Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

0
Websites
0
Industries
0
Countries
0
Avg Score
Page 565 of 579|Showing 28201-28250 of 28928
eas.org favicon

Eastern Analytical Symposium

eas.org

0
EducationN/amediumCRITICAL

The Eastern Analytical Symposium website serves as an informational platform for a non-profit organization dedicated to the analytical chemistry community. It provides details about symposium events, awards, exhibitor information, and educational opportunities. The site targets professionals, researchers, exhibitors, and students interested in analytical chemistry. The business model revolves around hosting annual symposiums, exhibitions, and educational short courses, supported by sponsorships and exhibitor participation. The website demonstrates consistent branding and good content relevance, with a professional design and clear navigation structure. Technically, the site is built on WordPress 6.6.2 with several plugins including Yoast SEO and Kadence Blocks, hosted on a LiteSpeed server. While the site is mobile-optimized and SEO-friendly, performance metrics are unavailable, and some accessibility features are basic. The absence of a valid SSL certificate and HTTPS support is a critical security shortfall, limiting secure user interactions and trust. From a security perspective, the site lacks HTTPS, modern TLS protocols, and essential security headers. No privacy or cookie policies are present, and no direct contact information such as emails or phone numbers are provided, which impacts privacy compliance and user trust. Analytics usage is minimal, relying on StatCounter, with no evident advanced tracking or retargeting. Overall, the site is functional and informative but requires urgent improvements in security, privacy compliance, and contact transparency to enhance trustworthiness and protect user data. Strategic recommendations include implementing HTTPS, publishing privacy and cookie policies, and providing clear contact details to improve compliance and user confidence.

15
15
-
50
-
50
20
educationsymposiumanalyticalchemistrynon-profitevents
WordPress 6.6.2Yoast SEO pluginKadence BlocksjQuery 3.7.1+5
2025-06-15T22:12:51.062Z
ableneo.com favicon

Ableneo

ableneo.com

0
TechnologyN/amediumHIGH

Ableneo is a medium-sized technology and transformation partner specializing in bridging business consulting with software engineering to support startups, scaleups, and corporates in driving innovation and growth. The company offers key services including AI & Data enabling, Business Optimization & Efficiency, Product Design & Development, and Software Engineering. With over 80 team members, multiple offices worldwide, and a client base exceeding 50, Ableneo positions itself as a trusted partner in the technology consulting space. Technically, the website is built on WordPress with modern plugins such as Yoast SEO, Contact Form 7, and Complianz GDPR for compliance. The hosting infrastructure appears to be on AWS, and the site uses various frontend technologies including Bootstrap, Swiper.js, and Lottie animations. SEO and mobile optimization are well implemented, though performance metrics indicate slow loading times. From a security perspective, the site lacks a valid SSL certificate and does not support any TLS protocols, which is a critical vulnerability. No advanced security headers or incident response policies are present. However, email authentication via SPF is configured, and no known SSL vulnerabilities like Heartbleed or POODLE are detected. Privacy compliance is strong with GDPR-aligned cookie consent and privacy policies. Overall, the website is professional and content-rich, but the absence of HTTPS significantly impacts its security posture and trustworthiness. Strategic improvements in SSL/TLS deployment and security headers are essential to enhance protection and user confidence.

15
18
5
50
-
85
85
technologyaisoftwareengineeringbusinesstransformationconsulting+2 more
WordPressYoast SEO pluginContact Form 7Complianz GDPR plugin+6
2025-06-15T22:12:50.549Z
A

Apache2 Debian Default Page: It works

suitebox.com

0
OtherN/asmallCRITICAL

The website suitebox.com currently serves only the default Apache2 Debian welcome page, indicating that no active business content or services are deployed. The domain is registered but lacks DNS records and SSL/TLS configuration, resulting in an unsecured HTTP-only site with minimal technical setup. There are no privacy, cookie, or terms of service policies, nor any contact or business information available on the site. This suggests the domain is either unused, under maintenance, or abandoned. From a technical perspective, the site runs on Apache 2.4.59 on Debian Linux but lacks modern web technologies, performance optimizations, or mobile responsiveness. The absence of DNS A and MX records and SSL certificate severely impacts security and trustworthiness. No security headers or best practices are implemented, exposing the site to potential risks if content were added. Security posture is poor with critical issues including no HTTPS, no DNS configuration, and no security policies. The lack of business information and trust indicators further reduces credibility. Overall, the site is not suitable for business operations in its current state and requires significant improvements to meet basic security, privacy, and usability standards. Strategic recommendations include installing a valid SSL certificate, configuring DNS records properly, replacing the default page with actual business content, implementing privacy and cookie policies, and adding security headers to improve protection and trust.

15
15
-
50
-
50
40
defaultpageapachedebiannocontentnossl+1 more
Apache 2.4.59Debian LinuxLinux
2025-06-15T22:12:01.201Z
E

eeas.eu

eeas.eu

0
OtherN/asmallCRITICAL

The website eeas.eu presents minimal content primarily focused on language selection and login instructions, with no substantive business or organizational information. The site appears outdated, with the last modification dating back to 2011, and lacks modern web standards and security practices. Technically, the site is served by Apache on Unix, but it lacks HTTPS support and modern TLS protocols, exposing it to security risks. No privacy, cookie, or terms of service policies are present, and no contact or business information is provided, which severely limits trust and credibility. Overall, the site appears to be a placeholder or demo rather than an active business platform. From a security perspective, the absence of a valid SSL certificate and HTTPS support is a critical vulnerability. The lack of security headers and modern encryption protocols further weakens the site's security posture. No incident response or vulnerability disclosure mechanisms are evident. The DNS configuration is standard with no DNSSEC or CAA records, and no subdomain takeover vulnerabilities were detected. Given these findings, the website poses significant risks in terms of security and compliance. It lacks essential privacy and security controls, and its minimal content and lack of business information reduce its credibility. Strategic improvements are necessary to establish a secure, trustworthy, and compliant online presence.

-
-
-
50
-
85
20
languageselectionlogininstructionsdemooutdatedinsecure
Apache/2.4.63HTML 4.01 TransitionalCSS
2025-06-15T22:11:41.368Z
B

Burger King

bk.com

0
RetailN/aenterpriseHIGH

Burger King's website at bk.com presents a minimalistic digital presence primarily built using modern web technologies such as React Native Web and Expo Router, hosted on AWS infrastructure with CloudFront CDN. The site includes a cookie consent mechanism via OneTrust, indicating some level of privacy compliance effort. However, the website lacks visible content such as privacy policies, terms of service, or contact information, which limits user trust and transparency. From a security perspective, the site is undermined by the absence of a valid SSL certificate and HTTPS support, exposing users to potential risks. While security headers are properly configured, the lack of encryption and presence of a subdomain takeover vulnerability on dev.bk.com represent significant security concerns. The DNS and WHOIS data indicate legitimate domain registration consistent with the brand, but the subdomain issue requires urgent remediation. Overall, the website's technical infrastructure is modern but incomplete in critical areas such as security and content completeness. The lack of essential legal and contact information, combined with security vulnerabilities, results in a moderate to low trust level. Strategic improvements in SSL deployment, vulnerability mitigation, and content enrichment are necessary to enhance security posture and user confidence.

-
-
-
50
-
65
100
fastfoodburgerrestaurantreact-native-webexpo-router+3 more
React Native WebExpo RouterAmazon S3CloudFront+3
2025-06-15T22:11:08.287Z
pelstudio.com favicon

Pel

pelstudio.com

0
TechnologyN/asmallHIGH

Pel is a small, bicoastal creative collective specializing in digital design services including website creation, branding, online advertising, mobile applications, and digital video. The company targets businesses seeking high-quality digital creative solutions and positions itself as a niche player with a focus on design excellence and interactivity. The website content is professional and consistent with the brand identity, featuring an interactive pixel-catching game as a unique user engagement element. Technically, the website runs on an Apache server with PHP 8.2 and uses jQuery 3.3.1 along with Google Fonts and Google Analytics. However, the site lacks a valid SSL certificate, serving content over HTTP only, and DNS records are missing, which raises concerns about domain configuration and reliability. Performance data is incomplete but suggests slow loading. Mobile optimization and accessibility are basic but functional. From a security perspective, the absence of HTTPS and missing DNS records are critical vulnerabilities that significantly reduce the site's trustworthiness. No privacy, cookie, or terms of service policies are present, and no incident response or security frameworks are disclosed. Google Analytics is used for tracking, but no cookie consent mechanism is implemented, indicating poor privacy compliance. Overall, while the business content and branding are solid, the technical and security shortcomings present risks to user trust and data protection. Strategic improvements in SSL deployment, DNS configuration, and privacy compliance are essential to enhance the site's credibility and security posture.

-
-
-
50
-
50
40
creativeagencydigitaldesignbrandingwebdevelopmentinteractive+1 more
Apache 2.4.62PHP 8.2.28OpenSSL 3.2.2jQuery 3.3.1+2
2025-06-15T22:07:58.279Z