Cookies

We use cookies for analytics and advertising. You can accept all, keep only necessary, or customize your preferences. Cookie Policy

Digital Vantage LogoDigital Vantage Logo
  • About us
  • Offer
    • Websites
      Building a professional online presence
    • Web Applications
      Dedicated web applications - automate and grow your business!
    • Applications
      Custom solutions tailored to your business needs
    • IT & Technical Support
      Develop a strategic plan for digital development
    • Branding
      Designing logos, corporate colors and letterheads
    • Online Marketing
      Content marketing, SEO and content optimization
  • Resources
    • Blog & News
      News from the digital world.
    • Tools and calculators
      Before you start talking to an agency, check how much your project should cost.
  • Contact
  • Szukaj w artykułach ⌘K
Let's talk!
Image on the Digital Vantage website

Website security

32 points for verification

Most hacks of company websites are not the result of advanced attacks. It's the result of a neglected SSL certificate, an out-of-date plugin from 8 months ago, or the "admin123" password on an editor's account. This checklist is the bare minimum that eliminates 95% of common threats - without technical expertise and at no extra cost.
It is designed for business owners and site managers who do not have daily contact with the code. Each point can be checked independently in an afternoon.

Digital Vantage LogoDigital Vantage Logo

Digital Vantage
Tel+48 663 877 600,+48 22 152 51 05
Andriollego 34, 05-400 Otwock (Warsaw)
REGON: 540674000
NIP: PL5321813962

ContactAbout usSite mapOffer
  • Websites
  • Online marketing
  • Applications
  • IT & Technical Support
  • Branding
  • Web application development
Digital Vantage
Tools and calculators
  • Cost of the website
  • The cost of an online store
  • The cost of a web application
Blog
  • Company
  • Software development
  • Websites
  • Software and tools
  • Security
  • Marketing on the Internet
  • IT and technology
  • IT strategy
Let's talk about your business!
Follow Us
FacebookInstagram
© Digital Vantage - Warsaw, Poland
Cookie PolicyPrivacy PolicyConditions
English|Polski
© 2026 Digital Vantage. © 2024 Digital Vantage. All rights reserved.
  1. Home›
  2. Resources›
  3. Templates and checklists for informed decision makers›
  4. Website security

💡 Tip

Estimated time of use: about 2-3 hours at a time, then 30 min every quarter.

The most common omissions that this list addresses

- SSL certificate expiring during ad campaign - Chrome shows warning to all visitors
- Banner cookie with no real opt-in - collecting analytics data without consent is a violation of RODO
- No off-server backup - host failure = loss of site and all copies at once
- Unused plug-ins only deactivated, not removed - still contain vulnerabilities
- Admin account without 2FA with password used in other services

Checklist · 32 pts

Website security

Site security is not a one-time task - it's an ongoing process. This checklist is the minimum to protect you from 95% of threats. You don't need to be an expert - you need to perform these points systematically.

0/ 32items checked
15critical remaining
0%
Table of Contents
A · 01—05Section

A. HTTPS and SSL certificate

0 of 5
B · 01—07Section

B. RODO legal obligations

0 of 7
C · 01—05Section

C. Backups

0 of 5
D · 01—05Section

D. Updates

0 of 5
E · 01—05Section

E. Accesses and passwords

0 of 5
F · 01—05Section

F. Monitoring

0 of 5

You're just getting started

Many key points are not yet marked. Go through the list point by point - each ticked item brings you closer to success.

FAQ

Questions and answers

No. Most of the points boil down to going to a specific site (e.g. ssllabs.com), entering your address and reading the result. The sections on CMS updates and password management require access to the admin panel - not the server or code. The only exception is the configuration of HTTP headers, which requires editing the .htaccess file or server settings - here it is worth asking for help from the developer or hosting administrator.

In Poland, the supervisory authority is the UODO, which can impose a fine of up to 4% of global annual turnover or €20 million (depending on which is higher). In practice, the first inspections affect e-commerce and financial companies, but the trend is unmistakable - the number of prosecutions is growing year on year. In addition to the financial risk, a non-compliant banner sends a signal to users: research shows that 60% of people consciously assess the credibility of a company by the quality of legal messages on the site.

The minimum is a backup once a day for stores and sites with dynamic content, once a week for business card sites with infrequent changes. Storage location is key: backup on the same server as the site does not protect against server failure or ransomware attack. Store copies in a separate location - external S3 (e.g., Backblaze B2 costs about $6/month for 1 TB), Google Drive or dedicated solutions like JetBackup. Test restores once a quarter - a backup you've never restored is a backup that may not work.

Want to know if your website has vulnerabilities?

We conduct security audits for companies of all sizes - with a report and remediation plan.

Related resources

Image on the Digital Vantage website

How to choose a web agency

38 points for verification

Choosing a web agency is a decision for a minimum of 3-6 months of intensive cooperation, and its consequences - a good project or a costly failure - stay with the company for

Image on the Digital Vantage website

Migrating an e-commerce store step by step

42 points for verification

E-commerce platform migration is one of the most difficult web projects. You may lose customer data, SEO positions, order history and trust buy

Image on the Digital Vantage website

Self audit of the website

30 points for verification

You can do this audit yourself without technical knowledge - using free online tools. Allocate 3-4 hours for it. The result? Concrete

Image on the Digital Vantage website

UX checklist for an online store

35 points to be verified

Baymard Institute research shows that the average store loses 70% of customers before completing a purchase. Most of these abandonments are due to UX issues - not to

Image on the Digital Vantage website

Website security

32 points for verification

Site security is not a one-time task - it's an ongoing process. This checklist is the bare minimum to protect you from 95% of threats. You don't need to be an ec

Image on the Digital Vantage website

What to check before launching the site

54 points for verification

Launching a new website is one of the riskiest moments in the life of a web project. Broken checkout, missing SEO redirects, not working