Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

0
Websites
0
Industries
0
Countries
0
Avg Score
Page 461 of 516|Showing 23001-23050 of 25766
T

tokoblog.net | 526: Invalid SSL certificate

tokoblog.net

0
OtherN/asmallHIGH

The website tokoblog.net is currently inaccessible due to an invalid SSL certificate on the origin server, resulting in a Cloudflare Error 526. This prevents any meaningful content or business information from being accessed or analyzed. The domain is registered with NameCheap, Inc. since 2021 and uses Cloudflare DNS services, but lacks DNSSEC and a valid SSL certificate, which significantly impacts its security posture and trustworthiness. No privacy, cookie, or terms of service policies are present, and no contact information or business details are available on the error page. The technical infrastructure relies on Cloudflare as a CDN and security provider, but the SSL misconfiguration undermines the site's availability and security. From a security perspective, the primary concern is the invalid SSL certificate that blocks user access and may expose visitors to risks if bypassed. The absence of security headers and policies further weakens the site's security maturity. Business credibility and privacy compliance cannot be assessed due to lack of accessible content. Overall, the site scores very low on content quality, privacy compliance, and business credibility, with a moderate score on security posture limited by the SSL issue. Strategic recommendations include immediate installation of a valid SSL certificate on the origin server, enabling DNSSEC, and implementing standard security headers. Additionally, publishing privacy and cookie policies and providing clear contact information would improve compliance and trust. Monitoring and maintaining SSL certificates and security configurations will enhance availability and user confidence.

-
35
2
70
75
70
100
errorsslcloudflaresecurityblocked
Cloudflare
2025-06-26T13:14:44.425Z
lmc.eu favicon

Alma Career

lmc.eu

0
OtherCzech RepubliclargeMEDIUM

Alma Career is a prominent HR and recruitment services provider operating primarily in Czechia and across Europe. The company offers a comprehensive suite of services including job portals, online education platforms, recruitment management tools, employee engagement surveys, and salary benchmarking. Their market position is strong, supported by multiple well-known brands such as Jobs.cz and Platy.cz, serving a broad audience of HR professionals, employers, and job seekers. The website reflects a mature digital presence with modern technologies and a professional design. Technically, the website is built using Next.js and React frameworks, leveraging modern web standards and optimized for performance and mobile responsiveness. The use of Google Tag Manager and Analytics indicates a moderate level of user tracking balanced with privacy compliance. The site employs security best practices including HTTPS, security headers, and cookie consent mechanisms, though explicit security policies and incident response contacts are not published. From a security perspective, the site demonstrates a good posture with no visible vulnerabilities or exposed sensitive data. However, the absence of WHOIS data for the domain introduces some uncertainty regarding domain legitimacy, although the strong brand presence and consistent business information mitigate this concern. Overall, the risk is moderate with recommendations to enhance transparency around security policies and incident response. Strategically, Alma Career should focus on publishing detailed security and incident response policies, consider a vulnerability disclosure program, and continue to monitor domain registration details to maintain trust. Enhancing accessibility and expanding data retention disclosures would further improve compliance and user trust.

30
85
2
85
72
80
100
hrrecruitmentjobportalonlineeducationsalarydata+5 more
ReactNext.jsGoogle Tag ManagerGoogle Analytics+3

Partner Domains:

jobs.cz
subsidiary
platy.cz
subsidiary

+3 more partners

2025-06-26T13:11:18.921Z
R

runjapan.jp

runnetglobal.com

0
OtherJapansmallMEDIUM

Run Japan is an online platform dedicated to providing international runners with comprehensive information and registration services for marathons and running events across Japan. The website positions itself as a gateway to Japan's best running events, offering race listings, travel planning assistance, and event registration. The target audience primarily consists of international and domestic runners interested in participating in Japanese marathons. The business operates in the niche sports and events sector, with a small company size and a recent founding date in 2024. Technically, the website employs a modern JavaScript stack including jQuery, Modernizr, and Slick Carousel, hosted on Amazon AWS infrastructure. It uses Google Tag Manager for analytics and tracking. The site is mobile optimized with good SEO practices and a consistent branding approach. However, some accessibility features are basic, and performance is moderate. From a security perspective, the site uses HTTPS with a good SSL configuration but lacks several important security headers such as Content-Security-Policy and X-Frame-Options. There is no visible privacy policy or cookie consent mechanism, which impacts privacy compliance. No vulnerability disclosure or incident response information is provided. The WHOIS data shows privacy protection but is consistent with the business location in Japan, and the domain age aligns with the business launch. Overall, Run Japan presents a professional and functional platform with moderate security and privacy compliance. Strategic improvements in privacy disclosures, security headers, and user data protection would enhance trust and compliance, supporting its growth in the international running community.

30
58
17
65
90
80
100
runjapanmarathonrunningraceregistration+3 more
jQuery 1.11.3ModernizrGoogle Tag ManagerSlick Carousel+1
2025-06-26T13:09:43.389Z
M

MSC Publishing & Design Limited

aims-worldrunning.org

0
OtherUnited KingdomsmallHIGH

AIMS (Association of International Marathons and Distance Races) operates as a recognized global organization dedicated to the promotion and coordination of marathon and long-distance running events worldwide. The website serves as a comprehensive hub for race calendars, news, results, directories, and publishes the Distance Running magazine, targeting runners, race organizers, and athletics enthusiasts globally. The organization is registered in Great Britain under MSC Publishing & Design Limited, with a domain age consistent with its operational history since 2016. Technically, the website employs a mix of legacy and modern web technologies including jQuery 1.12.4, Cycle2 plugins, Leaflet for mapping, and Google Analytics for user tracking with IP anonymization. The site is mobile responsive with good navigation and content quality, though some technical debt is evident in the use of outdated JavaScript libraries. SEO and accessibility are basic but functional. From a security perspective, the site benefits from HTTPS and domain registration protections but lacks DNSSEC and security headers, and uses an outdated jQuery version with known vulnerabilities. No privacy or cookie policies are present, indicating compliance gaps with GDPR and related regulations. Contact information is limited to a physical address with no emails or phone numbers explicitly provided. No incident response or security policy information is available. Overall, the website is professional and trustworthy with a solid business foundation but requires improvements in privacy compliance, security hardening, and transparency to enhance user trust and regulatory adherence.

15
35
2
70
62
65
20
marathonrunningathleticslongdistancesports+1 more
jQuery 1.12.4Cycle2 jQuery pluginLeaflet 1.6.0Google Analytics+3

Partner Domains:

health1984.com
partner
marathon-photos.com
partner

+3 more partners

2025-06-26T12:08:56.768Z
ntmvp.cz favicon

NTM rozcestník

ntmvp.cz

0
OtherCzech RepublicsmallHIGH

The website ntmvp.cz serves as a virtual tour platform created in 2020 during the Covid-19 pandemic. It offers interactive virtual tours primarily targeting a general audience interested in immersive media experiences. The business model appears focused on providing virtual tour content without evident e-commerce or subscription services. The site is small-scale and localized to the Czech Republic, with no indication of a parent company or subsidiaries. Technically, the site uses modern web technologies including JavaScript, HLS.js for streaming, and WebVR polyfills to support virtual reality features. The site is mobile optimized and loads media assets efficiently, though performance is moderate. No CMS or third-party analytics/tracking tools are detected, indicating a lightweight custom implementation. From a security perspective, the site uses HTTPS and avoids forms or inputs that could introduce vulnerabilities. However, it lacks security headers and does not provide privacy or cookie policies, which are important for GDPR compliance. No contact or incident response information is provided, limiting transparency and trust. The domain registration data is consistent and appropriate for the business age and location, supporting legitimacy. Overall, the site is functional and moderately professional but would benefit from enhanced privacy compliance, security hardening, and clearer business contact information to improve trust and regulatory adherence.

-
25
2
75
75
75
20
virtualtourcovid-19czechrepublicinteractivemedia
JavaScriptHTML5CSS3HLS.js+1
2025-06-26T12:01:49.914Z
J

403 Forbidden

jaktosnasi.cz

0
OtherCzech RepublicsmallHIGH

The website jaktosnasi.cz is currently inaccessible due to a 403 Forbidden error, likely enforced by Cloudflare security mechanisms or server permission settings. This prevents any meaningful content or metadata extraction, severely limiting the ability to analyze the business, technical infrastructure, or security posture. The domain was registered in 2017 with a Czech registrar and uses Cloudflare nameservers, indicating some level of professional hosting and CDN usage. However, the lack of accessible content and absence of contact or policy information significantly reduces trust and credibility. From a technical perspective, the site appears to be protected or misconfigured, resulting in a complete block of content. No scripts, forms, or external links are detectable, and no SEO or accessibility features can be evaluated. Security headers and SSL configuration cannot be assessed due to the blocked state. Security posture evaluation is limited; no policies, incident response contacts, or vulnerability disclosures are found. The domain registration data is consistent and legitimate, but the inaccessible content and lack of transparency pose risks for user trust and compliance. Overall, the site scores very low on content quality, technical implementation, security, privacy compliance, and business credibility. Strategic recommendations include resolving the 403 error to enable site access, implementing security best practices such as proper headers and HTTPS, publishing privacy and cookie policies, and providing clear contact and incident response information to improve trust and compliance.

15
15
17
60
72
75
20
2025-06-26T10:52:40.448Z
pplegal.eu favicon

P&P Legal

pplegal.eu

0
OtherSlovakiasmallHIGH

P&P Legal is a Slovak law firm established in 2018, providing comprehensive legal services across multiple domains including commercial law, litigation, family law, and constitutional law. The firm targets both local and foreign clients, emphasizing professionalism, confidentiality, and security, supported by a liability insurance coverage of 1,500,000 €. The website reflects a small but professional legal practice with clear service offerings and contact information. Technically, the website is built on WordPress 4.9.26 with common libraries such as jQuery and Select2, and employs Google reCAPTCHA for form security. HTTPS is enforced, and cookie consent mechanisms are in place, indicating a reasonable level of digital maturity. However, the WordPress version is outdated, and some security headers are missing, suggesting room for improvement in security hardening. Security posture is solid with HTTPS, liability insurance disclosure, and spam protection on forms, but lacks explicit security policies or incident response contacts. Privacy compliance is good with GDPR-aligned cookie consent and privacy policy available. No critical vulnerabilities or suspicious indicators were found. Overall, the website and business present a trustworthy and professional image with moderate technical sophistication. Strategic improvements in security headers, CMS updates, and enhanced mobile and accessibility features would strengthen the digital presence and security posture.

15
10
17
70
72
80
20
lawlegalservicesslovakialawfirmcommerciallaw+4 more
WordPress 4.9.26jQuerySelect2Google reCAPTCHA v2
2025-06-26T09:50:57.080Z