Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

0
Websites
0
Industries
0
Countries
0
Avg Score
Page 2816 of 2975|Showing 140751-140800 of 148705
H

Hoval Österreich

hoval.at

0
EnergyAustrialargeHIGH

Hoval Österreich operates as a leading provider of technologically advanced heating and climate control solutions in Austria, targeting both residential and commercial sectors. Their product portfolio includes heating systems for heat pumps, oil, gas, biomass, and solar, complemented by climate technology solutions for heating, cooling, and ventilation. The company maintains a strong market position supported by a comprehensive website that offers detailed product information, customer references, and service options including customer support and online ordering via myHoval. Technically, the website is built on the SAP Commerce (Hybris) platform, integrating modern marketing and analytics tools such as Google Tag Manager, Google Analytics, and OneTrust for cookie consent management. However, performance is moderate with slow DNS resolution and no page size or load time data available. Mobile optimization and SEO are well addressed, but accessibility is basic. From a security perspective, the site lacks a valid SSL certificate and does not support modern TLS protocols, significantly weakening its security posture. While security headers like HSTS, X-Frame-Options, and XSS protection are present, the absence of a valid certificate and weak SSL/TLS configuration are critical issues. Privacy compliance is strong with clear privacy and cookie policies and GDPR adherence. Contact information is available but lacks explicit security policy or incident response details. Overall, the website is professional and trustworthy from a business and content perspective but requires urgent improvements in SSL/TLS configuration to enhance security and user trust. Strategic recommendations include fixing the SSL certificate, enabling modern TLS versions, and tightening CORS policies.

70
33
-
50
-
85
100
energyheatingclimatecontrolaustriasapcommerce+3 more
Google Tag ManagerGoogle Analytics (gtag.js)OneTrust Cookie ConsentDot.js templating+1
2025-06-15T22:01:15.439Z
amstetten.at favicon

Stadtgemeinde Amstetten

amstetten.at

0
GovernmentAustriamediumHIGH

The website amstetten.at serves as the official online portal for the Stadtgemeinde Amstetten, a municipal government entity in Austria. It provides residents and visitors with comprehensive information about city administration, services, events, and public resources. The site targets local citizens and stakeholders, offering key services such as event announcements, service directories, job postings, and public transportation information. The business model is that of a government entity focused on public service delivery and community engagement. Technically, the website is built on the WordPress CMS platform, utilizing common plugins such as Yoast SEO for search optimization, WP Statistics for analytics, and Complianz for GDPR-compliant cookie management. The site employs Apache as the web server and includes JavaScript libraries like jQuery and RoyalSlider for interactive features. While the site is mobile-optimized and accessible, performance data is incomplete, and the site currently lacks a valid SSL certificate, resulting in no HTTPS support. From a security perspective, the absence of a valid SSL certificate is a critical vulnerability, exposing users to potential data interception risks. The site does not implement modern TLS protocols, HSTS, or OCSP stapling, which are essential for secure communications. However, no known vulnerabilities such as Heartbleed or POODLE were detected. Privacy compliance is strong, with a clear cookie consent mechanism and a comprehensive privacy policy aligned with GDPR requirements. Overall, the website is a well-structured and professionally maintained municipal portal with good content quality and user experience. The primary risk lies in the lack of HTTPS, which should be addressed urgently to protect user data and enhance trust. Strategic recommendations include implementing a valid SSL certificate, enabling modern security protocols, and enhancing security headers to improve the site's security posture and compliance.

15
-
-
50
-
85
85
governmentmunicipalityaustriapublicservicesevents+3 more
WordPressPHPApachejQuery+7
2025-06-15T22:01:15.280Z
jamsaz.com favicon

شرکت مهندسی صنعت و تولید جمع‌ساز

jamsaz.com

0
ManufacturingIranmediumCRITICAL

شرکت مهندسی صنعت و تولید جمع‌ساز یک شرکت تولیدی متوسط در ایران است که در زمینه طراحی و تولید سیستم‌های روشنایی خودرو فعالیت می‌کند. این شرکت با سابقه بیش از 30 سال، محصولات متنوعی از چراغ‌های خودرو را ارائه می‌دهد و دارای آزمایشگاه تخصصی با گواهینامه‌های معتبر است. سایت شرکت به زبان فارسی و با استفاده از وردپرس و افزونه‌های رایج ساخته شده است. از نظر فنی، سایت از تکنولوژی‌های مدرن بهره می‌برد اما فاقد گواهی SSL معتبر است که یک ضعف امنیتی مهم محسوب می‌شود. همچنین سیاست‌های حفظ حریم خصوصی و کوکی‌ها در سایت به صورت آشکار وجود ندارد که می‌تواند ریسک‌های قانونی ایجاد کند. به طور کلی، شرکت موقعیت خوبی در بازار روشنایی خودرو ایران دارد اما نیازمند بهبودهای امنیتی و انطباق با مقررات حفظ حریم خصوصی است.

15
-
-
50
-
85
-
manufacturingautomotivelightingiranwordpress+2 more
PHP 7.4WordPress 5.8.10ElementorContact Form 7+6

Partner Domains:

scm.jamsaz.com
service
jobs.jamsaz.com
service
2025-06-15T22:01:00.477Z
wave-network.org favicon

WOMEN AGAINST VIOLENCE EUROPE

wave-network.org

0
Non-profitAustriamediumHIGH

WOMEN AGAINST VIOLENCE EUROPE (WAVE) is a well-established non-profit network comprising over 180 European women’s NGOs dedicated to preventing and protecting women and children from violence. The organization focuses on capacity building, advocacy, research, and awareness raising, positioning itself as a leading entity in the European women's rights sector. Their website reflects a professional and content-rich platform targeting NGOs, professionals, policymakers, and the general public interested in gender equality and violence prevention. Technically, the website is built on WordPress with a modern plugin ecosystem including Gravity Forms, Event Tickets, and MemberPress. While the design and content quality are excellent, technical performance is moderate, and mobile optimization is good. The site uses Matomo for analytics and Borlabs Cookie for privacy compliance, indicating a mature approach to user data and consent. Security-wise, the site suffers from a critical issue: an invalid or missing SSL certificate, resulting in no active TLS protocols and weak encryption posture. Although some security headers are present, the lack of proper HTTPS implementation significantly lowers the security score. Privacy and cookie policies are comprehensive and GDPR compliant, with clear contact information and consent mechanisms. Overall, the site is trustworthy and professionally managed but requires urgent remediation of SSL/TLS issues to ensure secure user interactions and maintain credibility. Strategic improvements in security infrastructure will enhance user trust and compliance with modern web standards.

50
18
5
75
-
85
100
non-profitwomensrightsviolencepreventioneuropeannetworkadvocacy+2 more
WordPress 6.8.1Nginx web serverGravity Forms pluginEvent Tickets plugin+7
2025-06-15T22:00:50.991Z
F

Focolare Media

newcitypress.com

0
MediaN/asmallHIGH

New City Press Bookstore, operated under Focolare Media, is an online platform specializing in academic and spiritual books aimed at promoting unity and spirituality. The website offers a range of products including books, magazines, podcasts, and other resources, targeting readers interested in Christian living and spirituality. The business model is primarily e-commerce with additional subscription and donation services, positioning itself as a niche media and publishing entity within the non-profit sector. Technically, the website is built on Drupal 10 and hosted on Pantheon, leveraging modern web technologies and caching mechanisms. While the site demonstrates good mobile optimization, accessibility, and SEO practices, its performance is currently slow, and it lacks a valid SSL certificate, which critically impacts security and user trust. From a security perspective, the site has implemented some security headers but fails to provide HTTPS, lacks modern TLS protocols, and does not have a cookie consent mechanism despite using tracking tools like Google Tag Manager. These gaps expose the site to potential risks and reduce its compliance with privacy regulations such as GDPR. Overall, the website is functional and professionally presented but requires urgent improvements in SSL/TLS configuration and privacy compliance to enhance security posture and user trust. Strategic recommendations include obtaining a valid SSL certificate, enabling HTTPS, implementing cookie consent, and enhancing security headers and incident response capabilities.

50
18
5
70
-
85
100
spiritualityacademicbooksmediae-commerce+2 more
Drupal 10nginxGoogle Tag ManagerVarnish Cache+3

Partner Domains:

focolare.foundation
parentpending
simplecirc.com
partnerpending
2025-06-15T22:00:50.773Z