Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157327
Websites
130
Industries
113
Countries
52
Avg Score
Page 771 of 800|Showing 38501-38550 of 39984
R

Raiffeisenverband Salzburg eGen

rvs.at

39
FinanceAustrialargeHIGH

Raiffeisenverband Salzburg eGen operates as a large regional banking cooperative in Austria, providing a comprehensive range of financial services including retail banking, corporate banking, investment products, insurance, and real estate services. The website targets private and corporate customers primarily in the Salzburg region, emphasizing local presence and digital innovation. The business is well-positioned as the largest banking group in Austria by branch count and employees, with a strong community and regional focus. Technically, the website is built on Adobe Experience Manager CMS with modern web technologies and responsive design, offering good user experience and accessibility. However, a critical security gap exists due to the absence of a valid SSL certificate and HTTPS support, which severely impacts the security posture. Privacy compliance is well addressed with clear privacy and cookie policies and consent mechanisms. Contact information and trust indicators are prominently presented, supporting business credibility. Overall, the site is professional and content-rich but urgently requires SSL implementation to secure user data and maintain trust.

45
-
-
50
-
85
100
bankingfinanceraiffeisenaustriaregionalbank+2 more
JavaScriptAdobe Experience Manager (AEM)Google Tag Manager (implied by Adobe DTM)Cookielaw.org CMP+6

Partner Domains:

raiffeisen.at
partnerpending
integrityline.com
partner70

+1 more partners

2025-06-15T21:48:06.683Z
rare-diseases.at favicon

Ludwig Boltzmann Gesellschaft

rare-diseases.at

35
HealthcareAustriasmallHIGH

The Ludwig Boltzmann Institute for Rare and Undiagnosed Diseases (LBI-RUD) is a specialized Austrian research institute focused on investigating rare diseases, particularly those affecting the immune system, blood formation, and nervous system. The institute operated for seven years until March 2023, contributing valuable scientific insights and supporting patients through its research. The website serves as an informational platform targeting researchers, medical professionals, and affected patients, providing news, research areas, and organizational information. The business model is non-profit, funded by grants and public sources, and it operates under the Ludwig Boltzmann Gesellschaft umbrella. Technically, the website is built on WordPress and hosted on servers associated with domaindiscount24.net. While the site has a professional design with good navigation and mobile optimization, it suffers from critical security shortcomings, notably the absence of a valid SSL certificate and HTTPS support. This exposes visitors to potential risks and undermines trust. The site uses Matomo analytics for user tracking and includes a cookie consent banner, indicating some level of privacy compliance, though GDPR compliance is not fully evident. Security posture is weak due to missing HTTPS, lack of security headers, and outdated SSL/TLS configurations. No incident response or security policies are publicly disclosed. Contact information is clearly provided, including phone, address, and an obfuscated email address. Social media presence is active across major platforms, enhancing outreach and trust. Overall, the website is functional and informative but requires urgent security improvements to protect users and enhance credibility. Strategic recommendations include implementing HTTPS, improving security headers, and enhancing privacy compliance documentation.

15
-
5
50
-
85
100
rarediseasesresearchhealthcareimmunologygenetics+2 more
ApacheWordPress 6.8.1CSSJavaScript+2
2025-06-15T21:47:47.005Z
A

Austrian Airlines AG

tyrolean.at

40
TransportationAustriaenterpriseHIGH

Austrian Airlines AG operates a comprehensive and professional airline website targeting global travelers seeking flights and related travel services. The site offers extensive booking options, flight management, and loyalty program integration, reflecting a mature digital presence consistent with a major European airline and Lufthansa Group member. The technical infrastructure leverages modern web technologies including Apache server, Adobe Helix, and Maui Design System, with content delivery optimized via Akamai CDN. However, performance metrics indicate slow loading times, suggesting room for optimization. Security posture reveals critical gaps, notably the absence of a valid SSL certificate and disabled TLS protocols, which significantly undermine user trust and data protection. While security headers and content policies are well implemented, the lack of HTTPS is a major concern. Privacy compliance is strong with a comprehensive privacy policy and GDPR adherence, though cookie consent mechanisms are not clearly detected. Overall, the website is highly professional and credible but requires urgent remediation of SSL/TLS issues to ensure secure user interactions and compliance with modern security standards.

80
-
5
70
-
90
100
airlinetravelbookingflighttransportation+2 more
ApacheJavaScriptAdobe Helix RUMMaui Design System+3

Partner Domains:

austrian.com
partner30
lufthansa.com
partner30

+3 more partners

2025-06-15T21:47:19.178Z
strabag.com favicon

STRABAG SE

strabag.com

40
TransportationAustriaenterpriseHIGH

STRABAG SE is a leading European construction and technology company specializing in infrastructure, building construction, and specialized construction sectors. The company emphasizes innovation, sustainability, and quality, positioning itself as a market leader with a comprehensive portfolio of services including road construction, civil engineering, and tunneling. The website content reflects a mature enterprise with a strong focus on ESG principles and investor relations, targeting investors, clients, and partners in the construction and infrastructure sectors. Technically, the website employs standard web technologies such as jQuery and custom JavaScript, hosted on Microsoft Azure with DNS managed via AWS. While the site is content-rich and well-structured with good SEO and mobile optimization, it suffers from critical security shortcomings, notably the absence of a valid SSL/TLS certificate and HTTPS support, which severely impacts its security posture. Security analysis reveals a lack of essential security headers, no DNSSEC or CAA records, and no advanced SSL features like OCSP stapling or session resumption. Privacy compliance is well addressed with a comprehensive privacy policy and cookie consent mechanism, but incident response and vulnerability disclosure policies are not evident. Overall, STRABAG SE's website demonstrates strong business credibility and content quality but requires urgent security improvements to protect user data and enhance trust. Strategic recommendations include implementing HTTPS, enabling security headers, and adopting DNS security measures to align with best practices.

60
18
-
50
-
70
100
constructionesgsustainabilityinvestorrelationscorporategovernance+2 more
jQuery 3.3.1JavaScriptCSSHTML5
2025-06-15T21:47:18.712Z
unterweger.eu favicon

Nameshift.com

unterweger.eu

28
TechnologyNetherlandssmallHIGH

The website unterweger.eu is a domain sales and transfer service platform operated in partnership with Nameshift.com, a domain escrow and marketplace service. The business model focuses on providing a secure and simple way for buyers to purchase domain names with escrow protection, free assistance, and VAT invoicing. The target audience includes individuals and businesses seeking domain ownership with minimal risk. The website is built using modern web technologies such as SvelteKit and is hosted on a CDN associated with Nameshift.com. However, performance metrics are not available, and the site shows basic content quality with limited interactive elements. From a security perspective, the website lacks a valid SSL certificate and does not support HTTPS, which is a critical vulnerability impacting user trust and data security. Although some security headers are present, the absence of TLS protocols and HSTS reduces the overall security posture significantly. No privacy or cookie policies are published, indicating poor privacy compliance. Contact information is limited to a physical address in the Netherlands, with no emails or phone numbers provided, which may affect user confidence. Overall, the website demonstrates a basic level of technical implementation and business credibility but suffers from critical security and privacy compliance gaps. Strategic improvements in SSL/TLS deployment, privacy policy publication, and contact transparency are essential to enhance trust and security. The domain registration data aligns well with the business claims, showing consistency and legitimacy without privacy protection, which is appropriate for this type of service.

55
-
5
50
-
75
40
domainsalesescrowservicedomaintransfertechnologysveltekit
SvelteKitJavaScriptCSSHTML

Partner Domains:

nameshift.com
partnerpending
2025-06-15T21:47:12.948Z
avl.com favicon

AVL List GmbH

avl.com

40
TechnologyAustriaenterpriseHIGH

AVL List GmbH is a globally recognized leader in mobility technology, specializing in development, simulation, and testing solutions primarily for the automotive industry. The company offers a broad portfolio of engineering, simulation, and testing services, with a strong emphasis on sustainable and innovative mobility solutions such as hydrogen engines, hybrid powertrains, and fuel cells. Their market position is that of a mature, enterprise-level technology provider with a significant global presence and a history spanning over 28 years. Technically, the website is built on Drupal 10 with modern JavaScript libraries and includes Cookiebot for consent management. However, the site suffers from a critical security shortfall due to the absence of a valid SSL certificate and HTTPS support, which significantly impacts its security posture. Performance is also a concern, with a notably slow page load time and a large page size. Privacy compliance is well addressed with clear privacy and cookie policies and GDPR compliance indicators. Business credibility is strong, supported by detailed corporate information, consistent branding, and multiple trust signals. Overall, while the business and content quality are excellent, the lack of HTTPS and slow performance are key vulnerabilities that should be addressed promptly.

70
18
5
50
-
75
100
mobilityautomotivetechnologyengineeringsimulation+5 more
Drupal 10Commerce 2JavaScriptCookiebot+2
2025-06-15T21:47:11.861Z
casinos.at favicon

Casinos Austria AG

casinos.at

40
HospitalityAustrialargeHIGH

Casinos Austria AG operates a comprehensive network of casinos across Austria, providing a wide range of gaming options including poker, slot machines, and table games, complemented by hospitality services such as restaurants and event locations. The website serves as the official digital presence, targeting casino visitors and players with detailed information on locations, events, membership benefits, and promotional packages. The company holds a strong market position as a leading casino operator in Austria, supported by consistent branding and trust indicators such as recognized certifications and responsible gaming initiatives. Technically, the website is built on TYPO3 CMS and employs modern web technologies including JavaScript and SVG graphics. It integrates multiple analytics and marketing tools with user consent mechanisms, ensuring good digital maturity. The site is mobile-optimized and accessible, with good SEO practices and clear navigation enhancing user experience. From a security perspective, while the site implements several important security headers and content security policies, it currently lacks a valid SSL certificate and does not support modern TLS protocols, significantly weakening its security posture. This exposes the site to risks related to unencrypted traffic and potential interception. Privacy compliance is well addressed with clear privacy and cookie policies and GDPR adherence. The presence of a responsible disclosure page indicates a proactive approach to vulnerability management. Overall, the site is professional and trustworthy but requires urgent improvements in SSL/TLS configuration to secure user data and maintain trust. Strategic recommendations include obtaining a valid SSL certificate, enabling TLS 1.2 or higher, and fully activating HSTS. These steps will enhance security, compliance, and user confidence, supporting the company’s strong market presence and digital strategy.

80
-
15
50
-
90
100
casinogamingpokerslotsevents+3 more
TYPO3 CMSJavaScriptSVG graphicsJentis analytics+1

Partner Domains:

lotterien.at
partnerpending
trustedshops.at
partnerpending

+1 more partners

2025-06-15T21:47:05.513Z
alliedpanels.com favicon

GoDaddy Operating Company, LLC

alliedpanels.com

38
E-commerceUnited StateslargeHIGH

The website alliedpanels.com is a domain aftermarket sales landing page hosted and operated under GoDaddy's platform. It offers the domain for sale with options to buy now, lease to own, or make an offer. The site targets domain investors and businesses seeking premium domain names, leveraging GoDaddy's trusted marketplace and brokerage services. The business model is focused on domain sales and brokerage within the e-commerce sector, supported by GoDaddy's large market presence and infrastructure. Technically, the site is built using modern JavaScript frameworks such as React and Next.js, hosted on AWS infrastructure. However, the site suffers from slow load times and lacks a valid SSL certificate, resulting in no HTTPS support. While the design and user experience are good and mobile optimized, the absence of HTTPS and security headers significantly weakens the security posture. Security evaluation reveals critical issues including no valid SSL certificate, no HSTS, and missing security headers, which expose users to potential risks. Privacy compliance is supported by comprehensive GoDaddy privacy and cookie policies, with GDPR compliance indicated. Contact information is limited but present via phone and contact form. Overall, the site is legitimate and consistent with domain aftermarket sales but requires urgent security improvements. Strategically, the site should prioritize obtaining and configuring a valid SSL certificate to enable HTTPS, implement security headers, and improve performance to enhance trust and user experience. These steps will strengthen the security posture and align with best practices for e-commerce platforms.

15
15
5
50
-
80
100
domain-for-saledomain-marketplacegodaddyafternicpremium-domain
ReactNext.jsJavaScriptCSS+3

Partner Domains:

afternic.com
partner75
godaddy.com
parent73

+1 more partners

2025-06-15T21:47:05.260Z
codeart.lv favicon

CODEART, SIA

codeart.lv

40
TechnologyLatviasmallHIGH

CODEART, SIA is a Latvian-based IT service provider specializing in the design, development, and maintenance of modern business IT systems, websites, and portals. With over 18 years of industry experience, the company targets Latvian businesses seeking high-quality and scalable digital solutions. The website reflects a professional and consistent brand image, offering a range of corporate IT services including web design, frontend development, and user experience planning. The company maintains a moderate market position as an established local player with a clear focus on quality and client satisfaction. Technically, the website employs modern TLS protocols and integrates multiple third-party tools such as Google Analytics, Microsoft Clarity, and Pipedrive LeadBooster for marketing and analytics purposes. However, the site suffers from slow load times and lacks some advanced security headers and policies, which could be improved to enhance security posture. Privacy compliance is basic, with a cookie consent mechanism present but no visible privacy policy or terms of service pages. Contact information is clearly provided, supporting business credibility. Overall, the website is functional and professional but would benefit from enhanced security and privacy measures to align with best practices.

20
-
17
85
67
65
-
itserviceswebdevelopmentbusinesssolutionslatviatechnology
JavaScriptGoogle reCAPTCHAMicrosoft ClarityPipedrive LeadBooster+1

Partner Domains:

projects.codeart.lv
partner
2025-06-15T20:15:41.347Z
porkbun.shop favicon

porkbun.shop

porkbun.shop

63
E-commerceUnited StatessmallMEDIUM

porkbun.shop is an e-commerce website currently in a 'Coming Soon' state, hosted on the Shopify platform. The site offers a newsletter signup form to notify visitors of upcoming promotions and product launches. The business model is typical of online retail stores leveraging Shopify's infrastructure. The website is password protected and lacks substantive content or business information at this time, indicating it is not yet operational. Technically, the site uses Shopify's Debut theme and standard JavaScript libraries, including CryptoJS and Shopify's own analytics and pixel tracking scripts. However, the site suffers from a critical security issue: the SSL certificate is invalid or missing, resulting in no HTTPS support. This severely impacts the security posture and trustworthiness of the site. Performance is slow with a large page size and many resource requests, and SEO and accessibility optimizations are basic. Security-wise, the site has minimal protections beyond HSTS being enabled. There is no valid SSL certificate, no modern TLS protocols enabled, and no OCSP stapling or session resumption. No privacy, cookie, or terms of service policies are present, and no incident response or vulnerability disclosure information is available. The site collects email addresses via a newsletter form but lacks GDPR compliance indicators. Overall, the website is in an early stage of development with significant security and compliance gaps. The lack of HTTPS is a critical issue that must be addressed before launch. Strategic recommendations include obtaining a valid SSL certificate, implementing privacy and cookie policies, improving performance, and enhancing security headers and compliance measures.

75
25
25
85
92
85
100
e-commerceshopifycomingsoonpasswordprotectednewsletter
ShopifyJavaScriptCSSHTML5+3
2025-06-15T15:51:29.500Z
dateks.lv favicon

Dateks

dateks.lv

39
RetailLatviamediumHIGH

Dateks.lv operates as a medium-sized e-commerce retailer based in Latvia, specializing in a broad range of technology and consumer electronics products. The website offers extensive product categories including computers, components, office equipment, and home appliances, targeting both consumers and businesses in the Baltic region. The company maintains partnerships with major technology brands such as Asus, Dell, Intel, Lenovo, and Nvidia, reinforcing its market position as a reputable regional retailer. From a technical perspective, the website employs modern tracking and marketing technologies including Google Tag Manager, Facebook Pixel, and Cookiebot for consent management. However, the site suffers from slow performance due to a large page size and numerous resources. Mobile optimization is good, but accessibility features are basic. The lack of a valid SSL certificate is a critical security shortfall, impacting user trust and data protection. Security posture reveals several vulnerabilities including missing DMARC, DNSSEC, and CAA records, and no domain protection locks, which collectively increase risk exposure. While HSTS is enabled, the absence of a valid SSL certificate and other security best practices lowers the overall security score. Privacy and cookie policies are present and GDPR compliant, with clear contact information provided. Overall, Dateks.lv presents a professional and content-rich e-commerce platform with moderate technical maturity and security posture. Strategic improvements in SSL/TLS implementation, email security, and DNS hardening are recommended to enhance trust and compliance.

25
-
17
70
92
50
-
e-commercetechnologyelectronicsretaillatvia
JavaScriptGoogle Tag ManagerFacebook PixelCookiebot+1

Partner Domains:

klix.app
servicepending
2025-06-15T15:40:20.572Z