Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157327
Websites
130
Industries
113
Countries
52
Avg Score
Page 994 of 1003|Showing 49651-49700 of 50115
dreamcatcher.mc favicon

DreamCatcher

dreamcatcher.mc

61
Destination Management and EntertainmentMonacosmallMEDIUM

The website demonstrates notable security weaknesses primarily in its HTTP security headers, GDPR compliance, and adherence to the NIS2 cybersecurity framework, resulting in a low overall security posture in these critical areas. While there are no critical vulnerabilities detected, multiple high and medium severity issues expose the business to risks such as data breaches, regulatory fines, reputational damage, and operational disruptions. The absence of essential security headers like Strict-Transport-Security and Content-Security-Policy increases susceptibility to man-in-the-middle and cross-site scripting attacks. Non-compliance with GDPR requirements, including missing privacy and cookie policies and lack of a consent banner, elevates legal risk and undermines customer trust. Deficiencies in NIS2-related documentation and procedures reflect inadequate organizational readiness for incident response and business continuity. Conversely, strong network security and good email, SSL/TLS, and DNS configurations provide a solid foundation to build upon. Addressing these gaps promptly will significantly improve security resilience, regulatory compliance, and stakeholder confidence.

15
25
25
85
85
85
100
Destination ManagementEntertainment AgencyMonacoLuxuryTailor-made experiences
WordPress 6.4.2jQuery 3.7.1Avada Theme 3.11.3Apache+3

Partner Domains:

meb.mc
partner65
monaco-welcome.mc
partnerpending
2025-06-13T18:10:48.994Z
johnsoncontrols.com favicon

Johnson Controls

johnsoncontrols.com

68
Building Automation and ControlsUnited StatesenterpriseMEDIUM

The website demonstrates a moderate security posture with no critical vulnerabilities found; however, several high and medium-risk issues significantly impact compliance and risk management. Key deficiencies exist in GDPR compliance, including the absence of privacy and cookie policies and lack of user consent mechanisms, exposing the business to regulatory penalties and reputational damage. The absence of a documented information security framework, incident response procedures, and security policies under NIS2 guidance further increases organizational risk and may hinder regulatory adherence. Security headers are inconsistently implemented, reducing protection against common web threats like XSS and content sniffing. SSL/TLS configurations are generally strong but require timely certificate renewal and elimination of mixed content to maintain secure communications. DNS settings are mostly healthy but can be improved by enabling DNSSEC to prevent domain spoofing. Positively, email and network security postures are robust, mitigating some external attack vectors. Overall, urgent attention to compliance and governance-related controls is critical to safeguard the business and maintain trust with users and regulators.

60
25
25
100
80
85
100
OpenBlueArtificial IntelligenceHealthy BuildingsAI in Building ManagementNet Zero Buildings+4 more
jQueryBootstrap 4Coveo SearchGoogle Maps API+15
2025-06-13T18:10:48.990Z
carolineolds.com favicon

Caroline Olds Real Estate

carolineolds.com

68
real estateMonacosmallMEDIUM

The website demonstrates a concerning security posture with no critical issues but multiple high and medium risk vulnerabilities, primarily related to missing security headers, insufficient GDPR compliance, and lack of key NIS2 security frameworks. The absence of crucial HTTP security headers such as Strict-Transport-Security and Content-Security-Policy exposes the site to man-in-the-middle attacks, clickjacking, and cross-site scripting risks. GDPR non-compliance, including the lack of a cookie consent banner and incomplete privacy policies, poses legal and reputational risks, especially in jurisdictions enforcing data protection laws. Additionally, the site lacks documented security policies, incident response plans, and business continuity procedures required under the NIS2 directive, increasing operational risk and regulatory exposure. SSL/TLS configurations are suboptimal, with weak key lengths and impending certificate expiry risking data confidentiality and trust. DNS security is moderate but could be strengthened by enabling DNSSEC and configuring CAA records. While email and network security appear robust, the overall low scores in security headers and NIS2 compliance indicate urgent remediation is necessary to protect business assets and maintain customer trust.

20
58
25
100
60
85
100
real estateMonacoproperty salesproperty rentalsnew developments+2 more
WordPressGravity FormsYoast SEOWP Rocket+11

Partner Domains:

chambre-immobiliere-monaco.mc
partnerpending
2025-06-13T18:10:48.989Z
aether-uk.com favicon

Aether Ltd

aether-uk.com

66
environmental consultingUnited KingdomsmallMEDIUM

The website exhibits a moderate to weak overall security posture, with no critical vulnerabilities but several high and medium-risk issues that could expose the organization to data breaches, regulatory non-compliance, and operational disruptions. Major gaps exist in security header configurations, GDPR compliance, and adherence to NIS2 cybersecurity framework requirements. The absence of essential headers like Strict-Transport-Security and Content-Security-Policy increases the risk of man-in-the-middle and cross-site scripting attacks. GDPR-related deficiencies, including missing cookie policies and consent mechanisms, expose the business to potential legal penalties and reputational damage. The lack of documented security policies, incident response plans, and business continuity strategies severely undermines the organization’s preparedness against cyber incidents. SSL/TLS, email security, and DNS health show relatively strong scores, providing a solid foundation for encrypted communications and domain integrity. Immediate remediation of high-impact vulnerabilities combined with establishing governance frameworks will significantly enhance security resilience and regulatory compliance. Ongoing monitoring and periodic reassessments are recommended to maintain and improve security posture over time.

35
43
17
85
85
85
100
environmental consultinggreenhouse gasair qualityemissionsclimate change+3 more
Google AnalyticsjQueryAjaxControlToolkitTypekit+6
2025-06-13T18:10:48.951Z
safinco.com favicon

SAFINCO

safinco.com

60
property management and legal servicesSpainmediumMEDIUM

The website's overall security posture reveals significant gaps, particularly in governance, privacy compliance, and essential security headers, exposing the business to regulatory risks and potential cyber threats. While there are no critical vulnerabilities, the presence of 11 high and 9 medium severity issues highlights urgent areas for remediation. Notably, missing privacy policies and consent mechanisms put the organization at risk of GDPR non-compliance, which could lead to costly fines and reputational damage. The absence of a formal information security framework, incident response procedures, and security policies under NIS2 requirements further exposes the business to operational disruptions and regulatory scrutiny. Security headers are inadequately configured, increasing exposure to web-based attacks like clickjacking and cross-site scripting. Additionally, the exposure of an FTP service represents a high-risk attack vector that could enable unauthorized access or data leakage. Overall, this assessment underscores the need for immediate governance improvements, privacy compliance actions, and technical hardening to safeguard the business and its customers.

35
25
17
80
87
85
85
property managementlegal servicesarchitectureSevillaadministradores de fincas+2 more
jQueryBootstrapFontAwesomeGoogle Analytics+4

Partner Domains:

megafincas-sevilla.com
partnerpending
tucomunidad.com
partnerpending
2025-06-13T18:10:48.927Z