Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

0
Websites
0
Industries
0
Countries
0
Avg Score
Page 566 of 579|Showing 28251-28300 of 28909
F

Focolare Media

newcitypress.com

0
MediaN/asmallHIGH

New City Press Bookstore, operated under Focolare Media, is an online platform specializing in academic and spiritual books aimed at promoting unity and spirituality. The website offers a range of products including books, magazines, podcasts, and other resources, targeting readers interested in Christian living and spirituality. The business model is primarily e-commerce with additional subscription and donation services, positioning itself as a niche media and publishing entity within the non-profit sector. Technically, the website is built on Drupal 10 and hosted on Pantheon, leveraging modern web technologies and caching mechanisms. While the site demonstrates good mobile optimization, accessibility, and SEO practices, its performance is currently slow, and it lacks a valid SSL certificate, which critically impacts security and user trust. From a security perspective, the site has implemented some security headers but fails to provide HTTPS, lacks modern TLS protocols, and does not have a cookie consent mechanism despite using tracking tools like Google Tag Manager. These gaps expose the site to potential risks and reduce its compliance with privacy regulations such as GDPR. Overall, the website is functional and professionally presented but requires urgent improvements in SSL/TLS configuration and privacy compliance to enhance security posture and user trust. Strategic recommendations include obtaining a valid SSL certificate, enabling HTTPS, implementing cookie consent, and enhancing security headers and incident response capabilities.

50
18
5
70
-
85
100
spiritualityacademicbooksmediae-commerce+2 more
Drupal 10nginxGoogle Tag ManagerVarnish Cache+3

Partner Domains:

focolare.foundation
parentpending
simplecirc.com
partnerpending
2025-06-15T22:00:50.773Z
msc-technologies.eu favicon

Avnet Embedded

msc-technologies.eu

0
TechnologyN/alargeHIGH

Avnet Embedded is a division of Avnet, Inc., specializing in embedded computing, display, and software solutions for OEMs and businesses aiming to accelerate product time-to-market. The company positions itself as a world leader in embedded technology, offering a broad range of services including design, manufacturing, assembly, and software consultancy. Their business model leverages a strong partner ecosystem and in-house capabilities to deliver comprehensive embedded solutions. The website content is rich, professionally designed, and targets a global audience in the technology and manufacturing sectors. Technically, the website is built on WordPress with WooCommerce and several modern plugins such as Smart Slider 3 and Ultimate Member. The site uses Google Analytics and Google Tag Manager for tracking and marketing purposes. While the design and content quality are excellent, performance is slow, and there is a notable lack of valid SSL/TLS configuration, which impacts security and user trust. From a security perspective, the site implements several important HTTP security headers and cookie flags, but the absence of a valid SSL certificate and disabled TLS protocols represent critical vulnerabilities. Privacy compliance is strong, with comprehensive privacy and cookie policies and consent mechanisms in place, indicating good GDPR adherence. However, no explicit incident response or vulnerability disclosure policies were found. Overall, the site demonstrates a mature business presence with strong content and privacy practices but suffers from critical security configuration issues that should be addressed promptly to improve trust and protect users.

-
-
5
70
-
85
100
embeddedtechnologycomputedisplayssoftware+4 more
WordPressWooCommercejQueryBootstrap+7

Partner Domains:

tria-technologies.com
partnerpending
2025-06-15T22:00:41.506Z
S

sobaby.fr

sobaby.fr

0
OtherN/asmallHIGH

The domain sobaby.fr is currently a parked domain with no active website content or business presence. The site displays a minimal HTML page with a script loading from sedoparking.com, indicating it is monetized via domain parking services. There is no privacy policy, cookie policy, terms of service, or contact information available, which suggests no operational business behind the domain at this time. Technically, the site lacks HTTPS support and does not have any DNS A, AAAA, MX, or NS records configured, which further confirms the absence of an active web service. From a security perspective, the absence of an SSL/TLS certificate and HTTPS support is a critical vulnerability, exposing any potential visitors to risks if the site were to collect data. No security headers or best practices are implemented, and no incident response or vulnerability disclosure information is present. The domain's WHOIS data shows it is registered but lacks DNS configuration, which is inconsistent with a legitimate active business website. Overall, the site scores very low on content quality, technical implementation, security posture, privacy compliance, and business credibility. It is essentially a placeholder domain with no meaningful content or security measures. Strategic recommendations include obtaining a valid SSL certificate, configuring DNS properly, developing actual website content with clear business information, and implementing privacy and security policies to improve trust and compliance.

-
-
-
50
-
50
100
parkingdomainplaceholdersedoparking
JavaScript
2025-06-15T22:00:41.207Z
M

martinspitzer.de

martinspitzer.de

0
OtherN/asmallCRITICAL

The website martinspitzer.de currently serves as a placeholder page indicating that the domain is not yet assigned or is in the process of assignment. There is no business-related content, contact information, or policies present on the site. The domain lacks DNS configuration and does not have a valid SSL/TLS certificate, resulting in no HTTPS support. The site links only to the hosting provider's help center and customer control panel, suggesting it is inactive or newly registered. From a technical perspective, the site is hosted on an nginx server but lacks modern web technologies, security headers, and performance optimizations. The absence of DNS records and SSL certificate severely limits the site's security posture and trustworthiness. No analytics, tracking, or marketing tools are detected, and there are no forms or data collection mechanisms. Security evaluation reveals critical issues including no HTTPS, no DNSSEC, no HSTS, and no security policies or incident response information. The domain registration details are incomplete or unavailable, further reducing confidence in legitimacy. Overall, the site is not operational as a business or service platform and presents a low security and compliance posture. Strategic recommendations include obtaining and configuring DNS records, securing the domain with a valid SSL certificate, implementing security headers and policies, and developing meaningful content and business information to improve trust and compliance.

-
-
5
50
-
50
20
placeholderdomainnotassignedinactivenosslnodns+1 more
nginx
2025-06-15T22:00:39.093Z
nightbluetheater.com favicon

Celebrating Diversity Through Global Artistry | nightbluetheater.com

nightbluetheater.com

0
OtherN/asmallHIGH

Nightbluetheater.com is a small-scale content platform focused on celebrating diversity through global artistry, covering topics such as photography, graphic design, literature, audio, and event organization. The website targets art enthusiasts and creative professionals seeking insights and inspiration in these fields. The business model appears to be informational publishing without evident e-commerce or direct service offerings. Technically, the site uses a basic nginx server and Bootstrap 5 for responsive design. However, it lacks HTTPS support, serving content over unsecured HTTP, which significantly impacts security and trust. Performance metrics are unavailable or incomplete, but the site is mobile optimized and has a clear navigation structure. From a security perspective, the absence of SSL/TLS, security headers, and privacy policies presents critical vulnerabilities and compliance gaps. No contact emails or phone numbers are provided, limiting user trust and communication channels. The domain registration is consistent and legitimate but lacks advanced DNS security features like DNSSEC or CAA. Overall, the website requires urgent improvements in security posture, privacy compliance, and business credibility to enhance user trust and protect data. Strategic recommendations include implementing HTTPS, adding privacy and cookie policies, and providing clear contact information.

15
15
5
50
-
85
-
artphotographygraphicsliteratureaudio+3 more
nginxBootstrap 5.0.2Bootstrap
2025-06-15T21:59:41.444Z
S

Site Offline

tvginsights.com

0
OtherN/asmallHIGH

The website tvginsights.com is currently offline and displays only a minimal placeholder page indicating it has been disabled for technical reasons. There is no accessible content, metadata, or business information available on the site. The domain is registered and uses Sherweb for DNS and mail services, but no SSL certificate is installed, and HTTPS is not supported. This results in a poor security posture and low trustworthiness. No privacy, cookie, or terms of service policies are present, and no contact information or forms are available. Overall, the site lacks any meaningful digital presence or business information, severely limiting its utility and credibility. From a technical perspective, the site runs on an Apache server but lacks modern security configurations such as TLS protocols, HSTS, and OCSP stapling. Performance metrics are unavailable due to the offline status. No analytics or tracking technologies are detected, and no external business or social media links are present except for a single external image resource. Security evaluation reveals critical issues including the absence of HTTPS and SSL certificates, no security headers, and no vulnerability mitigations. The domain registration appears consistent but the lack of active content and security measures significantly reduces the domain's legitimacy score. The overall risk is high due to the offline status and missing security controls. Strategic recommendations include immediate restoration of website content, implementation of a valid SSL certificate, enabling HTTPS, and adoption of security best practices. Additionally, publishing privacy and cookie policies, contact information, and business details would improve trust and compliance. Until these improvements are made, the site remains non-functional and insecure.

15
15
-
70
-
75
100
Apache
2025-06-15T21:59:16.751Z
F

Fehler 404 - Seite nicht gefunden

go-for-more.com

0
OtherN/asmallCRITICAL

The website go-for-more.com currently serves only a 404 error page indicating that the requested content is not found or temporarily unavailable. There is no visible business information, contact details, or policies presented on the site. The domain is registered and DNS records point to a hosting provider (agenturserver.de), but the site lacks a valid SSL certificate and does not support HTTPS, which is a critical security deficiency. The technical infrastructure is minimal, with Apache server headers and no modern TLS protocols enabled. Overall, the website is not operational as a business or informational portal at this time. From a technical perspective, the site shows no performance data and no SEO or accessibility features. The lack of SSL and security headers exposes the site to risks and reduces trustworthiness. No privacy or cookie policies are present, indicating non-compliance with GDPR and related regulations. No contact or business information is available, limiting the ability to assess the company's legitimacy or market position. Security posture is poor due to missing HTTPS and lack of security best practices. There are no indications of incident response readiness or certifications. The domain registration appears consistent but provides no further insights. Given the absence of content and security controls, the site poses a high risk for users and does not meet basic standards for a professional web presence. Strategic recommendations include obtaining and configuring a valid SSL certificate, developing a functional website with clear business information and policies, implementing security headers and modern TLS protocols, and ensuring compliance with privacy regulations. These steps are essential to improve trust, security, and user experience.

15
15
5
70
-
85
-
404errornotfoundbasicincomplete
Apache
2025-06-15T21:57:52.928Z
mwfai.org favicon

Mobile & Wireless Forum

mwfai.org

0
TelecommunicationsN/asmallCRITICAL

The Mobile & Wireless Forum is an international association focused on mobile and wireless communications, including emerging technologies such as 5G and the Internet of Things. It operates as a membership organization providing resources, publications, events, and advocacy on key industry issues like accessibility, electromagnetic field health, SAR compliance, counterfeit devices, and e-labelling. The website serves as a hub linking to multiple related sites and social media channels, targeting companies and professionals in the telecommunications sector. Technically, the website is built on a Microsoft IIS 10.0 server using ASP.NET and ColdFusion technology. It employs common JavaScript libraries such as jQuery and jQuery UI and uses a responsive navigation plugin (SlickNav). Hosting is provided by Hostek. However, the site lacks HTTPS support and modern TLS protocols, which is a critical security shortfall. Performance metrics are not available, but the site shows basic mobile optimization and accessibility features. From a security perspective, the absence of a valid SSL certificate and HTTPS is the most significant vulnerability, severely impacting the site's security posture. Other security best practices such as HSTS, OCSP stapling, and modern cipher suites are missing. The site does implement HttpOnly and Secure flags on cookies and has a visible cookie consent mechanism aligned with GDPR compliance. No explicit security policies, incident response contacts, or vulnerability disclosure mechanisms are published. Overall, the site is functional and provides relevant content with good navigation and professional design. However, the lack of HTTPS and modern security configurations poses a risk to user data and trust. Strategic improvements in security infrastructure and transparency would enhance the site's credibility and compliance standing.

15
18
-
50
-
85
20
mobilewirelessforum5giot+6 more
Microsoft IIS 10.0ASP.NETjQueryjQuery UI+2
2025-06-15T21:57:31.913Z
L

ledworx.com

ledworx.com

0
OtherN/asmallHIGH

The website ledworx.com currently serves minimal content, consisting solely of a client-side redirect to a /lander path. There is no substantive business information, metadata, or user-facing content available. The domain is registered and resolves to two IP addresses hosted on Amazon AWS infrastructure, but lacks a valid SSL certificate and does not support HTTPS, which severely limits trust and security. No contact information, privacy policies, or terms of service are present, indicating a very low level of digital maturity and compliance. From a technical perspective, the site is underdeveloped with no detectable CMS, frameworks, or analytics tools. The absence of security headers, DNSSEC, and a valid SSL certificate exposes the site to potential security risks and undermines user trust. The SPF record is configured strictly but without MX records, which may cause email delivery issues if email services are intended. Security posture is weak due to lack of HTTPS and security best practices. No incident response or vulnerability disclosure mechanisms are found. The domain registration appears consistent but provides no additional trust signals. Overall, the site is not suitable for business operations in its current state and requires significant improvements in security, content, and compliance to be viable. Strategic recommendations include obtaining and configuring a valid SSL certificate, implementing security headers and DNSSEC, developing substantive website content including privacy and cookie policies, and establishing clear contact and business information to improve credibility and compliance.

-
-
-
50
-
85
100
2025-06-15T21:57:18.076Z
S

Spencer Stuart

spencerstuartportal.com

0
OtherN/aenterpriseHIGH

The Spencer Stuart Portal website serves as a client or internal portal for Spencer Stuart, a global executive search and leadership advisory firm. The site is minimalistic, primarily acting as a loading or shell page that dynamically loads resources and scripts from local bundles and external services such as Pendo for analytics. The business focus is on executive search and leadership consulting, targeting enterprise clients and internal users. The portal likely supports client engagement and administrative functions rather than public marketing. Technically, the site is hosted on Amazon S3 with CloudFront CDN, leveraging AngularJS framework and JavaScript for dynamic content loading. However, the site lacks a valid SSL certificate and does not support HTTPS, which is a critical security deficiency. The absence of modern TLS protocols, security headers, and privacy policies further weakens the security posture. Performance data is unavailable, but the site appears slow and basic in design and user experience. Security evaluation reveals no WAF or blocking mechanisms, but the lack of HTTPS and security best practices exposes the site to risks. No privacy or cookie policies are present, and no contact or legal information is provided, limiting trust and compliance. Pendo analytics is integrated, indicating moderate user tracking without visible privacy compliance measures. Overall, the site is functional as a portal shell but requires urgent improvements in security, privacy compliance, and content completeness to meet enterprise standards and user trust expectations.

15
40
17
50
-
85
100
portalexecutivesearchleadershipadvisoryenterpriseaws+1 more
JavaScriptAmazon S3CloudFrontPendo Analytics+2
2025-06-15T21:57:12.151Z