing...
piearsta.lv
partner61

+1 more partners

2025-06-14T12:16:01.229Z
everyday.com.au favicon

Everyday Rewards

everyday.com.au

66
loyalty programAustralialargeMEDIUM

The website demonstrates a strong foundation in network security and SSL/TLS implementation, scoring 100 in these areas, which ensures encrypted communication and robust network defenses. However, significant gaps exist in security headers, GDPR compliance, and adherence to the NIS2 directive, with scores ranging from 25 to 35 out of 100, exposing the business to regulatory, reputational, and operational risks. The absence of critical security headers like Content-Security-Policy and X-Frame-Options increases vulnerability to cross-site scripting and clickjacking attacks. Lack of privacy policies, cookie consent mechanisms, and third-party privacy disclosures pose serious compliance issues under GDPR, potentially resulting in fines and legal consequences. Deficiencies in information security frameworks, incident response plans, and business continuity preparations further heighten the risk of prolonged service disruptions and inadequate breach management. While email security and DNS health are relatively strong, enabling DNSSEC and configuring CAA records would enhance domain integrity and prevent abuse. Addressing these weaknesses promptly will protect customer trust, ensure regulatory compliance, and reduce the likelihood of costly security incidents.

35
25
25
85
100
85
100
loyaltyrewardsretailAustraliaWoolworths
ReactNext.jsJavaScriptAEM (Adobe Experience Manager)+2

Partner Domains:

bigw.com.au
subsidiaryanalyzing...
originenergy.com.au
partneranalyzing...

+1 more partners

2025-06-13T21:58:14.151Z
cybusinessonline.co.uk favicon

Virgin Money UK

cybusinessonline.co.uk

77
bankingUKlargeLOW

The website demonstrates a generally strong technical security foundation with high scores in email security, SSL/TLS, DNS health, and network security. However, significant gaps exist in compliance and governance areas, particularly related to GDPR and NIS2 regulations, which pose notable legal and operational risks. The absence of a cookie policy, consent banner, and incomplete privacy documentation expose the business to potential regulatory penalties and customer trust issues. Critical deficiencies in information security framework, incident response, and security policy documentation under NIS2 further elevate the risk of unmanaged security incidents and business disruption. While no critical vulnerabilities were identified, the combination of high and medium severity findings indicates an urgent need to address compliance and governance controls. Proactively remediating these issues will reduce regulatory exposure, improve stakeholder confidence, and strengthen the overall security posture. Immediate focus on policy implementation and GDPR compliance will deliver the greatest business value and risk mitigation. Ongoing monitoring of SSL certificates and DNS configurations ensures continued protection of core infrastructure components.

85
43
25
100
95
90
100
business bankingVirgin Moneybusiness accountsfinanceSME banking+1 more
jQuery 3.5.1Visual Website Optimizer (VWO)Adobe DTM (Dynamic Tag Manager)CSS Custom Properties (with fallback)+7

Partner Domains:

virginmoneyukplc.com
subsidiary74
virginmoney.com.au
sister company67

+1 more partners

2025-06-13T21:51:18.215Z
velocityfrequentflyer.com favicon

Velocity Frequent Flyer Pty Limited

velocityfrequentflyer.com

68
airline loyalty programAustralialargeMEDIUM

The website demonstrates a moderate security posture with no critical vulnerabilities detected but multiple high and medium-risk issues that expose the organization to regulatory, reputational, and operational risks. Key weaknesses lie in missing essential security headers, lack of compliance with GDPR requirements, and absence of fundamental NIS2 cybersecurity governance frameworks. While foundational network and email security measures are strong, gaps in security policy documentation, incident response readiness, and privacy transparency present significant business risks. Failure to implement privacy policies and consent mechanisms may lead to regulatory fines and loss of customer trust. Additionally, missing headers like Strict-Transport-Security and Content-Security-Policy increase exposure to man-in-the-middle and cross-site scripting attacks. The organization should prioritize closing these gaps to protect sensitive information, ensure regulatory compliance, and maintain customer confidence. Immediate remediation combined with policy development and communication enhancements is essential to strengthen overall security posture.

50
25
25
100
85
85
100
frequent flyerloyalty programVirgin Australiatravelpoints+2 more
Adobe Helix RUMGoogle Fonts (Montserrat)Salesforce Embedded Service (Live Chat)New Relic Browser Agent+6

Partner Domains:

virginaustralia.com
partnerpending
flybuys.com.au
partnerpending

+1 more partners

2025-06-13T21:50:33.814Z