Skip to main content

Is semwb.net a Scam? Security Check Results - 东莞企信网络 Reviews

semwb.net favicon

Is semwb.net Safe? Security Analysis for 东莞企信网络

Check if semwb.net is a scam or legitimate. Free security scan and reviews.

TechnologyChinasmall
jQuery 1.7.1Swiper.jsHTML5CSS3JavaScript
Analyzed 8/2/2025Completed 3:29:23 AM
54
Security Score
MEDIUM RISK

AI Summary

东莞企信网络是一家专注于微信小程序定制开发、微信公众号开发及高端网站建设的专业服务商,拥有16年的定制开发经验,主要服务于东莞及周边地区的企业客户。公司提供微官网、微商城、分销系统、手机商城设计开发及网络推广等综合数字化解决方案,致力于为客户打造优质的用户体验和生态化电商系统。网站内容丰富,展示了多个行业解决方案和客户案例,体现出较强的业务专业性和市场定位。技术上,网站采用了HTML5、CSS3、JavaScript及较老版本的jQuery和Swiper.js,整体性能表现中等,移动端优化良好。安全方面,网站启用了HTTPS,但缺少安全头部配置和隐私政策,存在一定的合规风险。WHOIS信息缺失,降低了域名的信任度。整体风险适中,建议加强安全配置和合规建设。

Detected Technologies

jQuery 1.7.1Swiper.jsHTML5CSS3JavaScript

🧠AI Business Intelligence

Technology stack, business insights, and market analysis powered by AI.

Business Intelligence

Market & Strategic Analysis

该公司定位为东莞本地专业微信小程序及网站建设服务商,拥有较长的行业经验和丰富的客户案例,业务涵盖微信生态开发及高端网站建设,目标客户为需要数字化转型的中小企业。通过提供定制开发和网络推广服务,形成多元化收入来源。网站友情链接显示其与多家本地及相关行业服务商存在合作关系,体现一定的合作生态。缺乏公开的隐私政策和WHOIS信息可能影响潜在客户的信任。整体业务模式清晰,市场定位明确,具备一定的竞争优势。

Extracted Contact Information

Marketing Intelligence Data

Email Addresses (1)

2*****@qq.com

Phone Numbers (1)

133*******

Security Posture Analysis

Comprehensive Security Assessment

网站启用了HTTPS,保证了数据传输的基本安全,但未检测到常见的安全HTTP头部如Content-Security-Policy、X-Frame-Options等,存在潜在的安全隐患。使用的jQuery版本较旧,可能含有已知漏洞,建议升级。网站未公开隐私政策和安全事件响应信息,缺乏合规和安全管理透明度。表单收集用户信息但未见明显的防护措施。整体安全成熟度中等偏低,需加强安全配置和合规建设以降低风险。

Strategic Recommendations

Priority Actions for Security Improvement

1

完善网站隐私政策和Cookie政策,明确用户数据处理流程,提升合规性。

Observations

AI-powered comprehensive website and business analysis.

AI-Enhanced Website Analysis

Business Insights

Company:

东莞企信网络

Description:

东莞企信网络是专业微官网、微商城、微信小程序分销系统等各类微信小程序、微信公众号定制开发服务商,同时提供各类高端网站建设、手机商城的设计制作开发、各类网络推广服务,不只是开发,更提供有价值的思路和整体服务。

Key Services:
微信小程序开发微信公众号开发高端网站建设手机商城开发网络推广
Content Quality:

good

Branding:

consistent

Technical Stack

Technologies:
jQuery 1.7.1Swiper.jsHTML5CSS3JavaScript
Performance:

moderate

Mobile:

good

Accessibility:

basic

SEO:

good

Security Assessment

Security Score:
65/100
Best Practices:
  • HTTPS enforced (implied by https URLs)
  • No exposed sensitive data in HTML

Analytics & Tracking

Tracking Level:minimal
Privacy Compliance:poor

Advertising & Marketing

Marketing Tools:
QQ Online Chat
Transparency Level:basic

Website Quality Assessment

Design Quality:good
User Experience:good
Content Relevance:good
Navigation Clarity:good
Professionalism:good
Trustworthiness:moderate

Key Observations

1

Website is fully accessible with no blocking or WAF challenges.

🛡️Security Headers

HTTP security headers analysis and recommendations.

Security Headers

HTTP security headers analysis

30/100
Score

Missing Strict-Transport-Security header

HIGH

Forces HTTPS connections

Missing X-Content-Type-Options header

MEDIUM

Prevents MIME type sniffing

Missing Content-Security-Policy header

HIGH

Controls resources the browser is allowed to load

Missing X-XSS-Protection header

MEDIUM

Legacy XSS protection (deprecated but still recommended)

Missing Referrer-Policy header

LOW

Controls referrer information sent with requests

Missing Permissions-Policy header

MEDIUM

Controls browser features and APIs

Sensitive data may be cached

LOW

Cache-Control header should include "no-store" for sensitive pages

👤GDPR Compliance

Privacy and data protection assessment under GDPR regulations.

GDPR Compliance

Privacy and data protection assessment

50/100
Score

No Privacy Policy found

HIGH

GDPR requires a clear and accessible privacy policy

No Cookie Policy found

HIGH

GDPR requires clear information about cookie usage

No Cookie Consent Banner found

HIGH

GDPR requires explicit consent for non-essential cookies

GDPR Compliance Analysis

Privacy Policy0% confidence
Cookie Policy0% confidence
Contact Information Found90% confidence
emailphone

🛡️NIS2 Compliance

Network & Information Security Directive compliance assessment.

NIS2 Compliance

Network & Information Security Directive

2/100
Score

No information security framework found

HIGH

NIS2 requires documented cybersecurity and information security measures

No vulnerability disclosure policy

MEDIUM

NIS2 encourages coordinated vulnerability disclosure

No security policy documentation found

HIGH

NIS2 requires documented cybersecurity governance and risk management

No incident response procedures found

HIGH

NIS2 requires documented incident response and business continuity plans

No business continuity planning found

MEDIUM

NIS2 emphasizes operational resilience and business continuity

No security contact information

HIGH

NIS2 requires clear incident reporting channels

No vulnerability reporting mechanism

MEDIUM

Clear vulnerability reporting supports coordinated disclosure

No NIS2 reference found

LOW

Consider explicitly mentioning NIS2 compliance efforts

Critical sector without clear security compliance

HIGH

Detected sectors: transport, banking, digital

📧Email Security

SPF, DKIM, and DMARC validation and email security assessment.

Email Security

SPF, DKIM, and DMARC validation

60/100
Score

No DKIM record found

MEDIUM

DKIM adds cryptographic signatures to emails

No BIMI Record

LOW

BIMI displays brand logos in email clients

No MTA-STS Policy

MEDIUM

MTA-STS enforces TLS for email delivery

No TLS-RPT Record

LOW

TLS-RPT provides reporting for email TLS issues

No email authentication configured

CRITICAL

Domain is vulnerable to email spoofing

SPF
Sender Policy Framework
DKIM
DomainKeys Identified Mail
DMARC
Domain-based Message Authentication
MX Records
Mail Exchange Records
BIMI
Brand Indicators
MTA-STS
Mail Transfer Agent Security
TLS-RPT
TLS Reporting
DNSSEC
DNS Security

🏆SSL/TLS Security

Certificate validity and encryption analysis.

SSL/TLS Security

Certificate validity and encryption analysis

75/100
Score

SSL Certificate Expires Soon

HIGH

SSL certificate expires in 4 days

Mixed Content Detected

MEDIUM

14 resources loaded over insecure HTTP

Partial SSL/TLS Assessment

LOW

Completed 2 of 4 security checks due to time constraints

Certificate Details

Subject:semwb.net
Issuer:Encryption Everywhere DV TLS CA - G2
Valid Until:8/6/2025 (4 days)
SANs:semwb.net, www.semwb.net

OCSP Status

OCSP Stapling Disabled

📊DNS Health

DNS configuration and security assessment.

DNS Health

DNS configuration and security assessment

45/100
Score

DNS Resolution Failed

CRITICAL

Unable to resolve domain A records

DNSSEC Not Enabled

MEDIUM

DNSSEC is not configured for this domain

CAA Records Not Configured

LOW

Certificate Authority Authorization (CAA) records not found

No DMARC Record

MEDIUM

DMARC policy not configured

DNS Records

Name Servers:
dns7.hichina.comDNS only
dns8.hichina.comDNS only

DNSSEC Status

DNSSEC Not Enabled

Network Security

Port scanning and network exposure analysis.

Network Security

Port scanning and network exposure analysis

100/100
Score

Good Network Security Posture

LOW

No unnecessary services detected on common risky ports

🔧Technical Analysis

Detailed technical findings and analysis from AI assessment.

Technical Analysis

Comprehensive security assessment findings

Additional Findings

网站基于传统HTML5和CSS3技术构建,使用了较老版本的jQuery和Swiper.js实现交互和轮播效果。页面结构清晰,导航合理,移动端响应良好。无明显性能瓶颈,但技术栈存在一定技术债务,建议逐步升级前端框架和库以提升安全性和性能。未检测到CMS或复杂后端框架信息,可能为定制开发。缺少现代安全配置和隐私合规措施,存在改进空间。整体技术基础稳健但需现代化升级。
Analyze Another Website