Skip to main content

High-risk security reports

Browse 43,501 Guard analyses across this slice of the directory — NIS2 / GDPR readiness, SSL/TLS, DNS hygiene and email authentication.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

148819
Websites
130
Industries
113
Countries
52
Avg Score
Page 813 of 871|Showing 40601-40650 of 43501
tac.eu.com favicon

TAC | The Assistant Company

tac.eu.com

40
TechnologyAustriamediumHIGH

TAC | The Assistant Company is a medium-sized technology provider specializing in all-in-one business software solutions tailored for the hospitality and wellness sectors, including spas, fitness clubs, and thermal baths. Their product suite includes Reservation Assistant, Club Assistant, and Entry Assistant software, complemented by automated wristband issuance and online webshop capabilities. The company has a solid market position supported by long-term client relationships and partnerships with notable industry players. Their website reflects a professional and consistent brand image with good content quality and user experience, targeting businesses seeking integrated software solutions to streamline operations. Technically, the website is built on a modern WordPress CMS platform using PHP 8.1, nginx, and popular plugins such as WPBakery Page Builder and Slider Revolution. The site employs lazy loading for images and integrates marketing and analytics tools like Google Analytics and Sendinblue. Hosting is managed by internex.at, and the site demonstrates good SEO and mobile optimization practices. However, performance is moderate, and accessibility features are basic. From a security perspective, the site implements several important HTTP security headers and a cookie consent mechanism compliant with GDPR. Unfortunately, the SSL/TLS configuration is critically lacking, with no valid SSL certificate installed, no TLS protocols enabled, and malformed CAA DNS records. This significantly reduces the security posture and exposes the site to risks associated with unencrypted traffic. No explicit security policies or incident response information are found. Overall, TAC presents a trustworthy and professional business with strong privacy compliance and marketing transparency. The primary risk lies in the absence of HTTPS, which should be urgently addressed to protect user data and maintain trust. Strategic recommendations include immediate SSL certificate installation, enabling modern TLS protocols, and improving SSL configuration to enhance security and user confidence.

60
18
-
50
-
90
100
spasoftwareaccesscontrolmembershipsoftwarehospitalitywellness+3 more
PHP 8.1.32nginxWordPressWPBakery Page Builder+7
2025-06-15T21:55:12.978Z
O

OESTERREICHISCHE KONTROLLBANK AG

oekb.at

40
FinanceAustrialargeHIGH

OeKB Gruppe is a central financial service provider based in Austria, supporting the Austrian economy with a broad range of services including export financing, capital market services, energy market services, development financing, and tourism services. The website presents a professional and comprehensive overview of their offerings, targeting Austrian businesses, investors, and financial institutions. The company holds a strong market position as a key financial institution in Austria. Technically, the website uses a custom CMS with JavaScript and Bootstrap frameworks, but suffers from slow load times and lacks modern security configurations such as a valid SSL certificate and TLS protocols. Mobile optimization and SEO are good, but accessibility is basic. The website lacks cookie consent mechanisms and some security best practices. Security posture is weak due to the absence of HTTPS, no security headers, and missing email authentication records like DMARC. DNSSEC is disabled and CAA records are malformed. These issues pose significant risks to user data confidentiality and trust. Overall, the website is content-rich and professionally designed but requires urgent security improvements to protect users and comply with modern standards. Strategic recommendations include implementing HTTPS, enabling security headers, and adding privacy and cookie consent mechanisms.

85
-
5
50
-
80
100
financeexportcapitalmarketenergydevelopmentfinancing+2 more
JavaScriptjQueryBootstrap
2025-06-15T21:55:12.328Z
awsg.at favicon

Austria Wirtschaftsservice Gesellschaft mbH

awsg.at

40
GovernmentAustrialargeHIGH

Austria Wirtschaftsservice Gesellschaft mbH (aws) is the official Austrian federal promotional bank dedicated to fostering innovation and economic growth within Austria. The website serves as a comprehensive portal for Austrian entrepreneurs and companies seeking funding, subsidies, and advisory services. It offers a broad range of programs targeting startups, SMEs, and established companies, with a strong emphasis on energy, sustainability, and internationalization. The site is well-branded, professionally designed, and provides clear navigation and rich content in German, targeting primarily Austrian businesses and innovators. Technically, the website is built on TYPO3 CMS and uses Apache as the web server. It integrates Matomo analytics for privacy-compliant user tracking and employs modern web technologies including CSP and various security headers. However, the SSL/TLS configuration is currently invalid or missing, which is a critical security concern. Performance metrics are not available, but the site appears mobile-optimized and accessible. From a security perspective, while several security headers are implemented, the lack of a valid SSL certificate and disabled TLS protocols significantly reduce the security posture. No explicit security or incident response policies are found on the site. Privacy compliance is strong, with a clear cookie consent mechanism and a comprehensive privacy policy in place, aligned with GDPR requirements. Overall, the site is a credible and professional government service platform with excellent content and user experience but requires urgent remediation of its SSL/TLS configuration to ensure secure communications and improve trustworthiness.

80
-
5
50
-
85
100
governmentfundinginnovationaustriabusinesssupport+5 more
ApacheTYPO3 CMSMatomo AnalyticsJavaScript+2
2025-06-15T21:55:11.911Z
brand-rex.com favicon

Leviton Manufacturing Co., Inc.

brand-rex.com

40
ManufacturingUnited StatesenterpriseHIGH

Leviton Manufacturing Co., Inc. operates a comprehensive and professionally designed website offering a wide range of electrical and lighting control products targeting residential, commercial, and industrial markets. The company positions itself as a leader in home electrical safety with over 115 years of history, providing products such as lighting controls, wiring devices, networking solutions, electric vehicle charging, and submetering. The website demonstrates a mature digital presence with extensive product catalogs, market segmentation, and partner integrations. Technically, the site is built on Adobe Experience Manager with modern marketing and analytics tools integrated, ensuring good user experience and SEO. However, a critical security gap exists due to the absence of a valid SSL certificate and disabled TLS protocols, significantly impacting the security posture. Privacy and cookie policies are well implemented with consent mechanisms, reflecting good compliance practices. Overall, the site is trustworthy and professional but requires urgent security improvements to protect user data and maintain credibility.

55
18
5
50
-
85
100
lightingcontrolselectricalnetworkingmanufacturingsmarthome+3 more
Adobe Experience Manager (AEM)Google Tag ManagerOneTrust Cookie ConsentLinkedIn Insight Tag+6

Partner Domains:

prismdcs.co.uk
partnerpending
contechlighting.com
partnerpending

+3 more partners

2025-06-15T21:55:11.792Z
mtechpro.com favicon

M.Tech Products Pte Ltd

mtechpro.com

40
TechnologySingaporelargeHIGH

M.Tech Products Pte Ltd is a leading distributor and solutions provider specializing in cyber security and network performance solutions across the Asia-Pacific region. The company maintains a strong market position with presence in 14 countries, 24 offices, and a reseller network exceeding 2,000 partners. Their business model focuses on partnering with market-leading vendors to deliver integrated security and network performance management solutions, complemented by professional services and training offerings. The website reflects a professional and consistent brand image with good content quality and clear navigation tailored for their target audience of enterprises and resellers. Technically, the website is built on WordPress using common libraries such as jQuery and Owl Carousel, with Gravity Forms for data collection. While the site is mobile optimized and SEO friendly, performance appears slow based on provided data. Critically, the site lacks a valid SSL certificate and proper HTTPS configuration despite having security headers like HSTS, which severely impacts its security posture. Analytics usage is moderate with Google Analytics implemented, but no cookie consent mechanism or explicit cookie policy was found. From a security perspective, the site demonstrates basic best practices through HTTP security headers but suffers from the absence of HTTPS and modern TLS protocols, exposing users to potential risks. No incident response or vulnerability disclosure information is available, and no security certifications are displayed. The domain registration data aligns well with the business claims, indicating legitimacy and trustworthiness. Overall, the website is functional and professional but requires urgent security improvements, especially regarding SSL/TLS implementation, to protect user data and enhance trust. Privacy compliance is partially met with a comprehensive privacy policy but lacks cookie consent mechanisms. Strategic recommendations include securing the website with valid certificates, enabling modern security protocols, and enhancing privacy and incident response disclosures.

60
18
5
50
-
85
100
cybersecuritynetworkperformancedistributortechnologysecuritysolutions+2 more
ApacheWordPressjQueryOwl Carousel+3
2025-06-15T21:55:11.661Z
upc.at favicon

T-Mobile Austria GmbH

upc.at

39
TelecommunicationsAustriaenterpriseHIGH

The website for upc.at, branded as Magenta Austria, represents a major telecommunications provider offering a wide range of services including mobile tariffs, internet packages, TV offerings, and bundled solutions for both consumers and business customers. The site is professionally designed with rich content, clear navigation, and consistent branding that aligns with the corporate identity of T-Mobile Austria GmbH. Structured data and social media presence further reinforce the company's legitimacy and market position in Austria. Technically, the site is built on Adobe Experience Manager CMS and utilizes modern marketing and analytics tools such as Google Tag Manager and Usercentrics for consent management. However, the website currently suffers from a critical security issue: the SSL/TLS certificate is invalid or missing, and no secure HTTPS protocols are enabled. This significantly impacts the security posture and user trust, despite the presence of security headers and content security policies. Privacy compliance is well addressed with clear privacy and cookie policies and an active consent mechanism. Contact information is available primarily via phone numbers and contact forms, though no direct company email addresses are exposed. The WHOIS data confirms the domain's legitimacy and consistency with the business identity. Overall, while the website excels in content quality, user experience, and privacy compliance, the lack of valid HTTPS and proper SSL configuration is a critical vulnerability that must be addressed immediately to ensure secure communications and maintain customer trust.

55
-
5
50
-
90
100
telecommunicationsmobileinternettvmagenta+5 more
jQueryAngularJS (indicated by angularConfigUrl)Google Tag ManagerUsercentrics CMP+2

Partner Domains:

magenta.at
partnerpending
mymagenta.at
servicepending
2025-06-15T21:55:10.790Z
cydeckt.com favicon

CardivAI GmbH

cydeckt.com

37
HealthcareN/asmallHIGH

CardivAI GmbH operates in the healthcare technology sector, specializing in generative AI-driven diagnostics for cardiovascular diseases. Their offerings include AI integrations, AWS cloud-based solutions architecture, and DevOps services tailored for mobile-first healthcare applications. The company positions itself as a niche provider leveraging advanced AI models such as Anthropic's Claude 4 and AWS infrastructure to deliver innovative healthcare diagnostics solutions. The website content and branding reflect a professional and consistent image targeting healthcare professionals and technology adopters in the medical diagnostics field. Technically, the website is hosted on AWS infrastructure using Amazon S3 and CloudFront, with modern frontend technologies including Bootstrap, Swiper, and JavaScript libraries for UI enhancements. Google Tag Manager and CookieYes scripts indicate moderate analytics and cookie consent management. However, the site lacks HTTPS support, which is a significant technical and security shortfall. Mobile optimization and SEO appear adequate, but performance metrics are unavailable. From a security perspective, the absence of a valid SSL/TLS certificate and HTTPS severely impacts the security posture, exposing users to potential data interception risks. No advanced security headers or protocols are implemented, and no incident response or vulnerability disclosure policies are evident. The use of AWS server-side encryption for content storage is a positive aspect, but overall security maturity is low. Privacy compliance is basic with cookie consent but lacks explicit GDPR compliance indicators. Overall, the website presents a credible business with professional content and clear contact information but requires urgent improvements in security, particularly enabling HTTPS and enhancing security headers. Strategic recommendations include implementing SSL/TLS, adopting security best practices, and formalizing privacy and incident response policies to improve trust and compliance.

15
-
5
50
-
80
100
healthcareaiawsclouddiagnostics+2 more
Amazon S3CloudFrontAWSGoogle Tag Manager+7
2025-06-15T21:55:01.326Z
abss.at favicon

abss interactive GmbH

abss.at

40
TechnologyAustriasmallHIGH

abss interactive GmbH is a well-established Austrian digital agency specializing in custom web development, digital transformation consulting, and tailored software solutions. With nearly 25 years of experience, the company serves a diverse client base ranging from small businesses to large international corporations. Their key services include digitalization, website and e-commerce development, search portals, custom tools, and consulting expertise, with a strong emphasis on accessibility and blockchain technology integration. Technically, the website employs a modern technology stack including Apache server, jQuery, Bootstrap grid, and various JavaScript libraries for enhanced user experience. However, the hosting environment lacks a valid SSL/TLS certificate and does not support modern TLS protocols, which is a significant security concern. The site is mobile-optimized and demonstrates good SEO and accessibility practices, but performance metrics are unavailable. From a security perspective, while several security headers are implemented, the absence of HTTPS and proper SSL configuration severely undermines the site's security posture. No incident response or vulnerability disclosure policies are evident. Privacy compliance is partial, with a privacy policy present but no cookie consent mechanism detected. Business credibility is strong, supported by certifications, client references, and transparent contact information. Overall, the site is professionally designed and content-rich, but critical security improvements are necessary to protect user data and enhance trust. Strategic recommendations include obtaining a valid SSL certificate, enabling HTTPS, implementing cookie consent, and establishing formal security policies.

65
-
5
50
-
85
100
webdevelopmentdigitalconsultingblockchainaccessibilitycustomsoftware+2 more
ApachejQueryFontAwesomeBootstrap Grid+6
2025-06-15T21:55:00.689Z
mohemian.com favicon

mohemian services GmbH

mohemian.com

32
TechnologyAustriasmallHIGH

mohemian services GmbH is a small Austrian technology consultancy specializing in translating business needs into technology solutions. Their offerings include business strategy, entrepreneurial thinking, experience design, corporate governance, and technical architecture and development. The company targets tech startups, corporate ventures, and clients seeking innovative digital product development. Their market position is that of a niche, visionary technology partner with a focus on professional execution and agile processes. Technically, the website is built on GravCMS, hosted on Hetzner infrastructure, and uses nginx as the web server. The site includes modern SVG graphics and several Grav plugins for markdown notices, forms, and login functionality. However, the site lacks a valid SSL certificate and does not serve content over HTTPS, which is a critical security shortfall. Performance metrics are missing, but the site appears to have good mobile optimization and basic accessibility features. From a security perspective, the site implements several security headers such as HSTS, X-Frame-Options, and X-XSS-Protection, but the absence of HTTPS and TLS protocols severely undermines security posture. No incident response or security policy information is provided, and no vulnerability disclosure or security.txt file is found. Email security could be improved by adding a DMARC record. Privacy compliance is partial, with a privacy policy present but no cookie consent mechanism. Overall, the website is professional and trustworthy in terms of business presentation but requires urgent improvements in security infrastructure, especially enabling HTTPS with a valid certificate. Adding cookie consent and incident response information would enhance compliance and trust. The domain registration data aligns well with the business claims, supporting legitimacy. Strategic recommendations include securing the website with HTTPS, implementing cookie consent, publishing security policies, and improving email security.

60
18
-
50
-
75
40
technologyconsultingbusinessstrategyexperiencedesignsoftwaredevelopment
nginxGravCMSSVG graphicsMarkdown notices plugin+2
2025-06-15T21:55:00.611Z
reinzeit.com favicon

ReinZeit Handels GmbH

reinzeit.com

40
RetailAustriamediumHIGH

ReinZeit Handels GmbH is an Austrian retail company specializing in eco-friendly cleaning and wellness products, including microfiber cloths, cleaners, laundry detergents, and wellness aroma products. The company emphasizes social responsibility, environmental protection, and Austrian quality standards, targeting consumers interested in sustainable and socially responsible products. Their business model includes direct sales through consultants and an online shop, supported by active social media channels and marketing efforts. Technically, the website is built on WordPress with WooCommerce, using popular plugins such as Yoast SEO and Borlabs Cookie for SEO and privacy compliance. The site is hosted on an Austrian IP and uses Apache server technology. However, performance metrics are not available, and the site is moderately optimized for mobile devices. From a security perspective, the site lacks a valid SSL certificate and proper HTTPS configuration, which is a critical vulnerability. Although some security headers like HSTS and X-Frame-Options are present, the absence of TLS protocols and strong cipher suites significantly weakens the security posture. Privacy compliance is well addressed with clear privacy and cookie policies and consent mechanisms. Overall, the site is professionally designed and trustworthy from a business perspective but requires urgent improvements in SSL/TLS security to protect user data and enhance trust. Strategic recommendations include obtaining a valid SSL certificate, enabling modern TLS protocols, and enhancing security best practices.

45
18
5
50
-
85
100
e-commercecleaningproductswellnesseco-friendlywordpress+3 more
ApachePHPJavaScriptjQuery+7
2025-06-15T21:54:50.583Z
porschewiennord.at favicon

Porsche Inter Auto

porschewiennord.at

38
TransportationAustrialargeHIGH

Porsche Inter Auto is a prominent automotive dealership network in Austria, representing multiple Volkswagen Group brands including VW, Audi, Porsche, ŠKODA, SEAT, and CUPRA. The company offers a comprehensive range of services including new and used car sales, vehicle servicing, financing, and accessories. Their market position is strong within the Austrian automotive retail sector, supported by a large network of dealer locations and a high volume of customer reviews indicating strong customer satisfaction. Technically, the website is built on the Plone CMS platform using Python and Zope, with Cloudflare providing hosting and CDN services. The site integrates modern web technologies such as Google Tag Manager, OneTrust for cookie consent, Leaflet and Google Maps for location services, and Swiper for interactive content. The site is well-structured, mobile-optimized, and includes rich content and structured data for SEO. From a security perspective, the site currently lacks a valid SSL certificate and does not support HTTPS, which is a critical vulnerability. Other security headers like HSTS are missing, and no advanced SSL/TLS features are enabled. However, the site does implement some security headers such as X-Frame-Options and uses Cloudflare for some level of protection. Privacy compliance is strong, with clear privacy and cookie policies and consent mechanisms in place. Overall, the site is professionally designed and content-rich but requires urgent security improvements to enable HTTPS and strengthen SSL/TLS configurations. Addressing these issues will significantly enhance user trust and compliance with modern security standards.

45
-
5
50
-
85
100
automotivecardealershipvwaudiporsche+9 more
ZopePythonCloudflareGoogle Tag Manager+7

Partner Domains:

dasweltauto.at
partnerpending
porsche-holding.com
parentpending

+2 more partners

2025-06-15T21:54:44.078Z
B

Buron - Avocat

buron-avocat.fr

34
OtherFrancesmallHIGH

The website buron-avocat.fr represents a small legal practice operating in the Forbach and Saarbrücken regions, providing legal services primarily to French and German-speaking clients. The site itself is minimal, serving mainly as a redirect to a localized subdirectory, with very limited content on the landing page. The business appears to be established since 2009, supported by a mature domain registration. However, the digital presence is basic and lacks modern web features or comprehensive business information. From a technical perspective, the website is hosted on an Apache server via IONOS SE, but it lacks HTTPS support and a valid SSL/TLS certificate, which is a significant security concern. The site does not implement security headers or advanced web technologies, and performance data is unavailable, indicating potential slow or unoptimized loading. There is no evidence of analytics or tracking tools, and no privacy or cookie policies are present, which raises compliance concerns. Security posture is weak due to the absence of HTTPS, lack of security headers, and no incident response or vulnerability disclosure information. The domain registration is consistent and mature, but the lack of domain protection locks and security best practices lowers trustworthiness. Overall, the website presents a low security and privacy compliance profile, which could impact user trust and regulatory adherence. Strategic recommendations include immediate implementation of HTTPS with a valid certificate, addition of privacy and cookie policies to comply with GDPR, enhancement of security headers, and inclusion of clear contact information to improve business credibility and user trust.

15
-
5
50
-
70
100
legallawyeravocatforbachsaarbrcken+2 more
ApacheHTMLCSS
2025-06-15T21:54:42.428Z