Skip to main content

High-risk security reports

Browse 43,528 Guard analyses across this slice of the directory — NIS2 / GDPR readiness, SSL/TLS, DNS hygiene and email authentication.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

148887
Websites
130
Industries
113
Countries
52
Avg Score
Page 766 of 871|Showing 38251-38300 of 43528
enterwell.net favicon

Enterwell

enterwell.net

49
TechnologyN/asmallHIGH

Enterwell is a small technology company specializing in software design and development services, established in 2014. The company focuses on delivering simple software solutions with excellent results, targeting businesses seeking software projects, team augmentation, webshops, and websites. Their market position is strengthened by long-term partnerships and a high client retention rate of 94%. The website reflects a professional and consistent brand image with clear service offerings and partner references. Technically, the website is built on WordPress with Yoast SEO and uses Matomo for privacy-conscious analytics. The site demonstrates good mobile optimization, accessibility, and SEO practices, although some improvements in security headers and cookie consent mechanisms could be made. Performance is moderate, with modern web technologies employed. From a security perspective, the site uses HTTPS with a good SSL configuration and respects user privacy by disabling cookies in analytics and honoring Do Not Track. However, it lacks explicit security policies, incident response contacts, and vulnerability disclosure mechanisms. No critical vulnerabilities or exposed sensitive data were detected. Overall, Enterwell presents a trustworthy and professional online presence with a solid business model and technical foundation. Strategic improvements in security policy transparency and cookie consent would enhance compliance and user trust.

15
68
10
85
57
75
-
softwaredevelopmenttechnologybusinessserviceswebdevelopmentteamaugmentation
WordPressYoast SEOMatomo AnalyticsJavaScript+1
2025-06-21T14:01:00.561Z
kucaljudskihprava.hr favicon

Kuća Ljudskih Prava

kucaljudskihprava.hr

39
Non-profitCroatiasmallHIGH

Kuća Ljudskih Prava is a Croatian non-profit organization dedicated to the promotion and protection of human rights, including freedom of speech and media freedom. The website serves as a platform for news, publications, educational resources, and advocacy activities targeting civil society, legal professionals, and the general public interested in human rights issues in Croatia. The organization maintains a consistent brand presence and provides multilingual support in Croatian and English, enhancing accessibility to a broader audience. Technically, the website is built on WordPress with a modern tech stack including Bootstrap, jQuery, and various plugins for SEO, multilingual support, and user engagement. The site demonstrates good mobile optimization, SEO practices, and moderate performance. Cookie consent mechanisms are implemented to comply with EU regulations, though explicit privacy and terms of service pages are not found. From a security perspective, the site uses HTTPS with excellent SSL configuration and employs cookie consent banners. However, it lacks advanced security headers and does not provide visible security policies or incident response contacts. No vulnerabilities or exposed sensitive data were detected in the HTML content. The domain registration is consistent with the organization's profile, indicating legitimacy and stable operation. Overall, the website is professional, trustworthy, and serves its non-profit mission effectively. Strategic improvements in security policies, privacy documentation, and incident response transparency would enhance compliance and user trust.

15
25
10
55
47
80
-
humanrightsnon-profitcroatiafreedomofspeechmediafreedom+3 more
WordPressYoast SEO pluginjQueryBootstrap+4

Partner Domains:

www.bazaznanja.kucaljudskihprava.hr
partner
www.dostajemrznje.org
partner

+2 more partners

2025-06-21T13:56:43.228Z
ombudsman.hr favicon

Ured pučke pravobraniteljice

ombudsman.hr

48
GovernmentCroatiamediumHIGH

The website represents the official Croatian Ombudsman institution, providing human rights protection, complaint handling, legal assistance, and public reporting services. It targets Croatian citizens and vulnerable groups, operating as a governmental public service entity with a medium organizational size. The site is well-branded, consistent, and provides comprehensive contact information and privacy policies, reflecting a trustworthy public institution. Technically, the website is built on WordPress with modern plugins and frameworks such as Elementor and Bootstrap. It uses HTTPS and integrates Google Analytics and Mailchimp for analytics and marketing. The site is moderately performant and mobile-optimized, with basic accessibility features. From a security perspective, the site enforces HTTPS and uses secure forms but lacks some advanced security headers and explicit security or incident response policies. No vulnerabilities or blocking mechanisms were detected, indicating a solid security posture for a government site. Overall, the website is professional, credible, and compliant with GDPR, with room for improvement in security policy transparency and technical security headers. The domain registration data aligns well with the institution's identity, supporting high legitimacy.

40
28
10
75
67
85
-
governmentombudsmanhumanrightscroatiapublicservice+1 more
WordPress 6.8.1PHPjQueryBootstrap 3.3.4+6
2025-06-21T13:55:44.133Z
azop.hr favicon

Agencija za zaštitu osobnih podataka

azop.hr

43
GovernmentCroatiamediumHIGH

The Agencija za zaštitu osobnih podataka (AZOP) is an independent Croatian government agency responsible for overseeing the implementation of the General Data Protection Regulation (GDPR) within Croatia. The website serves as an official portal providing comprehensive information about data protection rights, regulatory activities, educational initiatives, and public resources. It targets Croatian citizens, data controllers, processors, and public institutions, positioning itself as the authoritative national data protection authority. The site features multilingual support, primarily Croatian and English, enhancing accessibility for diverse audiences. Technically, the website is built on WordPress using the Divi theme and incorporates several plugins such as Yoast SEO for search optimization, Contact Form 7 for user inquiries, and Pojo Accessibility for compliance with accessibility standards. The infrastructure supports modern web standards including HTTPS, responsive design, and accessibility features, reflecting a mature digital presence. Performance is moderate with good mobile optimization and SEO practices. From a security perspective, the site enforces HTTPS, employs standard security headers, and uses secure form handling mechanisms. No critical vulnerabilities or exposed sensitive data were detected in the HTML content. However, explicit security policies and incident response contacts are not prominently published, suggesting areas for improvement in transparency and readiness. Overall, AZOP's website demonstrates a high level of professionalism, compliance with GDPR, and a strong trust profile consistent with its role as a government regulator. Strategic recommendations include publishing detailed security policies, establishing clear incident response channels, and maintaining vigilance on third-party plugin security to sustain and enhance its security posture.

15
10
25
85
47
75
-
governmentdataprotectiongdprprivacycroatia+3 more
WordPressDivi ThemeYoast SEOjQuery+4

Partner Domains:

arc-rec-project.eu
partner
edpb.europa.eu
partner

+1 more partners

2025-06-21T13:53:38.800Z

株式会社名鉄ホテルホールディングス

mh-hd.com

45
HospitalityJapanlargeHIGH

株式会社名鉄ホテルホールディングス operates a large hotel group primarily in the Chubu region of Japan, managing 20 facilities including well-known brands such as ANA Crowne Plaza and Meitetsu Grand Hotel. The website serves as an official portal providing information about their hotel brands, press releases, and news updates, targeting both business and leisure travelers in the Aichi and Gifu areas. The business model focuses on hospitality services with a strong regional presence and multiple subsidiary hotel brands. Technically, the website employs modern JavaScript libraries including jQuery, Slick Carousel, and Swiper for interactive UI elements and responsive design. It uses Google Tag Manager for analytics and tracking. The site is well-optimized for mobile devices and provides a good user experience with clear navigation and professional design. However, no CMS or hosting provider information was detected. From a security perspective, the site uses HTTPS with excellent SSL configuration, but lacks explicit security headers and does not provide a security policy or vulnerability disclosure information. No privacy or cookie policies were found, which is a compliance gap. The absence of direct contact emails or phone numbers reduces transparency in user support and incident response. Overall, the website is functional, professional, and credible from a business standpoint but requires improvements in privacy compliance and security best practices to enhance trust and regulatory adherence.

15
35
25
70
62
75
-
hospitalityhotelstraveljapantourism+1 more
jQuery 3.4.1Slick Carousel 1.9.0SwiperFontAwesome 5.10.0+1

Partner Domains:

www.anacrowneplaza-nagoya.jp
partner
www.meitetsu-gh.co.jp
partner

+3 more partners

2025-06-21T13:52:55.009Z
B

Visitor anti-robot validation

bjgc.lv

32
TechnologyN/asmallHIGH

The website bjgc.lv currently serves as a security challenge page implemented by BitNinja, designed to block automated or malicious visitors through CAPTCHA validation. It does not provide business content or services directly but acts as a gatekeeper to protect the underlying site or infrastructure. The page uses Google reCAPTCHA v2 and Google Analytics for bot mitigation and visitor tracking. The presence of legacy CMS meta tags (Joomla 1.5 and WordPress 2.5) suggests either outdated software or placeholder content, but no active CMS functionality is evident. The technical infrastructure is basic with moderate performance and limited mobile optimization. From a security perspective, the site employs CAPTCHA to prevent automated abuse, which is a positive control. However, no explicit security headers were detected, and the legacy CMS references raise concerns about potential vulnerabilities if those systems are in use. Privacy and cookie policies are absent, and no contact or business information is provided, limiting transparency and compliance with data protection regulations. Overall, the site is primarily a security checkpoint rather than a business-facing website. The domain uses privacy protection for WHOIS data, which is common for security-related services. The AI score is low due to the blocked content and lack of business or compliance information. Strategic recommendations include updating or removing legacy CMS references, implementing security headers, providing privacy and cookie policies, and improving accessibility and SEO to enhance trust and compliance.

-
10
17
85
57
60
-
securitycaptchabotmitigationbitninjarecaptcha
HTML5CSS ResetJavaScriptGoogle reCAPTCHA v2+2
2025-06-20T13:31:42.702Z
ehef-japan.org favicon

駐日欧州連合代表部 (Delegation of the European Union to Japan)

ehef-japan.org

45
EducationJapansmallHIGH

The website '欧州留学フェア2025' is an official event platform managed by the Delegation of the European Union to Japan, promoting European higher education opportunities to Japanese students. It serves as an annual fair providing direct access to EU member universities, public institutions, and embassy representatives, facilitating information exchange and engagement for prospective students. The site targets Japanese students interested in studying abroad in Europe, offering event details, presentations, and registration options. Technically, the site is built on WordPress 6.1.7 with modern web technologies including jQuery, Google Tag Manager, and Google reCAPTCHA v3 for security. It uses HTTPS exclusively, integrates social media, and loads fonts and icons from reputable CDNs. The site is mobile-optimized and provides a good user experience with clear navigation and relevant content. From a security perspective, the site enforces HTTPS and uses reCAPTCHA to protect forms, but lacks explicit security headers and published privacy or cookie policies, which are areas for improvement. No vulnerabilities or exposed sensitive data were detected. The domain registration aligns well with the official EU delegation, supporting legitimacy and trustworthiness. Overall, the website is professional, trustworthy, and functional, but would benefit from enhanced privacy compliance documentation and additional security headers to strengthen its posture and user trust.

15
35
10
70
57
70
20
educationeustudyabroadjapanevent+2 more
WordPress 6.1.7jQuery 3.3.1Google Tag ManagerGoogle reCAPTCHA v3+2
2025-06-20T13:27:33.134Z
portmesse.com favicon

Nagoya International Exhibition Hall

portmesse.com

44
HospitalityJapanlargeHIGH

Nagoya International Exhibition Hall (ポートメッセなごや) operates as a major international exhibition and event venue located in Nagoya, Japan. The facility caters to a broad range of events including seminars, business meetings, exhibitions, ceremonies, parties, incentives, concerts, and other communication spaces. It serves event organizers and visitors primarily in the hospitality and government sectors, positioning itself as a key regional player in event hosting and venue services. Technically, the website is built on WordPress 4.9.9 with a variety of plugins such as Contact Form 7 for forms, Smart Slider 3 for visual content, and FooBox for image lightbox functionality. The site uses jQuery and jQuery UI libraries and integrates Google Tag Manager for analytics and marketing. The site is mobile optimized and includes accessibility features, but the WordPress version is outdated, which may pose security risks. From a security perspective, the site enforces HTTPS and uses Google Tag Manager and reCAPTCHA on forms, but lacks comprehensive security headers and runs an outdated CMS version. No explicit security or incident response policies are published. Privacy compliance is basic with a privacy policy present but no cookie consent mechanism detected. Overall, the website is professional and trustworthy with good business credibility and content quality. However, security and privacy compliance could be improved by updating software, adding security headers, and implementing cookie consent mechanisms.

15
53
25
55
52
80
-
exhibitioneventsconferencenagoyajapan+3 more
jQueryjQuery UISmart Slider 3Font Awesome+4

Partner Domains:

party-maker.jp
partner
strings-group.jp
partner

+3 more partners

2025-06-20T12:05:21.903Z
levaiostersund.se favicon

Leva i Östersund

levaiostersund.se

46
GovernmentSwedenmediumHIGH

Leva i Östersund is a regional informational website focused on promoting living, working, and moving to Östersund, Sweden. It serves as a portal providing job listings, local event information, and resources for new residents. The site is supported by local government entities and partners, positioning itself as a trusted source for regional information. The content is primarily in Swedish with translation options, targeting individuals interested in relocating or engaging with the Östersund community. Technically, the website is built on WordPress using popular plugins such as Yoast SEO for search optimization, WPBakery Page Builder for layout management, and Complianz for GDPR cookie compliance. It integrates Google reCAPTCHA for form security and uses Vizzit Analytics for visitor tracking. The site is mobile-optimized with good navigation and SEO practices, though accessibility features are basic. From a security perspective, the website enforces HTTPS and employs reCAPTCHA to protect forms. However, it lacks some recommended security headers like Content-Security-Policy and X-Frame-Options. No vulnerabilities or exposed sensitive data were detected. Privacy compliance is strong with clear cookie consent mechanisms and a comprehensive privacy policy linked to an official municipal domain. Overall, the website presents a low-risk profile with a good balance of content quality, technical implementation, and privacy compliance. Strategic improvements could include enhancing security headers, adding explicit security policies, and improving accessibility to further strengthen trust and compliance.

25
40
25
70
70
60
-
governmentregionaljoblistingslivinginstersundgdpr+1 more
WordPressYoast SEOWPBakery Page BuilderjQuery+3
2025-06-20T11:55:26.698Z
adazuuznemeji.lv favicon

Biedrība Ādažu uzņēmēji

adazuuznemeji.lv

39
Non-profitLatviasmallHIGH

Biedrība Ādažu uzņēmēji is a non-profit employer organization focused on fostering collaboration among businesses in the Ādaži region of Latvia. The organization represents business interests and facilitates dialogue with government institutions, municipalities, and international organizations. The website serves as an information hub for members and partners, providing news, events, and contact details. The market position is regional with a focus on local business community support and networking. Technically, the website is built on Joomla CMS using the Helix Ultimate template framework and Bootstrap 5 for responsive design. The site is mobile-optimized and presents a professional design with clear navigation. However, performance is moderate and accessibility features are basic. No advanced analytics or tracking tools are detected, indicating a privacy-conscious approach. From a security perspective, the site uses HTTPS with a good SSL configuration but lacks important security headers such as Content-Security-Policy and X-Frame-Options. There are no visible vulnerabilities or exposed sensitive data, but the absence of privacy and cookie policies, as well as incident response information, indicates compliance gaps. The security posture is moderate but could be improved with standard best practices. Overall, the website is trustworthy and professionally maintained, with clear contact information and legitimate domain registration details. The main risks relate to privacy compliance and security hardening. Strategic improvements in these areas would enhance trust and regulatory adherence.

30
10
10
85
47
60
-
non-profitbusinessassociationlocalcommunityjoomlalatvia
JoomlaHelix Ultimate TemplateBootstrap 5jQuery

Partner Domains:

shop.muesligraci.com
partner
adazi.maxisushi.lv
partner

+3 more partners

2025-06-18T18:30:31.952Z
S

SIA Latvijas Lauku konsultāciju un izglītības centrs

llkc.lv

46
EducationLatviamediumHIGH

The website llkc.lv represents SIA Latvijas Lauku konsultāciju un izglītības centrs, a well-established Latvian organization focused on agricultural consultancy, education, and rural development services. With over 33 years of operation, it serves farmers, rural entrepreneurs, and communities by providing knowledge, consultations, and sector-specific services. The site is professionally designed with clear navigation and multiple service categories including business development, crop farming, animal husbandry, forestry, fisheries, accounting, and education. Contact information is comprehensive, including phone, email, physical address, and multiple interactive forms for user engagement. Technically, the website is built on WordPress using the Breakdance theme and several plugins such as WPForms and WP Grid Builder. It integrates Google Analytics and MailerLite for marketing and analytics purposes. The site is mobile optimized and performs moderately well, with good SEO and accessibility basics. Security posture is strong with HTTPS enforced and some security headers present, though there is room for improvement in header completeness and form security audits. Privacy and cookie policies are present and include consent mechanisms, indicating GDPR compliance. No critical security issues or WAF blocking were detected, allowing full content access and analysis. The domain registration details are consistent with the website's claims, showing a legitimate and trustworthy organization. The site links to multiple partner domains, reinforcing its ecosystem and credibility. Overall, llkc.lv is a credible, professionally maintained website serving an essential role in Latvia's agricultural and rural education sector. Strategic recommendations include enhancing security headers, conducting regular security audits especially for file uploads, and maintaining privacy compliance to uphold trust and security.

35
25
25
80
52
70
-
agricultureeducationconsultinglatviawordpress+1 more
WordPressBreakdance themeWPFormsWP Grid Builder+3

Partner Domains:

llkckratuve.lv
partner
info.manslauks.lv
partner

+3 more partners

2025-06-18T18:30:15.338Z