Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

0
Websites
0
Industries
0
Countries
0
Avg Score
Page 2711 of 2975|Showing 135501-135550 of 148715
theoakleafgroup.com favicon

The Oakleaf Group

theoakleafgroup.com

0
FinanceUnited StatesmediumMEDIUM

The Oakleaf Group is a specialized mortgage consulting firm established in 2018, serving top financial institutions, agencies, GSEs, banks, and mortgage companies primarily in the United States. Their service offerings span operational excellence, regulatory compliance, servicing solutions, data analytics, and litigation support, positioning them as a trusted partner in the mortgage and financial services industry. The website reflects a professional and consistent brand image with clear navigation and relevant content targeting financial sector clients. Technically, the website is built on WordPress using popular plugins such as Yoast SEO, WPBakery Page Builder, and Slider Revolution, hosted likely on GoDaddy infrastructure. The site demonstrates moderate performance and good mobile optimization, with basic accessibility features and solid SEO practices. Analytics and marketing tools like Google Analytics, AdRoll, and Mailchimp are integrated, indicating moderate user tracking and marketing sophistication. From a security perspective, the site uses HTTPS with good SSL configuration but lacks visible advanced security headers and explicit security or incident response policies. No critical vulnerabilities or exposed sensitive data were detected. Privacy compliance is basic, with a privacy policy present but no cookie consent mechanism or GDPR-specific disclosures. Overall, the website is trustworthy and professional with room for improvement in privacy compliance and security transparency. The domain registration details align well with the business claims, supporting legitimacy and trustworthiness.

60
40
5
85
-
75
100
mortgageconsultingfinancecompliancedataanalytics+1 more
WordPressYoast SEOWPBakery Page BuilderSlider Revolution+5
2025-06-21T18:22:04.315Z
datatrak.com favicon

Fountayn LLC

datatrak.com

0
HealthcareUnited StatesmediumHIGH

Fountayn LLC operates in the healthcare software sector, providing a comprehensive suite of clinical trial data management solutions including EDC, CTMS, RTSM, eConsent, and more. Their offerings are designed to streamline clinical research data reporting and ensure compliance with regulatory standards such as FDA CFR 21 Part 11, HIPAA, GDPR, and GCP. The company targets clinical research sponsors, sites, and regulatory authorities, positioning itself as a trusted provider of validated and quality-assured software solutions. The website reflects a professional and consistent brand presence with clear navigation and relevant content focused on their key services. Technically, the website is built on the Squarespace platform, leveraging modern web technologies and integrations with marketing and analytics tools such as HubSpot, Hotjar, Google Tag Manager, LinkedIn Insight Tag, and ZoomInfo. The site is mobile optimized with good SEO practices and uses HTTPS with HSTS for secure communications. Forms are protected with Google reCAPTCHA Enterprise, enhancing security against automated abuse. From a security perspective, the site demonstrates strong baseline protections including SSL/TLS encryption, HSTS, and validated form security. However, it lacks explicit privacy and cookie policies, security policy documentation, and incident response contact details, which are important for compliance and user trust. The WHOIS data confirms legitimate ownership consistent with the business identity and location, supporting the site's credibility. Overall, the website presents a solid digital presence with good security fundamentals but would benefit from enhanced privacy compliance documentation and clearer security policies to improve trust and regulatory adherence.

50
25
5
65
-
70
20
clinicaltrialshealthcaresoftwareedcctmsrtsm+5 more
Squarespace CMSGoogle Tag ManagerHotjarHubSpot+3
2025-06-21T18:22:04.283Z
vgt.com.mt favicon

Valletta Gateway Terminals Ltd.

vgt.com.mt

0
TransportationMaltamediumHIGH

Valletta Gateway Terminals Ltd. is a Malta-based terminal operator specializing in multipurpose cargo handling services including RoRo, container, conventional cargo, and car transhipment. The company operates key port facilities such as the Deep Water Quay and Laboratory Wharf, serving shipping lines and logistics providers. The website reflects a medium-sized enterprise with a clear market position in the Maltese transportation sector, supported by a parent company, Portek International Limited. Technically, the website is built on WordPress with modern plugins like Slider Revolution and Yoast SEO, hosted likely on WP Engine. It demonstrates good mobile optimization, SEO practices, and moderate performance. The site uses Google Analytics for user tracking and implements cookie consent mechanisms, indicating awareness of privacy compliance. From a security perspective, the site enforces HTTPS and avoids exposing sensitive data. However, it lacks explicit security headers and a published security policy or incident response contacts. No critical vulnerabilities or blocking mechanisms were detected, suggesting a stable security posture but with room for improvement in security best practices. Overall, the website is professional, trustworthy, and compliant with basic privacy regulations. Strategic enhancements in security headers, incident response transparency, and vulnerability disclosure would strengthen its security maturity and trustworthiness further.

15
23
-
75
-
80
100
berthing-maltabulk-cargo-maltacar-transhipment-maltacargo-handling-maltacontainer-handling-malta+9 more
WordPressPHPjQueryBootstrap+5

Partner Domains:

portek.com
parent
stl.com.mt
partner
2025-06-21T18:22:04.262Z
eventsclubmalta.com favicon

Events Club Malta

eventsclubmalta.com

0
HospitalityMaltasmallHIGH

Events Club Malta is a small-sized destination management company specializing in organizing and managing conferences, meetings, incentive trips, and bespoke events primarily in Malta, with services extending to other European countries. The company targets corporate clients and event planners seeking professional event management solutions. Their website presents a professional and consistent brand image with detailed service offerings, positioning them as a specialist in the hospitality sector focused on Malta. Technically, the website is built on WordPress using Visual Composer and LayerSlider plugins, with jQuery and Google Analytics integrated. The site is moderately optimized for performance and mobile devices but lacks advanced accessibility features. SEO is basic but functional. The hosting provider is not explicitly identified from the HTML content. From a security perspective, the site uses HTTPS but lacks important security headers such as Content-Security-Policy and HSTS, which are recommended to enhance security posture. There are no visible privacy or cookie policies, and no consent mechanisms for tracking, which indicates compliance gaps with GDPR and related privacy regulations. No contact emails or phone numbers are explicitly provided, limiting direct communication channels. No WAF or blocking mechanisms were detected, and the domain registration data aligns well with the business claims, supporting legitimacy. Overall, the website is functional and professional but requires improvements in privacy compliance and security best practices to reduce risk and enhance trustworthiness.

15
10
-
70
-
85
-
eventmanagementdestinationmanagementmaltaconferencesmeetings+1 more
jQueryGoogle AnalyticsLayerSliderVisual Composer+1
2025-06-21T18:22:04.257Z
V

Valletta Cruise Port

vallettacruiseport.com

0
TransportationMaltamediumHIGH

Valletta Cruise Port operates as a strategic Mediterranean cruise port located in Malta, serving both cruise passengers and business partners. The website provides comprehensive information about cruise schedules, passenger services, port services, and local attractions, positioning itself as a key player in the cruise tourism and transportation sector. The business is part of Global Ports Holding, indicating a strong market presence and backing. Technically, the website employs a modern technology stack including jQuery, Bootstrap, Swiper.js, and Google Maps API, ensuring a responsive and interactive user experience. The site is mobile-optimized and integrates Google Analytics for user tracking, though accessibility features are basic. Performance is moderate with room for optimization. From a security perspective, the site enforces HTTPS and avoids exposing sensitive data. However, it lacks advanced security headers and explicit security policies. Privacy compliance is basic with a privacy policy and cookie consent banner present, but no detailed GDPR compliance indicators or data protection officer information. Contact information is available primarily via address and social media, with no direct emails or phone numbers explicitly provided. Overall, the website is professional, trustworthy, and functional with moderate risk. Strategic improvements in security headers, privacy compliance, and explicit contact channels would enhance trust and compliance.

-
28
-
70
-
85
100
cruiseportvallettamaltatourism+1 more
jQueryBootstrapSwiper.jsGoogle Maps API+3

Partner Domains:

vallettawaterfront.com
partner
globalportsholding.com
parent
2025-06-21T18:22:04.251Z
D

Error 404 (Not Found)!!1

de-stek-houten.nl

0
OtherN/asmallHIGH

The website de-stek-houten.nl currently serves only a 404 error page indicating that the requested content is not found. There is no accessible business information, contact details, or any form of content beyond the error message. The site lacks any privacy, cookie, or terms of service policies, and no security or compliance information is available. Technically, the site does not show evidence of HTTPS or security headers, and no scripts or analytics tools are detected. This severely limits the ability to assess the company's digital maturity or security posture. Overall, the site appears inactive or misconfigured, providing no value to visitors or stakeholders. From a technical perspective, the site is minimal and only displays a Google-branded 404 error page. There is no evidence of modern web technologies, CMS platforms, or performance optimizations. The absence of any business or security content suggests the domain may be unused or improperly configured. Security-wise, the lack of HTTPS and security headers, combined with no visible privacy or cookie policies, indicates a very low security posture. No incident response or vulnerability disclosure mechanisms are present. The site does not appear to be protected by any WAF or security challenge, but the lack of content and security features poses risks if the site were to be used for business purposes. Given these findings, the overall risk assessment is high due to the absence of critical security and compliance controls and the lack of any meaningful content or business presence. Strategic recommendations include enabling HTTPS, publishing privacy and cookie policies, adding business and contact information, and improving the website content and security posture to build trust and compliance.

35
-
-
70
-
60
100
404errornotfoundgooglerobot
2025-06-21T18:22:04.248Z
H

Hinterland Electrification Company Inc.

electricity.gov.gy

0
EnergyGuyanasmallHIGH

The Hinterland Electrification Company Inc., under the Ministry of Public Infrastructure of Guyana, operates the website electricity.gov.gy as an informational portal dedicated to promoting renewable energy and electrification in Guyana's hinterland and coastal regions. The site provides news updates, downloadable technical documents, and links to partner government agencies and international organizations. The business model is government-driven, focusing on sustainable energy access and public awareness rather than commercial services. The target audience includes local communities, government stakeholders, and renewable energy investors. Technically, the website is built on Joomla! CMS and uses jQuery libraries. The design is basic with moderate navigation clarity but lacks advanced mobile optimization and accessibility features. There is no evidence of modern analytics or advertising technologies, indicating a low level of digital marketing maturity. Performance is moderate, and SEO practices are basic. From a security perspective, the site does not explicitly confirm HTTPS usage, lacks security headers, and does not provide visible security or incident response policies. No contact information or data protection officer details are available, and no cookie consent mechanism is implemented, indicating gaps in privacy compliance. However, no obvious vulnerabilities or exposed sensitive data were detected in the HTML content. Overall, the website serves its informational purpose but requires improvements in security posture, privacy compliance, and technical modernization to enhance trustworthiness and user experience.

20
28
5
40
-
60
20
guyanaelectricityrenewableenergyhinterlandelectrificationsolar+2 more
jQueryJoomla!
2025-06-21T18:22:04.239Z
noxwin.com favicon

Noxwin

noxwin.com

0
OtherN/amediumHIGH

Noxwin.com is a comprehensive online platform specializing in reviews and comparisons of gambling sites, including sports betting and casino operators. The site offers detailed insights into bonuses, payment methods, and the latest industry news, positioning itself as a trusted resource for bettors and casino players worldwide. With a focus on both traditional and crypto gambling markets, Noxwin caters to a diverse audience seeking reliable and up-to-date information. Technically, the website leverages modern web technologies such as React and Next.js, hosted on Vercel, ensuring fast performance and excellent mobile optimization. The use of structured data and SEO best practices enhances its visibility and user experience. The platform integrates analytics tools like Google Tag Manager and Vercel Analytics for data-driven insights while maintaining a good level of privacy compliance. From a security perspective, Noxwin enforces HTTPS, employs standard security headers, and avoids exposing sensitive data. Although explicit security policies and incident response information are not present, the overall security posture is strong. The site demonstrates a professional approach to data protection and user trust, supported by transparent business information and verified contact details. Overall, Noxwin.com presents a low-risk profile with a solid foundation for growth and user engagement. Strategic enhancements in privacy consent mechanisms and security policy disclosures could further strengthen its market position and compliance stature.

30
28
5
60
-
75
100
gamblingcasinosportsbettingcryptobonuses+2 more
ReactNext.jsVercel AnalyticsGoogle Tag Manager

Partner Domains:

stake.bet
partner
go.affiliatedonbet.com
partner

+3 more partners

2025-06-21T18:22:04.213Z
azzolinaphotography.com favicon

Azzolina Photography by Elizabeth Azzolina

azzolinaphotography.com

0
MediaUnited StatessmallHIGH

Azzolina Photography by Elizabeth Azzolina is a professional photography business based in Huntingdon Valley, Pennsylvania, serving the Greater Philadelphia area and surrounding regions. The company specializes in wedding, portrait, family, newborn, headshot, branding, and product photography, offering personalized and authentic services to a diverse clientele including couples, families, and professionals. The website showcases an extensive portfolio, client testimonials, and integrates social media channels to engage its audience. Technically, the website is built on the Photofolio.com platform, utilizing modern JavaScript libraries, Google Analytics, and Pinterest SDK for tracking and social integration. The site is hosted on a Rackspace CDN, ensuring reliable content delivery. The design is professional, mobile-optimized, and provides a good user experience with clear navigation and rich content. From a security perspective, the site enforces HTTPS and does not expose sensitive data. However, it lacks visible security headers, privacy and cookie policies, and incident response information, which are areas for improvement. No WAF or blocking mechanisms were detected, indicating full accessibility. Overall, the website presents a trustworthy and professional image with strong business credibility. Strategic recommendations include adding comprehensive privacy and cookie policies with consent mechanisms, implementing security headers, and providing clear security and incident response policies to enhance user trust and compliance.

55
10
5
40
-
75
100
photographyweddingportraitfamilynewborn+5 more
JavaScriptGoogle AnalyticsPinterest SDKWeb Font Loader+1
2025-06-21T18:22:04.202Z
financemalta.org favicon

FinanceMalta

financemalta.org

0
FinanceMaltamediumMEDIUM

FinanceMalta is a public-private initiative dedicated to promoting Malta as a leading financial services centre. The organization targets businesses and innovators in the financial sector, offering services such as event organization, industry news dissemination, and sector-specific publications. The website reflects a strong market position as a key promoter of Malta's financial industry, with a professional and consistent brand presence. Technically, the website is built on the Webflow CMS platform, leveraging modern JavaScript libraries such as GSAP for animations, Google Tag Manager for analytics, and Memberstack for membership management. The site is well-optimized for mobile devices and demonstrates good SEO and accessibility practices. From a security perspective, the site enforces HTTPS with excellent SSL configuration, employs Google reCAPTCHA on forms to prevent abuse, and uses Cookiebot for cookie consent management. However, it lacks explicit security policies, incident response contacts, and vulnerability disclosure mechanisms, which are recommended for enhanced trust and compliance. Overall, the website presents a low-risk profile with strong business credibility and technical maturity. Strategic improvements in transparency around security policies and direct contact information would further enhance trust and compliance.

60
70
35
70
-
80
100
financemaltafinancialserviceseventspublications+2 more
WebflowjQueryGSAPGoogle Tag Manager+2

Partner Domains:

maltasustainablefinance.org
partner
2025-06-21T18:22:04.194Z
fairplaycasino.com favicon

FairPlay

fairplaycasino.com

0
HospitalityN/asmallHIGH

FairPlay appears to be an online casino platform targeting Dutch-speaking users, offering gambling services with customer support via email. The website is minimalistic, primarily serving as a landing page with a logo and a contact email address. There is no evidence of privacy, cookie, or terms of service policies, and no interactive forms or social media presence are visible. The technical infrastructure is basic, with JavaScript and CSS used for styling and minimal scripting. The site references a Freshchat widget script, but it is commented out, indicating no active live chat functionality. No structured data or SEO enhancements are present. From a security perspective, the website lacks HTTPS information in the provided data, no security headers are detected, and no incident response or vulnerability disclosure information is available. These factors indicate a low security posture with significant room for improvement. The absence of privacy and cookie policies also suggests non-compliance with GDPR requirements, which is critical for online gambling platforms operating in or targeting the EU. Overall, the website's risk profile is elevated due to minimal content, lack of security best practices, and absence of compliance documentation. Strategic recommendations include implementing HTTPS, publishing comprehensive privacy and cookie policies, adding security headers, and enhancing contact information. Improving these areas will increase trustworthiness, legal compliance, and user confidence.

15
25
-
70
-
70
100
onlinecasinogamblingcustomersupportdutch
JavaScriptCSS
2025-06-21T18:22:04.179Z
afriqiyah.aero favicon

شركة الخطوط الجوية الأفريقية

afriqiyah.aero

0
TransportationLibyamediumHIGH

شركة الخطوط الجوية الأفريقية هي شركة طيران ليبية تأسست في عام 2001 وتقدم خدمات نقل الركاب والبضائع إلى عدة وجهات عربية وإفريقية. تتمتع الشركة بعضويات معترف بها مثل ICAO وIATA، مما يعزز مكانتها في سوق الطيران الإقليمي. الموقع الإلكتروني يعكس هوية الشركة بشكل جيد ويقدم معلومات واضحة عن خدماتها وشبكة رحلاتها. من الناحية التقنية، يستخدم الموقع منصة WordPress مع إطار عمل UIkit ويوفر تجربة مستخدم جيدة مع تصميم متجاوب. من حيث الأمن، الموقع يستخدم HTTPS ولكن يفتقر إلى رؤوس أمان متقدمة وسياسات أمان واضحة مثل security.txt أو سياسة الكشف عن الثغرات. لا توجد سياسات خصوصية أو ملفات تعريف ارتباط واضحة، مما يشير إلى فجوات في الامتثال للخصوصية. بشكل عام، الموقع مهني وموثوق به لكنه يحتاج إلى تحسينات أمنية وخصوصية لتعزيز الثقة والامتثال.

80
10
-
55
-
75
100
airlinetransportationarabiclibyawordpress+1 more
WordPress 6.8.1PHPJavaScriptUIkit framework+1
2025-06-21T18:22:04.082Z
simply-vc.com.mt favicon

Simply Staking

simply-vc.com.mt

0
TechnologyMaltamediumMEDIUM

Simply Staking is a professional blockchain services company specializing in crypto staking, node management, oracle solutions, and blockchain consulting. With over $900 million in assets under management and support for more than 50 blockchain networks, they serve both institutional and retail investors. Their business model focuses on providing secure, reliable, and scalable staking infrastructure and related services, positioning them as a significant player in the blockchain technology sector. Technically, the website is built on WordPress using the Elementor framework, incorporating modern web technologies such as Lottie animations, Google Tag Manager, and Microsoft Clarity for analytics. The site is well-optimized for performance, mobile responsiveness, and accessibility, reflecting a mature digital infrastructure. From a security perspective, the site enforces HTTPS, implements multiple security headers, and employs a comprehensive cookie consent mechanism aligned with GDPR requirements. No critical vulnerabilities or exposed sensitive data were detected. However, explicit security policies and incident response information are not publicly available, representing an area for improvement. Overall, Simply Staking demonstrates a strong security posture, professional web presence, and compliance with privacy regulations, indicating a trustworthy and credible business. Strategic recommendations include publishing detailed security and incident response policies and enhancing transparency around vulnerability disclosures.

95
20
5
70
-
85
100
stakingblockchaincryptonodemanagementblockchainconsulting+2 more
WordPressElementorPHPjQuery+4

Partner Domains:

chainlink.com
partner
binance.com
partner

+3 more partners

2025-06-21T18:22:04.079Z
H

herdagdelen.com

herdagdelen.com

0
TechnologyN/asmallHIGH

The website herdagdelen.com serves as a personal academic and professional portfolio for Amaç Herdağdelen, a computational social scientist with expertise in computational linguistics, AI, and social sciences. The site highlights his research interests, past work at Facebook, and co-founding of a data visualization collective. The content is well-structured and professionally presented, targeting academics, researchers, and data science professionals interested in social data analysis and visualization. Technically, the site is built using the Hugo static site generator with the PaperMod theme, leveraging modern web technologies such as Font Awesome icons and Google Analytics for tracking. The site performs well with good mobile optimization and basic accessibility features. However, it lacks advanced SEO and accessibility enhancements. From a security perspective, the site uses HTTPS and includes no forms or input fields, reducing attack surface. However, it lacks explicit security headers and does not provide privacy or cookie policies, which impacts compliance and user trust. No vulnerability disclosure or incident response information is present, limiting transparency for security issues. Overall, the site is a solid personal academic portfolio with good technical implementation but has room for improvement in privacy compliance, security best practices, and transparency. Strategic enhancements in these areas would improve trustworthiness and compliance posture.

15
28
5
40
-
75
100
computationalsocialsciencedatavisualizationresearchacademichugo+2 more
Hugo static site generatorFont Awesome iconsGoogle Analytics (gtag.js)

Partner Domains:

cilekagaci.com
partner
2025-06-21T18:22:04.069Z
praxisifm.com favicon

Praxis

praxisifm.com

0
FinanceGuernseymediumMEDIUM

Praxis is a well-established, owner-managed financial services group with over 50 years of experience, specializing in private wealth, corporate services, pensions, employer solutions, and yacht services. The company maintains a strong market position with a global network and a comprehensive suite of services tailored to private individuals, families, and international corporate clients. Their website reflects a professional and modern digital presence, leveraging React and other contemporary technologies to deliver a responsive and user-friendly experience. The technical infrastructure is robust, featuring modern frameworks, structured data for SEO, and comprehensive cookie consent mechanisms ensuring GDPR compliance. The site demonstrates good performance and accessibility standards, with clear navigation and rich content that supports their business objectives. Security posture is strong, with HTTPS enforced, appropriate security headers, and no visible vulnerabilities or exposed sensitive data. The presence of cookie consent and privacy policies further underscores their commitment to privacy and compliance. However, explicit security policies and incident response contacts are not found, representing an area for improvement. Overall, Praxis presents a trustworthy and credible online presence aligned with their business stature. Strategic recommendations include enhancing security transparency, maintaining up-to-date compliance documentation, and continuous monitoring of third-party integrations to mitigate risks.

80
40
5
85
-
70
100
financeprivatewealthcorporateservicespensionsyachtservices+4 more
ReactGlide.js (slider/carousel)Lottie animationsCookieScan for cookie consent+3
2025-06-21T18:22:04.064Z
kalambagames.com favicon

Kalamba Games Limited

kalambagames.com

0
TechnologyMaltamediumHIGH

Kalamba Games Limited is a Malta-based technology company specializing in the development of online casino slots and promotional tools. The company holds a valid Malta Gaming Authority (MGA) license, indicating regulatory compliance and legitimacy in the gaming industry. Their website showcases a portfolio of innovative slot games and advanced gaming technology solutions, targeting online casino operators and gaming enthusiasts. The presence of multiple partner logos and industry certifications further supports their market position as a reputable B2B gaming software provider. Technically, the website is built on WordPress using the Divi theme and incorporates modern web technologies including jQuery, Google Analytics, and Facebook Pixel for analytics and marketing. The site is mobile-optimized with good SEO practices and a cookie consent mechanism compliant with GDPR requirements. However, explicit privacy and terms of service pages were not found on the homepage, which could be improved for better compliance. From a security perspective, the site enforces HTTPS with good SSL configuration and uses security-related plugins. While some security headers are implied, explicit implementation of headers like Content-Security-Policy and X-Frame-Options is not evident. No vulnerabilities or exposed sensitive data were detected in the HTML content. The absence of a published security policy or incident response contact is a gap in transparency. Overall, Kalamba Games presents a professional and trustworthy online presence with a solid technical foundation and regulatory compliance. Strategic improvements in security headers, privacy documentation, and incident response disclosures would enhance their security posture and compliance maturity.

15
25
-
75
-
80
-
onlineslotsgamingcasinotechnologymgalicensed+2 more
WordPress 6.8.1Divi Theme 4.27.4jQuery 3.7.1Google Analytics+7

Partner Domains:

betsson.com
partner
groovegaming.com
partner

+3 more partners

2025-06-21T18:22:04.033Z
E

Attention Required! | Cloudflare

edwardjones.com

0
FinanceN/aHIGH

The website edwardjones.com is currently inaccessible due to a Cloudflare Web Application Firewall (WAF) block, which prevents access to any meaningful content or metadata. As a result, no business descriptions, contact information, or policy documents are available for analysis. The site appears to be protected by Cloudflare's security services, indicating an active effort to mitigate online attacks or suspicious activity. However, this also limits the ability to assess the site's technical infrastructure, security posture, or compliance status. From the available data, the site is associated with the finance sector, but no further business details can be extracted. The technical infrastructure is primarily Cloudflare-based, but no CMS, frameworks, or additional technologies are detectable due to the block. Security headers, SSL configuration, and privacy compliance indicators cannot be evaluated. Given the block, the security posture cannot be fully assessed, but the presence of a WAF suggests some level of security awareness. However, the lack of accessible policies and contact information is a concern for transparency and compliance. Overall, the site scores very low on content quality, technical implementation, security, privacy compliance, and business credibility due to inaccessibility. Strategic recommendations include resolving the blocking issues to allow legitimate users and security analysts access, publishing clear privacy and cookie policies, implementing visible security and incident response information, and improving website accessibility and SEO to enhance trust and compliance.

50
10
-
70
-
75
100
Cloudflare
2025-06-21T18:22:04.030Z
leon-tech.com favicon

leontech

leon-tech.com

0
TechnologyGermanysmallHIGH

leontech is a small German IT solutions provider specializing in website development and search engine optimization services. The website presents basic information about the company’s offerings and provides clear contact details including phone, email, and physical address. The site uses a Bootstrap-based design with several JavaScript libraries, though some are outdated. There is no evidence of advanced security or privacy policies, and no HTTPS enforcement is visible in the provided content. The site lacks privacy and cookie policies, which impacts compliance and trust. Technically, the website employs common front-end technologies such as Bootstrap, jQuery, Font Awesome, and Google Fonts. However, the use of an outdated jQuery version (1.8.3) introduces potential security vulnerabilities. The site appears moderately optimized for performance and mobile devices but lacks advanced SEO and accessibility features. No analytics or tracking scripts were detected, indicating minimal user tracking. From a security perspective, the absence of HTTPS and security headers is a significant concern. The contact form includes client-side validation but no visible server-side security measures. No incident response or security policies are published. Overall, the security posture is weak, exposing the business to potential risks. The overall risk assessment suggests that while the business is legitimate and provides clear contact information, it should urgently improve its security and privacy practices to protect user data and enhance trust. Strategic recommendations include upgrading libraries, implementing HTTPS, publishing privacy and cookie policies, and adding security headers.

40
10
-
70
-
50
40
webseitenentwicklungsuchmaschinen-optimierungitsolutionscontactform
jQuery 1.8.3BootstrapFont AwesomeGoogle Fonts (Montserrat, Open Sans)+3
2025-06-21T18:22:04.028Z
castlecraig.co.uk favicon

Castle Craig

castlecraig.co.uk

0
HealthcareUnited KingdommediumHIGH

Castle Craig is a well-established private addiction rehabilitation centre located in Scotland, operating since 1988. It offers a comprehensive range of addiction treatment services including alcohol and drug rehab, detoxification, residential programmes, and aftercare. The centre is recognized for its evidence-based, patient-centred approach and is regulated by Healthcare Improvement Scotland and accredited with ISO 9001 certification. The website reflects a professional and trustworthy business with clear contact information, strong branding, and a focus on patient care. Technically, the website is built on WordPress using modern technologies such as Gravity Forms for data collection, Bootstrap for responsive design, and integrates multiple analytics and marketing tools including Google Tag Manager, Microsoft Clarity, and LiveChat. The site is well-optimized for SEO and accessibility, with a cookie consent mechanism compliant with GDPR. From a security perspective, the site enforces HTTPS and uses consent management for cookies, but could improve by implementing additional security headers and publishing explicit incident response or vulnerability disclosure policies. No critical vulnerabilities or blocking mechanisms were detected, indicating a solid security posture. Overall, Castle Craig's website demonstrates a mature digital presence with strong business credibility, good privacy compliance, and a secure environment suitable for handling sensitive patient inquiries and data.

70
55
5
70
-
65
40
addictionrehabhealthcaredetoxprivacy+4 more
WordPressGravity FormsBootstrap GridGoogle Tag Manager+3
2025-06-21T18:22:04.025Z