Skip to main content

Is hujushi.lv a Scam? Security Check Results - hujushi.lv Reviews

hujushi.lv favicon

Is hujushi.lv Safe? Security Analysis for Home

Check if hujushi.lv is a scam or legitimate. Free security scan and reviews.

HospitalityLatviasmall
AstroVue.jsGoogle FontsHostinger Website Builder
Analyzed 7/30/2025Completed 4:02:36 PM
57
Security Score
MEDIUM RISK

AI Summary

The website www.hujushi.lv represents a small hospitality business specializing in sushi restaurant and takeout services located in Latvia. The site showcases fresh and large sushi offerings with a modern and experimental approach, targeting general consumers interested in Japanese cuisine. The business also hints at franchise opportunities, indicating growth ambitions. Technically, the site is built using modern frameworks such as Astro and Vue.js, hosted on Hostinger, and employs Google Fonts for typography. The site is mobile optimized and presents a good user experience with clear navigation and consistent branding. However, SEO and accessibility features are basic, and performance is moderate. Security posture is adequate with HTTPS enabled but lacks important security headers and formal security policies. Privacy compliance is weak due to the absence of privacy and cookie policies. Contact information is clearly provided, including emails, phone numbers, and physical address, along with social media presence on Facebook and Instagram. The domain uses privacy protection in WHOIS, which is typical for small businesses and does not raise immediate concerns. Overall, the website is functional and professional but would benefit from enhanced privacy compliance and security hardening.

Detected Technologies

AstroVue.jsGoogle FontsHostinger Website Builder

🧠AI Business Intelligence

Technology stack, business insights, and market analysis powered by AI.

Business Intelligence

Market & Strategic Analysis

Hujushi.lv operates in the hospitality sector as a sushi restaurant and takeout service in Latvia. The business model focuses on direct consumer sales with potential franchise expansion. The website content and social media links indicate an active engagement with customers and a focus on fresh, quality sushi. The company targets local customers and sushi enthusiasts, positioning itself as a modern and slightly provocative brand willing to experiment with sushi offerings. Revenue streams likely include dine-in, takeout, and franchise fees. The lack of detailed company registration or VAT information on the site suggests a small or medium-sized enterprise. The partnership ecosystem is limited to social media platforms and hosting providers. Strategic observations include the need for improved digital marketing, privacy compliance, and security measures to enhance trust and regulatory adherence.

Extracted Contact Information

Marketing Intelligence Data

Email Addresses (1)

i*****@hujushi.lv

Phone Numbers (2)

289*****
200*****

Physical Addresses (1)

Security Posture Analysis

Comprehensive Security Assessment

The website demonstrates a basic security posture with HTTPS enabled, ensuring encrypted communication. However, it lacks critical security headers such as Content-Security-Policy, X-Frame-Options, and X-Content-Type-Options, which are important to mitigate common web attacks. No explicit incident response or security policy pages are present, and no abuse or security contact emails are provided. The forms present do not show visible anti-CSRF tokens or advanced input validation mechanisms. No vulnerable libraries or exposed sensitive data were detected in the HTML content. Privacy compliance is weak, with no privacy or cookie policies found, which may expose the business to GDPR compliance risks. Overall, the security maturity is low to moderate, suitable for a small hospitality business but requiring improvements to meet best practices and regulatory requirements.

Strategic Recommendations

Priority Actions for Security Improvement

1

Implement and publish a comprehensive privacy policy and cookie policy with GDPR compliance details.

Observations

AI-powered comprehensive website and business analysis.

AI-Enhanced Website Analysis

Business Insights

Description:

A sushi restaurant and takeout service offering fresh, large sushi with a modern and experimental approach. The site mentions branches and franchise opportunities.

Key Services:
Sushi restaurant diningSushi takeoutFranchise opportunities
Content Quality:

good

Branding:

consistent

Technical Stack

Technologies:
AstroVue.jsGoogle FontsHostinger Website Builder
Frameworks:
AstroVue.js
Platforms:
Hostinger
Performance:

moderate

Mobile:

good

Accessibility:

basic

SEO:

basic

Security Assessment

Security Score:
70/100
Best Practices:
  • HTTPS enabled

Analytics & Tracking

Tracking Level:minimal
Privacy Compliance:poor

Advertising & Marketing

Transparency Level:poor

Website Quality Assessment

Design Quality:good
User Experience:good
Content Relevance:good
Navigation Clarity:good
Professionalism:good
Trustworthiness:moderate

Key Observations

1

Website is a sushi restaurant site with clear contact info and social media presence.

🛡️Security Headers

HTTP security headers analysis and recommendations.

Security Headers

HTTP security headers analysis

70/100
Score

Missing X-Frame-Options header

HIGH

Prevents clickjacking attacks

Missing Referrer-Policy header

LOW

Controls referrer information sent with requests

Missing Permissions-Policy header

MEDIUM

Controls browser features and APIs

👤GDPR Compliance

Privacy and data protection assessment under GDPR regulations.

GDPR Compliance

Privacy and data protection assessment

10/100
Score

No Privacy Policy found

HIGH

GDPR requires a clear and accessible privacy policy

No Cookie Policy found

HIGH

GDPR requires clear information about cookie usage

No Cookie Consent Banner found

HIGH

GDPR requires explicit consent for non-essential cookies

EU business without adequate privacy measures

CRITICAL

EU businesses are subject to strict GDPR requirements

Third-party services without privacy policy

HIGH

Detected services: Facebook

GDPR Compliance Analysis

Privacy Policy0% confidence
Cookie Policy0% confidence
Contact Information Found90% confidence
emailphone

🛡️NIS2 Compliance

Network & Information Security Directive compliance assessment.

NIS2 Compliance

Network & Information Security Directive

2/100
Score

No information security framework found

HIGH

NIS2 requires documented cybersecurity and information security measures

No vulnerability disclosure policy

MEDIUM

NIS2 encourages coordinated vulnerability disclosure

No security policy documentation found

HIGH

NIS2 requires documented cybersecurity governance and risk management

No incident response procedures found

HIGH

NIS2 requires documented incident response and business continuity plans

No business continuity planning found

MEDIUM

NIS2 emphasizes operational resilience and business continuity

No security contact information

HIGH

NIS2 requires clear incident reporting channels

No vulnerability reporting mechanism

MEDIUM

Clear vulnerability reporting supports coordinated disclosure

No NIS2 reference found

LOW

Consider explicitly mentioning NIS2 compliance efforts

Critical sector without clear security compliance

HIGH

Detected sectors: transport, digital

📧Email Security

SPF, DKIM, and DMARC validation and email security assessment.

Email Security

SPF, DKIM, and DMARC validation

70/100
Score

No DKIM record found

MEDIUM

DKIM adds cryptographic signatures to emails

No BIMI Record

LOW

BIMI displays brand logos in email clients

No MTA-STS Policy

MEDIUM

MTA-STS enforces TLS for email delivery

No TLS-RPT Record

LOW

TLS-RPT provides reporting for email TLS issues

SPF
Sender Policy Framework
DKIM
DomainKeys Identified Mail
DMARC
Domain-based Message Authentication
MX Records
Mail Exchange Records
BIMI
Brand Indicators
MTA-STS
Mail Transfer Agent Security
TLS-RPT
TLS Reporting
DNSSEC
DNS Security
SPF Details
Record:
v=spf1 include:spf.titan.email ~all
DNS Lookups:1/10
Policy:~all

🏆SSL/TLS Security

Certificate validity and encryption analysis.

SSL/TLS Security

Certificate validity and encryption analysis

75/100
Score

SSL Certificate Expires Within 90 Days

MEDIUM

SSL certificate expires in 30 days

Weak SSL Key Length

HIGH

SSL certificate uses 384-bit key, which is considered weak

Partial SSL/TLS Assessment

LOW

Completed 2 of 4 security checks due to time constraints

Certificate Details

Subject:www.hujushi.lv
Issuer:E6
Valid Until:8/29/2025 (30 days)
SANs:www.hujushi.lv

OCSP Status

OCSP Stapling Disabled

📊DNS Health

DNS configuration and security assessment.

DNS Health

DNS configuration and security assessment

60/100
Score

DNSSEC Not Enabled

MEDIUM

DNSSEC is not configured for this domain

CAA Records Not Configured

LOW

Certificate Authority Authorization (CAA) records not found

Domain Transfer Lock Not Enabled

MEDIUM

Domain can be transferred without authorization

Domain Delete Lock Not Enabled

LOW

Domain can be deleted without additional verification

No DMARC Record

MEDIUM

DMARC policy not configured

Domain Registration Details

Protection Level
none
Suspicious Indicators Detected
  • No domain protection locks enabled

DNS Records

A Records:34.120.137.41
AAAA Records:2600:1901:0:84ef::
Name Servers:
dns1.zyro.comWHOIS only
dns2.zyro.comWHOIS only
ns1.dns-parking.comDNS only
ns2.dns-parking.comDNS only
MX Records:
20: mx2.titan.email
10: mx1.titan.email
SOA:Serial: 2025072401, TTL: 600s

DNSSEC Status

DNSSEC Not Enabled

DNS Performance

Resolution Time:95ms

SPF Analysis

SPF Record:
v=spf1 include:spf.titan.email ~all

Network Security

Port scanning and network exposure analysis.

Network Security

Port scanning and network exposure analysis

100/100
Score

Good Network Security Posture

LOW

No unnecessary services detected on common risky ports

🔧Technical Analysis

Detailed technical findings and analysis from AI assessment.

Technical Analysis

Comprehensive security assessment findings

Additional Findings

The website uses modern web technologies including Astro and Vue.js frameworks, hosted on Hostinger's platform. Google Fonts are used for typography, and images are optimized with responsive srcsets. The site is mobile optimized and has a consistent design language. Performance is moderate, with no major blocking scripts detected. However, the site lacks advanced analytics or tracking services, which limits marketing insights. The absence of security headers and privacy compliance features indicates technical debt in security and regulatory adherence. The site structure is clear, but SEO metadata is minimal. Overall, the technical infrastructure is modern but could benefit from enhanced security configurations and privacy features to reduce risks and improve compliance.
Analyze Another Website