Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157327
Websites
130
Industries
113
Countries
52
Avg Score
Page 766 of 800|Showing 38251-38300 of 39984
krausnaimer.com favicon

Kraus & Naimer

krausnaimer.com

38
ManufacturingFinlandlargeHIGH

Kraus & Naimer is a globally recognized leader in the manufacturing of cam switches and industrial switchgear, offering a broad portfolio of products including main switches, control switches, and customized solutions. The company emphasizes mass customization and international certifications, serving a diverse industrial clientele worldwide. Their website reflects a professional and consistent brand presence with clear navigation and relevant content tailored to industrial customers. Technically, the website is built on TYPO3 CMS and served via Apache, incorporating modern JavaScript libraries and privacy-focused analytics (Matomo). However, the site suffers from a critical security shortfall due to the absence of a valid SSL certificate and HTTPS support, which severely impacts the security posture and user trust. Privacy compliance is well addressed with visible cookie consent mechanisms and comprehensive privacy policies. Security-wise, while some security headers are implemented, the lack of HTTPS and modern TLS protocols is a significant vulnerability. No explicit security or incident response policies are published, which could be improved to enhance trust and compliance. Overall, the site is functional and professional but requires urgent security upgrades to meet modern standards and protect user data. Strategically, Kraus & Naimer should prioritize SSL certificate installation and TLS configuration, enhance security policy transparency, and continue leveraging privacy-compliant analytics to maintain regulatory compliance and customer trust.

55
-
-
50
-
85
100
industrialswitchescamswitchesmainswitchescustomizedswitchesmanufacturing+2 more
ApacheTYPO3 CMSJavaScriptMatomo Analytics+1
2025-06-15T21:57:31.033Z
vwr.com favicon

Avantor, Inc.

vwr.com

40
HealthcareUnited StatesenterpriseHIGH

VWR.com is the online presence of Avantor, Inc., a large enterprise specializing in providing life science products and service solutions. The website targets life science professionals and organizations globally, offering a broad range of scientific supplies and services. The business model is primarily B2B, with a strong market position as an established global supplier in the healthcare sector. The site uses localized subdomains to serve different countries, indicating a mature international presence. Technically, the website employs a variety of modern JavaScript libraries and tracking tools, including Google Analytics, Hotjar, and Cloudflare for CDN and security. However, the site lacks a valid SSL certificate and does not enable modern TLS protocols, which is a significant security concern. The content is professionally presented with good navigation and branding consistency, but mobile optimization and accessibility are basic. From a security perspective, while the site implements a comprehensive Content Security Policy and some security headers, the absence of HTTPS and modern TLS support severely impacts the security posture. No incident response or vulnerability disclosure information is provided, and no explicit contact details are available on the landing page, limiting transparency. Overall, the website is functional and professional but requires urgent improvements in SSL/TLS implementation and privacy compliance mechanisms to enhance trust and security. Strategic recommendations include installing a valid SSL certificate, enabling modern TLS protocols, implementing cookie consent mechanisms, and providing clear contact and security policy information.

55
18
5
85
-
85
100
lifesciencehealthcareb2benterprisescientificsupplies
JavaScriptGoogle AnalyticsCloudflareModernizr+2

Partner Domains:

avantorsciences.com
parentpending
2025-06-15T21:57:22.997Z
S

Spencer Stuart

spencerstuartportal.com

40
OtherN/aenterpriseHIGH

The Spencer Stuart Portal website serves as a client or internal portal for Spencer Stuart, a global executive search and leadership advisory firm. The site is minimalistic, primarily acting as a loading or shell page that dynamically loads resources and scripts from local bundles and external services such as Pendo for analytics. The business focus is on executive search and leadership consulting, targeting enterprise clients and internal users. The portal likely supports client engagement and administrative functions rather than public marketing. Technically, the site is hosted on Amazon S3 with CloudFront CDN, leveraging AngularJS framework and JavaScript for dynamic content loading. However, the site lacks a valid SSL certificate and does not support HTTPS, which is a critical security deficiency. The absence of modern TLS protocols, security headers, and privacy policies further weakens the security posture. Performance data is unavailable, but the site appears slow and basic in design and user experience. Security evaluation reveals no WAF or blocking mechanisms, but the lack of HTTPS and security best practices exposes the site to risks. No privacy or cookie policies are present, and no contact or legal information is provided, limiting trust and compliance. Pendo analytics is integrated, indicating moderate user tracking without visible privacy compliance measures. Overall, the site is functional as a portal shell but requires urgent improvements in security, privacy compliance, and content completeness to meet enterprise standards and user trust expectations.

15
40
17
50
-
85
100
portalexecutivesearchleadershipadvisoryenterpriseaws+1 more
JavaScriptAmazon S3CloudFrontPendo Analytics+2
2025-06-15T21:57:12.151Z
streambreak.tv favicon

StreamBreak Interactive GmbH

streambreak.tv

56
TechnologyAustriasmallMEDIUM

StreamBreak Interactive GmbH operates a niche technology platform focused on enhancing live streaming experiences by providing interactive minigames and ads that engage viewers during breaks. The company targets streamers, eSports organizers, and advertisers, offering a dashboard for analytics and community interaction. Founded in 2017 and based in Austria, StreamBreak has established a consistent brand presence and has been recognized with awards such as the Twitch Extension Winner in 2019. Technically, the website is built using modern web technologies including Bootstrap and JavaScript, hosted on Uberspace with DNS managed by world4you.at. While the site supports modern TLS protocols and has HSTS enabled, performance is suboptimal with a slow page load time. Mobile optimization and SEO are good, but accessibility is basic. No CMS is detected, indicating a custom or static site. From a security perspective, the site employs HTTPS with strong protocols but lacks DNSSEC, CAA records, and domain protection locks, which are recommended to enhance DNS and domain security. OCSP stapling and certificate transparency are also not implemented. Privacy compliance is basic with a cookie banner and privacy policy present, but no terms of service or explicit GDPR compliance statements. Contact information is limited to an email address. Overall, the website is professional and trustworthy with minor security and performance improvements needed. The domain registration data aligns well with the business claims, supporting legitimacy. Strategic recommendations include improving DNS security, enhancing performance, and expanding privacy and security policies to strengthen compliance and user trust.

70
43
25
50
69
55
40
interactiveadsstreamingminigamesviewerengagementtwitch+2 more
BootstrapJavaScriptHTML5CSS3+4
2025-06-15T21:56:58.032Z
bose.com favicon

Bose

bose.com

40
RetailUnited StatesenterpriseHIGH

Bose.com is the official e-commerce website of Bose Corporation, a leading premium audio equipment brand. The site offers a wide range of products including headphones, earbuds, speakers, soundbars, and home theater systems, targeting consumers seeking high-quality audio solutions. The business model focuses on direct-to-consumer sales supported by comprehensive customer service and product support. The website demonstrates a strong brand presence with consistent messaging and professional design, reflecting Bose's market position as a trusted leader in the audio retail sector. Technically, the website is built on Salesforce Commerce Cloud, hosted on AWS infrastructure, and integrates multiple modern marketing and analytics technologies such as Google Tag Manager, Bazaarvoice, Qualtrics, and Forter. While the site is mobile-optimized and accessible, performance is somewhat slow, and there is room for improvement in technical implementation, particularly in SSL configuration and security headers. From a security perspective, the site currently lacks a valid SSL certificate, which is a critical issue impacting user trust and data protection. No security headers are detected, and advanced security policies or incident response information are not publicly available. Privacy and cookie policies are present and include consent mechanisms, indicating good privacy compliance. WHOIS data confirms the domain's legitimacy and consistency with the brand's identity. Overall, Bose.com is a professionally managed, content-rich e-commerce platform with strong business credibility but requires urgent improvements in SSL and security configurations to enhance its security posture and user trust.

45
18
5
50
-
85
100
e-commerceaudioretailconsumerelectronicsbrand+3 more
JavaScriptBazaarvoiceGoogle Tag ManagerQualtrics+6

Partner Domains:

automotive.bose.com
subsidiary
reseller.bose.com
partner

+2 more partners

2025-06-15T21:56:47.120Z
commscope.com favicon

CommScope

commscope.com

36
TelecommunicationsUnited StatesenterpriseHIGH

CommScope is a leading global provider of broadband, enterprise, and wireless network infrastructure solutions. The company offers a broad portfolio of products and services including broadband access systems, cable assemblies, connectors, networking systems, and video processing solutions. Their website reflects a mature enterprise with a strong market position, targeting telecommunications professionals, enterprises, and government agencies. The site is well-structured, multilingual, and professionally designed, showcasing their extensive product lines and corporate information. Technically, the website uses modern JavaScript frameworks, cloud hosting via Cloudflare, and integrates multiple marketing and analytics tools such as Google Tag Manager, Microsoft Application Insights, and OneTrust for cookie consent. However, a critical security weakness is the absence of a valid SSL certificate and HTTPS support, which significantly impacts the security posture and user trust. Security headers are partially implemented but lack completeness, and no explicit security or incident response policies are publicly disclosed. Overall, the website demonstrates strong business credibility and digital maturity but requires urgent remediation of SSL/TLS issues to ensure secure communications and compliance.

30
-
5
50
-
85
85
broadbandenterprisewirelessnetworktelecommunication+4 more
JavaScriptReact (site-react.js)Google Tag ManagerMicrosoft Application Insights+7
2025-06-15T21:56:46.319Z
geiger.com favicon

Geiger.com

geiger.com

40
RetailUnited StateslargeHIGH

Geiger.com is a large, family-owned US-based distributor specializing in promotional products, corporate gifts, and imprinted apparel. The company positions itself as the largest family-owned promotional product distributor in the US, serving a broad business audience with a comprehensive product catalog and services including custom products, kitting, corporate programs, and expos. The website reflects a mature digital presence with extensive product categories, client brand logos, and active social media engagement. Technically, the website uses modern JavaScript frameworks such as Vue.js and Bootstrap 5, hosted likely on AWS infrastructure. Marketing and analytics tools include Google Tag Manager, Google Analytics, Osano CMP for consent management, Filestack for file handling, and Searchspring for search functionality. The site is mobile-optimized and accessible with good SEO practices, though performance metrics indicate slow loading. From a security perspective, the site lacks a valid SSL certificate and does not serve content over HTTPS, which is a critical vulnerability. While some security headers are present, key TLS protocols and best practices like HSTS, OCSP stapling, and session resumption are not enabled. No incident response or vulnerability disclosure policies are found. Privacy compliance is partial with a privacy policy present but no cookie consent mechanism detected. Overall, the site is professionally designed and credible from a business standpoint but requires urgent security improvements to protect user data and enhance trust. Strategic recommendations include immediate SSL/TLS deployment, enabling modern security headers and protocols, implementing cookie consent, and publishing incident response information.

60
18
5
50
-
85
100
promotionalproductscorporategiftscustomproductsapparelmarketing+2 more
nginxJavaScriptVue.jsGoogle Tag Manager+5

Partner Domains:

adp.com
partner70
getwithgeiger.com
partnerpending

+1 more partners

2025-06-15T21:56:07.841Z
schmidtauto.at favicon

Oskar Schmidt GmbH

schmidtauto.at

33
TransportationAustrialargeHIGH

Autohaus Schmidt, officially Oskar Schmidt GmbH, is a well-established automobile dealership and service provider based in Salzburg, Austria, with a history dating back to 1928. The company operates multiple locations and offers a wide range of services including new and used car sales, vehicle rental, servicing, repairs, and financing. Their market position is strong within the regional transportation sector, supported by authorized partnerships with major car brands such as Ford, Volvo, Peugeot, and Citroën. The website reflects a professional and consistent brand image targeting car buyers and service customers in Salzburg and surrounding areas. Technically, the website uses modern JavaScript, AWS CloudFront CDN, and Google Tag Manager for analytics and marketing. However, it lacks HTTPS, which is a critical security deficiency. The site includes cookie consent mechanisms and privacy policies compliant with GDPR, indicating a good level of privacy awareness. Performance data is unavailable, but the site appears mobile-optimized and SEO-friendly. From a security perspective, the absence of SSL/TLS encryption severely impacts the site's security posture, exposing users to potential risks. Other security headers and best practices are partially implemented but overshadowed by the lack of HTTPS. No incident response or vulnerability disclosure policies are present. The domain registration data aligns well with the business claims, enhancing trustworthiness. Overall, while the business and website demonstrate professionalism and good content quality, the critical lack of HTTPS significantly lowers the security score and overall risk profile. Strategic improvements in security infrastructure are essential to protect users and maintain trust.

15
-
5
50
-
85
100
autohausautomobilecardealershipfordvolvo+6 more
nginxJavaScriptXMLHttpRequestGoogle Tag Manager+3
2025-06-15T21:56:07.686Z
marketmind.at favicon

marketmind GmbH

marketmind.at

24
OtherAustriamediumCRITICAL

marketmind GmbH is a well-established marketing consulting agency founded in 1996 and based in Vienna, Austria. It operates primarily in the DACH region, serving clients across sectors such as energy, transport, banking, telecommunications, government, non-profit, retail, hospitality, and media. The company offers data-driven marketing research, consulting, and data science services with a strong focus on UX research, branding, segmenting, and customer experience. The website reflects a mature digital presence with detailed team profiles, client testimonials, and comprehensive service descriptions, positioning marketmind as a leading player in its market segment. Technically, the website is hosted on Microsoft IIS with ASP.NET technology and uses Cloudflare for DNS and nameservers. The site employs modern web technologies such as JSON-LD structured data, WebP images, and custom fonts. However, the site lacks a valid SSL certificate and does not support HTTPS, which is a critical security shortfall. Performance metrics are not available, but the site is mobile-optimized and accessible with good SEO practices. From a security perspective, the absence of HTTPS and TLS protocols severely impacts the security posture. While some security headers like X-Content-Type-Options are present, the lack of HSTS, OCSP stapling, and session resumption mechanisms indicates room for significant improvement. Privacy compliance is well addressed with a clear privacy policy, cookie consent mechanism, and GDPR compliance indicators. The site uses marketing and analytics tools such as Google Analytics and LinkedIn Insight Tag with transparent disclosures. Overall, marketmind GmbH presents a professional and trustworthy business with excellent content quality and business credibility. The main risk lies in the missing HTTPS configuration, which should be addressed urgently to protect user data and improve trust. Strategic recommendations include implementing SSL/TLS, enhancing security headers, and maintaining ongoing compliance with privacy regulations.

25
-
-
50
-
85
20
marketingconsultingdatascienceuxresearchbranding+2 more
Microsoft IIS 10.0ASP.NET 4.0.30319JSON-LD structured dataWebP images+4
2025-06-15T21:55:22.978Z
O

OESTERREICHISCHE KONTROLLBANK AG

oekb.at

40
FinanceAustrialargeHIGH

OeKB Gruppe is a central financial service provider based in Austria, supporting the Austrian economy with a broad range of services including export financing, capital market services, energy market services, development financing, and tourism services. The website presents a professional and comprehensive overview of their offerings, targeting Austrian businesses, investors, and financial institutions. The company holds a strong market position as a key financial institution in Austria. Technically, the website uses a custom CMS with JavaScript and Bootstrap frameworks, but suffers from slow load times and lacks modern security configurations such as a valid SSL certificate and TLS protocols. Mobile optimization and SEO are good, but accessibility is basic. The website lacks cookie consent mechanisms and some security best practices. Security posture is weak due to the absence of HTTPS, no security headers, and missing email authentication records like DMARC. DNSSEC is disabled and CAA records are malformed. These issues pose significant risks to user data confidentiality and trust. Overall, the website is content-rich and professionally designed but requires urgent security improvements to protect users and comply with modern standards. Strategic recommendations include implementing HTTPS, enabling security headers, and adding privacy and cookie consent mechanisms.

85
-
5
50
-
80
100
financeexportcapitalmarketenergydevelopmentfinancing+2 more
JavaScriptjQueryBootstrap
2025-06-15T21:55:12.328Z
awsg.at favicon

Austria Wirtschaftsservice Gesellschaft mbH

awsg.at

40
GovernmentAustrialargeHIGH

Austria Wirtschaftsservice Gesellschaft mbH (aws) is the official Austrian federal promotional bank dedicated to fostering innovation and economic growth within Austria. The website serves as a comprehensive portal for Austrian entrepreneurs and companies seeking funding, subsidies, and advisory services. It offers a broad range of programs targeting startups, SMEs, and established companies, with a strong emphasis on energy, sustainability, and internationalization. The site is well-branded, professionally designed, and provides clear navigation and rich content in German, targeting primarily Austrian businesses and innovators. Technically, the website is built on TYPO3 CMS and uses Apache as the web server. It integrates Matomo analytics for privacy-compliant user tracking and employs modern web technologies including CSP and various security headers. However, the SSL/TLS configuration is currently invalid or missing, which is a critical security concern. Performance metrics are not available, but the site appears mobile-optimized and accessible. From a security perspective, while several security headers are implemented, the lack of a valid SSL certificate and disabled TLS protocols significantly reduce the security posture. No explicit security or incident response policies are found on the site. Privacy compliance is strong, with a clear cookie consent mechanism and a comprehensive privacy policy in place, aligned with GDPR requirements. Overall, the site is a credible and professional government service platform with excellent content and user experience but requires urgent remediation of its SSL/TLS configuration to ensure secure communications and improve trustworthiness.

80
-
5
50
-
85
100
governmentfundinginnovationaustriabusinesssupport+5 more
ApacheTYPO3 CMSMatomo AnalyticsJavaScript+2
2025-06-15T21:55:11.911Z
reinzeit.com favicon

ReinZeit Handels GmbH

reinzeit.com

40
RetailAustriamediumHIGH

ReinZeit Handels GmbH is an Austrian retail company specializing in eco-friendly cleaning and wellness products, including microfiber cloths, cleaners, laundry detergents, and wellness aroma products. The company emphasizes social responsibility, environmental protection, and Austrian quality standards, targeting consumers interested in sustainable and socially responsible products. Their business model includes direct sales through consultants and an online shop, supported by active social media channels and marketing efforts. Technically, the website is built on WordPress with WooCommerce, using popular plugins such as Yoast SEO and Borlabs Cookie for SEO and privacy compliance. The site is hosted on an Austrian IP and uses Apache server technology. However, performance metrics are not available, and the site is moderately optimized for mobile devices. From a security perspective, the site lacks a valid SSL certificate and proper HTTPS configuration, which is a critical vulnerability. Although some security headers like HSTS and X-Frame-Options are present, the absence of TLS protocols and strong cipher suites significantly weakens the security posture. Privacy compliance is well addressed with clear privacy and cookie policies and consent mechanisms. Overall, the site is professionally designed and trustworthy from a business perspective but requires urgent improvements in SSL/TLS security to protect user data and enhance trust. Strategic recommendations include obtaining a valid SSL certificate, enabling modern TLS protocols, and enhancing security best practices.

45
18
5
50
-
85
100
e-commercecleaningproductswellnesseco-friendlywordpress+3 more
ApachePHPJavaScriptjQuery+7
2025-06-15T21:54:50.583Z