
Is vesmaco.eu Safe? Security Analysis for Vesmaco
Check if vesmaco.eu is a scam or legitimate. Free security scan and reviews.

Security scan incomplete. 3 out of 9 security checks failed to complete. The website may be inaccessible or protected by security measures. Please retry the scan or verify the website is accessible.
AI Summary
Vesmaco is a medium-sized manufacturing and engineering company based in Estonia, specializing in composite solutions for wastewater treatment, construction, industry, and agriculture. Established in 2000, the company offers a broad range of products including storage tanks, stormwater treatment systems, pumping stations, and corrosion-resistant piping. Their market presence extends across multiple European countries, supported by partnerships with several specialized brands. The website reflects a professional business model focused on B2B clients in construction and industrial sectors. Technically, the site is built on WordPress with modern plugins for SEO, multilingual support, and performance optimization, indicating a mature digital infrastructure. Security posture is good with HTTPS and cookie consent mechanisms, though it lacks explicit security policies and incident response information. Overall, the website is well-structured, trustworthy, and compliant with basic privacy standards, but could improve transparency on privacy and security policies.
Detected Technologies
🧠AI Business Intelligence
Technology stack, business insights, and market analysis powered by AI.
Business Intelligence
Market & Strategic Analysis
Vesmaco holds a solid position in the European manufacturing market for FRP composite solutions, leveraging partnerships with recognized brands to enhance its product portfolio. The business model is focused on engineering, manufacturing, and after-sales services including maintenance and repair. Their export footprint covers Estonia, Latvia, Lithuania, Poland, Germany, Denmark, Norway, Sweden, and Finland, indicating a well-established distribution network. The company targets industrial and construction clients requiring durable and corrosion-resistant solutions. The website's content and linked partner domains suggest a collaborative ecosystem that supports product innovation and market reach. Growth indicators include a diverse product range and digital presence with multilingual capabilities.
Extracted Contact Information
Marketing Intelligence Data
Email Addresses (3)
Phone Numbers (1)
Security Posture Analysis
Comprehensive Security Assessment
The website employs HTTPS with a good SSL configuration and uses cookie consent tools to comply with privacy regulations. Security best practices such as updated WordPress core and plugins are observed. However, the absence of explicit security headers like Content-Security-Policy and lack of published security or incident response policies represent gaps in security maturity. No vulnerability disclosure or security.txt file is present, which limits transparency for security researchers. The site does not expose sensitive data or show signs of vulnerabilities in the HTML content. Overall, the security posture is moderate to good but could benefit from enhanced security policy disclosures and header implementations.
Strategic Recommendations
Priority Actions for Security Improvement
Implement and publish a comprehensive privacy policy and terms of service pages to improve compliance and user trust.
✨Observations
AI-powered comprehensive website and business analysis.
AI-Enhanced Website Analysis
Business Insights
Vesmaco
We design, manufacture, start-up and maintain composite solutions for wastewater treatment, construction, industry and agriculture. Broad experience in engineering, manufacturing and exporting fibers-reinforced plastics (FRP) solutions for storage, processing and distribution of wastewater, special liquids and gaseous media. We supply components and spare parts, carry out on-site start-up and adjustment, maintenance and repair services.
good
consistent
Technical Stack
fast
good
basic
good
Security Assessment
- HTTPS enforced
- Cookie consent with opt-in/out
- No exposed sensitive data in HTML
- Use of updated WordPress and plugins
Analytics & Tracking
Advertising & Marketing
Website Quality Assessment
Key Observations
Website is fully accessible with no blocking or WAF challenges.
🛡️Security Headers
HTTP security headers analysis and recommendations.
Security Headers
HTTP security headers analysis
👤GDPR Compliance
Privacy and data protection assessment under GDPR regulations.
GDPR Compliance
Privacy and data protection assessment
🛡️NIS2 Compliance
Network & Information Security Directive compliance assessment.
NIS2 Compliance
Network & Information Security Directive
📧Email Security
SPF, DKIM, and DMARC validation and email security assessment.
Email Security
SPF, DKIM, and DMARC validation
No SPF record found
HIGHSPF helps prevent email spoofing
DMARC not enforcing
MEDIUMDMARC policy is set to "none"
No DMARC reporting
LOWDMARC aggregate reports not configured
No BIMI Record
LOWBIMI displays brand logos in email clients
No MTA-STS Policy
MEDIUMMTA-STS enforces TLS for email delivery
No TLS-RPT Record
LOWTLS-RPT provides reporting for email TLS issues
DKIM Selectors Found
DMARC Details
🏆SSL/TLS Security
Certificate validity and encryption analysis.
SSL/TLS Security
Certificate validity and encryption analysis
Weak Protocols Supported
HIGHServer supports weak protocols: TLSv1.1
OCSP Stapling Not Enabled
LOWOCSP stapling improves performance and privacy
Certificate Transparency Not Implemented
LOWCertificate is not logged in Certificate Transparency logs
SSL Certificate Expires Within 90 Days
MEDIUMSSL certificate expires in 82 days
Mixed Content Detected
MEDIUM2 resources loaded over insecure HTTP
Partial SSL/TLS Assessment
LOWCompleted 3 of 4 security checks due to time constraints
Protocol Support
OCSP Status
📊DNS Health
DNS configuration and security assessment.
DNS Health
DNS configuration and security assessment
DNSSEC Not Enabled
MEDIUMDNSSEC is not configured for this domain
CAA Records Not Configured
LOWCertificate Authority Authorization (CAA) records not found
DMARC Policy Set to None
LOWDMARC is configured but not enforcing any policy
Domain Registration Details
DNS Records
DNSSEC Status
DNS Performance
⚡Network Security
Port scanning and network exposure analysis.
Network Security
Port scanning and network exposure analysis
High-Risk Service Exposed: FTP
HIGHPort 21 (FTP) is publicly accessible - FTP - Often unencrypted file transfer
Service Exposed: SSH
MEDIUMPort 22 (SSH) is publicly accessible - SSH - Secure but can be brute-forced
🔧Technical Analysis
Detailed technical findings and analysis from AI assessment.
Technical Analysis
Comprehensive security assessment findings