Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157327
Websites
130
Industries
113
Countries
52
Avg Score
Page 985 of 1003|Showing 49201-49250 of 50115
T

Telia Company

nebula.fi

61
TelecommunicationsFinlandenterpriseMEDIUM

Telia.fi is the corporate website for Telia Company’s business segment in Finland, offering a broad range of telecommunications and ICT services tailored for enterprises and public sector customers. The site highlights key offerings such as mobile subscriptions, devices, IT services, network solutions, security, cloud, IoT, and consulting services, positioning Telia as a leading and comprehensive ICT partner in the Finnish market. The website is professionally designed with consistent branding and good content quality, targeting Finnish-speaking business customers with language options for English and Swedish. Technically, the site uses Magnolia CMS, is hosted on Sonera/Telia infrastructure, and employs modern analytics and marketing tools including Datadog RUM, Google Tag Manager, OneTrust for cookie consent, and AddSearch for search functionality. Security headers are implemented, but TLS protocols are outdated and HSTS is not fully enabled, indicating room for improvement in transport security. Privacy and cookie policies are present and GDPR compliant, with consent mechanisms in place. Contact information is primarily via web forms, with no direct emails or phone numbers visible on the main page. Overall, the site demonstrates a mature digital presence with strong business focus but could enhance security posture and incident response transparency.

85
-
25
75
85
85
100
telecommunicationsbusiness servicesICTsecuritycloud+3 more
jQueryDatadog RUMGoogle Tag ManagerOneTrust Cookie Consent+1

Partner Domains:

inmicsnebula.fi
partnerpending
teliacygate.fi
partnerpending
2025-06-14T12:16:03.677Z
sourcepoint.com favicon

Sourcepoint

sourcepoint.com

64
TechnologyN/AmediumMEDIUM

Sourcepoint is a technology company specializing in data privacy and consent management solutions, helping enterprises comply with regulations such as GDPR and CCPA. The company offers a comprehensive platform that includes consent management, compliance monitoring, DSAR handling, and marketing preference management. Positioned as a leader in privacy compliance technology, Sourcepoint serves major clients including top news publishers in the UK and Germany. Their business model focuses on B2B SaaS with a strong emphasis on privacy and regulatory compliance. Technically, the website is built on WordPress hosted on WP Engine, utilizing modern marketing and analytics tools such as HubSpot and Google Tag Manager. The site demonstrates good SEO and mobile optimization with consistent branding and high-quality content. Security-wise, the site has a valid SSL certificate but lacks modern TLS protocols and advanced security headers. DNSSEC and CAA records are not enabled, indicating room for improvement in domain security. Privacy policies and terms of service are present and comprehensive, supporting GDPR compliance. However, explicit incident response and vulnerability disclosure policies are not found. Overall, Sourcepoint exhibits a mature digital presence with a solid security baseline but could enhance its security posture by adopting best practices in TLS, headers, and incident management.

15
43
25
85
80
85
100
privacyconsent managementCCPAGDPRdata privacy+3 more
WordPressjQueryYoast SEOWPML+3

Partner Domains:

applytojob.com
servicepending
2025-06-14T12:15:51.889Z
greenpmp.io favicon

Sharethrough

greenpmp.io

62
MediaN/AmediumMEDIUM

GreenPMPs by Sharethrough is a sustainability-focused programmatic advertising platform aiming to reduce the carbon footprint of digital media campaigns. It leverages partnerships with companies like Scope3 to measure and compensate carbon emissions, positioning itself as an innovator in green media solutions. The website targets advertisers, publishers, and agencies seeking sustainable advertising options and provides tools such as Green Icon certification and custom PMPs for campaign activation. Technically, the site is built on Webflow, uses Cloudflare CDN, and integrates multiple third-party analytics and marketing tools, including Google Tag Manager, Hotjar, and LinkedIn Insight Tag. While the site demonstrates good design, mobile optimization, and performance, it lacks explicit privacy and terms of service documentation, which are critical for compliance and trust. Security posture is moderate with valid SSL but missing modern TLS protocols and DNS security features. The cookie consent mechanism is implemented, indicating some privacy awareness. Overall, the platform is well-positioned in the sustainable advertising niche but should enhance compliance and security transparency to strengthen trust and regulatory adherence.

30
25
25
75
92
85
100
GreenPMPsSustainabilityCarbon EmissionsProgrammatic AdvertisingSharethrough+3 more
jQueryInfinite ScrollWeglot (translation)Google Tag Manager (gtag.js)+6

Partner Domains:

sharethrough.com
partner69
scope3.com
partner63
2025-06-14T12:15:18.373Z
faethm.ai favicon

Faethm by Pearson

faethm.ai

72
Artificial Intelligence / Workforce AnalyticsNot explicitly statedmediumMEDIUM

The website demonstrates a moderate overall security posture with no critical vulnerabilities but multiple high and medium risk issues, particularly in compliance and security governance areas. Significant gaps exist in GDPR compliance, including the absence of a cookie consent banner and potentially non-compliant privacy policy, exposing the business to regulatory penalties. The lack of a documented information security framework, incident response procedures, and security policies indicates weak organizational security maturity, risking operational disruptions and regulatory non-compliance under NIS2. Technical security controls such as missing key security headers, weak SSL key length, and expiring certificates expose the site to common web-based attacks and reduce user trust. DNS and network security are relatively strong, but improvements like enabling DNSSEC would further enhance resilience. The company’s email security posture is excellent, reducing risks from phishing and email-borne threats. Addressing these gaps will improve regulatory compliance, reduce attack surface, and protect business continuity and reputation. Immediate focus on governance and privacy compliance paired with technical enhancements is recommended to mitigate high-impact risks.

45
58
25
100
72
85
100
AIWorkforce AnalyticsStrategic Workforce PlanningLabour Market InsightsTechnology Impact+1 more
HubSpotGoogle AnalyticsGoogle Analytics 4Google Tag Manager+1

Partner Domains:

pearson.com
subsidiary96
credly.com
partner73

+1 more partners

2025-06-13T22:55:39.383Z
connexus.com favicon

Connections Education LLC

connexus.com

70
educationUnited StateslargeMEDIUM

The website demonstrates significant security gaps, particularly in foundational security headers, GDPR compliance, and adherence to NIS2 cybersecurity requirements. While there are no critical vulnerabilities, the presence of multiple high-severity issues exposes the business to risks including data breaches, regulatory penalties, and reputational damage. Missing key HTTP security headers such as Strict-Transport-Security and Content-Security-Policy increase susceptibility to man-in-the-middle attacks and cross-site scripting. GDPR non-compliance, including absent cookie policies and consent mechanisms, risks legal consequences and loss of customer trust. The lack of documented security policies, incident response, and vulnerability disclosure processes indicates immature cybersecurity governance. Positively, email security, SSL/TLS, DNS, and network security posture are strong, providing a solid foundation for further improvements. Prioritizing remediation will protect sensitive data, ensure regulatory compliance, and reduce operational risks. Immediate attention to security headers and GDPR controls is recommended to mitigate exposure and legal liabilities.

25
43
25
100
85
90
100
educationonline classroomstudent supportprivacyFERPA+1 more
jQuery 3.6.1moment.jsjquery.validateNew Relic Browser Monitoring+3

Partner Domains:

connectionseducation.com
subsidiarypending
connectionsacademy.com
subsidiaryanalyzing...
2025-06-13T22:54:25.873Z
connectionsacademy.com favicon

Connections Academy

connectionsacademy.com

70
EducationUnited StateslargeMEDIUM

The website demonstrates a moderate overall security posture with no critical issues but multiple high and medium-severity gaps, particularly in compliance and governance areas. Key deficiencies exist in GDPR compliance, including missing cookie policy and consent mechanisms, which expose the business to regulatory risks and potential fines. The absence of a formal information security framework, incident response procedures, and security policies under NIS2 regulations significantly increases operational risk and reduces preparedness against cyber threats. Security header implementation is incomplete, notably lacking a Content-Security-Policy header, increasing exposure to client-side attacks such as cross-site scripting. While email security and network security are relatively strong, some medium-level concerns such as expiring SSL certificates and missing DKIM records could impact secure communications and trustworthiness. Addressing these gaps is crucial to safeguarding customer data, maintaining regulatory compliance, and ensuring business continuity. Prioritizing governance, compliance, and foundational security controls will substantially reduce risk and enhance stakeholder confidence.

55
43
25
85
92
85
100
educationonline schoolK-12accreditedtuition-free+1 more
Google Tag ManagerOneTrust Cookies ConsentNew RelicAlgolia Search+9

Partner Domains:

pearson.com
partner96
connectionseducation.com
subsidiaryanalyzing...

+1 more partners

2025-06-13T22:54:25.853Z
adobepress.com favicon

Peachpit

adobepress.com

65
publishingUSAmediumMEDIUM

The website's overall security posture reveals significant gaps that could expose the business to regulatory, reputational, and operational risks. While no critical vulnerabilities were detected, multiple high and medium severity issues indicate a lack of foundational security controls and compliance readiness, notably in the areas of data privacy and organizational security governance. The absence of key security headers and policies undermines protection against common web-based attacks and data leakage. Non-compliance with GDPR requirements, such as missing privacy and cookie policies, exposes the business to potential regulatory penalties and diminished customer trust. Additionally, the lack of adherence to NIS2 directives, including missing incident response and security policy documentation, raises concerns about the organization’s resilience to cybersecurity incidents. Positive scores in email security, network security, SSL/TLS, and DNS health show some established technical controls, but these are overshadowed by gaps in governance and compliance. Immediate focus on implementing core security headers, privacy documentation, and incident response frameworks is essential to mitigate risk and enhance trust with customers and regulators.

30
25
17
100
85
85
100
AdobePublishingCreative CloudBookseBooks+2 more
Google Tag ManagerjQuery 3.7.1Modernizr 2.6.2New Relic Browser Agent+5

Partner Domains:

pearson.com
subsidiary96
informit.com
partner63
2025-06-13T22:52:10.711Z
pearsonitcertification.com favicon

Pearson IT Certification

pearsonitcertification.com

64
educationUSAlargeMEDIUM

The website exhibits significant security and compliance gaps, particularly in its security headers, GDPR compliance, and adherence to NIS2 directives. While there are no critical vulnerabilities, the presence of multiple high and medium severity issues indicates substantial risk exposure, including potential data leaks, regulatory non-compliance, and inadequate incident response readiness. The lack of essential HTTP security headers such as Strict-Transport-Security and Content-Security-Policy increases susceptibility to man-in-the-middle and cross-site scripting attacks. Absence of privacy and cookie policies, as well as missing consent mechanisms, exposes the business to GDPR enforcement actions and reputational damage. Furthermore, the website lacks a formal information security framework and incident response procedures, undermining its ability to manage and recover from cyber incidents effectively. On a positive note, email security, network security, and DNS health scores are relatively strong, indicating some foundational controls are in place. Immediate remediation will help mitigate regulatory risks, enhance customer trust, and reduce potential financial and operational impacts from security events.

30
25
17
100
75
85
100
IT CertificationEducationTrainingExam PreparationLearning Solutions
Google Tag ManagerjQuery 3.7.1Modernizr 2.6.2New Relic Browser Agent+5

Partner Domains:

adobepress.com
partneranalyzing...
ciscopress.com
partner64

+3 more partners

2025-06-13T22:52:10.705Z
socio.events favicon

Webex Events (formerly Socio)

socio.events

62
event management softwareenterpriseMEDIUM

The website demonstrates a concerning security posture with no critical vulnerabilities but multiple high and medium priority issues that expose it to operational, compliance, and reputational risks. Key deficiencies include missing essential security headers, weak SSL/TLS configurations, and lack of GDPR compliance elements such as privacy and cookie policies and consent mechanisms, which could lead to regulatory penalties. The absence of a formal information security framework, incident response, and business continuity planning signals inadequate preparedness for cyber threats and disruptions. While email security and network security are relatively strong, foundational security practices in web server configuration and data protection require urgent improvement. Immediate remediation is necessary to protect sensitive data, ensure regulatory compliance, and maintain customer trust. Addressing these gaps will also align the organization with NIS2 requirements, reducing potential legal and operational risks. Without action, the website remains vulnerable to common web attacks, privacy violations, and service interruptions. Strengthening these areas will enhance overall resilience and competitive standing in the digital marketplace.

50
25
25
95
50
85
100
event managementvirtual eventshybrid eventsin-person eventsWebex+2 more
Google Tag ManagerjQueryBrightcove Video PlayerOwl Carousel+3

Partner Domains:

webex.com
partner70
webexone.com
partnerpending
2025-06-13T22:47:29.602Z
meraki.com favicon

Cisco Meraki

meraki.com

63
cloud-managed IT networkingUnited StatesenterpriseMEDIUM

The website security assessment reveals a concerning overall security posture, with no critical issues but multiple high and medium severity gaps primarily in security headers, GDPR compliance, and NIS2 regulatory requirements. The absence of key HTTP security headers such as Strict-Transport-Security, X-Frame-Options, and Content-Security-Policy exposes the site to common web attacks like clickjacking, cross-site scripting, and protocol downgrade attacks. GDPR compliance is significantly lacking, including no privacy or cookie policies and missing consent mechanisms, which risks regulatory fines and reputational damage. Furthermore, the absence of an information security framework, security policies, incident response procedures, and vulnerability disclosure mechanisms indicates immature security governance and preparedness. While email security, SSL/TLS, DNS health, and network security show relatively strong scores, foundational web security and compliance weaknesses present substantial business risks. Immediate remediation of compliance and security policy gaps will reduce legal exposure and enhance customer trust. Overall, the organization must prioritize establishing formal security frameworks and policies alongside implementing critical security headers and GDPR controls to strengthen its security and legal standing.

15
25
17
95
85
85
100
cloud-managed ITnetwork securityWi-Fi 6ECisco Merakienterprise networking+1 more
Yoast SEO PremiumWP RocketWooCommerceSitePress Multilingual CMS (WPML)+12

Partner Domains:

cisco.com
subsidiary72
2025-06-13T22:46:03.680Z