Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

0
Websites
0
Industries
0
Countries
0
Avg Score
Page 140 of 143|Showing 6951-7000 of 7125
strabag.com favicon

STRABAG SE

strabag.com

0
TransportationAustriaenterpriseHIGH

STRABAG SE is a leading European construction and technology company specializing in infrastructure, building construction, and specialized construction sectors. The company emphasizes innovation, sustainability, and quality, positioning itself as a market leader with a comprehensive portfolio of services including road construction, civil engineering, and tunneling. The website content reflects a mature enterprise with a strong focus on ESG principles and investor relations, targeting investors, clients, and partners in the construction and infrastructure sectors. Technically, the website employs standard web technologies such as jQuery and custom JavaScript, hosted on Microsoft Azure with DNS managed via AWS. While the site is content-rich and well-structured with good SEO and mobile optimization, it suffers from critical security shortcomings, notably the absence of a valid SSL/TLS certificate and HTTPS support, which severely impacts its security posture. Security analysis reveals a lack of essential security headers, no DNSSEC or CAA records, and no advanced SSL features like OCSP stapling or session resumption. Privacy compliance is well addressed with a comprehensive privacy policy and cookie consent mechanism, but incident response and vulnerability disclosure policies are not evident. Overall, STRABAG SE's website demonstrates strong business credibility and content quality but requires urgent security improvements to protect user data and enhance trust. Strategic recommendations include implementing HTTPS, enabling security headers, and adopting DNS security measures to align with best practices.

60
18
-
50
-
70
100
constructionesgsustainabilityinvestorrelationscorporategovernance+2 more
jQuery 3.3.1JavaScriptCSSHTML5
2025-06-15T21:47:18.712Z
aeroficial.com favicon

Aeroficial Intelligence GmbH

aeroficial.com

0
TransportationAustriasmallHIGH

Aeroficial Intelligence GmbH is a specialized provider of smart air traffic and airport operational insights, leveraging AI-driven analytics to enhance efficiency, safety, and performance for airports, airlines, and air navigation service providers. The company positions itself as a trusted partner for Tier 1 airports and leading airlines worldwide, offering a suite of solutions under the Cockpit Suite brand. The website reflects a professional and consistent brand image with clear messaging targeted at aviation industry stakeholders. Technically, the website is built on WordPress using the Divi theme and several plugins including Google Analytics and GDPR compliance tools. While the site is mobile-optimized and well-structured, performance metrics are not fully available, and some SEO and accessibility features are basic. The hosting provider is linked to the DNS servers world4you.at. Security posture is a significant concern as the website lacks a valid SSL certificate and does not support HTTPS, exposing users to potential risks. No advanced security headers or incident response policies are evident. Privacy compliance is well addressed with clear privacy and cookie policies and consent mechanisms in place. Overall, the website is credible and professional but requires urgent security improvements, especially enabling HTTPS and enhancing security headers, to protect user data and improve trustworthiness. Strategic recommendations include implementing SSL, enhancing security policies, and expanding transparency on incident response and certifications.

15
15
5
50
-
85
100
aviationairportanalyticsairtrafficdataintelligence+3 more
WordPressDivi ThemejQueryGoogle Analytics+3
2025-06-15T21:47:06.492Z
flightkeys.com favicon

FLIGHTKEYS GmbH

flightkeys.com

0
TransportationAustriasmallHIGH

FLIGHTKEYS GmbH is an Austrian-based company specializing in advanced flight planning and trajectory optimization solutions for the aviation industry. Founded in 2015, the company offers a sophisticated 5D flight management system designed to optimize airline operations cost-effectively while integrating environmental sustainability and real-time flight dynamics. Their market position is that of a niche technology innovator serving airlines and aviation stakeholders globally. The website presents detailed product information and company background, targeting aviation professionals and potential customers. Technically, the website uses a traditional web stack including nginx, jQuery, and slick carousel, with a responsive design suitable for mobile devices. However, the site lacks HTTPS support and a valid SSL certificate, which is a critical security deficiency. Security headers are partially implemented but insufficient without encryption. No analytics or tracking services are detected, indicating minimal user tracking. From a security perspective, the absence of HTTPS and privacy policies significantly lowers the site's security posture and privacy compliance. The site does not provide terms of service, security policies, or incident response contacts, which are important for trust and compliance. The WHOIS data is consistent and indicates a mature, legitimate domain registration aligned with the company's Austrian base. Overall, while the business and content quality are good, the lack of HTTPS and privacy compliance are critical issues that must be addressed to improve trustworthiness and security. Strategic improvements in security infrastructure and privacy transparency are recommended to align with industry best practices.

55
-
5
50
-
80
100
flightplanningaviationtrajectoryoptimizationflightmanagementaviationtechnology
nginxjQuery 2.2.3jQuery Mobile 1.4.5Slick Carousel+4

Partner Domains:

spacekeys.aero
partnerpending
2025-06-15T21:47:06.354Z
vegvesen.no favicon

Statens vegvesen

vegvesen.no

0
TransportationNorwaylargeHIGH

Statens vegvesen is the Norwegian government agency responsible for road infrastructure, traffic information, vehicle registration, and driver licensing services across Norway. The website serves as a comprehensive portal for citizens to access traffic updates, vehicle information, and licensing services, targeting Norwegian residents and road users. The business model is that of a public service provider with a national mandate, positioning itself as the authoritative source for transportation-related information and services in Norway. Technically, the website employs modern web technologies including Microsoft Application Insights for telemetry and Boost.ai for chat services, indicating a moderate level of digital maturity. The site is hosted likely on Microsoft Azure infrastructure and features responsive design and accessibility considerations. However, performance metrics were not available, and no CMS was explicitly detected. From a security perspective, the site suffers from critical SSL/TLS misconfigurations, lacking a valid certificate and proper HTTPS support, which significantly undermines user trust and security. While some security headers like Strict-Transport-Security are present, they are not fully enabled. No major vulnerabilities like Heartbleed or POODLE were detected, but the absence of proper encryption is a critical issue. Privacy compliance is strong with clear privacy and cookie policies, though no explicit security or incident response policies were found. Overall, the website is professionally designed and content-rich, serving its public service role well, but the lack of valid SSL/TLS is a major risk. Strategic improvements in security infrastructure and transparency around security policies are recommended to enhance trust and compliance.

25
15
5
50
-
90
100
governmenttransportationnorwayroadtraffic+3 more
Microsoft Application InsightsBoost.ai chat integrationCSS frameworks (custom)JavaScript+1
2025-06-15T13:07:00.742Z
atm.cat favicon

Generalitat de Catalunya

atm.cat

0
TransportationSpainmediumMEDIUM

Autoritat del Transport Metropolità (ATM) is a public consortium under the Generalitat de Catalunya, managing integrated transport tariffs and mobility projects in the Barcelona metropolitan area. The website serves as an official portal providing comprehensive information about transport tariffs, mobility plans, transparency, and customer support. It targets residents and public transport users in Catalonia, offering multilingual content and links to related government services. The business model is public sector focused, emphasizing transparency and service delivery rather than commercial revenue. Technically, the website is built on the Liferay CMS platform with modern web technologies including React and Bootstrap. While the site is content-rich and accessible, performance is hindered by a high load time and large page size. The site is mobile optimized and includes accessibility features. SEO and metadata are well implemented, including Open Graph tags. Security posture is adequate with HTTPS enforced, valid SSL certificates, and email authentication via DMARC and SPF. However, advanced security headers like HSTS and DNSSEC are missing, and domain protection locks are not enabled, which could be improved. No critical vulnerabilities or exposed sensitive data were detected. Privacy compliance is strong with clear cookie and privacy policies and consent mechanisms. Overall, the site is trustworthy and professionally maintained, reflecting its governmental nature. Recommendations include enhancing security headers, enabling DNSSEC, improving performance, and adding explicit security and incident response policies to further strengthen trust and compliance.

65
25
25
50
92
70
100
transportpublicsectormobilitygovernmentcatalonia+2 more
Liferay PortaljQueryBootstrapFont Awesome+9
2025-06-15T09:59:21.656Z
pizzarotti.it favicon

Impresa Pizzarotti & C. S.p.A.

pizzarotti.it

0
TransportationItalyenterpriseCRITICAL

Impresa Pizzarotti & C. S.p.A. is a well-established Italian enterprise specializing in the design, construction, and management of large-scale infrastructure and building projects. With over a century of experience and operations in more than 20 countries, the company holds a strong market position as one of Italy's leading general contractors. Their key services span infrastructure, prefabricated structures, building construction, facility management, real estate, and smart green solutions. The website reflects a professional and comprehensive digital presence, targeting clients and partners in the construction and infrastructure sectors. Technically, the website is built on WordPress with modern plugins such as Yoast SEO and Slider Revolution, hosted likely on SiteGround. While the site is content-rich and well-structured with good mobile optimization and accessibility, performance is somewhat slow, likely due to heavy media content. Privacy compliance is robust, with clear privacy and cookie policies and GDPR adherence. Analytics are handled via Matomo, indicating a privacy-conscious approach. Security posture is a concern due to the absence of a valid SSL certificate and HTTPS, lack of security headers, and no modern TLS protocols enabled. This exposes the site to significant risks and reduces trustworthiness from a security perspective. No incident response or security policy pages were found. Overall, the site is trustworthy from a business and content perspective but requires urgent security improvements. Recommendations include immediate installation of a valid SSL certificate, enabling HTTPS, implementing security headers, improving site performance, and enhancing security policies and incident response documentation to strengthen the security posture and user trust.

15
-
5
50
-
85
-
constructioninfrastructureengineeringisocertifiedgeneralcontractor+3 more
nginxPHPWordPressYoast SEO+4

Partner Domains:

bravosolution.com
partnerpending
2025-06-15T08:35:28.537Z
A

Amazon Leasing

amazonleasing.com

0
TransportationN/asmallHIGH

Amazon Leasing is a small business specializing in leasing exotic and luxury vehicles with a focus on closed end leases without prepayment penalties. The company targets individuals and businesses interested in high-end vehicle leasing. The website provides basic business information primarily through JSON-LD structured data, including a contact phone number, but lacks comprehensive contact details such as email addresses or physical addresses. The market position appears niche within the transportation sector, focusing on luxury vehicle leasing services. Technically, the website uses modern JavaScript frameworks likely including Vue.js and PrimeVue components, integrates Google Analytics for tracking, and embeds Vimeo player scripts. Hosting appears to be provided by A2 Hosting based on DNS records. However, the website suffers from slow performance with a high page load time and large page size. Mobile optimization and accessibility are basic, and SEO practices are minimal. From a security perspective, the website has critical deficiencies. It lacks a valid SSL certificate and does not support HTTPS, exposing users to potential risks. No security headers are present, and advanced security features such as HSTS and OCSP stapling are missing. Privacy and cookie policies are absent, indicating poor privacy compliance. These issues significantly reduce the trustworthiness and security posture of the site. Overall, the website presents a basic online presence with significant room for improvement in security, privacy compliance, and technical performance. Strategic enhancements in SSL implementation, security headers, and privacy policies are essential to improve user trust and regulatory compliance.

40
25
25
50
50
85
-
leasingexoticcarsluxuryvehiclesautorentalclosedendlease
JavaScriptVimeo Player APIGoogle Analytics
2025-06-15T07:06:33.458Z
flexport.org favicon

Flexport Inc

flexport.org

0
TransportationUnited KingdomlargeHIGH

Flexport.org is a non-profit initiative under Flexport Inc that leverages logistics to facilitate global aid delivery and promote sustainability. The organization supports humanitarian relief efforts, discounted shipping for NGOs, and climate programs to reduce transport emissions. Their market position is strong within the humanitarian logistics sector, supported by partnerships with reputable NGOs and a clear mission to improve aid delivery efficiency. Technically, the website is built on modern frameworks like React and Gatsby, hosted on Amazon AWS, and employs advanced technologies such as Google reCAPTCHA and Mapbox GL JS. The site demonstrates good performance, mobile optimization, and accessibility, reflecting a mature digital infrastructure. Security posture is solid with HTTPS enforced using TLS 1.3 and strong cipher suites, absence of known vulnerabilities, and security headers that protect domain registration. However, improvements such as enabling HSTS, OCSP stapling, and DMARC records could enhance security further. Overall, the website is trustworthy, professional, and compliant with privacy regulations including GDPR. No blocking or WAF interference was detected, allowing full content access and analysis. Strategic recommendations include enhancing security headers and transparency measures to maintain and improve trust.

65
43
25
40
87
75
100
non-profitlogisticshumanitariansustainabilityaid+2 more
ReactGatsbyGoogle reCAPTCHAKetch (consent management)+1

Partner Domains:

flexport.com
parent68
2025-06-15T06:13:32.317Z
mapon.com favicon

Mapon

mapon.com

0
TransportationFinlandlargeMEDIUM

Mapon is a Finnish-based company specializing in fleet management and video telematics solutions, serving a broad range of industries including transportation, logistics, construction, and service companies. Established in 2006 and part of the Draugiem Group, Mapon offers a comprehensive platform integrating GPS tracking, driver behavior analysis, fuel monitoring, and video evidence to optimize fleet operations and enhance safety. The website reflects a mature digital presence with professional design, multilingual support, and extensive product information targeting B2B customers. Technically, the site leverages modern web technologies such as Bootstrap, jQuery, Google Tag Manager, and Cookiebot for consent management, hosted behind Cloudflare. However, the SSL/TLS configuration is currently deficient, lacking a valid certificate and TLS protocol support, which poses a significant security risk and undermines user trust. Security headers are well implemented, and privacy compliance is strong with GDPR-aligned policies and consent mechanisms. The security posture is weakened by the absence of proper HTTPS, which is critical for protecting data in transit and ensuring secure user interactions. Despite this, the site demonstrates good business credibility with clear contact information, certifications, and client references. Overall, Mapon presents as a reputable and professional company with a robust service offering but requires urgent remediation of its SSL/TLS configuration to meet modern security standards.

75
25
17
80
50
85
100
fleetmanagementtelematicsgpstrackingvideotelematicstransportation+4 more
Google FontsBootstrapjQueryLite YouTube Embed+4

Partner Domains:

draugiemgroup.com
parent63
2025-06-15T05:41:41.561Z
k-auto.fi favicon

K-Auto Oy

k-auto.fi

0
TransportationFinlandlargeHIGH

K-Auto Oy is a prominent automotive company in Finland offering a comprehensive range of services including new and used car sales, leasing, financing, maintenance, and repair services. The company operates multiple dealerships across Finland and represents several major automotive brands such as Volkswagen, Audi, Porsche, SEAT, CUPRA, and Bentley. Their business model focuses on providing a seamless customer experience from vehicle acquisition to after-sales services, supported by digital tools and loyalty programs like Plussa. K-Auto is part of the larger Kesko Group, enhancing its market position and operational capabilities. Technically, the website is built on modern frameworks including Next.js and React, hosted via Cloudflare, and managed through the Contentful CMS. The site demonstrates good mobile optimization, accessibility, and SEO practices, although performance metrics are moderate. The presence of comprehensive legal and privacy documentation indicates a mature approach to compliance and customer trust. From a security perspective, while the site employs some security headers and uses HTTPS, the SSL certificate is currently invalid or missing, which is a critical vulnerability. The absence of DNSSEC and CAA records further indicates potential areas for security enhancement. No explicit incident response or vulnerability disclosure policies were found. Overall, K-Auto presents a professional and trustworthy digital presence with strong business credibility and customer focus. However, addressing the SSL certificate issues and enhancing security configurations are essential to maintain user trust and comply with best practices.

45
-
25
50
50
85
100
automotivecarsalesleasingfinancingcarmaintenance+1 more
Next.jsReactCloudflareWeb

Partner Domains:

kesko.fi
parent40
k-lataus.fi
partnerpending

+1 more partners

2025-06-14T22:44:37.875Z