bharkan,
I found the site to look well lain out, except I hate when website's have the W3C valid icons. It is great to tell your potential customers that you can make valid code, and even valid css, but it is tacky to show it off. Also, your email form is loose. I sent you a fake injection email, if I was actually a malicious hacker I could have just taken over your entire website. I sent you all the detail to fix the email form within the email.
You would be wise to add a PHP driven security image, or some type of PERL based checks and balances. If you have a phone field, only allow numbers, if you want someone's url, make sure that you get rid of the ability for them to add dynamic pages, such as
http://www.myhackspamsite.com?trojan...llall&nofollow
Anyways, that is a stupid example, but a SPAMbot currently has the ability to easily get into your system and send thousands of email messages to tons of people. If your domain name is associated with the SPAM, then you have to go through the trouble of finding all blacklists you have appeared upon, and ask to be taken off them. It usually takes anywhere from 24 - 72 hours. This can shut down your company for days at a time.
Cheers though,
This can all be fixed.
Scott Haines
San Jose