Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

0
Websites
0
Industries
0
Countries
0
Avg Score
Page 1 of 7|Showing 1-50 of 327
adobepress.com favicon

Peachpit

adobepress.com

0
publishingUSAmediumMEDIUM

The website's overall security posture reveals significant gaps that could expose the business to regulatory, reputational, and operational risks. While no critical vulnerabilities were detected, multiple high and medium severity issues indicate a lack of foundational security controls and compliance readiness, notably in the areas of data privacy and organizational security governance. The absence of key security headers and policies undermines protection against common web-based attacks and data leakage. Non-compliance with GDPR requirements, such as missing privacy and cookie policies, exposes the business to potential regulatory penalties and diminished customer trust. Additionally, the lack of adherence to NIS2 directives, including missing incident response and security policy documentation, raises concerns about the organization’s resilience to cybersecurity incidents. Positive scores in email security, network security, SSL/TLS, and DNS health show some established technical controls, but these are overshadowed by gaps in governance and compliance. Immediate focus on implementing core security headers, privacy documentation, and incident response frameworks is essential to mitigate risk and enhance trust with customers and regulators.

30
25
17
100
85
85
100
AdobePublishingCreative CloudBookseBooks+2 more
Google Tag ManagerjQuery 3.7.1Modernizr 2.6.2New Relic Browser Agent+5

Partner Domains:

pearson.com
subsidiary96
informit.com
partner63
2025-06-13T22:52:10.711Z
pearsonitcertification.com favicon

Pearson IT Certification

pearsonitcertification.com

0
educationUSAlargeMEDIUM

The website exhibits significant security and compliance gaps, particularly in its security headers, GDPR compliance, and adherence to NIS2 directives. While there are no critical vulnerabilities, the presence of multiple high and medium severity issues indicates substantial risk exposure, including potential data leaks, regulatory non-compliance, and inadequate incident response readiness. The lack of essential HTTP security headers such as Strict-Transport-Security and Content-Security-Policy increases susceptibility to man-in-the-middle and cross-site scripting attacks. Absence of privacy and cookie policies, as well as missing consent mechanisms, exposes the business to GDPR enforcement actions and reputational damage. Furthermore, the website lacks a formal information security framework and incident response procedures, undermining its ability to manage and recover from cyber incidents effectively. On a positive note, email security, network security, and DNS health scores are relatively strong, indicating some foundational controls are in place. Immediate remediation will help mitigate regulatory risks, enhance customer trust, and reduce potential financial and operational impacts from security events.

30
25
17
100
75
85
100
IT CertificationEducationTrainingExam PreparationLearning Solutions
Google Tag ManagerjQuery 3.7.1Modernizr 2.6.2New Relic Browser Agent+5

Partner Domains:

adobepress.com
partneranalyzing...
ciscopress.com
partner64

+3 more partners

2025-06-13T22:52:10.705Z
realpagecares.com favicon

RealPage

realpagecares.com

0
housing and community servicesUSAlargeMEDIUM

The website's overall security posture reveals significant gaps, particularly in governance and compliance areas such as GDPR and NIS2 frameworks, exposing the business to regulatory and reputational risks. Critical email security misconfigurations pose a high risk of phishing and spoofing attacks, potentially undermining customer trust. Missing key security headers like Content-Security-Policy and X-Frame-Options increase vulnerability to cross-site scripting and clickjacking attacks, threatening data integrity. Although network security and DNS health are relatively strong, foundational SSL/TLS and header configurations require improvement to safeguard data in transit. The absence of documented incident response and business continuity plans limits the organization's ability to effectively respond to cyber incidents, increasing potential downtime and financial loss. Lack of a cookie policy and consent mechanisms places the company at risk of non-compliance with privacy laws, which could result in fines and legal challenges. Immediate attention to these areas will reduce attack surfaces, ensure compliance, and strengthen overall resilience. Prioritizing governance frameworks and critical technical controls will deliver the greatest business impact.

35
43
25
75
77
85
100
housingcommunityaffordable housingnonprofitrealpage
SquarespaceGoogle AnalyticsjQueryShareThis+1

Partner Domains:

realpage.com
subsidiary74
2025-06-13T20:20:56.088Z
hoozin.com favicon

Hoozin

hoozin.com

0
software / digital workplace solutionsUSAmediumHIGH

The website's overall security posture is critically weak, exposing the business to significant risks including data breaches, regulatory non-compliance, and operational disruptions. The absence of HTTPS encryption is a critical vulnerability that undermines data confidentiality and trust, while missing essential security headers leave the site open to common web attacks such as clickjacking and cross-site scripting. GDPR compliance is severely lacking, with no cookie policy or consent mechanisms, creating legal exposure and reputational damage risks. Network security is compromised by the exposure of high-risk services like FTP and MySQL without adequate protections, increasing the attack surface. The lack of incident response, security policies, and business continuity planning under the NIS2 framework indicates immature security governance. Although email security and DNS health score relatively well, these strengths do not offset the critical deficiencies elsewhere. Immediate remediation is required to protect customer data, maintain regulatory compliance, and safeguard business continuity. Without urgent action, the organization risks financial penalties, loss of customer trust, and potential service outages.

15
18
5
85
-
85
50
digital workplaceworkflowssocial intranetemployee collaborationintegration+1 more
WordPress 6.8.1W3 Total CacheRodller BlocksContact Form 7+8

Partner Domains:

rodller.com
partnerpending
2025-06-13T18:10:49.566Z
covidien.com favicon

Medtronic

covidien.com

0
Healthcare TechnologyUSAenterpriseHIGH

The website's security posture is critically weak, exposing the business to significant risks including data breaches, regulatory non-compliance, and reputational damage. The absence of HTTPS encryption is a severe vulnerability impacting data confidentiality and integrity, affecting customer trust and legal compliance, especially under GDPR and NIS2 regulations. Key security headers like Strict-Transport-Security and Content-Security-Policy are missing, increasing susceptibility to man-in-the-middle and cross-site scripting attacks. The lack of GDPR compliance elements such as a Privacy Policy, Cookie Policy, and Consent Banner exposes the company to potential fines and customer distrust. The organization also lacks foundational information security documentation, including security policies and incident response procedures, which undermines its ability to effectively manage and respond to security incidents. While network security and DNS health show some strengths, they do not compensate for fundamental flaws in encryption and governance. Immediate remediation is essential to protect sensitive data, ensure regulatory compliance, and safeguard business continuity. Overall, the current state presents a critical risk to both operational security and legal standing.

50
-
5
85
-
85
100
healthcaremedical devicestechnologyprivacycompliance+1 more
EloquaOneTrust Cookies ConsentCoveo AnalyticsAdobe DTM+8

Partner Domains:

medtronic.com
subsidiarypending
diabetes.shop
subsidiarypending
2025-06-13T18:10:49.514Z