Skip to main content

N/a security reports

Browse 29,115 Guard analyses across this slice of the directory — NIS2 / GDPR readiness, SSL/TLS, DNS hygiene and email authentication.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

149561
Websites
130
Industries
113
Countries
52
Avg Score
Page 220 of 583|Showing 10951-11000 of 29115
domain.cards favicon

首页 | Domain.Cards 米表联盟

domain.cards

56
TechnologyN/asmallMEDIUM

Domain.Cards is a niche online platform focused on creating a domain name alliance community, showcasing member rankings and promoting collaboration among domain enthusiasts. The website emphasizes values of unity, mutual benefit, and shared success, targeting domain investors and enthusiasts primarily in the Chinese-speaking market. The business model revolves around community engagement and domain promotion rather than direct sales or services. Technically, the website employs modern web technologies including HTML5, CSS3, JavaScript, and WebSocket for real-time visitor tracking. It is hosted behind Cloudflare DNS, ensuring reliable performance and basic security. The site is mobile-optimized with a clean design and clear navigation, although accessibility features are basic. SEO optimization is minimal but present. From a security perspective, the site uses HTTPS and has domain transfer protections enabled. However, it lacks DNSSEC and important security headers, which could improve its security posture. No privacy or cookie policies are present, and no contact or incident response information is provided, indicating gaps in compliance and user trust mechanisms. The WebSocket implementation for visitor tracking is a notable feature but should be regularly audited for security. Overall, the website is functional and professional for its niche but would benefit from enhanced security practices, privacy compliance, and clearer contact information to improve trust and regulatory adherence.

15
50
2
70
65
70
100
domainalliancerankingcommunitychinese
HTML5CSS3JavaScriptWebSocket+1

Partner Domains:

boring.studio
partner
yii.com
partner
2025-08-02T19:29:49.844Z
quan.ge favicon

权哥米表 - QUAN GE Domains for sale!

quan.ge

52
OtherN/asmallMEDIUM

The website quan.ge operates as a domain sales platform specializing in Chinese and English domain names, including personal names and branded domains. It targets domain buyers interested in acquiring these domains, operating a niche reseller business model. The site is relatively new, with the domain registered in late 2024, consistent with the business launch. The website presents a professional and consistent branding with a clean, responsive design and clear navigation, though it lacks comprehensive business and legal information such as privacy or cookie policies. Technically, the site uses modern web technologies including HTML5, CSS3, JavaScript, Google Fonts, and Fontello icons. It employs Umami Analytics for minimal user tracking and is hosted with DNS services from Volcengine. The site is mobile optimized and performs moderately well, though accessibility features are basic and SEO optimization is minimal. No CMS or backend platform is detected, suggesting a static or custom-built site. From a security perspective, the site lacks visible security headers and published security policies. HTTPS usage is implied but not explicitly confirmed from the HTML content. No forms collect sensitive data, reducing immediate risk, but the absence of privacy, cookie, and incident response policies indicates compliance gaps. The WHOIS data is consistent with the website content and business model, showing no suspicious patterns. Overall, the security posture is moderate but could be improved with standard best practices. The overall risk assessment indicates a functional and professional domain sales site with moderate trustworthiness but lacking in privacy and security policy transparency. Strategic recommendations include implementing HTTPS with strong SSL, publishing privacy and cookie policies, adding security headers, and providing incident response contact information to enhance compliance and trust.

30
35
2
85
67
85
40
domainsaleschinesedomainsdomainmarketplaceresponsivedesignminimaltracking
HTML5CSS3JavaScriptGoogle Fonts (Montserrat)+2

Partner Domains:

hequanhong.cn
partner
miuu.top
partner

+3 more partners

2025-08-02T19:29:39.815Z
H

海量货盘,“贝”增业绩!-海贝分销

haibeigoods.com

50
E-commerceN/asmallMEDIUM

The website www.haibeigoods.com presents itself as an e-commerce distribution platform specializing in overseas warehouse stock and dropshipping services, with integration to TikTok for cross-border commerce. The platform targets sellers and distributors looking to leverage overseas warehouses primarily in the US and Southeast Asia. The site content is primarily in Chinese and offers over 5000 SKUs for distribution. Technically, the site uses modern JavaScript frameworks such as Vue.js and Element UI, and includes analytics tools like Baidu Analytics and Microsoft Clarity. However, there is no evidence of a CMS or hosting provider information. The site appears moderately optimized for performance and mobile use but lacks advanced SEO and accessibility features. From a security perspective, the site lacks visible HTTPS confirmation and security headers, and no privacy or cookie policies are published. The WHOIS data is missing or unavailable, which is a significant concern for domain legitimacy and trust. No contact information or incident response details are provided, limiting transparency and compliance. Overall, the site shows basic business functionality but suffers from critical trust and compliance gaps. Strategic improvements in domain registration transparency, security hardening, and privacy compliance are essential to enhance credibility and reduce risk.

15
50
2
40
72
75
100
e-commercedropshippingoverseaswarehousecross-bordertiktokintegration
JavaScriptVue.jsElement UIBaidu Analytics+1
2025-08-02T19:27:12.529Z
enric.dev favicon

Enric

enric.dev

59
TechnologyN/asmallMEDIUM

The website enric.dev is a personal professional portfolio for Enric, a software engineer with extensive experience in frontend and backend development at notable technology companies such as Vercel, Typeform, and Coolblue. The site serves as a digital resume and professional showcase targeting technology professionals, recruiters, and potential employers. It highlights Enric's career history, technical skills, and professional achievements. Technically, the website is built using modern web technologies including React and Next.js, hosted on Vercel, ensuring fast performance and good mobile optimization. The site uses Google Fonts and includes minimal tracking via Vercel Analytics. However, it lacks some security best practices such as security headers and formal privacy or cookie policies. From a security perspective, the site enforces HTTPS and does not expose sensitive data or collect user input via forms, which reduces risk. However, the absence of privacy policies, cookie consent mechanisms, and security headers indicates room for improvement in compliance and security posture. No vulnerabilities or suspicious elements were detected. Overall, the website is professional, safe, and trustworthy as a personal portfolio but would benefit from enhanced privacy compliance and security hardening to align with best practices and regulatory requirements.

30
35
17
60
72
80
100
personalportfoliosoftwareengineertechnologyfrontendbackend+1 more
ReactNext.jsJavaScriptCSS+1
2025-08-02T18:26:35.459Z
mainwp.dev favicon

MainWP

mainwp.dev

57
TechnologyN/amediumMEDIUM

MainWP is a well-established company specializing in private WordPress management solutions, offering a robust platform trusted by over 20,000 agencies and developers managing more than 700,000 WordPress sites. The website mainwp.dev serves as a comprehensive developer resource hub, providing detailed API documentation, add-on development guides, and a partnership program to empower developers and agencies. The business model revolves around software platform subscriptions, add-ons, and developer partnerships, positioning MainWP as a key player in the WordPress management ecosystem. Technically, the website is built on WordPress using modern technologies such as jQuery, Font Awesome, and the Bricks theme framework. It integrates Usercentrics for consent management and uses Gauges for analytics tracking. The site demonstrates good mobile optimization, SEO practices, and accessibility features, reflecting a mature digital infrastructure suitable for its target audience of developers and agencies. From a security perspective, the site enforces HTTPS and employs consent management mechanisms, enhancing privacy compliance. However, it lacks explicit security policies, incident response contacts, and vulnerability disclosure information, which are areas for improvement. No critical vulnerabilities or exposed sensitive data were detected, and the domain registration data aligns well with the business claims, supporting legitimacy and trustworthiness. Overall, MainWP's online presence is professional, secure, and privacy-conscious, with strong business credibility and technical implementation. Strategic enhancements in security transparency and incident response readiness would further strengthen its security posture and user trust.

30
68
2
70
52
50
100
wordpressdeveloperapiadd-onmanagement+3 more
WordPressPHPjQueryFont Awesome+4

Partner Domains:

mainwp.com
partner
mainwpinvite.com
partner

+1 more partners

2025-08-02T18:26:00.132Z
C

canihave.fun | 521: Web server is down

canihave.fun

49
OtherN/asmallHIGH

The website canihave.fun is currently inaccessible, serving only a Cloudflare error 521 page indicating the origin web server is down. Due to this, no business content, contact information, or compliance policies are available for review. The domain is registered through Namecheap with privacy protection enabled, and DNS is managed via Cloudflare. The lack of accessible content prevents a full assessment of the business model, services, or market positioning. Technically, the site relies on Cloudflare for DNS and security, but the origin server failure severely impacts availability and trust. From a security perspective, the site currently exhibits a critical availability issue. No security headers or HTTPS enforcement can be confirmed due to the error page. No privacy or cookie policies are present, and no contact or incident response information is available. The domain registration is privacy protected, which is common for small or new sites, but combined with the lack of content, this reduces trustworthiness. Overall, the site scores very low on content quality, technical implementation, security posture, privacy compliance, and business credibility. The primary risk is the unavailability of the website, which prevents users from accessing any services or information. Strategic recommendations include restoring web server availability, implementing security best practices, publishing privacy and cookie policies, and providing clear contact and incident response information to improve trust and compliance.

-
35
2
80
75
80
100
errorcloudflareserverdownprivacyprotectednocontent
Cloudflare
2025-08-02T18:25:09.871Z
waimaohw.com favicon

外贸号外

waimaohw.com

47
E-commerceN/asmallHIGH

外贸号外 is an e-commerce platform specializing in the 24-hour online sale of overseas social media accounts, including Facebook, TikTok, Instagram, LinkedIn, Google accounts, and more. The website targets users involved in foreign trade social media promotion, offering a variety of account types and related tools to support business development. The platform positions itself as a professional and specialized provider in this niche market segment. Technically, the website is built on WordPress using the Ceomax Pro theme, enhanced with Yoast SEO Premium for search engine optimization and WP Rocket for performance improvements. The site employs HTTPS with good SSL configuration and standard security headers, ensuring a secure browsing experience. The site is mobile-optimized and provides a good user experience with clear navigation and structured content. From a security perspective, the site demonstrates good practices such as HTTPS enforcement and security headers. However, it lacks explicit cookie consent mechanisms and does not provide visible security policies or incident response contacts. The absence of WHOIS registration data for the domain is a significant concern, impacting the overall trustworthiness and business credibility. Overall, while the platform offers a professional and content-rich service, the lack of transparent domain registration information and limited direct contact details pose risks. Strategic improvements in privacy compliance and business transparency are recommended to enhance trust and security posture.

30
68
2
40
72
75
20
facebooktiktokinstagramlinkedin
jQueryYoast SEO PremiumWP RocketWordPress
2025-08-02T18:23:48.604Z
hq-accounts.com favicon

Web Commerce Communications Limited dba WebNic.cc

hq-accounts.com

56
TechnologyN/asmallMEDIUM

The website hq-accounts.com operates as an e-commerce platform specializing in the sale of social media accounts across multiple platforms including Facebook, Twitter, Instagram, TikTok, and Gmail. The business targets individuals or entities seeking ready-made accounts for marketing, advertising, or other purposes. The market position is niche, focusing on providing accounts with various features such as two-factor authentication, verified emails, and geographic IP registration. The company behind the domain is registered as Web Commerce Communications Limited dba WebNic.cc, with the domain created in 2019, indicating a stable presence. Technically, the website employs a modern tech stack including HTML5, CSS3, JavaScript with jQuery and Bootstrap frameworks, and integrates analytics tools like Google Analytics and Yandex Metrica. Hosting and DNS services are provided via Cloudflare, enhancing performance and security. The site is mobile optimized and SEO friendly, though accessibility features are basic. From a security perspective, the site uses HTTPS with good SSL configuration and some security headers, but lacks comprehensive security policies, incident response information, and vulnerability disclosure mechanisms. Privacy compliance is weak due to the absence of privacy and cookie policies and consent mechanisms. The business model involves selling digital assets that are often associated with illicit activities, which raises ethical and legal concerns. Overall, the website is functional and professionally designed but has notable gaps in privacy compliance and security transparency. Strategic improvements in these areas are recommended to enhance trustworthiness and regulatory adherence.

-
50
17
55
95
65
100
socialmediaaccountsfacebookaccountsgmailaccounts2fadigitalgoods+1 more
HTML5CSS3JavaScriptjQuery+5
2025-08-02T18:23:38.586Z
scrappey.com favicon

Scrappey.com

scrappey.com

64
TechnologyN/asmallMEDIUM

Scrappey.com is a technology company specializing in providing a web scraping API service that integrates advanced anti-bot technologies, rotating residential proxies, and CAPTCHA solving capabilities. Their platform targets developers and businesses requiring reliable and efficient web data extraction solutions. The company positions itself as a niche provider with a competitive edge in bypassing common scraping barriers, supported by positive user reviews and active community engagement via Discord and GitHub. Technically, the website is a modern single-page application built likely with Vue.js, hosted and protected by Cloudflare. It employs multiple analytics and marketing tools such as Google Analytics, Hotjar, Facebook Pixel, and Plausible, indicating a mature digital marketing strategy. The site is mobile-optimized, fast-loading, and SEO-friendly, though accessibility features are basic. From a security perspective, the site benefits from HTTPS, Cloudflare's security features, and domain transfer protection. However, it lacks publicly available privacy, cookie, and security policies, which are critical for compliance and user trust. No vulnerabilities or exposed sensitive data were detected in the content provided. Overall, Scrappey.com presents a solid business and technical foundation with room for improvement in privacy compliance and explicit security disclosures. Strategic enhancements in these areas would strengthen trust and regulatory adherence.

50
70
17
65
75
55
100
webscrapingapianti-botproxiescaptchasolver+2 more
JavaScriptCloudflare DNS and hostingTawk.to live chatGoogle Analytics (gtag.js)+5

Partner Domains:

docs.scrappey.com
service
wiki.scrappey.com
service

+1 more partners

2025-08-02T18:23:23.497Z
smsverified.com favicon

SmsVerified

smsverified.com

62
TechnologyN/amediumMEDIUM

SMSVerified is a technology-focused online platform specializing in providing temporary virtual phone numbers for SMS verification purposes. Founded in 2020, the company offers a fully automated service that enables users to bypass SMS verification on social networks, messengers, and other online platforms without exposing their personal phone numbers. The service targets individuals and businesses requiring disposable numbers for secure and private registrations. The platform supports over 3.5 million numbers from more than 30 countries, positioning itself as a niche but significant player in the virtual number market. Technically, the website is built using modern web technologies including React and Next.js, with Cloudflare DNS services and Google Analytics for tracking. The site is well-optimized for mobile devices, has good SEO practices, and loads quickly. However, DNSSEC is not enabled, which is a minor security shortfall. Privacy and cookie policies are present, though no explicit cookie consent mechanism is implemented. From a security perspective, the site enforces HTTPS and employs domain locking mechanisms to prevent unauthorized changes. No critical vulnerabilities or exposed sensitive data were detected. However, the absence of a published security policy or incident response contact reduces transparency. The company maintains active social media channels for support and community engagement. Overall, SMSVerified demonstrates a solid technical and business foundation with good security hygiene. To enhance trust and compliance, it is recommended to enable DNSSEC, implement cookie consent, and publish explicit security and incident response policies. The lack of direct company contact emails or phone numbers is a minor gap in business credibility but is partially mitigated by active social media support channels.

50
68
2
40
75
75
100
smsverificationtemporaryphonenumbersvirtualnumbersonlineserviceprivacyprotection+2 more
ReactNext.jsCloudflare DNSGoogle Analytics
2025-08-02T18:23:08.318Z
slaask.com favicon

Slaask, Inc.

slaask.com

61
TechnologyN/asmallMEDIUM

Slaask, Inc. operates a SaaS platform that integrates customer service communication directly into Slack, targeting businesses that use Slack as their primary collaboration tool. The company positions itself as a niche leader specializing exclusively in Slack-based customer messaging, offering services such as chatbot creation, lead and customer communication unification, and integrations with popular CRM and marketing tools. The website is professionally designed, mobile-optimized, and provides clear navigation and relevant content for its target audience of SMBs and larger enterprises. Technically, the website is built on WordPress with modern JavaScript libraries and integrates multiple analytics and marketing tools including Google Analytics, Facebook Pixel, and Albacross. The site uses HTTPS with good SSL configuration but lacks some security headers and cookie consent mechanisms, which are areas for improvement. The site is accessible with no WAF or blocking detected, and SEO is enhanced by Yoast plugin and structured data. From a security perspective, the site demonstrates good practices such as HTTPS enforcement and no visible sensitive data exposure. However, it lacks explicit security policies, incident response contacts, and vulnerability disclosure mechanisms. Privacy compliance is basic with a privacy policy present but no cookie consent banner or GDPR-specific indicators. WHOIS data for the subdomain is unavailable as expected, but the main domain is presumed legitimate based on website content and branding. Overall, the website presents a moderate to good security posture and business credibility with room for enhancements in privacy compliance and security transparency. The risk level is low, but strategic improvements in security headers, cookie consent, and incident response documentation are recommended to strengthen trust and compliance.

30
53
2
75
75
70
100
customerserviceslackintegrationchatbotsaascustomermessaging+2 more
WordPress 4.7.29jQuery 3.2.1Google AnalyticsFacebook Pixel+5

Partner Domains:

slaask.com
parent
slack.com
partner
2025-08-02T18:19:13.414Z
octoparse.es favicon

Octopus Data Inc.

octoparse.es

63
TechnologyN/amediumMEDIUM

Octoparse is a technology company specializing in no-code web scraping software that enables users to extract structured data from websites efficiently. The company targets businesses and individuals who require data extraction without programming skills, offering AI-assisted scraping, cloud automation, and a rich library of pre-built templates. Their market position is strong with a global presence and multi-language support, emphasizing ease of use and automation. Technically, the website is built on modern frameworks such as Next.js and Mantine UI, integrating advanced analytics and push notification services like Google Tag Manager, Microsoft Clarity, and OneSignal. The site is well-optimized for performance, mobile responsiveness, and SEO, reflecting a mature digital infrastructure. From a security perspective, Octoparse employs HTTPS with strong SSL configuration and multiple security headers, ensuring a secure browsing experience. Privacy and cookie policies are comprehensive and GDPR compliant, although explicit security policy and incident response information are not publicly available. No critical vulnerabilities or exposed sensitive data were detected. Overall, Octoparse presents a low-risk profile with a professional online presence, strong trust indicators, and adherence to privacy standards. Strategic recommendations include publishing detailed security policies, incident response contacts, and vulnerability disclosure mechanisms to further enhance trust and compliance.

20
68
25
60
72
75
100
webscrapingdataextractionno-codeaiassistantcloudscraping+4 more
React (Next.js)Mantine UIOneSignal (push notifications)Google Tag Manager+2

Partner Domains:

dataservice.octoparse.com
service
helpcenter.octoparse.com
service

+3 more partners

2025-08-02T17:17:05.647Z
octoparse.com favicon

Octopus Data Inc.

octoparse.com

44
TechnologyN/alargeHIGH

Octoparse is a technology company specializing in no-code web scraping solutions that enable businesses and individuals to extract structured data from web pages efficiently. The company offers a cloud-based platform with AI-powered assistants, extensive template libraries, and automation features to serve a broad audience of data-driven organizations. Their market position is strong, supported by millions of users and partnerships with recognized platforms. Technically, the website is built on modern frameworks such as Next.js and Mantine UI, with integrations of analytics and tracking tools like Google Tag Manager and Microsoft Clarity, reflecting a mature digital infrastructure. Security-wise, the site enforces HTTPS and employs sandboxed iframes, but could improve by explicitly implementing additional security headers and publishing a vulnerability disclosure policy. Overall, the website is professional, well-structured, and trustworthy, though the absence of WHOIS data introduces a moderate uncertainty in domain legitimacy. Strategic recommendations include enhancing security header implementation, establishing a public vulnerability disclosure channel, and improving transparency around domain registration details.

20
68
10
-
72
-
100
webscrapingdataextractionno-codeaiassistantcloudscraping+2 more
React (Next.js)Google Tag ManagerMicrosoft ClarityGoogle Identity Services+1

Partner Domains:

helpcenter.octoparse.com
service
dataservice.octoparse.com
service

+3 more partners

2025-08-02T17:17:00.620Z
sendloop.com favicon

Sendloop

sendloop.com

59
TechnologyN/asmallMEDIUM

Sendloop is a specialized email marketing and delivery platform tailored for high-volume marketers, digital agencies, and corporations. Founded in 2003, the company offers a SaaS solution that emphasizes custom-built features, automation, segmentation, and extensive integrations to optimize email campaign performance. The platform targets businesses needing scalable and efficient email marketing tools, positioning itself as a niche provider with dedicated services for large senders. Technically, the website is built on WordPress using Elementor and Yoast SEO, integrating modern web technologies such as jQuery and third-party services like Stripe for payments, Calendly for scheduling, and Fathom Analytics for privacy-focused tracking. The site demonstrates good SEO practices, mobile optimization, and moderate performance. From a security perspective, the site enforces HTTPS with a good SSL configuration and uses Cloudflare DNS, but lacks explicit security headers and published security policies or incident response contacts. Domain WHOIS data is consistent and trustworthy, with domain age appropriate for the business history. Privacy and cookie policies are present with consent mechanisms, indicating GDPR compliance. Overall, Sendloop presents a professional and credible online presence with a solid technical foundation and privacy compliance. Security posture is good but could be enhanced by adding security headers and incident response information. No critical vulnerabilities or suspicious content were detected.

35
95
2
100
72
85
-
emailmarketingemaildeliverymarketingautomationhigh-volumeemaildigitalagencies+5 more
WordPressElementorYoast SEOjQuery+4
2025-08-02T17:15:40.255Z
tavily.com favicon

Tavily

tavily.com

68
TechnologyN/asmallMEDIUM

Tavily operates as a technology company providing a real-time search engine API tailored for AI agents and Retrieval-Augmented Generation (RAG) workflows. The company targets developers and AI application builders, offering fast and secure APIs for web search and content extraction. The website demonstrates a strong market position, trusted by over 600,000 developers and integrated with notable AI and developer platforms such as Cohere, LangChain, and MongoDB. The business model centers on API services that empower AI applications with accurate and real-time web data. From a technical perspective, Tavily's website is built using modern web technologies including React, Next.js, and Chakra UI, ensuring excellent performance, mobile optimization, and accessibility. The site features SDK examples in Python, Node.js, and cURL, facilitating easy integration for developers. The presence of Google Tag Manager indicates moderate analytics and tracking capabilities. Security posture is moderate; while HTTPS is implied and no sensitive data is exposed, the absence of visible security headers, privacy policies, cookie consent mechanisms, and WHOIS registration data introduces trust and compliance concerns. The lack of WHOIS data is particularly notable, as it raises questions about domain registration legitimacy. No vulnerability disclosure or incident response information is provided, which could be improved to enhance security transparency. Overall, Tavily presents as a professional and trustworthy technology service provider with a strong developer focus. However, improvements in privacy compliance, security best practices, and domain registration transparency are recommended to strengthen trust and regulatory adherence.

30
53
17
85
100
85
100
aiapillmsearchdeveloper+3 more
ReactNext.jsChakra UIYouTube Player API+3
2025-08-02T17:15:30.214Z
R

DNS points to prohibited IP | rna.org.uk | Cloudflare

rna.org.uk

47
OtherN/asmallHIGH

The domain rna.org.uk is registered since 2010 with a UK-based registrar 123-Reg Limited. However, the website content is currently inaccessible due to a Cloudflare error 1000, indicating the DNS resolves to a prohibited IP address. This misconfiguration results in a complete block of the website content, preventing any meaningful business or security analysis. The page served is a Cloudflare error page with no business information, contact details, or policies visible. Technically, the site uses Cloudflare as a CDN and security provider, but the DNS misconfiguration severely impacts availability and trust. From a technical perspective, the site relies on Cloudflare infrastructure but lacks visible security headers or SSL configuration details due to the block. No forms, scripts beyond Cloudflare's own, or analytics beyond Cloudflare Performance Radar are detected. Privacy and cookie policies are absent, and no GDPR compliance indicators are present. Security posture is weak due to the DNS misconfiguration causing the Cloudflare block, which is a critical availability issue. No incident response or vulnerability disclosure information is available. The WHOIS data is consistent and legitimate but does not compensate for the lack of accessible website content. Overall, the site is currently non-functional from a user and security perspective. Immediate remediation of DNS records to point to valid IP addresses is required to restore service and enable further analysis.

35
35
2
70
57
60
100
cloudflareerror1000dnsblocked
Cloudflare
2025-08-02T17:14:55.029Z