Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

0
Websites
0
Industries
0
Countries
0
Avg Score
Page 2939 of 2974|Showing 146901-146950 of 148700
mesdemarches06.fr favicon

Département des Alpes-Maritimes

mesdemarches06.fr

0
government servicesFrancemediumMEDIUM

The website’s overall security posture reveals significant gaps, particularly in privacy compliance and foundational security policies, posing substantial business and regulatory risks. Critical and high-severity issues center around GDPR non-compliance, including the absence of privacy and cookie policies and consent mechanisms, which expose the business to potential legal penalties and reputational damage within the EU market. The lack of an established information security framework, incident response plan, and security documentation further undermines operational resilience and regulatory adherence, notably under NIS2 requirements. Technical security controls such as missing Content-Security-Policy headers, weak SSL key length, and incomplete email authentication protocols exacerbate the risk of data breaches and phishing attacks. While network security and DNS health show relatively strong scores, essential improvements in SSL/TLS configuration and security headers are needed. Immediate remediation is critical to avoid compliance violations, reduce attack surfaces, and protect customer trust. Without addressing these issues promptly, the business risks operational disruption, data compromise, and financial penalties. Overall, the assessment points to urgent needs for governance, compliance, and technical controls alignment to safeguard the enterprise and its customers.

65
-
25
75
72
90
100
governmentpublic servicesadministrationAlpes-Maritimesonline services
jQueryGoogle Tag ManagerWikit.ai Webchatnginx

Partner Domains:

departement06.fr
partner58
cnsa.fr
partnerpending

+2 more partners

2025-06-13T18:14:27.087Z
P

Plexico Créations

plexico-creations.fr

0
signage and visual communicationFrancesmallMEDIUM

The website exhibits significant security and compliance gaps, particularly in privacy and incident management frameworks, posing considerable risks to business reputation and regulatory compliance. Critical deficiencies in GDPR adherence, such as the absence of a privacy policy, cookie policy, and consent mechanisms, expose the business to potential legal penalties and loss of customer trust. The lack of a security policy framework, incident response procedures, and vulnerability disclosure processes undermines the organization's ability to manage and respond to cyber threats effectively. Weak HTTP security headers and mixed content issues indicate vulnerabilities to web-based attacks, potentially compromising user data integrity. Exposure of high-risk services like FTP increases the attack surface and opens pathways for unauthorized access. While email security and DNS health are relatively stronger, they do not compensate for the fundamental gaps in governance and technical controls. Immediate remediation is required to address compliance and critical security flaws to safeguard business continuity and customer confidence. Overall, the security posture is inadequate for operating securely within the EU regulatory environment and against evolving cyber threats.

60
-
25
85
82
85
75
signagevisual communicationcustom signagesignalétiqueaménagement+3 more
Google Tag ManagerjQuerytarteaucitron.jsAOS (Animate On Scroll)+4

Partner Domains:

zandko.fr
partner56
2025-06-13T18:14:11.146Z
F

Format-z

format-z.ch

0
web developmentSwitzerlandsmallMEDIUM

The website demonstrates a moderate security posture with no critical vulnerabilities currently detected; however, there are multiple high and medium risk issues that could expose the business to regulatory non-compliance and cyber threats. Significant gaps exist in privacy compliance, including missing privacy and cookie policies and absence of a consent banner, which expose the business to GDPR fines and reputational damage. The lack of documented information security and incident response policies indicates immature cybersecurity governance, increasing risk during security incidents. Network security weaknesses, such as exposed FTP service and missing DNSSEC, further heighten the risk of unauthorized access and data interception. While email security and SSL/TLS implementations are generally strong, some SSL and HSTS configurations require improvement to maintain secure communications. The overall security headers configuration is suboptimal, missing key protections like Content-Security-Policy, increasing risk of content injection attacks. Immediate attention to governance, privacy compliance, and network service exposure will significantly reduce business risk and improve regulatory adherence. Strengthening these areas will bolster customer trust and reduce potential financial and operational impacts from security incidents.

75
25
25
95
87
85
75
web developmentcustom solutionse-commerceAPIContao CMS+1 more
Contao Open Source CMSFontAwesomeGoogle Tag ManagerApache+3

Partner Domains:

bka.ch
partnerpending
l-drive.ch
partnerpending

+3 more partners

2025-06-13T18:14:11.089Z
monaco-executive-education.com favicon

International University of Monaco

monaco-executive-education.com

0
educationMonacosmallMEDIUM

The website exhibits a mixed security posture with strong network security and SSL/TLS configurations but significant gaps in compliance and core security policies. Critical and high-severity issues primarily surround email authentication, regulatory compliance (GDPR and NIS2), and absence of formal security documentation and procedures. The lack of email authentication poses immediate risks of phishing and email spoofing, undermining brand trust and deliverability. GDPR compliance deficiencies, including missing cookie policies and consent banners, expose the business to potential legal penalties and reputational damage. The absence of an information security framework, incident response plan, and vulnerability disclosure process under NIS2 indicates a maturity gap in organizational security governance. While technical controls like DNS and SSL are generally solid, missing headers and policy configurations reduce defense-in-depth effectiveness. Addressing these vulnerabilities is critical to safeguarding customer data, ensuring regulatory compliance, and maintaining operational resilience. Immediate action will mitigate risks, enhance customer trust, and support long-term business continuity.

80
43
25
55
92
85
100
educationexecutive educationMonacoleadershipprofessional development+2 more
WordPressYoast SEO pluginElementorWP Rocket+7

Partner Domains:

pix-associates.com
servicepending
2025-06-13T18:14:01.478Z
swissquote.ch favicon

Swissquote

swissquote.ch

0
financial servicesSwitzerlandlargeMEDIUM

The website demonstrates a generally strong technical security foundation, with excellent SSL/TLS, network security, and DNS health scores. However, significant gaps exist in compliance with GDPR and NIS2 regulations, indicated by missing privacy and cookie policies, absence of consent mechanisms, and lack of documented security and incident response procedures. These deficiencies expose the business to regulatory risks, potential fines, and reputational damage, especially in regions governed by GDPR and NIS2 mandates. While some medium severity issues like missing X-XSS-Protection header and lack of DKIM records impact security, the primary concern is the absence of governance frameworks and policies. Addressing these will not only reduce compliance risk but also improve overall security posture and stakeholder trust. Immediate prioritization of privacy compliance and formal security documentation is critical to align with legal obligations and industry best practices. The organization's proactive network and SSL/TLS configurations provide a solid base to build upon. Overall, the security posture is solid technically but requires urgent policy and compliance enhancements to mitigate business risks effectively.

85
40
25
85
100
90
100
financial servicestrading platforminvestmentbrokerageSwissquote
ReactReactDOMRequireJSJavaScript+4

Partner Domains:

swissquote.eu
subsidiarypending
swissquote.sg
subsidiarypending

+3 more partners

2025-06-13T18:13:52.511Z
superfund.de favicon

Die neue Dimension der Geldanlage-Investieren in eine digitale Zukunft

superfund.de

0
financeGermanymediumMEDIUM

The website's security posture is currently weak, with significant deficiencies across multiple critical areas including privacy compliance, email authentication, and security policy frameworks. Critical gaps in GDPR adherence expose the business to regulatory penalties and reputational damage, especially given its EU operations without adequate privacy measures. The absence of key HTTP security headers leaves the site vulnerable to common web-based attacks such as clickjacking, content injection, and cross-site scripting. Email infrastructure lacks essential authentication mechanisms, increasing risks of phishing and email spoofing. Additionally, missing incident response and security documentation undermines the organization’s ability to detect, respond to, and recover from security incidents effectively. While SSL/TLS and DNS configurations are relatively stronger, urgent attention is needed to enable HSTS and extend certificate validity. Overall, this assessment reveals a pressing need to implement foundational security controls and compliance policies to safeguard the business and its customers. Failure to address these issues promptly could result in severe operational, financial, and legal consequences.

15
15
17
55
80
85
90
financeinvestmentdigital financecookie consent
JavaScriptCookiebotnginxJavaScript modules

Partner Domains:

superfundgroup.com
subsidiarypending
wirecard.com
paymentpending

+1 more partners

2025-06-13T18:13:49.869Z