Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

0
Websites
0
Industries
0
Countries
0
Avg Score
Page 826 of 870|Showing 41251-41300 of 43468
goldbeck-rhomberg.com favicon

GOLDBECK RHOMBERG GmbH

goldbeck-rhomberg.com

0
Real EstateAustrialargeHIGH

GOLDBECK RHOMBERG GmbH is a well-established construction and real estate services company with over 50 years of experience, primarily operating in Austria and Europe. The company offers comprehensive services including the turnkey construction of logistics and industrial halls, office buildings, parking garages, and residential buildings, positioning itself as an integrated provider in the real estate sector. Their business model focuses on delivering end-to-end solutions from design to operation, including parking services. Technically, the website is built on modern frameworks such as Nuxt.js and Express, hosted on Vercel, and uses TYPO3 CMS for content management. The site is well-optimized for SEO, mobile responsiveness, and accessibility, with a professional design and clear navigation. However, the security posture is currently weak due to the absence of a valid SSL certificate and lack of enabled TLS protocols, which is a critical issue that needs immediate remediation. Privacy compliance is strong, with comprehensive privacy and cookie policies and consent mechanisms in place. Overall, the website reflects a credible and professional business presence but requires urgent security improvements to protect user data and maintain trust.

45
18
5
70
-
85
100
constructionrealestatesustainabilityparkingservicesnews+1 more
ExpressVercelNuxt.jsTailwind CSS

Partner Domains:

goldbeck.de
parentpending
goldbeck.cz
subsidiarypending

+3 more partners

2025-06-15T21:49:56.258Z
cpbcon.com.au favicon

CPB Contractors

cpbcon.com.au

0
TransportationAustraliaenterpriseHIGH

CPB Contractors is a well-established major contractor specializing in critical and complex infrastructure projects across Australia and New Zealand. The company operates as a subsidiary of the CIMIC Group and holds a leading market position in sectors such as transport, energy, and construction. Their website reflects a professional business model focused on large-scale infrastructure delivery, with key services including rail, tunneling, roads, water, and new energy projects. The target audience includes government agencies, industry partners, and prospective employees. Technically, the website is built on modern frameworks including Next.js and Material-UI, integrated with Sitecore CMS, and employs Google Analytics and Tag Manager for tracking. However, the site suffers from slow load times and lacks a valid SSL certificate, which critically impacts security and user trust. Mobile optimization and SEO are adequately addressed, but accessibility features are basic. From a security perspective, the absence of HTTPS and security headers represents a significant vulnerability. No explicit security policies or incident response contacts are published, and privacy compliance is limited despite the presence of a privacy policy. The site uses tracking technologies but lacks cookie consent mechanisms, indicating partial privacy compliance. Overall, the website is functional and professional but requires urgent security improvements, especially SSL implementation and enhanced privacy compliance, to reduce risk and improve trustworthiness.

50
18
5
50
-
85
100
constructioninfrastructurecontractoraustraliatransport+3 more
ReactNext.jsMaterial-UIGoogle Analytics+2

Partner Domains:

cimic.com.au
parentpending
leightonasia.com
partnerpending

+3 more partners

2025-06-15T21:49:55.741Z
grawe.rs favicon

GRAWE osiguranje a.d.o.

grawe.rs

0
FinanceSerbiamediumHIGH

GRAWE Srbija is a well-established insurance company operating in Serbia, offering a broad range of life and non-life insurance products including vehicle, property, and health-related insurance. The company is part of the larger GRAWE Group, which has a long tradition in the insurance sector. The website is professionally designed using TYPO3 CMS and integrates modern technologies such as Google Tag Manager and Cloudfront CDN. It provides clear navigation, comprehensive product information, and multiple contact channels including phone, email, and social media. Privacy and cookie policies are present and include consent mechanisms, indicating good compliance with GDPR requirements. However, the website suffers from a critical security issue: the SSL certificate is invalid or missing, resulting in HTTPS not being properly enabled. This significantly impacts the security posture and user trust. Security headers are well configured, but the lack of valid SSL and modern TLS protocols is a major vulnerability. No explicit security or incident response policies are published, and no vulnerability disclosure or security.txt files are found. Overall, the website is functional and credible but requires urgent remediation of SSL/TLS issues to improve security and trust.

90
-
5
50
-
50
100
insurancefinanceserbialifeinsurancevehicleinsurance+4 more
TYPO3 CMSGoogle Tag ManagerGoogle AnalyticsCloudfront CDN+1

Partner Domains:

grawe.at
parent40
2025-06-15T21:49:55.674Z
webroot.com favicon

Webroot

webroot.com

0
TechnologyUnited StatesenterpriseHIGH

Webroot, a subsidiary of Open Text Corporation, is a well-established cybersecurity company founded in 2004, providing multi-vector protection solutions for endpoints, networks, and identity protection. The company targets both home users and businesses, offering a broad portfolio of products including antivirus, identity protection, cloud backup, VPN, and threat intelligence services. The website reflects a mature enterprise with consistent branding, comprehensive content, and strong market positioning supported by industry awards and customer testimonials. Technically, the website is built on a Concrete5 CMS platform, leveraging Apache server technology, jQuery, Google Fonts, and is delivered via Imperva CDN. While the site is mobile-optimized and accessible with good SEO practices, performance data is limited and suggests moderate speed. The site uses modern marketing and analytics tools such as Google Tag Manager and Sitespect for tracking and optimization. From a security perspective, the site lacks a valid SSL certificate and does not support HTTPS or modern TLS protocols, which is a critical vulnerability exposing users to potential interception and attacks. Security headers are partially implemented but key protections like HSTS and OCSP stapling are missing. No explicit security policy or incident response information is provided, which could be improved to enhance trust and compliance. Overall, the website demonstrates high business credibility and content quality but suffers from significant security configuration issues that must be addressed to protect users and maintain compliance. Strategic improvements in SSL/TLS deployment and security best practices are recommended to elevate the security posture and user trust.

20
15
5
50
-
90
100
cybersecurityendpointprotectionidentityprotectioncloudbackupvpn+4 more
ApachejQueryGoogle FontsImperva CDN+3

Partner Domains:

opentextcybersecurity.com
partnerpending
brightcloud.com
partnerpending
2025-06-15T21:49:51.172Z
frauscher.com favicon

Frauscher Sensor Technology USA Inc.

frauscher.com

0
TransportationUnited StateslargeHIGH

Frauscher Sensor Technology USA Inc. is a leading provider of highly reliable train detection and wayside object control solutions, serving rail operators and system integrators globally. The company offers a comprehensive portfolio including hardware components like wheel sensors and axle counters, software solutions, and smart life cycle services. With a strong market position and a global footprint, Frauscher is recognized for its innovation and quality in the transportation sector. Technically, the website is built on modern frameworks such as Nuxt.js and uses Storyblok CMS, hosted on AWS CloudFront. The site is well-optimized for mobile and SEO, with good accessibility features. However, performance is moderate and could be improved. From a security perspective, the site employs several security headers and has a proactive PSIRT program. However, the SSL certificate is currently invalid, which is a critical issue that impacts the overall security posture. Other security best practices are in place, but improvements in SSL configuration and CSP are recommended. Overall, the website presents a professional and trustworthy image, with comprehensive privacy and cookie policies in place. The domain registration is consistent with the business claims, enhancing credibility. Strategic recommendations include fixing SSL issues, enhancing security headers, and maintaining strong privacy compliance to further strengthen trust and security.

70
18
-
50
-
90
100
traindetectionrailwayaxlecounterswheelsensorsdatatransmission+4 more
Nuxt.jsTailwind CSSStoryblok CMSCloudFront CDN+3

Partner Domains:

delachaux.com
parentpending
hitachi.com
partnerpending
2025-06-15T21:49:49.375Z
moalach.at favicon

Moalach

moalach.at

0
HospitalityAustriasmallHIGH

Moalach is a small consultancy firm specializing in online marketing and data protection services tailored for the tourism sector in Austria, particularly the Tirol region. Founded in 2016 by Dominik Neuner, the company leverages deep industry experience and academic involvement to provide practical and strategic digital marketing solutions to small and medium-sized tourism businesses. The website presents a professional image with clear service offerings and client references, targeting tourism operators and destinations seeking digital transformation and compliance support. Technically, the website employs standard web technologies including Matomo analytics for user tracking, but lacks modern security implementations such as HTTPS and security headers. The site suffers from slow load times and does not implement cookie consent mechanisms, which may impact user trust and regulatory compliance. Hosting is provided by kasserver.com, and the domain registration aligns well with the business profile. From a security perspective, the absence of a valid SSL certificate and HTTPS support is a critical vulnerability, exposing users to potential data interception. The lack of security headers and session management features further weakens the site's security posture. Privacy compliance is partially addressed with a privacy policy present, but cookie consent and detailed data retention disclosures are missing. Overall, while the business model and content quality are solid and relevant to its niche, the technical and security shortcomings present risks that should be addressed promptly to enhance trust, compliance, and user experience.

80
-
5
50
-
85
-
onlinemarketingtourismdatenschutzconsultingdigitaltransformation
Matomo AnalyticsCustom JavaScriptCSS3HTML5
2025-06-15T21:49:49.306Z
apg.at favicon

Austrian Power Grid

apg.at

0
EnergyAustrialargeHIGH

Austrian Power Grid (APG) operates the national electricity transmission grid in Austria, ensuring secure and reliable power supply across the country. The company is positioned as a key infrastructure provider in the energy sector, focusing on grid operation, expansion, and innovation to support Austria's energy transition. The website reflects a mature digital presence with comprehensive content, clear navigation, and multilingual support, targeting market participants, stakeholders, and the general public. Technically, the site is built on TYPO3 CMS with Vue.js components and integrates Matomo for analytics, indicating a modern and privacy-conscious technology stack. However, the SSL/TLS configuration is critically deficient, with no valid certificate and no modern TLS protocols enabled, which severely impacts security posture and user trust. Security headers are well implemented, including CSP, HSTS (though limited), and X-Frame-Options, demonstrating awareness of web security best practices. Privacy compliance is strong, with clear cookie consent mechanisms and a comprehensive privacy policy aligned with GDPR requirements. Business credibility is supported by consistent branding, social media presence, and detailed organizational information. Overall, while the business and content aspects are robust and professional, the lack of proper SSL/TLS implementation is a critical vulnerability that must be addressed urgently to protect users and maintain trust.

80
-
5
50
-
85
100
energyelectricitygridaustriapower+4 more
ApacheTYPO3 CMSVue.jsMatomo Analytics
2025-06-15T21:49:48.914Z
jabil.com favicon

Jabil Inc.

jabil.com

0
ManufacturingUnited StatesenterpriseHIGH

Jabil Inc. is a global leader in manufacturing solutions, providing comprehensive engineering, manufacturing, and supply chain services to top brands across multiple industries including automotive, healthcare, energy, and technology. The company operates a vast network of over 100 sites worldwide, combining global reach with local expertise to deliver scalable and customized solutions. Their business model focuses on B2B partnerships with original equipment manufacturers and product companies, emphasizing sustainability and community impact. Technically, the website employs a modern tech stack including Google Tag Manager, Vidyard, Lottie animations, and marketing automation tools like Pardot. The site is hosted on Amazon CloudFront CDN and uses Magnolia CMS. The website design is professional, mobile-optimized, and SEO-friendly, with good accessibility features. However, performance metrics are unavailable. From a security perspective, the site implements several security headers and a comprehensive Content Security Policy. Despite this, the SSL certificate is invalid or missing, and no modern TLS protocols are enabled, representing critical vulnerabilities. No incident response or security policy pages were found, indicating potential gaps in security transparency. Overall, the website is content-rich and professionally maintained but requires urgent remediation of SSL and TLS configurations to ensure secure communications and maintain trust. Privacy compliance is well addressed with clear policies and consent mechanisms. The domain registration details align with the business claims, supporting legitimacy.

50
33
5
50
-
85
100
manufacturingengineeringsupplychaintechnologyprivacy+3 more
Google Tag ManagerVidyardLottie animationsSwiper.js+3

Partner Domains:

pscs.jabil.com
partner
2025-06-15T21:49:48.879Z
5

555photography

555photography.com

0
MediaN/asmallHIGH

555photography is a small professional photography business specializing in wedding, family, engagement, and event photography. The business leverages the SmugMug platform to showcase its portfolio and manage client galleries, positioning itself as a niche service provider in the media sector. The website content is relevant and well-structured, targeting individuals and families seeking professional photography services. The business model relies on online presence and client engagement through SmugMug's infrastructure. Technically, the website is hosted on SmugMug's infrastructure using nginx and Amazon CloudFront CDN, with modern JavaScript frameworks and responsive design ensuring good mobile optimization and user experience. However, performance metrics are limited, and some technical debt is evident in the use of older YUI libraries alongside modern modules. From a security perspective, the site lacks a valid SSL certificate and does not support modern TLS protocols, which is a critical vulnerability impacting user trust and data protection. While some security headers are present, the absence of HTTPS and other advanced security features significantly lowers the security posture. Privacy policies and terms of service are available on the SmugMug domain, indicating compliance with GDPR and cookie consent mechanisms, but no explicit security or incident response policies are found. Overall, the website presents a moderate risk profile primarily due to missing HTTPS and limited direct business contact information. Strategic improvements in SSL implementation, security policy publication, and direct contact channels would enhance trust and compliance.

50
-
-
50
-
70
100
photographyweddingfamilyprofessionalengagement+1 more
nginxSmugMug platformCloudFront CDNJavaScript ES6 modules+5
2025-06-15T21:49:48.353Z
denizbank.com favicon

DenizBank A.Ş.

denizbank.com

0
FinanceTurkeylargeHIGH

DenizBank A.Ş. is a large Turkish financial institution offering a broad range of banking services including retail, corporate, and specialized banking sectors. The website reflects a mature digital presence with comprehensive service offerings, detailed legal disclosures, and strong branding consistency. The bank targets both individual and business customers with tailored products and digital banking solutions. The site includes rich content, interactive calculators, and marketing campaigns, indicating a well-developed digital marketing strategy. Technically, the website uses modern JavaScript frameworks and integrates third-party marketing and analytics tools such as Google Tag Manager and Adjust. However, performance metrics indicate slow loading times, and the SSL/TLS configuration is critically flawed with an invalid certificate and no TLS protocols enabled, posing significant security risks. Security posture is moderate with good use of security headers but undermined by the lack of valid SSL and TLS support. Privacy compliance is strong with detailed privacy policies and data protection disclosures, including a dedicated KVKK (Turkish data protection law) section. Contact information is clearly presented, enhancing business credibility. Overall, while the business and content aspects are strong, the critical SSL issues represent a major risk that must be addressed immediately to protect user data and maintain trust.

90
-
5
50
-
50
100
bankingfinanceturkeydigitalbankingprivacy+2 more
JavaScriptjQuery (implied by usage of underscore templates)Google Tag ManagerNetmera SDK
2025-06-15T21:49:47.673Z
iwgplc.com favicon

International Workplace Group plc

iwgplc.com

0
Real EstateUnited KingdomenterpriseHIGH

International Workplace Group plc (IWG) is a global leader in providing hybrid working solutions through an extensive network of office spaces, coworking locations, virtual offices, and meeting rooms. The company targets businesses and professionals seeking flexible workspace options worldwide, positioning itself as the premier provider in the real estate sector for hybrid work environments. Their business model revolves around workspace-as-a-service, offering scalable and customizable solutions to meet diverse client needs. Technically, the website leverages modern frameworks such as Next.js and Sitecore CMS, hosted on Azure, with integrations including OneTrust for privacy management and Google Tag Manager for analytics. The site demonstrates excellent mobile optimization, accessibility, and SEO practices, although performance metrics are moderate due to lack of explicit data. From a security perspective, the site exhibits several best practices including comprehensive security headers and secure cookie attributes. However, a critical issue is the absence of a valid SSL certificate and lack of HTTPS enforcement, which significantly impacts the security posture. Other vulnerabilities include disabled TLS protocols and missing HSTS enforcement. Privacy compliance is strong with clear policies and consent mechanisms in place. Overall, while the business and technical aspects of the website are robust and professional, the critical security gaps related to SSL/TLS must be addressed promptly to ensure user trust and data protection. Strategic recommendations include immediate SSL certificate installation, enabling modern TLS protocols, and enhancing security headers to elevate the security posture.

-
-
5
50
-
80
100
hybridworkingofficespacecoworkingvirtualofficemeetingrooms+3 more
ReactNext.jsSitecoreAzure+3
2025-06-15T21:49:47.454Z