Skip to main content

N/a security reports

Browse 29,065 Guard analyses across this slice of the directory — NIS2 / GDPR readiness, SSL/TLS, DNS hygiene and email authentication.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

149319
Websites
130
Industries
113
Countries
52
Avg Score
Page 163 of 582|Showing 8101-8150 of 29065
mapixl.com favicon

Marketing Architects

mapixl.com

68
TechnologyN/aenterpriseMEDIUM

This website is an official Microsoft authentication portal used for OAuth2 and OpenID Connect sign-in flows, primarily serving enterprise customers and users of Microsoft services. It is part of the Microsoft Azure Active Directory ecosystem, providing secure login capabilities with modern authentication standards including FIDO2 and multi-factor authentication support. The site integrates with Microsoft's global CDN infrastructure and uses advanced telemetry and error reporting mechanisms to ensure reliability and security. The technical infrastructure is robust, leveraging Microsoft Azure hosting, modern JavaScript frameworks like Knockout.js, and strict security headers. The site is optimized for performance and accessibility, with good mobile responsiveness and secure form handling. Privacy and terms of service are linked to comprehensive Microsoft policies, indicating strong compliance with GDPR and other regulations. Security posture is strong with HTTPS enforcement, nonce usage, CSRF protection, and support for modern authentication protocols. No vulnerabilities or suspicious elements were detected. The domain is a subdomain of microsoftonline.com, a well-established and trusted domain owned by Microsoft, with no WHOIS data for the subdomain itself, which is typical for enterprise subdomains. Overall, the site demonstrates a high level of professionalism, security, and compliance, suitable for enterprise-grade identity management. Strategic recommendations include maintaining up-to-date libraries, enhancing cookie consent mechanisms, and continuing regular security assessments to sustain trust and compliance.

70
50
17
65
100
60
100
authenticationloginoauth2openidconnectmicrosoft+2 more
JavaScriptKnockout.jsOAuth2OpenID Connect+3

Partner Domains:

login.live.com
partner
signup.microsoft.com
partner

+1 more partners

2025-10-07T23:17:31.099Z
disqus.com favicon

Disqus

disqus.com

75
TechnologyN/alargeMEDIUM

Disqus operates as a leading audience engagement platform, providing publishers and media companies with tools to build and moderate on-site communities, analyze audience behavior, and monetize content. Established in 2006, Disqus has positioned itself as a market leader with a comprehensive suite of services including comments, moderation, analytics, monetization, and interactive polls. The website reflects a mature digital presence with professional design, clear navigation, and strong branding consistency. Technically, the site employs modern JavaScript frameworks and third-party services such as Osano for consent management and HubSpot for analytics, hosted on AWS infrastructure. The site is mobile-optimized and accessible, with good SEO practices. Security posture is solid with HTTPS enforced and privacy compliance mechanisms in place, though some security headers and explicit security policies are not publicly documented. Overall, Disqus demonstrates a high level of business credibility and digital maturity. The domain registration data aligns well with the company's history, supporting legitimacy. No critical security issues or content safety concerns were identified. The site effectively balances user engagement, privacy compliance, and business objectives.

45
100
17
85
82
80
100
audienceengagementcommunitygrowthcommentsplatformmoderationanalytics+4 more
JavaScriptReact (likely, based on lit-html style bindings)Osano CMP for cookie consentHubSpot scripts+1
2025-10-07T23:17:21.083Z
userevidence.com favicon

UserEvidence

userevidence.com

63
TechnologyN/asmallMEDIUM

UserEvidence is a specialized B2B SaaS platform that provides customer evidence solutions for software, product, and hardware companies. The platform enables businesses to collect customer feedback, curate success stories, and generate verified case studies and testimonials to support go-to-market teams. The website presents a professional and consistent brand image, targeting B2B companies seeking to automate social proof and customer validation processes. Technically, the website is built on WordPress with Elementor and Yoast SEO, integrating advanced marketing and analytics tools such as HubSpot, Microsoft Clarity, and Google Tag Manager. Cookie consent is managed via Cookiebot, ensuring GDPR compliance with a visible consent mechanism. The domain is registered with Squarespace Domains II LLC, with no privacy protection, and the domain age aligns with the company's founding year of 2020. From a security perspective, the site uses HTTPS and domain status protections but lacks DNSSEC and explicit security headers. No vulnerabilities or exposed sensitive data were detected in the provided content. Privacy policies and terms of service are not explicitly found in the analyzed content, which could be improved for compliance and transparency. Overall, the website is well-structured, secure, and professionally presented, with room for improvement in explicit privacy and security policy disclosures to enhance trust and compliance.

25
88
10
70
52
80
100
b2bsaascustomerevidencemarketingautomationwordpress+3 more
WordPress 6.8.3Elementor 3.29.0Yoast SEO PremiumHubSpot forms+4
2025-10-07T23:16:45.983Z
M

mParticle

mparticle.com

70
TechnologyN/aenterpriseMEDIUM

mParticle is a leading Customer Data Platform (CDP) provider, operating as a SaaS business under the parent company Rokt. The company targets multi-channel consumer brands seeking to deliver intelligent and adaptive customer experiences across various devices and screens. Their platform integrates real-time data to optimize advertising and ecommerce outcomes, positioning them strongly in the technology and marketing sectors. The website reflects a mature enterprise-grade digital presence with professional branding and clear business messaging. Technically, the website is built using modern web technologies including React and Next.js, with performance optimizations such as web font preloading and responsive design. Consent management is implemented via OneTrust, and analytics are managed through Google Tag Manager, indicating a mature approach to data privacy and user tracking. The site is well-optimized for SEO and accessibility, providing a good user experience across devices. From a security perspective, the site enforces HTTPS and includes standard security headers, demonstrating adherence to best practices. However, explicit security policies, incident response contacts, and vulnerability disclosure mechanisms are not publicly available, which could be improved to enhance transparency and trust. No critical vulnerabilities or exposed sensitive data were detected. Overall, mParticle's website presents a trustworthy and professional front for a technology enterprise, with strong business credibility and technical implementation. The absence of WHOIS data limits domain legitimacy verification, but external partnerships and consistent branding support its authenticity. Strategic recommendations include publishing detailed security and incident response policies and adding vulnerability disclosure information to further strengthen security posture and compliance.

45
88
17
65
72
90
100
customerdataplatformsaasmarketingdataprivacyreal-timedata+2 more
ReactNext.jsJavaScriptWeb Fonts (woff2)+2

Partner Domains:

www.rokt.com
partner
www.aftersell.com
partner
2025-10-07T23:16:35.966Z
P

pub.network

pub.network

50
OtherN/asmallMEDIUM

The website at pub.network is currently inaccessible due to an access denied error, likely caused by a web application firewall or other security mechanism. The WHOIS data for the domain is unavailable due to unsupported TLD and no registrar or registrant information could be extracted. Consequently, no metadata, business information, or contact details are available for analysis. The lack of accessible content and transparency significantly limits the ability to assess the business, technical infrastructure, or security posture comprehensively. The site appears to have minimal or no publicly available content, which negatively impacts trust and credibility assessments. From a technical perspective, the absence of accessible HTML content prevents detection of technologies, frameworks, or hosting details. No security headers or HTTPS information could be verified, indicating a basic or incomplete security configuration. Privacy and cookie policies are not found, and no contact or incident response information is available, which raises compliance and operational concerns. Security posture evaluation is limited but indicates a low score due to the lack of visible security best practices and the presence of blocking mechanisms. The domain registration data is incomplete, and the domain age and legitimacy cannot be confirmed. Overall, the site presents a high risk due to lack of transparency, accessibility, and security information. Strategic recommendations include enabling HTTPS with a valid certificate, publishing privacy and cookie policies, providing clear contact and incident response channels, and improving website content accessibility. These steps will enhance trust, compliance, and security posture, enabling better business and technical assessments in the future.

15
50
2
60
72
80
100
2025-10-07T23:16:15.915Z
nordvpnteams.com favicon

NordLayer

nordvpnteams.com

86
TechnologyN/aenterpriseLOW

NordLayer is a cybersecurity platform focused on providing enterprise-grade network security solutions tailored for modern hybrid and remote workforces. The company offers a comprehensive suite of services including business VPN, Zero Trust Network Access, threat protection, threat intelligence, and password management. Positioned as a trusted solution with over 11,000 businesses relying on its platform, NordLayer emphasizes ease of deployment, compliance, and cost efficiency. The company is part of the Nord Security family, founded in 2019, and maintains a strong market presence with multiple certifications and positive customer reviews. Technically, NordLayer's website is built on modern frameworks such as Next.js and React, leveraging a robust tech stack that includes Google Tag Manager, Intercom, Hotjar, and HubSpot for analytics and customer engagement. The site is hosted with professional DNS management via Cloudflare and uses GoDaddy as the domain registrar. Performance and mobile optimization are excellent, with strong SEO and accessibility features implemented. From a security perspective, the website enforces HTTPS, employs a strict Content Security Policy, and showcases compliance with major security frameworks including SOC 2, ISO 27001, PCI-DSS, and HIPAA. No critical vulnerabilities or exposed sensitive data were detected. However, DNSSEC is not enabled, and there is no public security.txt or explicit incident response contact information, which could be improved. Overall, NordLayer presents a low-risk profile with a mature security posture, strong business credibility, and comprehensive privacy compliance. Strategic recommendations include enabling DNSSEC, publishing a security.txt file, and enhancing transparency around incident response and data retention policies to further strengthen trust and security culture.

80
100
47
87
100
85
100
cybersecuritynetworksecurityvpnzerotrustthreatprotection+4 more
Next.jsReactGoogle Tag ManagerIntercom+7

Partner Domains:

nordsecurity.com
parent
nordvpn.com
sister

+3 more partners

2025-10-07T22:14:56.758Z
vector.co favicon

Vector

vector.co

69
TechnologyN/amediumMEDIUM

Vector is a technology company specializing in contact-based marketing solutions that enable businesses to identify and target exact buyers through contact-level data and intent signals. Their platform integrates with major CRM and advertising platforms to provide dynamic, signal-driven ad audiences, positioning them as a modern alternative to legacy account-based marketing tools. The website demonstrates a solid market position with over 1,000 GTM teams as customers and offers a range of key services including site de-anonymization, contact-level intent, and advertising capabilities. Technically, the website is built on Webflow CMS and leverages a modern tech stack including HubSpot analytics, Google Tag Manager, Microsoft Clarity, and Usercentrics for consent management. The site is well-optimized for performance and mobile devices, with good SEO and accessibility features. Security posture is strong with HTTPS enforced and consent mechanisms in place, though explicit security headers and policies could be improved. From a security perspective, the site shows good practices such as consent management and secure form handling but lacks published security policies, incident response contacts, and vulnerability disclosure mechanisms. No critical vulnerabilities or suspicious patterns were detected. Privacy compliance is basic, with a cookie consent banner present but no visible privacy policy or terms of service. Overall, Vector's website is professional, trustworthy, and technically sound, with room for improvement in privacy and security policy transparency. The risk level is low, but enhancing compliance documentation and security disclosures would strengthen trust and regulatory adherence.

30
83
47
85
62
65
100
b2bmarketingadvertisingcontact-basedmarketingintentdata+1 more
Webflow CMSGoogle Tag ManagerHubSpot analytics and formsUsercentrics Consent Management Platform+4
2025-10-07T22:12:50.949Z
snitcher.com favicon

Snitcher

snitcher.com

65
TechnologyN/amediumMEDIUM

Snitcher is a B2B SaaS company specializing in website visitor identification and lead generation services. Their platform enables businesses to identify, enrich, and engage with anonymous website visitors in real time, turning passive traffic into actionable leads. The company positions itself as a leading provider in this niche, supported by strong customer testimonials and a high rating on G2. The website content is professionally designed, well-structured, and targets revenue teams and marketers seeking enhanced visitor analytics and engagement tools. Technically, the site is built on Webflow and integrates multiple modern analytics and marketing technologies including Mixpanel, Segment, Radar, and Usercentrics for consent management. The site is fast, mobile-optimized, and accessible, reflecting a mature digital infrastructure. Security-wise, the site uses HTTPS and consent management but lacks explicit security headers and published security policies, which are recommended for improvement. The WHOIS data is unavailable, raising questions about domain registration status, but the overall business credibility is supported by external trust signals. Strategic recommendations include publishing privacy and security policies, enhancing security headers, and clarifying domain registration details to improve trust and compliance.

30
85
22
70
62
75
100
b2bsaasvisitoridentificationleadgenerationmarketing+3 more
WebflowGoogle Tag ManagerMixpanelSegment Analytics+3
2025-10-07T22:12:45.897Z
learnpasskeys.io favicon

Okta

learnpasskeys.io

63
TechnologyN/aenterpriseMEDIUM

The website learnpasskeys.io is a developer-focused educational platform dedicated to promoting and explaining passkeys, a modern, secure, and phishing-resistant authentication method. It is presented by Auth0, a well-known identity platform owned by Okta, Inc., a leading enterprise in identity and access management. The site offers resources including introductions, demos, and curated content to help developers understand and implement passkeys effectively. The branding and content align closely with Auth0 and Okta, indicating a strong market position within the technology sector focused on security and authentication solutions. Technically, the site is built using modern web technologies including React and Next.js, ensuring fast performance, mobile optimization, and good accessibility. The infrastructure appears robust with HTTPS enforced and appropriate security headers in place. The site integrates cookie consent mechanisms compliant with GDPR and provides comprehensive privacy and security policy links, reflecting a mature approach to privacy compliance. From a security perspective, the website demonstrates strong practices such as the use of public key cryptography for authentication, no exposure of sensitive data, and adherence to security best practices. However, it lacks explicit terms of service and vulnerability disclosure pages, which could enhance transparency and trust. No signs of vulnerabilities or malicious content were detected. Overall, the website scores highly in content quality, technical implementation, security posture, privacy compliance, and business credibility. It serves as a trustworthy and professional resource for developers interested in passwordless authentication technologies. Strategic recommendations include adding terms of service, vulnerability disclosure information, and incident response contacts to further strengthen compliance and security transparency.

35
68
2
60
75
75
100
passkeyspasswordlessauthenticationsecuritydevelopers+2 more
ReactNext.jsJavaScriptWebAuthn+1

Partner Domains:

auth0.com
partner
okta.com
parent
2025-10-07T22:11:29.917Z
gleap.io favicon

Gleap

gleap.io

67
TechnologyN/asmallMEDIUM

Gleap is a technology company offering an AI-powered customer support operating system designed to enhance modern support workflows. Their platform integrates AI bots, live chat, bug reporting, surveys, help centers, and product roadmapping to streamline customer service and improve user satisfaction. Positioned as an innovative SaaS provider, Gleap targets businesses seeking advanced, multichannel customer support solutions. The website reflects a professional and consistent brand image with a focus on AI-driven support technologies. Technically, the website is built on modern web technologies including Webflow CMS, JavaScript frameworks, and integrates third-party services such as Cookiebot for cookie consent management, Google Tag Manager for analytics, and Paddle for payment processing. The site demonstrates good performance, mobile optimization, and accessibility standards, indicating a mature digital infrastructure. From a security perspective, Gleap employs HTTPS with strong SSL configurations and implements multiple security headers to protect users. The presence of a detailed cookie consent mechanism shows compliance with GDPR and privacy regulations. However, the absence of a dedicated security policy, incident response contacts, and vulnerability disclosure reduces transparency in security governance. Overall, Gleap presents a trustworthy and professional online presence with strong privacy compliance and technical implementation. Strategic improvements in security transparency and direct contact information would further enhance their security posture and business credibility.

30
83
2
85
65
85
100
aicustomersupportsaaschatbotlivechat+4 more
JavaScriptWebflowCookiebotGoogle Tag Manager+3
2025-10-07T22:10:39.820Z
rkdms.com favicon

Merkle Inc.

rkdms.com

52
TechnologyN/alargeMEDIUM

Merkle Inc. operates as a technology-driven marketing agency specializing in data-driven customer experience management and digital marketing solutions. The website analyzed is a restricted access page that blocks EU traffic to comply with GDPR regulations, reflecting a strong commitment to privacy compliance. The company is well-established, with a domain age dating back to 2003, indicating a mature market presence and stable business operations. The key services focus on marketing technology and data-driven solutions targeting business clients. Technically, the website uses a simple HTML and CSS structure hosted on AWS infrastructure, as indicated by the DNS servers. The page is minimalistic, with no visible scripts or advanced frameworks detected, and basic mobile optimization and accessibility features. Performance is moderate given the simplicity of the page. However, there is room for improvement in SEO and accessibility enhancements. From a security perspective, the domain is registered with a reputable registrar and has clientTransferProhibited status, which helps prevent unauthorized transfers. DNSSEC is not enabled, and no security headers were detected in the provided data, suggesting potential areas for security hardening. The site enforces GDPR compliance by blocking EU visitors, demonstrating awareness of regulatory requirements. No contact information or incident response channels are visible on this page, which could be improved to enhance trust and transparency. Overall, the website presents a moderate risk profile with good legitimacy but limited content and security features on this specific restricted page. Strategic recommendations include enabling DNSSEC, adding security headers, providing clear contact and incident response information, and improving technical SEO and accessibility to enhance user experience and trust.

15
95
20
60
-
60
100
gdprprivacyrestrictedaccessmerkledataprotection
HTML5CSS3AWS DNS
2025-10-07T22:09:24.673Z
rebuyengine.com favicon

Rebuy

rebuyengine.com

69
E-commerceN/amediumMEDIUM

Rebuy is a specialized ecommerce personalization platform focused on Shopify merchants, offering AI-driven tools to enhance customer experience, increase average order value, and reduce churn. The company positions itself as a leader in ecommerce personalization with a comprehensive suite of products including smart carts, merchandising widgets, dynamic bundles, checkout extensions, and post-purchase offers. Their platform integrates with major ecommerce and marketing tools, leveraging data-driven insights to optimize shopping journeys. Technically, the website is built on HubSpot CMS and employs modern web technologies including JavaScript, SVG graphics, and integrates with Google Analytics, Facebook Ads Pixel, and HubSpot analytics for marketing and tracking. The site is well-optimized for mobile devices, has good SEO practices, and provides a smooth user experience with clear navigation and professional design. From a security perspective, the site uses HTTPS and cookie consent mechanisms, indicating a baseline of privacy compliance. However, explicit security headers and incident response information are not clearly documented. The absence of WHOIS data for the domain raises some concerns about domain registration transparency, though the website content and branding appear legitimate and professional. Overall, Rebuy demonstrates a mature digital presence with strong business credibility and technical implementation. Strategic improvements in security transparency and domain registration clarity would further enhance trust and compliance.

65
68
17
70
75
75
100
ecommerceshopifypersonalizationaimarketing+4 more
HubSpot CMSGoogle Tag ManagerGoogle AnalyticsFacebook Ads Pixel+3

Partner Domains:

klaviyo.com
partner
yotpo.com
partner

+3 more partners

2025-10-07T22:08:34.557Z
authkit.com favicon

WorkOS

authkit.com

58
TechnologyN/amediumMEDIUM

AuthKit by WorkOS is a developer-focused platform offering a fully-featured UI component system for building authentication flows into applications. It leverages the WorkOS identity infrastructure and Radix UI design system to provide enterprise-ready authentication features such as Single Sign-On, Multi-Factor Authentication, Role-Based Access Control, and Directory Sync. The platform targets developers and enterprises seeking customizable and extensible authentication solutions integrated with modern identity standards. Technically, the website is built using modern frameworks including Next.js and React, with integration of Radix UI components and WorkOS services. It employs Google Tag Manager and Koala SDK for analytics and tracking. The site is well-optimized for performance, mobile responsiveness, and accessibility, reflecting a mature digital infrastructure. From a security perspective, AuthKit supports advanced security features such as leaked password protection, password strength validation, automatic spam and bot detection, and multi-factor authentication. However, the website lacks explicit security headers and published privacy or cookie policies, which are important for compliance and trust. The absence of WHOIS data for the domain reduces transparency and trustworthiness, although the active GitHub repository and professional content mitigate some concerns. Overall, AuthKit presents a strong technical and business offering in the authentication space but should improve transparency around privacy, security policies, and domain registration to enhance trust and compliance.

35
35
2
60
75
75
100
authenticationloginenterprisedeveloperuicomponents+5 more
ReactNext.jsRadix UIWorkOS platform+2
2025-10-07T22:07:04.336Z