Skip to main content

High-risk security reports

Browse 43,500 Guard analyses across this slice of the directory — NIS2 / GDPR readiness, SSL/TLS, DNS hygiene and email authentication.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

0
Websites
0
Industries
0
Countries
0
Avg Score
Page 838 of 870|Showing 41851-41900 of 43500
F

FERNBACH Financial Software

fernbach.com

0
FinanceAustriamediumHIGH

FERNBACH Financial Software operates FlexFinance, a specialized software suite designed to optimize lending business processes including loan origination, credit lifecycle management, and risk management. The company targets banks and financial institutions, offering solutions that enhance efficiency, transparency, and compliance. With a user base exceeding 12,000 and over one million credit decisions processed annually, FERNBACH holds a solid position in the finance software niche, supported by multilingual capabilities and a consistent brand presence. Technically, the website employs modern front-end technologies such as jQuery, Bootstrap, and Popper.js, alongside analytics tools like Google Analytics and Microsoft Clarity. However, the site suffers from poor performance with a notably high load time and lacks a valid SSL certificate, which critically undermines its security posture. The absence of HTTPS and security headers exposes the site to potential risks, despite no detected vulnerabilities in SSL protocols themselves. Privacy compliance is well addressed with comprehensive privacy and cookie policies, including consent mechanisms aligned with GDPR requirements. Contact information is limited but present, primarily via a company email address. The overall website quality is good in terms of design, content relevance, and user experience, though technical and security improvements are necessary. Strategically, the company should prioritize securing its website with a valid SSL certificate and enabling HTTPS to protect user data and improve trust. Performance optimization and implementation of security headers would further enhance the site's security and user experience. Maintaining transparent privacy practices and expanding contact options could strengthen business credibility and customer confidence.

35
33
-
50
-
85
100
financebankingsoftwareloanoriginationriskmanagementcompliance+1 more
jQuery 3.6.1Bootstrap 5Popper.jsGoogle Analytics+5
2025-06-15T21:47:46.218Z
P

PSI Software SE

psimetals.com

0
ManufacturingGermanylargeHIGH

PSI Software SE operates the website psimetals.com, providing specialized production management software solutions for the metals industry, including steel, aluminum, and copper manufacturing. Their flagship product, PSImetals, integrates SCM, APS, and MES functionalities to optimize production and logistics, with a strong emphasis on sustainability and decarbonization. The company targets industrial manufacturers seeking to improve operational efficiency and meet environmental standards. The website demonstrates a mature digital presence with comprehensive content, case studies, and customer references, reflecting a well-established market position. Technically, the site is built on TYPO3 CMS and leverages modern JavaScript libraries such as Vue.js, Axios, and Parsley.js for enhanced user experience and form validation. However, performance metrics are lacking, and the SSL/TLS configuration is critically deficient, with no valid certificate and no TLS protocols enabled, severely impacting security posture. The site includes privacy and cookie policies compliant with GDPR, and uses Google Analytics and Tag Manager for user tracking at a moderate level. Security-wise, while several security headers are implemented, the absence of a valid SSL certificate and HTTPS enforcement is a major vulnerability. DNS security features like DNSSEC and CAA are not enabled, and domain protection locks are missing, which could expose the domain to hijacking risks. No explicit incident response or security policy information is available on the site. Overall, the website is professional and content-rich but requires urgent security improvements to protect user data and maintain trust. Strategic recommendations include obtaining a valid SSL certificate, enabling modern TLS protocols, enhancing DNS security, and publishing clear security and incident response policies.

55
-
5
50
-
70
100
metalsindustryproductionmanagementscmapsmes+5 more
TYPO3 CMSjQueryAxiosParsley.js+1
2025-06-15T21:47:25.928Z
ctbto.org favicon

Comprehensive Nuclear-Test-Ban Treaty Organization

ctbto.org

0
GovernmentAustriamediumHIGH

The Comprehensive Nuclear-Test-Ban Treaty Organization (CTBTO) operates as an international governmental entity dedicated to monitoring and enforcing the ban on nuclear tests globally. The organization provides key services including verification regimes, international monitoring systems, data analysis, and on-site inspections, targeting member states, researchers, civil society, and media. The website reflects a professional and authoritative presence consistent with its mission and audience. Technically, the site is built on Drupal 10 with modern frameworks and is hosted behind Cloudflare, leveraging Google Analytics and other monitoring tools. The site is mobile-optimized and well-structured, though performance metrics are unavailable. Security headers are implemented, but a critical issue is the absence of a valid SSL certificate and disabled TLS protocols, which significantly impacts the security posture. Security-wise, while the organization employs good header policies and content security policies, the lack of HTTPS and proper TLS support is a major vulnerability. No incident response or security policy pages were found, and cookie consent mechanisms are missing despite tracking usage. DNS records show malformed CAA entries and no DNSSEC, which could be improved. Overall, the site is trustworthy and professional but requires urgent remediation of SSL/TLS issues and enhancement of privacy compliance mechanisms to improve security and user trust.

70
-
5
50
-
90
100
governmentinternationalnuclear-test-bannon-profitsecurity+2 more
Drupal 10Bootstrap 5Google AnalyticsCloudflare+2
2025-06-15T21:47:23.539Z
lexogen.com favicon

Lexogen GmbH

lexogen.com

0
HealthcareAustriamediumHIGH

Lexogen GmbH is a specialized biotechnology company based in Vienna, Austria, focused on next generation sequencing (NGS) and transcriptomics solutions. The company offers a comprehensive portfolio of RNA analysis products, including RNA-Seq sample preparation kits, RNA spike-in controls, and bioinformatics data analysis services. Their target audience includes researchers, pharmaceutical companies, and academic institutions seeking innovative RNA sequencing and analysis solutions. Lexogen positions itself as a niche leader with ISO 9001 and ISO 13485 certifications, underscoring its commitment to quality and regulatory compliance. Technically, the website is built on WordPress using Elementor and WooCommerce, hosted on Cloudpit infrastructure. The site integrates modern web technologies such as Google Tag Manager and reCAPTCHA for analytics and security. While the site is mobile optimized and SEO friendly with good content quality and navigation, performance metrics are unavailable. The absence of a valid SSL/TLS certificate is a critical security gap, exposing users to insecure HTTP connections. From a security perspective, the site lacks HTTPS, HSTS, and other essential security headers, resulting in a low security posture score. No explicit security or incident response policies are published. Privacy compliance is strong, with a comprehensive privacy policy and cookie consent mechanism aligned with GDPR requirements. Contact information is detailed and trustworthy, including multiple phone numbers, emails, and physical addresses in Austria and the USA. Overall, Lexogen's website demonstrates strong business credibility and content quality but suffers from a critical security deficiency due to missing HTTPS. Strategic improvements in SSL implementation and security headers are essential to enhance user trust and data protection. The company’s digital maturity is moderate, with opportunities to improve technical infrastructure and security practices to better support its specialized biotech market presence.

15
18
5
50
-
85
40
rnasequencingtranscriptomicsngsservicesbiotechnologyhealthcare+2 more
nginxWordPressElementorWooCommerce+4
2025-06-15T21:47:20.813Z