Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

0
Websites
0
Industries
0
Countries
0
Avg Score
Page 1 of 17|Showing 1-50 of 802
citycoseals.co.uk favicon

City Company Seals

citycoseals.co.uk

50
RetailUnited KingdomsmallMEDIUM

City Company Seals Ltd is a small UK-based business specializing in manufacturing and retailing a wide range of company seals, brass and wax seals, sealing wax, paper embossers, rubber stamps, and related office stationery. Established in 1973, the company has built a strong reputation with a significant portion of its retail business driven by word-of-mouth and positive customer reviews, including 5-star ratings on Amazon. The website reflects a professional and consistent brand image targeting businesses and individuals requiring official seals and embossers. Technically, the website is built using the RapidWeaver CMS with the Foundation framework and incorporates modern web technologies such as jQuery and Google Tag Manager for analytics and marketing. The site is mobile-optimized and provides a good user experience with clear navigation and relevant content. However, performance is moderate and accessibility features are basic. From a security perspective, the site uses HTTPS but lacks important security headers that could enhance protection against common web vulnerabilities. There is no cookie consent mechanism, which may impact privacy compliance. The WHOIS data for the domain is unavailable due to a domain naming rules violation error from Nominet UK, which raises concerns about domain registration legitimacy despite the website being active and professional. Overall, the website presents a trustworthy and professional business front with room for improvement in security practices and privacy compliance. The domain registration anomaly should be investigated further to ensure full legitimacy and trustworthiness.

27
100
60
70
2
15
53
companysealsbrasssealswaxsealsembossersrubberstamps+2 more
jQuery 2.2.4Google Tag ManagerGoogle Analytics (gtag.js)RapidWeaver CMS+3
2026-06-22T07:05:52.371Z
H

HeyWeb

heyweb.com

55
TechnologyN/asmallMEDIUM

HeyWeb was a technology-focused SaaS platform designed to enable small business owners to rapidly create websites by converting their Facebook pages into fully functional websites. The service automated content updates from social media and provided features such as custom domains and newsletter signups. The website is currently closed, indicating the service is no longer active. The domain is well-established, registered since 2007, and uses reputable registrar and DNS providers, supporting its legitimacy. Technically, the website uses a modest tech stack including jQuery, typed.js, and Google Analytics for tracking. It is hosted with Cloudflare DNS and uses Gandi SAS as the registrar. The site is mobile optimized and has a good design and user experience, but lacks advanced accessibility features and comprehensive SEO optimization. No CMS or major frameworks were detected. From a security perspective, the site lacks DNSSEC, security headers, and visible privacy or cookie policies, which are critical for compliance and user trust. The domain is protected against unauthorized transfers but could improve DNS security. No WAF or blocking mechanisms were detected, and no sensitive data exposure was found. Overall, the security posture is moderate but requires improvements to meet modern standards. The overall risk is moderate with no critical vulnerabilities detected. Strategic recommendations include implementing DNSSEC, publishing privacy and cookie policies, adding security headers, and providing clear contact and incident response information to enhance trust and compliance.

30
35
2
85
52
70
100
websitecreationfacebookintegrationsmallbusinesssaastechnology
jQuery 2.2.4typed.jsGoogle AnalyticsGoogle Tag Manager+1

Partner Domains:

christoffersblommor.se
partner
knackeriet.se
partner

+3 more partners

2025-11-01T08:41:22.024Z
O

Orange Salamander

orangesalamander.com

63
HealthcareGermanysmallMEDIUM

Orange Salamander operates a specialized digital platform delivering 1-minute medical news and product information targeted at healthcare professionals including doctors, pharmacists, and PTAs. The platform positions itself as a niche communication channel within the healthcare sector, offering concise, multimedia content to maximize engagement and visibility for pharmaceutical and medical technology companies. The website is professionally designed, multilingual (German and English), and leverages modern web technologies hosted on the 1&1 IONOS platform. It demonstrates a moderate level of digital maturity with good mobile optimization and SEO practices. From a security perspective, the site enforces HTTPS and includes cookie consent mechanisms aligned with GDPR requirements. However, there is a lack of explicit security headers and no visible incident response or vulnerability disclosure policies, which could be improved to enhance trust and compliance. The absence of WHOIS registration data introduces some uncertainty regarding domain legitimacy, though the professional presentation and consistent branding mitigate immediate concerns. Overall, the website presents a credible and focused business offering in the healthcare digital communication space, with room for improvement in security transparency and domain registration clarity. Strategic recommendations include enhancing security headers, publishing incident response contacts, and clarifying domain registration details to strengthen trust and compliance.

50
53
2
70
77
70
100
healthcaremednewsdigitalhealthappmedicalinformation+2 more
jQuery 2.2.4skrollrMapboxGoogle Fonts+1
2025-10-30T20:22:48.222Z
dbxpro.com favicon

dbx

dbxpro.com

68
TechnologyUnited StateslargeMEDIUM

dbx is a well-established professional audio brand specializing in modular processors, loudspeaker management, and audio accessories. The company operates under the Harman Professional Solutions umbrella, leveraging a strong market position and a legacy dating back to 1995. Their website reflects a mature business with a clear focus on audio professionals and businesses requiring high-quality audio equipment. The product range includes the 500 Series modular processors and DriveRack loudspeaker management systems, supported by comprehensive multimedia content and customer engagement channels. Technically, the website employs a modern technology stack including jQuery, Google Analytics, and HubSpot marketing tools, hosted on AWS infrastructure. The site is mobile-optimized with good SEO and accessibility features, providing a positive user experience. Security practices include HTTPS enforcement, CSRF protection, and domain transfer restrictions, although there is room for improvement in DNSSEC and HTTP security headers. From a security perspective, the site shows a solid posture with no visible vulnerabilities or exposed sensitive data. However, the absence of a published security policy or incident response contact limits transparency. Privacy compliance is well addressed with clear privacy and cookie policies, including GDPR considerations. The domain WHOIS data aligns with the brand's history and legitimacy, reinforcing trustworthiness. Overall, dbx.com represents a professional, secure, and compliant online presence for a reputable audio technology company. Strategic enhancements in security transparency and DNS security could further strengthen their posture.

65
68
2
70
77
80
100
professionalaudioaudioequipmentmodularprocessorsloudspeakermanagementharmanprofessional+3 more
jQuery 2.2.4jQuery UI 1.14.1ModernizrSlick Slider+3

Partner Domains:

harman.com
parent
pro.harman.com
related

+2 more partners

2025-10-30T19:39:21.641Z
crownaudio.com favicon

Crown

crownaudio.com

73
TechnologyUnited StateslargeMEDIUM

Crown is a professional audio brand specializing in power amplifiers and network audio solutions, operating under the Harman International umbrella. The website presents a comprehensive catalog of products, detailed technical information, and support resources targeting professional audio engineers and commercial audio markets. The brand is well-established with a consistent and professional online presence, supported by structured data and social media integration. Technically, the website uses a modern technology stack including jQuery, Foundation framework, and integrates analytics tools such as Google Analytics and HubSpot. The site is mobile optimized and performs moderately well, with good SEO and accessibility basics. Security measures include HTTPS enforcement and CSRF protection, though some security headers are missing. The security posture is solid with no visible vulnerabilities or exposed sensitive data. Privacy compliance is evident with a clear privacy policy, cookie consent mechanisms, and GDPR considerations. However, the absence of WHOIS data for the domain introduces some uncertainty regarding domain registration legitimacy, though the association with Harman mitigates this concern. Overall, the website is professional, secure, and trustworthy, serving a specialized B2B audience effectively. Strategic improvements in security headers and transparency around incident response could further enhance trust and compliance.

65
68
17
70
100
80
100
professionalaudiopoweramplifiersharmanaudiotechnologynetworkaudio+1 more
jQuery 2.2.4jQuery UI 1.14.1Google Analytics (gtag.js)HubSpot analytics and marketing scripts+2

Partner Domains:

pro.harman.com
partner
help.harmanpro.com
service

+2 more partners

2025-10-30T19:39:16.630Z
surfing-waves.com favicon

Surfing Waves

surfing-waves.com

54
OtherN/asmallMEDIUM

Surfing Waves is a well-established online resource dedicated to surfing enthusiasts, offering comprehensive tutorials, surf spot maps, community forums, news, and an e-commerce surf shop. Founded in 2003, the website has built a niche community and provides valuable content for surfers worldwide. The business model combines content delivery with product sales and community engagement, positioning it as a trusted surfing information hub. Technically, the website uses a mix of legacy and modern web technologies including jQuery, Google Tag Manager, and Typekit fonts. It is hosted behind Cloudflare DNS and uses HTTPS, ensuring basic security and performance. The site is moderately optimized for mobile and SEO, with a clear navigation structure and good content relevance. From a security perspective, the site enforces HTTPS and has domain transfer protections but lacks DNSSEC and several important security headers. There is no visible cookie consent mechanism, and privacy compliance is partial. No direct company contact emails or phone numbers are provided, limiting transparency. Advertising is managed via Monumetric and Google DoubleClick, with moderate user tracking. Overall, Surfing Waves presents a moderate risk profile with good content quality and business credibility but could improve security posture and privacy compliance. Strategic recommendations include enabling DNSSEC, implementing security headers, adding cookie consent, and providing clearer contact information to enhance trust and compliance.

35
53
17
75
62
75
40
surfingsurftutorialssurfmapssurfforumsurfshop+1 more
jQuery 2.2.4Google Tag ManagerGoogle AnalyticsTypekit Fonts+2
2025-10-30T07:34:52.460Z
jncc.gov.uk favicon

Joint Nature Conservation Committee

jncc.gov.uk

70
GovernmentUnited KingdommediumMEDIUM

JNCC (Joint Nature Conservation Committee) is a UK government advisory body specializing in nature conservation. It provides scientific advice and coordination on biodiversity and environmental monitoring across the UK and internationally. The organization targets government entities, environmental professionals, researchers, and the public interested in nature conservation. The website reflects a professional and authoritative presence consistent with its government affiliation, offering comprehensive information, news, and resources related to its mission. Technically, the website employs a modern but stable technology stack including jQuery, Foundation framework, and Slick Carousel, integrated with Google Tag Manager and Google Analytics for tracking and marketing purposes. The site is mobile-optimized, accessible, and SEO-friendly, with a clear navigation structure and professional design. Hosting details are not explicit, but domain registration is through Nominet, consistent with UK government domains. From a security perspective, the site enforces HTTPS and implements a cookie consent mechanism compliant with GDPR. However, it lacks explicit security policy documentation and incident response contact information. No critical vulnerabilities or exposed sensitive data were detected. The use of third-party libraries is current but should be monitored for updates. Overall, the security posture is good but could be enhanced by adding security headers and formal security policies. The overall risk assessment is low, with high trustworthiness and legitimacy due to the domain age, consistent WHOIS data, and professional content. Strategic recommendations include publishing a dedicated security policy, adding security headers, and providing incident response contacts to improve transparency and security maturity.

65
50
10
98
82
70
100
natureconservationgovernmentadvisoryenvironmentbiodiversityukgovernment+1 more
jQuery 2.2.4Foundation 6.5.0Slick Carousel 1.9.0Google Tag Manager+2
2025-10-29T00:08:40.320Z
ft-k.de favicon

Figurentheater-Kolleg

ft-k.de

42
EducationGermanysmallHIGH

Figurentheater-Kolleg is a specialized educational institution based in Germany offering comprehensive training, courses, and workshops in the field of figurentheater, puppetry, and related performing arts. The website presents a professional and well-structured digital presence that effectively targets professionals and learners interested in these niche arts. Their offerings include foundational training, advanced courses, and various projects and events, positioning them as a niche leader in their sector. Technically, the website is built on a modern stack including Foundation 6, jQuery, GSAP animations, and the RapidWeaver CMS platform. It is hosted on German-based servers, ensuring regional consistency and likely good performance for its target audience. The site is mobile-optimized, accessible, and SEO-friendly, providing a positive user experience. From a security perspective, the site uses HTTPS with good SSL configuration and includes privacy policy compliance with GDPR. However, it lacks some security headers and a cookie consent mechanism, which are areas for improvement. No critical vulnerabilities or exposed sensitive data were detected, and the contact form includes anti-spam measures. Overall, the website is trustworthy, professional, and safe for general audiences. The domain registration data aligns with the website's geographic and business profile, supporting legitimacy. Strategic recommendations include enhancing security headers, implementing cookie consent, and publishing explicit security and incident response policies to further strengthen trust and compliance.

25
28
2
70
72
55
-
educationfigurentheaterpuppetrytrainingworkshops+2 more
jQuery 2.2.4GSAP (GreenSock Animation Platform)Foundation 6 frameworkFont Awesome 5 Pro+2
2025-10-28T15:57:26.322Z
heiner-rust-stiftung.de favicon

Heiner-Rust-Stiftung

heiner-rust-stiftung.de

54
Non-profitGermanysmallMEDIUM

The Heiner-Rust-Stiftung website represents a small non-profit foundation focused on promoting and supporting sports activities for people with disabilities in Germany. The foundation collaborates with regional partners such as Lotto Niedersachsen and the Sparkassenverband to fund and facilitate inclusive sports projects. The website content is well-structured, professionally designed, and clearly targeted at sports organizations and individuals interested in disability sports inclusion. Technically, the website is built using the RapidWeaver CMS with the Foundry theme and Stacks plugin, leveraging technologies like jQuery, Bootstrap, and Font Awesome. The site is mobile-optimized and performs moderately well, though there is room for improvement in accessibility and SEO. No advanced analytics or tracking tools are detected, indicating a privacy-conscious approach. From a security perspective, the site uses HTTPS and avoids exposing sensitive data or vulnerable libraries. However, it lacks explicit security headers and formal security or incident response policies. Privacy compliance is basic, with a privacy policy and cookie consent banner present but no detailed GDPR compliance indicators or data protection officer contact information. Overall, the website is trustworthy and professional for its non-profit purpose but could enhance its security posture and privacy compliance to better protect users and build further trust.

15
28
2
70
77
60
100
non-profitsportsfoundationdisabilityinclusion+3 more
jQuery 2.2.4BootstrapTether.jsFont Awesome+1
2025-10-28T14:29:27.134Z
kovoplastvd.cz favicon

KOVOPLAST, výrobní družstvo

kovoplastvd.cz

46
ManufacturingCzech RepublicmediumHIGH

KOVOPLAST, výrobní družstvo is a Czech manufacturing cooperative specializing in the production of high-quality plastic and metal components primarily for the automotive, construction, consumer, healthcare, electrical, and engineering industries. With a 30-year tradition, the company emphasizes employing persons with changed work ability, reflecting a socially responsible business model. Their key services include serial production of plastic and metal parts, tool making, and assembly of products according to customer specifications. The company holds the IATF 16949 certification, indicating adherence to automotive quality standards. Technically, the website is built on WordPress with a modern tech stack including jQuery, Google Analytics, Google reCAPTCHA v3, and Google Maps API. The site is mobile-optimized with good SEO practices and uses HTTPS for secure communication. However, some security best practices such as security headers are missing, and privacy and cookie policies are not explicitly found, indicating room for improvement in compliance and security posture. Security-wise, the site uses HTTPS and reCAPTCHA to protect forms, but lacks visible security headers and incident response information. No vulnerabilities or exposed sensitive data were detected in the HTML content. The absence of WHOIS data reduces transparency and trustworthiness, although the website content and certifications support legitimacy. Overall, the website is professional and trustworthy from a business perspective but would benefit from enhanced privacy disclosures, security headers, and verified domain registration information to improve compliance and trust.

15
10
17
85
72
75
20
manufacturingplasticsmetalpartsassemblyiatf16949+1 more
jQuery 2.2.4Google AnalyticsGoogle reCAPTCHA v3Google Maps API+2
2025-10-27T08:19:18.895Z
V

Visit Atlantic City

meetac.com

64
HospitalityUnited StatesmediumMEDIUM

Visit Atlantic City operates as the official destination marketing organization for Atlantic City, providing comprehensive tourism information, event calendars, group travel support, and promotional services. The website targets tourists, event planners, and group travelers, offering a broad range of services to enhance visitor experience and promote Atlantic City as a travel destination. The business model centers on tourism promotion and visitor engagement, positioning itself as a key player in the hospitality sector within the United States. Technically, the website is built on the Simpleview CMS platform, utilizing a modern technology stack including jQuery, RequireJS, Google Tag Manager, and various analytics and marketing tools. The site demonstrates good mobile optimization, accessibility, and SEO practices, although performance is moderate. The infrastructure supports extensive user tracking and marketing efforts, indicating a mature digital presence. From a security perspective, the site enforces HTTPS and employs several best practices such as asynchronous script loading and no visible sensitive data exposure. However, it lacks explicit security headers like Content-Security-Policy and X-Frame-Options, which are recommended for enhanced protection. The absence of privacy and cookie policies, as well as WHOIS registration data, presents compliance and legitimacy concerns that should be addressed. Overall, the website is professional and trustworthy in appearance but requires improvements in privacy compliance and security header implementation. The missing WHOIS data is a notable anomaly that could impact trustworthiness assessments. Strategic recommendations include implementing comprehensive privacy and cookie policies, enhancing security headers, and clarifying domain registration details to strengthen business credibility and compliance.

50
70
17
70
52
80
100
tourismeventsvisitorinformationatlanticcitytravel+1 more
jQuery 2.2.4RequireJSGoogle Tag ManagerGoogle Analytics+9

Partner Domains:

www.atlanticcitysports.org
partner
visitatlanticcity.bookdirect.net
partner
2025-10-26T20:40:53.565Z