
Is modernenergy.lv Safe? Security Analysis for SIA Modern Energy
Check if modernenergy.lv is a scam or legitimate. Free security scan and reviews.

AI Summary
SIA Modern Energy is a Latvian-based company specializing in the design and installation of solar panels, electric vehicle charging stations, and lightning protection systems. Established in 2016, the company offers end-to-end services from consultation to system commissioning, partnering with reputable international brands such as TrinaSolar, Huawei, K2 Systems, and Obo Bettermann. Their market position is that of a reliable local specialist serving residential and commercial clients interested in modern energy solutions. Technically, the website is built on WordPress using Elementor and WooCommerce, providing a good user experience with mobile optimization and clear navigation. Security posture is adequate with HTTPS enabled, but lacks advanced security headers and formal privacy and cookie policies, indicating room for compliance improvement. Overall, the website and business present a professional image with moderate risk due to missing privacy compliance elements and limited WHOIS transparency.
Detected Technologies
🧠AI Business Intelligence
Technology stack, business insights, and market analysis powered by AI.
Business Intelligence
Market & Strategic Analysis
The company operates in the renewable energy sector, focusing on solar energy and electrical safety. Their business model revolves around project design, product supply, and installation services. Partnerships with Tier 1 solar panel manufacturers and recognized electrical equipment suppliers enhance their competitive advantage. The target customers include environmentally conscious homeowners and businesses in Latvia. The company maintains a small size with a clear local focus and demonstrates growth potential through strategic partnerships. The website content and social media presence support brand credibility and customer engagement. However, the absence of detailed privacy and security policies may affect trust among privacy-conscious clients.
Extracted Contact Information
Marketing Intelligence Data
Email Addresses (1)
Phone Numbers (2)
Physical Addresses (1)
Company Registration
SIA MODERN ENERGY
42103088171
Security Posture Analysis
Comprehensive Security Assessment
Modern Energy's website employs HTTPS, ensuring encrypted communications, which is a fundamental security measure. However, the absence of key security headers such as Content-Security-Policy, X-Frame-Options, and X-Content-Type-Options reduces protection against common web attacks like clickjacking and MIME sniffing. No visible vulnerabilities or exposed sensitive data were detected. The lack of a security.txt file or incident response contact information suggests limited preparedness for vulnerability disclosures or incident handling. Privacy compliance is weak due to missing privacy and cookie policies, which could expose the company to regulatory risks under GDPR. Overall, the security posture is moderate but requires enhancements to meet best practices and compliance standards.
Strategic Recommendations
Priority Actions for Security Improvement
Implement comprehensive privacy and cookie policies to ensure GDPR compliance and build user trust.
✨Observations
AI-powered comprehensive website and business analysis.
AI-Enhanced Website Analysis
Business Insights
SIA Modern Energy
SIA “Modern Energy” ir uzticams projektēšanas un montāžas uzņēmums ar specializāciju – saules paneļi, auto uzlāde un ēku zibensaizsardzība. Piedāvā pilnu pakalpojumu klāstu no konsultācijām līdz sistēmas nodošanai ekspluatācijā. Sadarbojas ar uzticamiem piegādātājiem un nodrošina augstākās kvalitātes materiālus.
good
consistent
Technical Stack
moderate
good
basic
good
Security Assessment
- HTTPS enforced
- No exposed sensitive data in HTML
- No visible vulnerable libraries
Analytics & Tracking
Advertising & Marketing
Website Quality Assessment
Key Observations
Website is fully accessible with no blocking or WAF challenge.
🛡️Security Headers
HTTP security headers analysis and recommendations.
Security Headers
HTTP security headers analysis
Missing Strict-Transport-Security header
HIGHForces HTTPS connections
Missing X-Frame-Options header
HIGHPrevents clickjacking attacks
Missing Content-Security-Policy header
HIGHControls resources the browser is allowed to load
Missing Referrer-Policy header
LOWControls referrer information sent with requests
Missing Permissions-Policy header
MEDIUMControls browser features and APIs
Sensitive data may be cached
LOWCache-Control header should include "no-store" for sensitive pages
👤GDPR Compliance
Privacy and data protection assessment under GDPR regulations.
GDPR Compliance
Privacy and data protection assessment
No Privacy Policy found
HIGHGDPR requires a clear and accessible privacy policy
No Cookie Policy found
HIGHGDPR requires clear information about cookie usage
No Cookie Consent Banner found
HIGHGDPR requires explicit consent for non-essential cookies
EU business without adequate privacy measures
CRITICALEU businesses are subject to strict GDPR requirements
Third-party services without privacy policy
HIGHDetected services: Google Analytics, Facebook, LinkedIn, Google APIs
GDPR Compliance Analysis
🛡️NIS2 Compliance
Network & Information Security Directive compliance assessment.
NIS2 Compliance
Network & Information Security Directive
No information security framework found
HIGHNIS2 requires documented cybersecurity and information security measures
No vulnerability disclosure policy
MEDIUMNIS2 encourages coordinated vulnerability disclosure
No security policy documentation found
HIGHNIS2 requires documented cybersecurity governance and risk management
No incident response procedures found
HIGHNIS2 requires documented incident response and business continuity plans
No business continuity planning found
MEDIUMNIS2 emphasizes operational resilience and business continuity
No security contact information
HIGHNIS2 requires clear incident reporting channels
No vulnerability reporting mechanism
MEDIUMClear vulnerability reporting supports coordinated disclosure
No NIS2 reference found
LOWConsider explicitly mentioning NIS2 compliance efforts
Critical sector without clear security compliance
HIGHDetected sectors: energy, transport, banking, digital
📧Email Security
SPF, DKIM, and DMARC validation and email security assessment.
Email Security
SPF, DKIM, and DMARC validation
DMARC not enforcing
MEDIUMDMARC policy is set to "none"
No DMARC reporting
LOWDMARC aggregate reports not configured
No BIMI Record
LOWBIMI displays brand logos in email clients
No MTA-STS Policy
MEDIUMMTA-STS enforces TLS for email delivery
No TLS-RPT Record
LOWTLS-RPT provides reporting for email TLS issues
SPF Details
DKIM Selectors Found
DMARC Details
🏆SSL/TLS Security
Certificate validity and encryption analysis.
SSL/TLS Security
Certificate validity and encryption analysis
Weak Protocols Supported
HIGHServer supports weak protocols: TLSv1.1
OCSP Stapling Not Enabled
LOWOCSP stapling improves performance and privacy
Certificate Transparency Not Implemented
LOWCertificate is not logged in Certificate Transparency logs
SSL Certificate Expires Within 90 Days
MEDIUMSSL certificate expires in 32 days
Mixed Content Detected
MEDIUM1 resources loaded over insecure HTTP
Partial SSL/TLS Assessment
LOWCompleted 3 of 4 security checks due to time constraints
Protocol Support
OCSP Status
📊DNS Health
DNS configuration and security assessment.
DNS Health
DNS configuration and security assessment
DNSSEC Not Enabled
MEDIUMDNSSEC is not configured for this domain
CAA Records Not Configured
LOWCertificate Authority Authorization (CAA) records not found
DMARC Policy Set to None
LOWDMARC is configured but not enforcing any policy
DNS Records
DNSSEC Status
DNS Performance
SPF Analysis
⚡Network Security
Port scanning and network exposure analysis.
Network Security
Port scanning and network exposure analysis
High-Risk Service Exposed: FTP
HIGHPort 21 (FTP) is publicly accessible - FTP - Often unencrypted file transfer
Critical Service Exposed: PostgreSQL
CRITICALPort 5432 (PostgreSQL) is publicly accessible - PostgreSQL - Database server
🔧Technical Analysis
Detailed technical findings and analysis from AI assessment.
Technical Analysis
Comprehensive security assessment findings