Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

0
Websites
0
Industries
0
Countries
0
Avg Score
Page 2947 of 2974|Showing 147301-147350 of 148699
westeve.com favicon

Western Stevedoring Company Limited

westeve.com

0
marine terminal and stevedoringCanadalargeMEDIUM

The website demonstrates a moderate to low overall security posture with no critical vulnerabilities but several high and medium risk issues that could expose the business to significant security, compliance, and reputational risks. Key weaknesses include missing essential security headers, lack of GDPR compliance elements such as cookie policies and consent mechanisms, and major gaps in NIS2 framework adherence including absence of incident response and security policies. While email security, SSL/TLS, DNS health, and network security show strong configurations, the lack of governance and protective controls on the web application layer and privacy compliance may lead to data breaches, regulatory penalties, and loss of customer trust. The website’s SSL certificate nearing expiration adds urgency to maintain encrypted communication uninterrupted. Addressing these gaps will enhance resilience against common web attacks, ensure regulatory compliance, and protect the organization’s brand. Immediate focus should be on implementing security headers, GDPR cookie compliance, and establishing formal security policies and incident response plans. Strengthening these areas will provide a solid foundation for ongoing security and compliance maturity.

25
43
25
100
87
85
100
marinestevedoringterminal servicescargo handlinglogistics+2 more
WordPressYoast SEO pluginGoogle Tag ManagerFont Awesome+3

Partner Domains:

ssamarine.com
subsidiarypending
intermodex.com
partnerpending

+1 more partners

2025-06-13T18:10:49.000Z
dreamcatcher.mc favicon

DreamCatcher

dreamcatcher.mc

0
Destination Management and EntertainmentMonacosmallMEDIUM

The website demonstrates notable security weaknesses primarily in its HTTP security headers, GDPR compliance, and adherence to the NIS2 cybersecurity framework, resulting in a low overall security posture in these critical areas. While there are no critical vulnerabilities detected, multiple high and medium severity issues expose the business to risks such as data breaches, regulatory fines, reputational damage, and operational disruptions. The absence of essential security headers like Strict-Transport-Security and Content-Security-Policy increases susceptibility to man-in-the-middle and cross-site scripting attacks. Non-compliance with GDPR requirements, including missing privacy and cookie policies and lack of a consent banner, elevates legal risk and undermines customer trust. Deficiencies in NIS2-related documentation and procedures reflect inadequate organizational readiness for incident response and business continuity. Conversely, strong network security and good email, SSL/TLS, and DNS configurations provide a solid foundation to build upon. Addressing these gaps promptly will significantly improve security resilience, regulatory compliance, and stakeholder confidence.

15
25
25
85
85
85
100
Destination ManagementEntertainment AgencyMonacoLuxuryTailor-made experiences
WordPress 6.4.2jQuery 3.7.1Avada Theme 3.11.3Apache+3

Partner Domains:

meb.mc
partner65
monaco-welcome.mc
partnerpending
2025-06-13T18:10:48.994Z
johnsoncontrols.com favicon

Johnson Controls

johnsoncontrols.com

0
Building Automation and ControlsUnited StatesenterpriseMEDIUM

The website demonstrates a moderate security posture with no critical vulnerabilities found; however, several high and medium-risk issues significantly impact compliance and risk management. Key deficiencies exist in GDPR compliance, including the absence of privacy and cookie policies and lack of user consent mechanisms, exposing the business to regulatory penalties and reputational damage. The absence of a documented information security framework, incident response procedures, and security policies under NIS2 guidance further increases organizational risk and may hinder regulatory adherence. Security headers are inconsistently implemented, reducing protection against common web threats like XSS and content sniffing. SSL/TLS configurations are generally strong but require timely certificate renewal and elimination of mixed content to maintain secure communications. DNS settings are mostly healthy but can be improved by enabling DNSSEC to prevent domain spoofing. Positively, email and network security postures are robust, mitigating some external attack vectors. Overall, urgent attention to compliance and governance-related controls is critical to safeguard the business and maintain trust with users and regulators.

60
25
25
100
80
85
100
OpenBlueArtificial IntelligenceHealthy BuildingsAI in Building ManagementNet Zero Buildings+4 more
jQueryBootstrap 4Coveo SearchGoogle Maps API+15
2025-06-13T18:10:48.990Z
carolineolds.com favicon

Caroline Olds Real Estate

carolineolds.com

0
real estateMonacosmallMEDIUM

The website demonstrates a concerning security posture with no critical issues but multiple high and medium risk vulnerabilities, primarily related to missing security headers, insufficient GDPR compliance, and lack of key NIS2 security frameworks. The absence of crucial HTTP security headers such as Strict-Transport-Security and Content-Security-Policy exposes the site to man-in-the-middle attacks, clickjacking, and cross-site scripting risks. GDPR non-compliance, including the lack of a cookie consent banner and incomplete privacy policies, poses legal and reputational risks, especially in jurisdictions enforcing data protection laws. Additionally, the site lacks documented security policies, incident response plans, and business continuity procedures required under the NIS2 directive, increasing operational risk and regulatory exposure. SSL/TLS configurations are suboptimal, with weak key lengths and impending certificate expiry risking data confidentiality and trust. DNS security is moderate but could be strengthened by enabling DNSSEC and configuring CAA records. While email and network security appear robust, the overall low scores in security headers and NIS2 compliance indicate urgent remediation is necessary to protect business assets and maintain customer trust.

20
58
25
100
60
85
100
real estateMonacoproperty salesproperty rentalsnew developments+2 more
WordPressGravity FormsYoast SEOWP Rocket+11

Partner Domains:

chambre-immobiliere-monaco.mc
partnerpending
2025-06-13T18:10:48.989Z