Skip to main content

High-risk security reports

Browse 43,626 Guard analyses across this slice of the directory — NIS2 / GDPR readiness, SSL/TLS, DNS hygiene and email authentication.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

149091
Websites
130
Industries
113
Countries
52
Avg Score
Page 762 of 873|Showing 38051-38100 of 43626
stedwards.nsw.edu.au favicon

St Edward's College

stedwards.nsw.edu.au

33
EducationAustraliamediumHIGH

St Edward's College is a Catholic secondary educational institution located in East Gosford, NSW, Australia. The website serves as a comprehensive portal for students, parents, and the community, offering information on enrolment, curriculum, pastoral care, co-curricular activities, and news updates. The college positions itself as a quality teaching institution with a focus on opening hearts and minds. The digital presence is supported by a WordPress CMS with a variety of plugins enhancing user experience and content management. The site is well-structured with clear navigation and mobile optimization, targeting local and regional audiences interested in Catholic secondary education. Technically, the website employs modern JavaScript libraries such as jQuery, jQuery UI, and Bootstrap, alongside SEO optimization via Yoast. The site uses HTTPS with a good SSL configuration, though security headers could be improved. Google Analytics is implemented for user tracking, but no cookie consent mechanism is present, indicating partial privacy compliance. Contact information is prominently displayed, enhancing business credibility. From a security perspective, the site shows a moderate security posture with HTTPS enforced and no visible exposed sensitive data. However, the absence of advanced security headers like Content Security Policy and lack of a vulnerability disclosure or incident response policy are areas for improvement. The WHOIS data aligns well with the website's identity, showing consistent registration details and domain age appropriate for the institution's history. Overall, the website is professional, functional, and trustworthy, with recommendations to enhance privacy compliance and security practices to further strengthen its posture.

65
28
-
70
-
-
20
educationschoolcatholicsecondarynews+2 more
jQueryjQuery UIYoast SEOMasterSlider+3

Partner Domains:

stedwards.digistormenrol.com.au
partner
stedwards-nsw.compass.education
partner

+1 more partners

2025-06-21T18:21:57.100Z
yachtandboat.com.au favicon

Yacht and Boat Sales by YATCO

yachtandboat.com.au

43
TransportationAustraliamediumHIGH

Yacht and Boat Sales by YATCO operates a comprehensive online platform specializing in new and used boat sales across Australia and New Zealand. The website serves boating enthusiasts by providing extensive listings of power boats, sailboats, jet skis, commercial boats, and related equipment. It also offers additional resources such as boating news, reviews, advice, and a marine business directory, positioning itself as a leading marketplace in the regional boating industry. The business model focuses on connecting buyers with sellers and dealers, supported by a user-friendly search interface and categorized navigation. Technically, the website is built on WordPress with modern frameworks like Bootstrap and jQuery, leveraging third-party libraries such as Selectize.js and Slick Carousel for enhanced user experience. The site is mobile-optimized and employs SEO best practices, including structured data and Open Graph metadata, to improve visibility. Google Tag Manager is used for analytics and marketing tracking, indicating a moderate level of digital maturity. From a security perspective, the site enforces HTTPS and avoids exposing sensitive data in its HTML content. However, it lacks visible security headers and a cookie consent mechanism, which are important for compliance and protection. No critical vulnerabilities or malware indicators were found. The absence of a published security policy or incident response contact suggests room for improvement in security governance. Overall, the website presents a professional and trustworthy front with good content quality and business credibility. Strategic enhancements in privacy compliance and security policies would further strengthen its posture and user trust.

35
28
-
40
-
60
100
boatsyachtsboatsalesmarineaustralia+4 more
WordPress 6.8.1Bootstrap 5.3.3jQuery 3.6.1Selectize.js 0.13.3+2

Partner Domains:

boatdeckcrm.com.au
partner
2025-06-21T18:21:57.085Z
cbl.gov.ly favicon

مصرف ليبيا المركزي

cbl.gov.ly

47
FinanceLibyalargeHIGH

The Central Bank of Libya (مصرف ليبيا المركزي) operates as an independent financial institution fully owned by the Libyan state, serving as the country's monetary authority. The website reflects a well-established government entity providing comprehensive financial services, including banking supervision, market operations, currency issuance, and economic reporting. The target audience includes Libyan citizens, financial institutions, government bodies, and investors. The business model is that of a central bank with regulatory and operational roles in Libya's financial sector. Technically, the website is built on WordPress CMS with modern front-end technologies such as UIkit and Highcharts for data visualization. It incorporates accessibility features and is optimized for mobile devices, offering a good user experience. The site uses HTTPS and integrates analytics tools like Google Tag Manager and Cloudflare Insights, indicating a moderate level of digital maturity. From a security perspective, the site enforces HTTPS and avoids exposing sensitive data. However, it lacks explicit security headers and a published security.txt or vulnerability disclosure policy. Privacy compliance is partial, with a privacy/security policy present but no cookie consent mechanism or GDPR-specific indicators. Contact information is available but no dedicated incident response contacts are published. Overall, the website is professional, trustworthy, and content-rich, suitable for its role as a central bank's official portal. Strategic recommendations include enhancing security headers, publishing vulnerability disclosure and incident response information, and implementing cookie consent to improve privacy compliance.

15
10
-
85
-
85
100
bankingfinancegovernmentcentralbanklibya+3 more
jQueryUIkitHighchartsWordPress+1

Partner Domains:

lypay.gov.ly
partner
fiu.gov.ly
partner

+1 more partners

2025-06-21T18:21:56.877Z
G

GLOBAL ACTIVO SOLUCIONES S.L.

msales.com

48
TechnologyN/asmallHIGH

MSALES is a technology-focused service provider specializing in user acquisition for mobile applications. The company offers programmatic user acquisition with in-house blue ribbon traffic, covering over 220 geographic locations with 24/7 monitoring to optimize campaign performance. The website targets advertisers with CPI offers and positions itself as a reliable partner for mobile app marketing campaigns. The business model centers on delivering high-quality traffic and conversions through expert media buying and technology-driven optimization. Technically, the website employs modern web technologies including HTML5, CSS3, JavaScript, Bootstrap, Google Fonts, and Google Tag Manager for analytics and marketing. The site is mobile-optimized with a good user experience and clear navigation. However, no CMS or hosting provider details are explicitly identified. Performance is moderate with room for improvement in accessibility and security headers. From a security perspective, the site uses HTTPS (assumed from URL), includes a cookie consent mechanism with configurable categories, and employs captcha on the contact form to mitigate spam. There is no explicit security policy or incident response information published, and no vulnerability disclosure or security.txt file is found. Security headers are not detected in the provided data, suggesting an opportunity to enhance security posture. No critical vulnerabilities or exposed sensitive data were observed. Overall, the website presents a professional and trustworthy front for its business niche, with moderate risk due to limited published security policies and lack of detailed company contact information such as phone numbers or physical addresses. Strategic improvements in security transparency, accessibility, and compliance documentation would strengthen trust and reduce risk.

15
58
-
75
-
60
100
useracquisitionmobileappsadvertisingcookieconsentprivacypolicy+1 more
HTML5CSS3JavaScriptBootstrap CSS+3

Partner Domains:

kimiagroup.com
partner
2025-06-21T18:21:56.857Z
windmill-intl.com favicon

Windmill International, Inc.

windmill-intl.com

44
GovernmentUnited StatessmallHIGH

Windmill International, Inc. is a veteran-owned small business specializing in providing professional, engineering, logistics, and tactical SATCOM services primarily to the United States and allied governments. With over 25 years of experience supporting the Air Force Life Cycle Management Center (AFLCMC) and NATO’s AWACS, the company has established a strong market position as a trusted government contractor. Their business model focuses on government acquisition programs, foreign military sales, and specialized tactical communications products, supported by an employee stock ownership program that fosters long-term stability and employee engagement. Technically, the website is built on a modern WordPress platform using the Neve theme and Yoast SEO plugin, ensuring good SEO and mobile responsiveness. The site loads with moderate performance and presents a professional design with clear navigation. However, there is room for improvement in accessibility and hosting transparency, as no hosting provider details are evident. From a security perspective, the site uses HTTPS and avoids exposing sensitive data. However, it lacks important security headers and does not provide privacy or cookie policies, which are critical for GDPR compliance and user trust. No incident response or vulnerability disclosure information is available, indicating gaps in security transparency and readiness. Overall, the website is functional and professional but requires enhancements in privacy compliance, security best practices, and transparency to improve trustworthiness and regulatory adherence. Strategic recommendations include publishing comprehensive privacy and cookie policies, implementing security headers, and providing clear incident response contacts.

15
10
5
70
-
75
100
veteran-ownedgovernmentservicesprofessionalserviceslogisticstacticalsatcom+1 more
WordPress 6.8.1Yoast SEO plugin v19.6.1Google Fonts (Poppins)JavaScript (wp-emoji-release.min.js)+1
2025-06-21T18:21:56.844Z
M

Machine Intelligence Research Labs

mirlabs.org

33
TechnologyUnited StatesmediumHIGH

Machine Intelligence Research Labs (MIR Labs) is a global non-profit academic consortium established in 2008, focusing on innovation and research excellence in machine intelligence and related fields. The organization operates internationally, hosting conferences, publishing research, and facilitating scientific networking among academicians and industry professionals. The website reflects a medium-sized organization with a clear academic and research-oriented mission, targeting researchers and institutions worldwide. Technically, the website uses a modern but basic tech stack including Bootstrap, jQuery, and popular UI libraries like Owl Carousel and Slick Slider. The site is mobile responsive and well-structured, though performance is moderate and accessibility features are basic. There is no detected CMS or advanced platform integration. SEO and metadata are minimal but present. From a security perspective, the site lacks visible security headers and explicit HTTPS confirmation in the provided data, though HTTPS is likely in use. The contact form uses POST but lacks anti-bot protections such as CAPTCHA. No privacy, cookie, or terms of service policies are found, indicating gaps in privacy compliance. Social media presence is strong, enhancing trust and outreach. Overall, the website is functional and professional but could improve in privacy compliance, security hardening, and transparency. The domain registration aligns well with the organization's history, supporting legitimacy. Strategic improvements in security policies, privacy disclosures, and technical security measures are recommended to enhance trust and compliance.

15
10
-
75
-
70
20
machinelearningresearchacademicnon-profitconferences+3 more
HTML5Bootstrap 4jQueryFontAwesome+2

Partner Domains:

www.mirlabs.net
partner
2025-06-21T18:21:56.822Z
W

WasteServ Malta Ltd

wasteservmalta.com

48
GovernmentMaltamediumHIGH

WasteServ Malta Ltd is a government-owned entity established in 2002, responsible for managing integrated waste management systems in Malta. The organization provides key services including household and commercial waste management, recycling, and environmental initiatives. The website reflects a medium-sized organization with a clear focus on serving residents and businesses in Malta, supported by official government affiliations and a consistent brand presence. Technically, the website employs modern web technologies such as jQuery, Bootstrap, and Google Analytics, and is built on the Krystal CMS platform. The site demonstrates good mobile optimization and accessibility features, with a moderate performance profile. SEO practices are adequately implemented with proper meta tags and structured navigation. From a security perspective, the site uses HTTPS and secure form submissions but lacks explicit security headers and incident response policies. Privacy compliance is basic, with privacy and cookie policies present but no active consent mechanism. No critical vulnerabilities or suspicious indicators were detected, indicating a generally secure posture. Overall, the website is professional, trustworthy, and aligned with the organization's mission. Strategic improvements in security headers, privacy consent, and incident response documentation would enhance the security posture and compliance standing.

70
43
5
85
-
80
20
wastemanagementrecyclingenvironmentalservicesgovernmentmalta
jQuery 3.7.1BootstrapGoogle AnalyticsGoogle Custom Search Engine+1

Partner Domains:

environment.gov.mt
partner
www.ecohive.com.mt
partner

+1 more partners

2025-06-21T18:21:56.818Z
immvestproperties.com favicon

Immvest International Ltd.

immvestproperties.com

43
Real EstateMaltasmallHIGH

ImmVest Properties Ltd. operates as a specialized real estate provider focusing on residency and citizenship by investment services, primarily in Malta. The company complements its parent entity, Immvest International Ltd., by offering property listings for sale and rent, including special designated areas. The website targets investors seeking property-based immigration solutions and positions itself as a trusted provider in this niche market. The business is relatively young, founded around 2019, and maintains a professional online presence with consistent branding and clear service offerings. Technically, the website is built on WordPress using popular plugins such as WPBakery Page Builder, Slider Revolution, and Real Estate Pro. It employs modern web technologies including jQuery and Google Translate for multilingual support. The site is mobile-optimized and demonstrates good SEO practices with Yoast SEO integration and structured data markup. Performance is moderate, with room for improvement in accessibility and advanced technical optimizations. From a security perspective, the site uses HTTPS but lacks important security headers like Content-Security-Policy and HSTS, which could enhance protection against common web attacks. No explicit privacy, cookie, or security policies are present, which may expose the company to compliance risks, especially under GDPR. Contact information is limited to a contact form, with no direct emails or phone numbers visible, reducing transparency. No incident response or vulnerability disclosure mechanisms are provided. Overall, the website is functional and professional but would benefit from enhanced privacy compliance, improved security posture, and more transparent contact and policy disclosures. These improvements would strengthen trustworthiness and reduce potential legal and security risks.

15
10
-
70
-
75
100
realestateresidencybyinvestmentcitizenshipbyinvestmentpropertyprovidermalta
WordPressPHPjQuerySlider Revolution+3
2025-06-21T18:21:56.810Z
wsc.com.mt favicon

Water Services Corporation

wsc.com.mt

39
EnergyMaltalargeHIGH

Water Services Corporation (WSC) is the primary government-owned utility responsible for the complete drinking and wastewater cycle in Malta. The website reflects a mature and well-established organization with a clear market position as Malta's water services provider. Key services include water production, distribution, wastewater management, customer support, and educational outreach. The site targets residents and businesses within Malta, providing comprehensive information and service access. Technically, the website is built on WordPress using modern plugins such as Yoast SEO and Elementor, supported by SiteGround hosting. It employs Google Analytics and MonsterInsights for analytics and Tidio for live chat support. The site is mobile-optimized with good SEO practices and moderate performance. Accessibility is basic but functional. From a security perspective, the site enforces HTTPS and uses some security best practices but lacks explicit security headers and published security policies. No critical vulnerabilities or exposed sensitive data were detected. Privacy compliance is partial; a comprehensive privacy policy exists, but no cookie consent mechanism is implemented despite tracking scripts. Overall, the website is professional, trustworthy, and credible with room for improvement in privacy compliance and security transparency. Strategic recommendations include implementing cookie consent, publishing security policies, and enhancing security headers to strengthen the security posture and user trust.

80
3
5
70
-
75
-
waterservicesmaltautilitygovernmentwaterquality+2 more
WordPressYoast SEO pluginGoogle AnalyticsMonsterInsights+4

Partner Domains:

sustainability.gov.mt
partner
gov.mt
partner

+2 more partners

2025-06-21T18:21:56.796Z
diplomacy.edu favicon

DiploFoundation

diplomacy.edu

49
EducationMaltamediumHIGH

DiploFoundation is a well-established non-profit organization specializing in digital diplomacy and global governance education, research, and advocacy. With over 20 years of experience, it serves diplomats, students, researchers, and policymakers worldwide, offering a comprehensive range of online courses, workshops, and resources. The organization maintains a strong market position as a leader in its niche, supported by a consistent brand and high-quality content. Technically, the website is built on a modern WordPress platform using the Enfold theme and various performance and functionality plugins such as WP Rocket, UberMenu, and ElasticPress. The site demonstrates excellent mobile optimization, fast loading times, and good accessibility features, supported by structured data for SEO enhancement. From a security perspective, the site employs HTTPS with strong SSL configuration, uses security headers, and implements best practices such as lazy loading and CSP violation handling. No critical vulnerabilities or exposed sensitive data were detected. Privacy compliance is robust, with clear privacy and cookie policies and consent mechanisms in place. Overall, the website presents a low risk profile with strong business credibility and technical maturity. Strategic recommendations include enhancing security transparency with a dedicated policy page, adding incident response contacts, and maintaining up-to-date software to mitigate emerging threats.

30
48
35
75
-
80
40
diplomacydigitalpolicytrainingresearchadvocacy+3 more
WordPress 6.8.1PHPjQuerySlick Carousel+8

Partner Domains:

dig.watch
partner
humainism.ai
partner

+2 more partners

2025-06-21T18:21:56.785Z
T

The Distillery Project

work-chicago.com

42
MediaUnited StatessmallHIGH

The Distillery Project is an independent, award-winning creative and strategic agency based in Chicago, specializing in delivering clear, refined thinking and potent creativity to influence brand perception and consumer behavior. The website showcases their portfolio with multimedia content including videos hosted on Vimeo, and highlights their recognition as a Small Agency of The Year multiple times, indicating a strong market position within the creative media sector. The target audience primarily includes businesses seeking strategic branding and creative campaign services. Technically, the website is built using modern web technologies such as React and Next.js, with optimized multimedia integration and responsive design. However, there is no evidence of a common CMS, suggesting a custom or proprietary platform. Performance is moderate with good mobile optimization, though accessibility features are basic. SEO practices appear adequate with proper meta tags and Open Graph data. From a security perspective, the site lacks visible security headers and published security policies, which lowers its security posture. There is no evidence of HTTPS enforcement or vulnerability disclosure mechanisms. Contact information is clearly presented, but privacy and cookie policies are absent, indicating compliance gaps with GDPR and other privacy regulations. Overall, the website is professional and credible but would benefit from enhanced security practices and privacy compliance to reduce risk and improve trustworthiness. Strategic recommendations include implementing security headers, publishing privacy and cookie policies, and establishing incident response and vulnerability disclosure protocols.

15
10
-
60
-
75
100
creativeagencystrategicagencybrandingmediavideo+1 more
ReactNext.jsVimeo (video hosting)Custom fonts (woff2)+1
2025-06-21T18:21:56.750Z
elektra.com.mx favicon

Elektra en Línea

elektra.com.mx

46
RetailMexicoenterpriseHIGH

Elektra is a prominent Mexican retail and e-commerce company specializing in a wide range of products including electronics, home appliances, furniture, motorcycles, clothing, and more. It operates under the Grupo Salinas umbrella and offers integrated financing options such as Crédito Elektra and Banco Azteca loans, facilitating consumer purchases. The website is well-structured, targeting Mexican consumers with a focus on online shopping convenience, promotions, and official brand stores. The technical infrastructure is robust, leveraging modern technologies like React and the VTEX e-commerce platform, complemented by extensive use of analytics and marketing tools including Google Tag Manager, Adobe Launch, Hotjar, and TikTok Pixel. The site is hosted on AWS Cloudfront CDN, ensuring fast performance and good mobile optimization. Security posture is strong with HTTPS enforced, secure cookie settings, and presence of security headers, although there is room for improvement by adding Content Security Policy and more restrictive frame options. No critical vulnerabilities or exposed sensitive data were detected. Privacy compliance is basic with a comprehensive privacy policy but lacking a cookie consent mechanism. Overall, Elektra presents a high-quality, professional, and trustworthy online presence with extensive product offerings and strong business credibility. Strategic recommendations include enhancing security headers, implementing cookie consent, and adding a vulnerability disclosure policy to further strengthen trust and compliance.

25
10
10
50
-
85
100
e-commerceretailelectronicsfinancingmexico+2 more
ReactVTEX platformAdobe LaunchGoogle Tag Manager+5

Partner Domains:

bancoazteca.com.mx
partner
italikamx.vtexassets.com
subsidiary

+2 more partners

2025-06-21T18:21:56.655Z
gadea.com favicon

Curia

gadea.com

44
HealthcareUnited StateslargeHIGH

Curia Global is a leading contract development and manufacturing organization (CDMO) with over 30 years of experience in the pharmaceutical and biologics sectors. The company offers comprehensive services spanning small molecule drug discovery, generic APIs, biologics development, sterile drug product manufacturing, and analytical testing. Positioned as a dedicated ally to biopharma companies of all sizes, Curia operates a global network of 23 facilities and 3,500 professionals, emphasizing flexibility, scalability, and scientific expertise. Technically, the website is built on WordPress with a modern tech stack including Google Tag Manager, Marketo, Microsoft Clarity, and HubSpot analytics, reflecting a mature digital marketing and analytics infrastructure. The site is well-optimized for SEO, mobile responsive, and accessible, with professional design and clear navigation. From a security perspective, the site enforces HTTPS and uses reCAPTCHA for form protection, but lacks explicit security headers and published security policies or incident response contacts. Privacy and cookie policies are comprehensive and GDPR compliant, supporting good privacy compliance. No critical vulnerabilities or suspicious content were detected. Overall, Curia Global's website demonstrates a strong business credibility and digital maturity with minor recommendations to enhance security posture and transparency. The domain registration details align well with the business claims, supporting high legitimacy and trustworthiness.

55
43
-
70
-
75
20
cdmopharmaceuticalbiologicssmallmoleculecontractmanufacturing+1 more
JavaScriptGoogle Tag ManagerMarketo MunchkinMicrosoft Clarity+3

Partner Domains:

careers.curiaglobal.com
subsidiary
2025-06-21T18:21:56.631Z
M

Muscat Mizzi Advocates

muscatmizzi.com

48
OtherMaltasmallHIGH

Muscat Mizzi Advocates is a boutique law firm based in Malta, specializing in Compliance, Dispute Resolution, and Transaction Law. The firm targets business sector clients who value creativity and efficiency in legal services. Their market position is that of a reputed boutique firm with a focus on delivering tailored legal solutions. The website reflects a professional and consistent brand image with clear service offerings and active engagement in industry events. Technically, the website is built using modern frameworks such as Nuxt.js and TailwindCSS, hosted behind Cloudflare, and employs Google Analytics for tracking. The site is mobile-optimized and performs moderately well, with good SEO and basic accessibility features. Security measures include HTTPS enforcement and Cloudflare Turnstile captcha to mitigate automated abuse. From a security perspective, the site demonstrates good practices with no visible vulnerabilities or exposed sensitive data. However, it lacks explicit security policies, incident response contacts, and comprehensive privacy documentation, which are areas for improvement. The domain registration details are consistent with the business claims, enhancing trustworthiness. Overall, the website presents a low-risk profile with strong business credibility but would benefit from enhanced privacy and security policy transparency to improve compliance and user trust.

15
10
35
70
-
70
100
lawfirmlegalservicescompliancedisputeresolutiontransactions+1 more
TailwindCSSNuxt.jsGoogle AnalyticsCloudflare Turnstile Captcha
2025-06-21T18:21:56.627Z