
Is baiying700.com Safe? Security Analysis for 杭州佰映环境艺术设计有限公司
Check if baiying700.com is a scam or legitimate. Free security scan and reviews.

AI Summary
杭州佰映环境艺术设计有限公司专注于农贸市场设计、规划及招商策划,拥有13年行业经验,服务对象主要为政府、事业单位及投资开发商。公司总部位于浙江杭州,提供农贸市场调研、建筑规划设计、市场装修及运营指导等全方位专业服务。网站内容丰富,展示了多个区域的农贸市场设计案例,体现了较强的行业专业性和市场定位。技术上,网站采用Uikit框架,集成百度统计和推送服务,支持PC及移动端访问,整体性能表现中等偏上。安全方面,网站未检测到安全相关HTTP头,且缺少隐私及Cookie政策,存在合规风险。WHOIS信息缺失,降低了域名的信任度。建议加强安全配置,完善隐私合规文档,并核实域名注册信息以提升整体信誉。
Detected Technologies
🧠AI Business Intelligence
Technology stack, business insights, and market analysis powered by AI.
Business Intelligence
Market & Strategic Analysis
该公司在农贸市场设计领域具有专业优势,业务涵盖市场调研、规划设计、招商运营等,定位为行业内专业化设计服务商。通过丰富的案例展示,体现了其在多个省市的市场影响力。网站未显示合作伙伴或子公司信息,且无明显电商或直接销售模式,主要依赖项目咨询和设计服务。百度相关技术的使用表明其主要面向中国市场。缺乏隐私政策和WHOIS信息可能影响潜在客户的信任。整体业务模式稳健,具备一定成长潜力。
Extracted Contact Information
Marketing Intelligence Data
Phone Numbers (2)
Physical Addresses (1)
Security Posture Analysis
Comprehensive Security Assessment
网站启用了HTTPS(推测基于常规访问),但未检测到安全HTTP头如Content-Security-Policy、X-Frame-Options等,存在一定安全隐患。无公开的安全政策或事件响应信息,缺少漏洞披露渠道。未发现明显敏感信息泄露或易受攻击的库。建议加强安全头配置,完善安全政策,建立漏洞响应机制以提升安全成熟度和合规性。
Strategic Recommendations
Priority Actions for Security Improvement
完善并公开隐私政策和Cookie政策,确保符合GDPR及相关法规要求
✨Observations
AI-powered comprehensive website and business analysis.
AI-Enhanced Website Analysis
Business Insights
杭州佰映环境艺术设计有限公司
杭州佰映设计公司(www.baiying700.com)专注于农贸市场设计,农贸规划设计,农贸招商策划,农贸市场改造等专业化市场设计公司,致力于全国标杆市场规划设计,菜市场设计等领域.
good
consistent
Technical Stack
moderate
good
basic
good
Security Assessment
- No exposed sensitive data in HTML
- No visible vulnerable libraries
Analytics & Tracking
Advertising & Marketing
Website Quality Assessment
Key Observations
Website is fully accessible with rich content and multiple project case studies
🛡️Security Headers
HTTP security headers analysis and recommendations.
Security Headers
HTTP security headers analysis
Missing Strict-Transport-Security header
HIGHForces HTTPS connections
Missing Content-Security-Policy header
HIGHControls resources the browser is allowed to load
Missing Referrer-Policy header
LOWControls referrer information sent with requests
Missing Permissions-Policy header
MEDIUMControls browser features and APIs
👤GDPR Compliance
Privacy and data protection assessment under GDPR regulations.
GDPR Compliance
Privacy and data protection assessment
No Privacy Policy found
HIGHGDPR requires a clear and accessible privacy policy
No Cookie Policy found
HIGHGDPR requires clear information about cookie usage
No Cookie Consent Banner found
HIGHGDPR requires explicit consent for non-essential cookies
GDPR Compliance Analysis
🛡️NIS2 Compliance
Network & Information Security Directive compliance assessment.
NIS2 Compliance
Network & Information Security Directive
No information security framework found
HIGHNIS2 requires documented cybersecurity and information security measures
No vulnerability disclosure policy
MEDIUMNIS2 encourages coordinated vulnerability disclosure
No security policy documentation found
HIGHNIS2 requires documented cybersecurity governance and risk management
No incident response procedures found
HIGHNIS2 requires documented incident response and business continuity plans
No business continuity planning found
MEDIUMNIS2 emphasizes operational resilience and business continuity
No security contact information
HIGHNIS2 requires clear incident reporting channels
No vulnerability reporting mechanism
MEDIUMClear vulnerability reporting supports coordinated disclosure
No NIS2 reference found
LOWConsider explicitly mentioning NIS2 compliance efforts
Critical sector without clear security compliance
HIGHDetected sectors: transport, digital
📧Email Security
SPF, DKIM, and DMARC validation and email security assessment.
Email Security
SPF, DKIM, and DMARC validation
No DKIM record found
MEDIUMDKIM adds cryptographic signatures to emails
No BIMI Record
LOWBIMI displays brand logos in email clients
No MTA-STS Policy
MEDIUMMTA-STS enforces TLS for email delivery
No TLS-RPT Record
LOWTLS-RPT provides reporting for email TLS issues
No email authentication configured
CRITICALDomain is vulnerable to email spoofing
🏆SSL/TLS Security
Certificate validity and encryption analysis.
SSL/TLS Security
Certificate validity and encryption analysis
SSL Certificate Expires Soon
HIGHSSL certificate expires in 25 days
Mixed Content Detected
MEDIUM13 resources loaded over insecure HTTP
Partial SSL/TLS Assessment
LOWCompleted 2 of 4 security checks due to time constraints
Certificate Details
OCSP Status
📊DNS Health
DNS configuration and security assessment.
DNS Health
DNS configuration and security assessment
DNSSEC Not Enabled
MEDIUMDNSSEC is not configured for this domain
CAA Records Not Configured
LOWCertificate Authority Authorization (CAA) records not found
No DMARC Record
MEDIUMDMARC policy not configured
DNS Records
DNSSEC Status
⚡Network Security
Port scanning and network exposure analysis.
Network Security
Port scanning and network exposure analysis
Good Network Security Posture
LOWNo unnecessary services detected on common risky ports
🔧Technical Analysis
Detailed technical findings and analysis from AI assessment.
Technical Analysis
Comprehensive security assessment findings