Skip to main content

High-risk security reports

Browse 43,500 Guard analyses across this slice of the directory — NIS2 / GDPR readiness, SSL/TLS, DNS hygiene and email authentication.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

148819
Websites
130
Industries
113
Countries
52
Avg Score
Page 820 of 870|Showing 40951-41000 of 43500
ahoikapptn.com favicon

Ahoi Kapptn FlexCo

ahoikapptn.com

40
TechnologyAustriasmallHIGH

Ahoi Kapptn FlexCo is a technology-focused company specializing in digital solutions for businesses, including consulting, UI/UX design, AI applications, and scalable software development. The company serves a diverse clientele including notable brands such as Red Bull, SAP, and the Austrian Football Association, positioning itself as a trusted provider of innovative digital products. Their business model revolves around delivering end-to-end digital product development and optimization services, targeting businesses seeking to evolve their digital presence and capabilities. Technically, the website is built on a modern stack using Next.js and React, hosted on Vercel, with native mobile app development capabilities demonstrated in their projects. The site is well-structured, mobile-optimized, and rich in content, reflecting a mature digital infrastructure. However, a critical security gap exists due to the absence of a valid SSL certificate and HTTPS enforcement, which undermines user trust and data security. Privacy compliance is generally good, with a clear privacy policy and GDPR adherence, though the lack of a cookie consent mechanism is a notable shortfall. Overall, the website presents a professional and credible business front but requires urgent security improvements to align with best practices and user expectations.

-
-
-
50
-
85
100
digitalsolutionssoftwaredevelopmentaiapplicationsmobileappsuiuxdesign+2 more
Next.jsReactVercel hostingSpring Boot (backend for projects)+6
2025-06-15T21:53:13.281Z
minimax.de favicon

Minimax GmbH

minimax.de

37
EnergyGermanylargeHIGH

Minimax GmbH is a well-established leader in the fire protection industry with over 120 years of experience. The company offers a broad range of fire detection, suppression, and prevention systems tailored for various industries including energy, manufacturing, and transportation. Their market position is strong, supported by a comprehensive portfolio of products and services, including maintenance and training. The website reflects a professional and consistent brand image targeting industrial and commercial clients seeking reliable fire safety solutions. Technically, the site uses modern JavaScript modules, a CDN for content delivery, and integrates popular analytics and marketing tools such as Google Analytics and Facebook Pixel. However, a critical security gap exists due to the absence of a valid SSL/TLS certificate, leaving the site vulnerable to interception and undermining user trust. Security headers are properly configured, but the lack of HTTPS significantly lowers the security posture. Privacy compliance is well addressed with clear policies and consent mechanisms. Overall, the site is functional and professional but requires urgent security improvements to align with best practices and protect users.

40
-
5
50
-
85
100
fireprotectionbrandschutzsafetyindustrialsolutionsfiredetection+1 more
Gunicorn (server)Cloudfront CDNJavaScript modulesGoogle Analytics+3

Partner Domains:

minimax-mobile.com
subsidiarypending
mv-pipe.com
subsidiarypending
2025-06-15T21:53:05.498Z
S

shfl.com

shfl.com

35
OtherN/asmallHIGH

The website at shfl.com currently serves only a minimal HTML page that immediately redirects visitors to a /lander path, with no substantive content, metadata, or business information available. The domain is registered and has DNS records pointing to Amazon AWS IP addresses, but lacks critical security features such as a valid SSL certificate and HTTPS support. No privacy, cookie, or terms of service policies are present, and no contact or social media information is provided, indicating a very low level of digital maturity and online presence. From a technical perspective, the site is hosted on AWS infrastructure but does not implement modern web security standards or performance optimizations. The absence of TLS protocols and security headers exposes the site to potential risks and undermines user trust. The lack of content and metadata also negatively impacts SEO and user experience. Security posture is weak due to the absence of HTTPS, no HSTS, no DNSSEC, and no security headers. These gaps present significant vulnerabilities and compliance risks, especially if the site were to handle sensitive data. The WHOIS data shows the domain is registered and not vulnerable to subdomain takeover, but the lack of transparency and business information reduces trustworthiness. Overall, the site appears to be either under development or abandoned, with critical security and compliance deficiencies. Strategic recommendations include obtaining and configuring a valid SSL certificate, implementing security headers and DNS security features, developing meaningful website content with clear business information, and establishing privacy and cookie policies to comply with regulations and build user trust.

15
15
5
50
-
85
100
2025-06-15T21:53:04.361Z
ferrochema.at favicon

Ferrochema GmbH & Co KG

ferrochema.at

40
ManufacturingAustriamediumHIGH

Ferrochema GmbH & Co KG is a well-established wholesale company specializing in steel, reinforcement, and civil engineering materials, headquartered in Spittal an der Drau, Austria. It operates as part of the larger Weyland Group, which has multiple locations across Austria and neighboring countries. The company offers a broad range of products including steel sheets, bars, beams, pipes, aluminum, stainless steel, reinforcement steel, and related services such as steel processing and logistics. Their business model focuses on wholesale distribution with value-added services and an online shop targeting commercial and industrial customers in the construction and manufacturing sectors. Technically, the website is built on TYPO3 CMS with modern JavaScript libraries such as jQuery and Tiny Slider, and uses Matomo for analytics. The hosting is on Microsoft Azure, with moderate performance and good mobile optimization. The site features a comprehensive cookie consent mechanism and clear navigation, but lacks HTTPS due to an invalid or missing SSL certificate, which is a critical security gap. From a security perspective, the site has no HTTPS enabled, no security headers, and lacks DNSSEC and CAA records, which lowers its security posture significantly. However, no known vulnerabilities or malware were detected. Privacy compliance is strong with GDPR-aligned policies and cookie consent. Incident response contact is provided via a whistleblower email. Overall, the site is professional and trustworthy but urgently needs to address its SSL/TLS configuration to improve security and user trust. Strategic recommendations include immediate installation of a valid SSL certificate, enabling security headers and HSTS, and implementing DNS security measures. These steps will enhance the security posture and compliance, thereby improving the overall trust and credibility of the website and business.

60
-
-
50
-
85
100
steelwholesaleconstructionmanufacturinglogistics+3 more
TYPO3 CMSjQueryMatomo AnalyticsTiny Slider+1

Partner Domains:

weyland.at
parentpending
weylandholz.cz
partnerpending

+3 more partners

2025-06-15T21:53:04.207Z
qualityaustria.com favicon

Quality Austria

qualityaustria.com

32
EducationAustrialargeHIGH

Quality Austria is a leading Austrian institution specializing in integrated management systems, quality certification, and training services. The company offers a broad range of certifications including ISO standards, Austria Gütezeichen, and EOQ certificates, positioning itself as a trusted partner for organizations seeking quality assurance and compliance. The website reflects a mature digital presence with comprehensive content, multi-language support, and a professional design tailored to its target audience of businesses and public organizations. Technically, the site is built on WordPress with WooCommerce for e-commerce capabilities, enhanced by performance optimizations such as WP Rocket and advanced search via FacetWP. The use of Borlabs Cookie ensures compliance with privacy regulations through effective consent management. However, the absence of a valid SSL certificate is a critical security flaw that undermines user trust and data protection. Security measures include several HTTP security headers and a content security policy restricting frame ancestors, but the invalid SSL certificate and lack of explicit security or incident response policies indicate areas for improvement. Overall, the site demonstrates strong business credibility and privacy compliance but requires urgent attention to its SSL configuration to ensure secure user interactions.

90
18
5
50
-
85
-
certificationqualitymanagementtrainingisoaustria+2 more
WordPressWooCommercejQueryjQuery UI+7
2025-06-15T21:53:03.426Z
sclable.com favicon

Sclable Business Solutions GmbH

sclable.com

28
TechnologyAustriamediumHIGH

Sclable Business Solutions GmbH is a Vienna-based digital innovation studio founded in 2012, specializing in custom software development, AI-driven digital solutions, and human-centered design. The company serves a diverse B2B clientele across industries such as manufacturing, IoT, healthcare, construction, mobility, financial services, and energy. With over 50 professionals and 120+ live projects, Sclable positions itself as a medium-sized, reputable player in the technology consulting and software development market. The website reflects a professional and consistent brand image with strong client endorsements and comprehensive service descriptions. Technically, the website runs on an Apache server with modern frontend libraries like Swiper and QR code generation scripts. While the site is mobile-optimized and accessible with good SEO practices, it lacks a valid SSL certificate and proper HTTPS configuration, which is a significant security shortfall. Performance metrics are missing, but inferred to be slow. No CMS or major frameworks are detected, indicating a custom-built site. From a security perspective, the site has minimal security headers and no active TLS protocols, exposing it to potential risks. The absence of DMARC, DNSSEC, and CAA records further weakens email and domain security. No incident response or vulnerability disclosure policies are present, limiting transparency in security management. However, privacy and cookie policies with consent mechanisms are well implemented, indicating good GDPR compliance. Overall, while the business and website demonstrate professionalism and trustworthiness, the lack of HTTPS and modern security configurations poses a critical risk. Strategic improvements in SSL deployment, email security, and incident response transparency are recommended to enhance the security posture and maintain client trust.

30
-
5
50
-
75
40
digitalinnovationcustomsoftwareaisolutionsdata-drivenb2b+2 more
Apache serverSwiper JSQR Code JSCustom CSS and JS+1
2025-06-15T21:53:02.806Z
mnhn.fr favicon

Muséum national d'Histoire naturelle

mnhn.fr

40
GovernmentFrancelargeHIGH

The Muséum national d'Histoire naturelle is a prominent French national institution dedicated to natural history research, education, and public exhibitions. It operates multiple sites across Paris and regions, serving a broad audience including families, scientists, educators, and professionals. The website reflects a well-structured, content-rich platform with excellent design and navigation, supporting its mission to disseminate knowledge and engage the public. Technically, the site is built on Drupal 10 with modern web technologies and uses caching and analytics tools such as Varnish, Matomo, and ContentSquare. Mobile optimization and SEO are well addressed, though performance is moderate. However, the critical security weakness is the absence of a valid SSL certificate and disabled TLS protocols, severely impacting secure communications and user trust. Security headers and policies are implemented, but the lack of HTTPS and modern TLS support is a major vulnerability. Privacy and cookie policies are comprehensive and GDPR compliant, with clear contact and legal information. Social media presence is official and consistent, enhancing credibility. Overall, the site is professionally managed with strong business credibility but requires urgent remediation of SSL/TLS issues to improve security posture and user trust. Strategic recommendations include installing valid certificates, enabling modern TLS, and enhancing security policies.

55
-
-
50
-
85
100
museumnaturalhistoryeducationresearchfrance+2 more
Drupal 10nginxVarnishMatomo Analytics+3
2025-06-15T21:52:49.020Z