Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

0
Websites
0
Industries
0
Countries
0
Avg Score
Page 8 of 8|Showing 351-390 of 390
tailor.co favicon

Tailor

tailor.co

0
TechnologyNew ZealandsmallHIGH

Tailor is a New Zealand-based technology consultancy specializing in providing virtual Chief Technology Officer (vCTO) services to medium-sized businesses. Their focus is on delivering independent, people-centered technology strategy and implementation advice tailored to the unique needs of each client. The company positions itself as a trusted advisor helping businesses make technology decisions that fit their specific context and growth goals. The website content is professionally presented and clearly communicates the business model and key services, targeting forward-thinking New Zealand businesses seeking technology leadership without a full-time CTO. Technically, the website uses a modern but basic technology stack including jQuery, Google Analytics, Google Tag Manager, and Typekit fonts. The site appears moderately optimized for mobile and performance but lacks advanced SEO and accessibility features. No CMS or hosting provider details are evident. The site does not implement HTTPS enforcement or security headers based on the provided data, which is a significant security gap. From a security perspective, the site does not expose sensitive data or have visible vulnerabilities but lacks critical security best practices such as HTTPS, security headers, and privacy/cookie policies. There is no evidence of incident response or vulnerability disclosure policies. The use of multiple tracking scripts without cookie consent indicates poor privacy compliance. Contact information is clearly provided, but no social media or additional trust signals are present. Overall, the website is functional and professional but requires urgent improvements in security posture and privacy compliance to reduce risk and build trust. Strategic recommendations include implementing HTTPS, adding security headers, publishing privacy and cookie policies, and introducing a cookie consent mechanism to align with GDPR and best practices.

15
10
5
85
-
45
-
technologyconsultancyvctonewzealandbusinessservices
jQuery 3.3.1Google Analytics (gtag.js)Google Tag ManagerTypekit fonts
2025-06-21T18:21:57.832Z
F

Fisher & Paykel Healthcare

fphcare.com

0
HealthcareNew ZealandlargeMEDIUM

Fisher & Paykel Healthcare is a well-established global leader in the design, manufacture, and marketing of respiratory care, acute care surgery, and sleep apnea treatment products. The website reflects a mature business with a strong market position, targeting healthcare professionals, patients, and investors. Their product portfolio includes advanced respiratory humidification systems, PAP masks, and surgical technologies. The company emphasizes innovation and education through dedicated resources and global regional sites. Technically, the website is built on the Kentico CMS platform, leveraging modern JavaScript libraries and analytics tools such as Google Tag Manager, Azure Application Insights, and Hotjar. The site is mobile-optimized and demonstrates good SEO and accessibility practices. Security posture is strong with HTTPS enforcement, security headers, and no visible vulnerabilities. Privacy compliance is evident with a comprehensive privacy policy and cookie consent mechanism. However, explicit terms of service and incident response contacts are not found, representing areas for improvement. Overall, the website is professional, trustworthy, and aligns well with the company's business stature.

35
48
-
85
-
85
100
healthcaremedicaldevicesrespiratorycaresleepapneamedicaltechnology+3 more
JavaScriptjQueryGoogle Tag ManagerFacebook Pixel+5

Partner Domains:

careers.fphcare.com
subsidiary
education-hub.fphcare.com
subsidiary
2025-06-18T08:55:53.205Z
houzz.co.nz favicon

Houzz

houzz.co.nz

0
Real EstateNew ZealandlargeMEDIUM

Houzz is a leading online platform that serves both construction and design professionals as well as homeowners seeking inspiration and services for home renovation and design. The website offers a comprehensive suite of tools including professional directories, project showcases, and software solutions tailored for the construction and design industry. The platform maintains a strong market position with a large global presence and consistent branding across multiple regional domains. Technically, the site employs modern web technologies such as JavaScript frameworks, CDN hosting, and integrates with third-party services like Salesforce and Calendly to enhance user engagement and operational efficiency. Security measures are robust, with HTTPS enforcement, security headers, and CSRF protections in place, although no explicit public security policy or incident response information is found. Privacy compliance is well addressed with clear privacy and cookie policies, including consent mechanisms aligned with GDPR requirements. Overall, the website demonstrates a high level of professionalism, technical maturity, and business credibility, making it a trustworthy platform for its target audience.

85
35
25
-
-
85
100
homedesignrenovationarchitectureinteriordesignprofessionalservices+1 more
JavaScriptjQuery 3.1.1Vimeo video playerGoogle Identity Services+2

Partner Domains:

houzz.com
partner
houzz.co.uk
partner

+1 more partners

2025-06-18T00:41:00.201Z
4design.co favicon

4DESIGN

4design.co

0
ManufacturingNew ZealandsmallHIGH

4DESIGN is a New Zealand-based industrial design and product development consultancy specializing in creating innovative and award-winning products for a diverse clientele including companies, startups, and individuals. The company offers a broad range of services such as industrial design, engineering, prototyping, UI/UX design, manufacturing, and 3D printing. Their market position is strong within the manufacturing and technology sectors, supported by multiple awards and recognized certifications. The website reflects a professional and consistent brand image with excellent content quality and clear navigation, targeting clients seeking high-quality design consultancy services. Technically, the website is built on WordPress and leverages common technologies including Apache server, jQuery, Google Analytics, and various plugins for SEO and social media integration. Hosting is provided by InMotion Hosting. However, the website lacks HTTPS, which is a critical security shortfall. Performance is moderate with good mobile optimization and basic accessibility features. SEO is well implemented with comprehensive metadata and structured data. From a security perspective, the absence of a valid SSL certificate and HTTPS support significantly lowers the security posture. No advanced security headers or incident response policies are evident. Privacy compliance is partial with a privacy policy present but no cookie consent mechanism or terms of service found. Contact information is clearly provided, enhancing business credibility. Overall, the website is professional and credible but requires urgent security improvements, particularly enabling HTTPS and enhancing privacy compliance to meet modern standards. Strategic recommendations include installing SSL, enabling security headers, and implementing cookie consent mechanisms to improve trust and compliance.

-
-
-
50
-
85
-
industrialdesignproductdevelopmentnewzealandconsultancyaward-winning+5 more
ApacheGoogle AnalyticsjQueryFont Awesome+8

Partner Domains:

4design.com.au
partnerpending
2025-06-15T22:11:03.140Z
taitradio.com favicon

Tait Communications

taitradio.com

0
TelecommunicationsNew ZealandenterpriseHIGH

Tait Communications is a mature and established enterprise specializing in critical communication solutions for public safety, transportation, and utility sectors. With over 50 years of experience and a global presence headquartered in New Zealand, the company offers a comprehensive portfolio of products including broadband radios, P25 and DMR radios, network management software, and professional services such as implementation and training. The website reflects a professional and consistent brand image with rich content tailored to mission-critical communication users. Technically, the website is built on the HubSpot CMS platform, leveraging modern JavaScript libraries such as Splide.js and Swiper.js for interactive elements, and integrates Google Analytics 4 and Google Tag Manager for analytics and marketing. Hosting and CDN services are provided by Cloudflare, enhancing availability and security. However, the site currently lacks a valid SSL certificate and proper HTTPS configuration, which is a critical security concern. Security posture is weakened by the absence of valid TLS protocols and session resumption features, although some security headers like HSTS and Content Security Policy are present. Privacy compliance is supported by a comprehensive privacy policy and terms of service, but the lack of a cookie consent mechanism is a gap given the use of tracking technologies. Contact information is clearly provided with physical addresses and phone numbers, and social media presence is active on major platforms. Overall, while the business and content quality are excellent, the security deficiencies notably the missing SSL certificate, reduce the trustworthiness and security score. Strategic remediation of SSL and HTTPS issues, along with enhanced privacy controls, will significantly improve the website's security and compliance posture.

55
-
5
50
-
80
100
criticalcommunicationspublicsafetytransportationutilitybroadband+5 more
HubSpot CMSjQuery 1.7.1Splide.jsSwiper.js+4
2025-06-15T21:55:31.497Z
theprojectoffice.co.nz favicon

Rubix

theprojectoffice.co.nz

0
OtherNew ZealandmediumHIGH

Rubix is a New Zealand-based national independent project management consultancy specializing in unlocking project potential across diverse sectors including education, infrastructure, commercial, and sustainability. The company offers comprehensive services from strategic planning through to project delivery, emphasizing sustainable design and construction practices. Their market position is supported by a mature domain and a broad portfolio of projects across New Zealand. Technically, the website is built on Craft CMS and served via nginx with Cloudflare DNS. However, the absence of a valid SSL certificate and HTTPS support is a critical security shortfall. The site uses Google Tag Manager for analytics but lacks privacy and cookie policies, which impacts privacy compliance. Performance metrics indicate slow DNS resolution, and no advanced security headers or mechanisms are implemented. Security posture is weak due to missing HTTPS, lack of HSTS, and no security headers, exposing users to potential risks. The WHOIS data confirms a consistent and legitimate registration with a mature domain age, though the lack of domain protection locks is noted. Contact information is comprehensive with multiple regional offices, enhancing business credibility. Overall, the website demonstrates good business and content quality but requires urgent security improvements to protect users and enhance trust. Privacy compliance is minimal, and adding policies and consent mechanisms is recommended.

15
-
5
70
-
70
40
projectmanagementconsultancyconstructionsustainabilityeducation+2 more
nginxCraft CMSGoogle Tag Manager
2025-06-15T21:49:12.282Z
mxdeposit.net favicon

Seequent

mxdeposit.net

0
EnergyNew ZealandlargeMEDIUM

Seequent is a New Zealand-based company specializing in geological and geotechnical data management solutions, with a strong focus on the mining and energy sectors. Their flagship product, MX Deposit, is a cloud-based platform designed to streamline the collection, management, and sharing of drillhole and sample data. The company operates under the parent company Bentley Systems, leveraging a subscription-based SaaS model with multiple user plans to cater to different operational needs. The website demonstrates a high level of professionalism, clear content structure, and consistent branding, targeting professionals in mining, exploration, and geotechnical fields. Technically, the website is built on WordPress with extensive use of modern JavaScript libraries and performance optimization tools such as NitroPack. It integrates several marketing and analytics tools including Segment, Marketo, and Google Tag Manager, indicating a mature digital marketing strategy. However, the primary domain mxdeposit.net lacks a valid SSL certificate and modern TLS support, which is a critical security concern. The main content and corporate information reside on seequent.com, which appears to be better maintained. From a security perspective, the site has implemented strict SPF and DMARC policies, but lacks essential SSL/TLS configurations, HSTS, and DNSSEC, exposing it to potential risks. No explicit security or incident response policies are found, which could be a gap in transparency and readiness. The presence of comprehensive privacy and terms of service pages indicates good compliance posture, including GDPR considerations. Overall, Seequent's MX Deposit website is a well-structured, content-rich platform with strong business and marketing foundations but requires urgent improvements in its security infrastructure to protect user data and enhance trust. Strategic recommendations include immediate SSL deployment, enabling modern security protocols, and publishing clear security and incident response policies.

50
25
25
50
100
70
100
geologydatamanagementminingclouddrillholedata+5 more
WordPressWPBakery Page BuilderNitroPackjQuery+11

Partner Domains:

bentley.com
parent65
2025-06-14T18:46:19.182Z
rednoseday.co.nz favicon

Cure Kids

rednoseday.co.nz

0
Charity / Non-profitNew ZealandmediumMEDIUM

The website demonstrates a moderate overall security posture with no critical issues detected; however, there are multiple high and medium severity gaps that present significant risk to business operations and compliance. Key vulnerabilities include lack of foundational security headers and insufficient email authentication, which increase exposure to web-based attacks and phishing risks. Compliance with GDPR and NIS2 regulations is notably weak, with missing cookie consent mechanisms, security policies, and incident response procedures that could lead to regulatory penalties and reputational damage. While network and DNS security are relatively strong, the absence of core security policies and frameworks undermines the organization's resilience against cyber threats. Immediate remediation is critical to protect sensitive customer data, ensure regulatory compliance, and maintain business continuity. Addressing these issues will also improve customer trust and reduce the likelihood of data breaches. Prioritizing security governance and visibility should be central to the remediation roadmap. Overall, the organization must advance beyond technical fixes to establish a robust security culture aligned with regulatory expectations.

65
43
25
65
87
85
100
charityfundraisingchild healthresearchnon-profit+1 more
Google Tag ManagerJavaScriptFlickity (carousel)Lazy loading images+4

Partner Domains:

curekidsventures.co.nz
subsidiarypending
2025-06-13T20:21:27.408Z
briscoes.co.nz favicon

Briscoes

briscoes.co.nz

0
RetailNew ZealandlargeMEDIUM

The website's security posture is currently weak, exposing the business to significant cyber risks and potential regulatory non-compliance. Numerous critical and high-severity issues exist, especially in network security where multiple critical services such as Telnet, SMB, MSSQL, and databases are openly exposed, significantly increasing the risk of unauthorized access and data breaches. Key security controls including essential HTTP security headers and GDPR compliance measures like cookie policies and consent banners are missing, elevating legal and reputational risks. The absence of formal information security frameworks, incident response plans, and security policies further undermines the organization's resilience to cyber incidents. While email security and DNS health show relatively better scores, weaknesses remain in SSL/TLS configurations that could allow interception or downgrade attacks. Immediate remediation is required to protect sensitive data, maintain customer trust, and comply with regulations such as GDPR and NIS2. Failure to address these gaps could result in financial loss, legal penalties, and damage to brand reputation. Strengthening foundational security controls and network defenses should be prioritized to reduce the attack surface and improve overall risk posture.

30
43
25
85
65
85
-
homewareretailecommerceNew ZealandBriscoes+3 more
jQueryGoogle AnalyticsCloudflare

Partner Domains:

briscoes.com.au
subsidiaryanalyzing...
briscoegroup.co.nz
parent companypending

+3 more partners

2025-06-13T20:18:46.187Z
M

Mimco

mimco.co.nz

0
retailNew ZealandmediumMEDIUM

The website demonstrates a moderate security posture with no critical issues but several high and medium-risk findings that could expose the business to regulatory, reputational, and operational risks. Key deficiencies include missing fundamental security headers, lack of GDPR compliance measures such as privacy and cookie policies, and the absence of essential NIS2 cybersecurity governance frameworks like incident response and security policy documentation. While email security, SSL/TLS, DNS health, and network security show strong maturity, the gaps in legal compliance and governance frameworks pose significant risks for regulatory penalties and customer trust erosion. Addressing these gaps is vital to reduce legal liability, improve customer confidence, and strengthen overall cybersecurity resilience. Immediate focus on privacy policy implementation and establishing security governance will enhance compliance with evolving legal and industry standards. Proactive communication of security policies and incident response readiness will also support business continuity and reputation management. Overall, the website requires targeted improvements to bridge compliance and policy deficiencies while maintaining its strong technical security controls.

50
25
25
85
97
85
100
fashionaccessoriesecommerceretailNew Zealand
Next.jsReactSwiper.jsAOS (Animate On Scroll)+5

Partner Domains:

mimco.com.au
subsidiary96
countryroad.co.nz
sister companyanalyzing...

+3 more partners

2025-06-13T20:15:46.257Z