Skip to main content

N/a security reports

Browse 28,941 Guard analyses across this slice of the directory — NIS2 / GDPR readiness, SSL/TLS, DNS hygiene and email authentication.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

148819
Websites
130
Industries
113
Countries
52
Avg Score
Page 529 of 579|Showing 26401-26450 of 28941
tokagroup.com favicon

Toka

tokagroup.com

69
GovernmentN/amediumMEDIUM

Toka is a specialized cybersecurity and digital forensics company focused on providing advanced lawful digital forensics, intelligence, and force protection solutions primarily to government, law enforcement, and security agencies. Their offerings include forensic investigations, targeted intelligence, covert operations, and national-level cyber capacity building services. The company positions itself as a trusted partner in homeland security and cyber defense, with recognition from entities such as the World Bank and StateUp. Technically, the website is built on the Webflow platform, leveraging modern JavaScript libraries such as jQuery and Glide.js for UI components, and integrates Google Analytics and Google Tag Manager for analytics and marketing. The site is mobile optimized with good design quality and clear navigation, though accessibility features are basic. Performance is moderate, typical of Webflow-hosted sites. From a security perspective, the site enforces HTTPS and avoids exposing sensitive data in its HTML. However, it lacks visible security headers and does not provide public security policies or incident response contacts. The absence of privacy and cookie policies is a compliance gap, especially for GDPR. The WHOIS data is missing or indicates the domain may not be registered, which is a significant trust concern. Overall, while the business and technical presentation is professional and targeted, the lack of WHOIS transparency and privacy compliance documentation reduces trustworthiness. Strategic improvements in security headers, privacy policies, and domain registration transparency are recommended to enhance credibility and compliance.

60
35
55
85
57
85
100
digitalforensicscybersecuritygovernmentintelligencelawenforcement+1 more
Google AnalyticsGoogle Tag ManagerWebflowjQuery+1
2025-06-26T15:29:06.149Z
getnowadays.com favicon

Nowadays AI, Corp.

getnowadays.com

62
TechnologyN/asmallMEDIUM

Nowadays AI, Corp. operates a technology-driven platform that leverages artificial intelligence to streamline corporate event planning. The company positions itself as an in-house event planner for businesses, offering services such as venue search, negotiation with venues globally, and travel agency capabilities certified by IATA. The platform targets corporate clients seeking efficient and hassle-free event organization, supported by notable trust signals including Y Combinator backing and press coverage. Technically, the website is built using modern frameworks such as Next.js and React, with integrations like Intercom for customer engagement and embedded YouTube videos for marketing. The site demonstrates good mobile optimization and SEO practices, though some accessibility features could be enhanced. Performance is moderate, with room for improvement in loading speed and security headers. From a security perspective, the site uses HTTPS (implied by the URL), but no explicit security headers were detected in the HTML content. Privacy and terms of service pages are present, indicating some compliance with data protection regulations such as GDPR. However, no cookie consent mechanism or detailed security policies were found, suggesting areas for compliance improvement. Overall, the risk profile is moderate with no critical security issues detected. The lack of public WHOIS data is typical for startups and does not detract from legitimacy given the professional branding and external validations. Strategic recommendations include enhancing security headers, implementing cookie consent, and publishing more detailed security and incident response policies to strengthen trust and compliance.

35
53
17
75
72
65
100
aieventplanningcorporatesaasycombinator+1 more
ReactNext.jsJavaScriptIntercom+1
2025-06-26T15:28:41.100Z
marrlabs.com favicon

Marr Labs

marrlabs.com

64
TechnologyN/asmallMEDIUM

Marr Labs is a technology company specializing in AI voice agents designed to automate customer interactions such as lead qualification, appointment scheduling, and customer service. The company targets multiple industries including financial services, call centers, real estate, legal, and hospitality. Their business model is based on a managed service approach with a one-time setup fee and usage-based pricing, emphasizing quick deployment and scalability. The website reflects a professional and consistent brand with clear messaging and transparent pricing. Technically, the website is built on the Webflow platform, utilizing modern web technologies including Google Tag Manager, Google Analytics, and Howler.js for audio playback. The site is well-optimized for performance and mobile devices, with good SEO practices and basic accessibility features. Security is enforced through HTTPS and secure form handling, though some security headers are missing and no cookie consent mechanism is present. From a security perspective, Marr Labs demonstrates a moderate security posture with SOC 2 compliance mentioned, indicating a focus on data protection and reliability. However, the absence of WHOIS registration data raises questions about domain legitimacy and age, which should be monitored. No incident response or vulnerability disclosure information is publicly available, and privacy compliance could be improved with explicit cookie consent and GDPR indicators. Overall, Marr Labs presents a credible and professional business with advanced AI offerings, but improvements in transparency, security headers, and privacy compliance are recommended to enhance trust and regulatory adherence.

30
53
17
85
72
75
100
aivoiceagentscustomerserviceautomationconversationalai+2 more
Webflow CMSGoogle Tag ManagerGoogle Analytics (gtag.js)Howler.js (audio playback)+2
2025-06-26T15:27:40.902Z
justpaid.ai favicon

JustPaid

justpaid.ai

69
FinanceN/asmallMEDIUM

JustPaid is a technology-driven SaaS company specializing in AI-powered revenue operations and billing automation. Their platform streamlines invoicing, payment collections, and customer communications, targeting financial experts, entrepreneurs, and accountants. The company is positioned as an innovative player in the finance technology sector, supported by Y Combinator backing, which enhances its market credibility. The website demonstrates a high level of professionalism, with comprehensive content and clear navigation, reflecting a mature digital presence. Technically, JustPaid leverages modern web technologies including Webflow CMS, Google Tag Manager, HubSpot, Hotjar, and various tracking and marketing tools. The site is mobile-optimized and performs moderately well, with good SEO and accessibility features. Hosting is provided by Webflow, a reputable platform for SaaS startups. From a security perspective, the site enforces HTTPS and employs standard marketing and analytics scripts. However, explicit security headers are not detected, and there is no public incident response or vulnerability disclosure information. Privacy compliance is well addressed with clear privacy and cookie policies and consent mechanisms. The lack of exposed sensitive data and professional content supports a positive security posture. Overall, the risk assessment indicates a legitimate and trustworthy business with minor recommendations to enhance security headers and incident response transparency. The domain WHOIS data is privacy protected, which is typical for startups and does not raise immediate concerns. Strategic recommendations include improving security policy visibility, adding vulnerability disclosure, and enhancing trust signals through certifications or security frameworks.

60
68
2
80
72
85
100
aibillingautomationfinancesaasycombinator+2 more
WebflowGoogle Tag ManagerHubSpotHotjar+3

Partner Domains:

www.ycombinator.com
partner
2025-06-26T15:27:35.893Z
thoughtspot.com favicon

ThoughtSpot Inc.

thoughtspot.com

76
TechnologyN/aenterpriseLOW

ThoughtSpot Inc. is a leading enterprise software company specializing in AI-driven analytics and business intelligence platforms. Positioned as a Gartner Magic Quadrant Leader for 2025, ThoughtSpot offers a comprehensive suite of products including AI Agents, Embedded Analytics, Enterprise BI, and AI-Augmented Dashboards. Their platform empowers data teams and business users to transform insights into actionable decisions through agentic AI and automated workflows. The website reflects a mature digital presence with modern technologies, strong branding, and extensive customer testimonials, indicating a well-established market position. Technically, the site leverages a modern React/Next.js framework with integrations for analytics, personalization, and marketing tools such as Google Tag Manager, Mixpanel, and Visual Website Optimizer. The site is fast, mobile-optimized, and SEO-friendly, demonstrating high digital maturity. Security posture is strong with HTTPS, security headers, and cookie consent mechanisms, though explicit security policies and incident response information are not publicly detailed. Overall, the security posture is robust with no visible vulnerabilities or exposed sensitive data. Privacy compliance is well addressed with comprehensive policies and consent mechanisms. The absence of WHOIS data is a notable anomaly but does not detract from the legitimacy given the company's public recognition and professional web presence. Strategic recommendations include publishing explicit security and incident response policies, adding vulnerability disclosure information, and enhancing transparency around data protection officer contacts and certifications to further strengthen trust and compliance.

75
73
17
93
75
90
100
analyticsaibusinessintelligenceenterprisesoftwaredataanalytics+4 more
React (Next.js)Google Tag ManagerMixpanelVisual Website Optimizer (VWO)+7

Partner Domains:

google-cloud.com
partner
snowflake.com
partner

+3 more partners

2025-06-26T15:27:05.754Z
centos-webpanel.com favicon

Control Web Panel

centos-webpanel.com

52
TechnologyN/asmallMEDIUM

Control Web Panel (CWP) is a free Linux web hosting control panel designed to simplify server management for dedicated and VPS servers without requiring extensive SSH console use. The website positions itself as a niche open-source alternative to commercial control panels, offering a broad feature set including web server management, PHP configuration, user and DNS management, email services, security features, and database administration. The business model includes free software with optional paid PRO support and additional services such as AntiDDoS Proxy and Service Monitoring. The site has an active social media presence and a long-standing domain registration dating back to 2013, supporting its legitimacy. Technically, the website runs on WordPress 4.9.23 with various plugins and uses technologies like Apache, Nginx, Varnish, PHP, and Postfix for backend services. The site includes Google Analytics for tracking and has moderate performance and basic mobile optimization. SEO practices are good with proper meta tags and structured navigation. However, some components like WordPress and jQuery are outdated, posing potential security risks. From a security perspective, the site uses HTTPS and displays a SiteLock badge indicating PCI compliance and malware scanning. It implements several security best practices such as ModSecurity with OWASP rules, CSF Firewall, and user-level security limits. However, DNSSEC is not enabled, and no explicit HTTP security headers were detected in the HTML content. The absence of a cookie consent mechanism and outdated software versions are notable compliance and security gaps. Overall, the website is functional, professional, and moderately secure but would benefit from updates to software components, enhanced security headers, and improved privacy compliance mechanisms. The domain registration data is consistent with the website's claims, supporting its trustworthiness. Strategic improvements in security and privacy compliance will enhance the site's credibility and reduce risk.

55
53
10
85
42
75
20
linuxwebhostingcontrolpanelopensourcecentos+1 more
WordPress 4.9.23jQuery 1.12.4Google AnalyticsWidgetkit plugin+8

Partner Domains:

control-webpanel.com
partner
2025-06-26T14:22:51.990Z
R

Rentokil Initial

rentokil.com

69
OtherN/aenterpriseMEDIUM

Rentokil Initial plc operates the website www.rentokil.com, positioning itself as the global leader in pest control and specialist disinfection services with a presence in over 90 countries. The company offers a broad range of pest control solutions, including digital pest control technologies, tailored to various business sectors such as food processing, logistics, hospitality, and healthcare. The website reflects a mature enterprise with consistent branding, comprehensive content, and a professional user experience. Technically, the website leverages modern marketing and analytics platforms including HubSpot, Google Tag Manager, and OneTrust for cookie consent management, hosted likely behind Cloudflare infrastructure. The site is built on Magnolia CMS and demonstrates good mobile optimization, accessibility, and SEO practices. Security posture is strong with HTTPS enforced and cookie consent mechanisms in place, though explicit security headers and a public security policy are not evident. The WHOIS data for the domain is unavailable, likely due to privacy protection or registry policies, but the website content and external references strongly support the legitimacy of the domain as part of Rentokil Initial plc's digital presence. No WAF or blocking mechanisms were detected, allowing full content access and analysis. Overall, the website is a secure, professional, and comprehensive platform supporting Rentokil's global pest control business, with recommendations to enhance security transparency and incident response disclosures.

55
83
2
80
75
70
100
pestcontroldisinfectionglobalservicesdigitalpestcontrolcorporate+1 more
HubSpotGoogle Tag ManagerOneTrustCloudflare Insights+1

Partner Domains:

rentokil-initial.com
parent
careers.rentokil-initial.com
subsidiary

+3 more partners

2025-06-26T14:20:41.606Z
bnitos.com favicon

BNI Global, LLC

bnitos.com

63
OtherN/alargeMEDIUM

BNI Global, LLC operates the website bnitos.com as an informational portal providing legal and privacy documentation related to its BNI Connect® and BNI Business Builder platforms. The site targets users and members of these business networking services, offering access to Terms of Service, Privacy Policies, Data Retention, and Cookie Policies primarily in English with translation options. The business is positioned as a large, established global networking organization with a consistent brand presence and clear trust signals such as registered trademarks and official documentation. Technically, the website is built on WordPress 6.8.1 with Bootstrap and jQuery libraries, hosted on AWS infrastructure. The site demonstrates moderate performance and good mobile optimization, with basic accessibility and SEO practices in place. Security posture is adequate with HTTPS enforced and no visible vulnerabilities, though it lacks advanced security headers and DNSSEC. Privacy compliance is strong with comprehensive policies and a named Data Protection Officer contact, but no cookie consent mechanism is implemented. Overall, the security posture is solid but could be improved by adding explicit incident response policies, security headers, and cookie consent mechanisms. The domain registration is consistent and trustworthy, supporting the legitimacy of the business. The site lacks phone and physical contact details, which could enhance credibility. No advertising or tracking services were detected, indicating a privacy-conscious approach. Strategic recommendations include enhancing DNS security with DNSSEC, implementing security headers, publishing incident response and vulnerability disclosure policies, and adding cookie consent mechanisms to improve compliance and user trust.

40
73
2
60
77
75
100
bnitermsofserviceprivacypolicydataretentioncookiepolicy+1 more
WordPress 6.8.1jQuery 3.7.1Bootstrap 5.1.3AWS DNS hosting

Partner Domains:

www.bni.com
partner
www.bniconnectglobal.com
partner
2025-06-26T14:20:31.589Z
bnipodcast.com favicon

BNI

bnipodcast.com

64
MediaN/amediumMEDIUM

The Official BNI Podcast website serves as a professional content platform delivering weekly audio discussions led by Dr. Ivan Misner, founder of BNI, the world's largest business networking organization. The site targets business professionals seeking networking education and referral strategies, positioning itself as an authoritative media outlet within the business networking niche. The business model revolves around content publishing, podcast distribution, and educational sponsorships, supported by partnerships with related training and audio program providers. Technically, the website is built on WordPress with a modern tech stack including Yoast SEO, Google Analytics, and various social sharing and marketing plugins. The site demonstrates good mobile optimization and SEO practices, though performance is moderate and accessibility features are basic. Security posture is solid with HTTPS enforced and some security best practices observed, but lacks advanced security headers and a formal vulnerability disclosure mechanism. From a security and compliance perspective, the site includes a cookie consent mechanism indicating GDPR awareness, but lacks a clearly linked privacy policy and terms of service pages. Contact information is limited to forms and subscription emails, with no explicit company emails or phone numbers found. The absence of WHOIS registration data for the domain is a notable concern, potentially indicating domain registration issues or privacy protection, which impacts trustworthiness. Overall, the website is professionally maintained with high-quality content and strong brand association with BNI. However, the missing WHOIS data and incomplete privacy documentation suggest areas for improvement in transparency and compliance. Strategic recommendations include enhancing security headers, publishing comprehensive privacy and terms policies, verifying domain registration legitimacy, and improving accessibility features to strengthen trust and compliance.

15
85
17
75
65
80
100
podcastbusinessnetworkingbniivanmisnerreferrals+1 more
WordPressYoast SEOGoogle AnalyticsGoogle Tag Manager+7

Partner Domains:

www.misneraudioprograms.com
partner
www.bni.com
partner

+2 more partners

2025-06-26T14:20:16.564Z
bnibusinessbuilder.com favicon

Schoox

bnibusinessbuilder.com

64
EducationN/amediumMEDIUM

Schoox operates a professional learning management system platform designed to empower organizations with innovative LMS solutions for employee training, engagement, and development. The website analyzed is a login portal for the Schoox LMS, featuring integration with Google Sign-In and mobile app download links, targeting organizational users. The platform positions itself as a SaaS provider in the education technology sector with a medium-sized market presence. Technically, the site employs modern JavaScript frameworks such as AngularJS and libraries like jQuery and MomentJS, alongside device fingerprinting and Google APIs. The site demonstrates moderate performance and basic mobile optimization. The presence of CSRF tokens and reCAPTCHA integration indicates attention to security, although no explicit security headers were detected in the HTML content. From a security perspective, the site uses HTTPS (implied by the URL), secure form practices, and spam prevention mechanisms. However, the absence of visible security headers and cookie consent mechanisms suggests room for improvement in security hardening and privacy compliance. No direct contact emails or phone numbers were found, but a help widget provides a contact form. The WHOIS data for the subdomain is unavailable, which is typical for subdomains, but the main domain schoox.com is a known legitimate LMS provider. Overall, the website presents a trustworthy and professional LMS login portal with good technical implementation and business credibility. Strategic improvements in privacy compliance, security headers, and contact transparency would enhance the security posture and user trust.

65
53
2
70
65
80
100
lmslearningmanagementsystememployeetrainingeducationlogin+1 more
AngularJSjQueryMomentJSFingerprintJS+1
2025-06-26T14:20:11.555Z
ittf.com favicon

International Table Tennis Federation

ittf.com

62
OtherN/amediumMEDIUM

The International Table Tennis Federation (ITTF) operates as the global governing body for the sport of table tennis, providing comprehensive event management, rankings, anti-doping enforcement, and governance services. The website serves as the official platform for news, event calendars, and educational resources targeting players, officials, fans, and stakeholders worldwide. The organization maintains a professional digital presence with consistent branding and structured data to enhance search visibility. Technically, the website is built on WordPress with a modern tech stack including jQuery, Bootstrap, and various plugins for social media integration and video embedding. The site is mobile optimized and demonstrates good SEO practices, though performance is moderate. Analytics and marketing tools such as Google Analytics and AddThis are used for user tracking and engagement. From a security perspective, the site enforces HTTPS and avoids exposing sensitive data or vulnerable libraries. However, it lacks some security headers and explicit incident response contacts. Privacy compliance is partially addressed with a comprehensive privacy policy but lacks a cookie consent mechanism, which may affect GDPR compliance. WHOIS data is unavailable, likely due to privacy protection, which slightly reduces trust but is common for such organizations. Overall, the ITTF website is a credible, well-maintained platform with good content quality and technical implementation. Strategic improvements in security headers, privacy compliance, and transparency around incident response would enhance its security posture and trustworthiness.

15
53
2
100
65
85
100
sportstabletennisinternationalfederationeventsnews+3 more
jQueryGoogle AnalyticsYouTube Embed PlusUltimate Social Media Icons+2

Partner Domains:

equipment.ittf.com
partner
results.ittf.link
partner

+2 more partners

2025-06-26T14:18:16.323Z
P

Berita Togel Online Dan Slot Online - Berita Togel Online Dan Slot Online

plaquenilhcl.com

52
OtherN/asmallMEDIUM

The website plaquenilhcl.com operates as a small-scale WordPress blog focused on providing news and tips related to online gambling, specifically Togel and slot games, targeting Indonesian-speaking audiences. The site leverages common WordPress technologies and plugins such as Yoast SEO, Bootstrap, and jQuery, hosted behind Cloudflare DNS with domain registration via Dynadot Inc. The technical infrastructure is standard for a content blog, with moderate performance and good mobile optimization but lacks advanced security configurations such as DNSSEC and security headers. From a security perspective, the site uses HTTPS but does not implement additional security headers or DNSSEC, which could improve its security posture. There are no visible privacy, cookie, or terms of service policies, nor any contact or incident response information, which indicates low privacy compliance and limited business credibility. The absence of contact emails and phone numbers further reduces trustworthiness. No WAF or blocking mechanisms were detected, and the site content is fully accessible. Overall, the website presents basic content quality and technical implementation suitable for a small niche blog but falls short in privacy compliance and security best practices. Strategic improvements in policy transparency, security headers, and contact information would enhance trust and compliance.

15
35
17
60
65
70
100
togelonlineslotonlinegamblingindonesianblog
WordPressYoast SEO pluginjQueryBootstrap+3
2025-06-26T13:16:34.916Z
T

tokoblog.net | 526: Invalid SSL certificate

tokoblog.net

47
OtherN/asmallHIGH

The website tokoblog.net is currently inaccessible due to an invalid SSL certificate on the origin server, resulting in a Cloudflare Error 526. This prevents any meaningful content or business information from being accessed or analyzed. The domain is registered with NameCheap, Inc. since 2021 and uses Cloudflare DNS services, but lacks DNSSEC and a valid SSL certificate, which significantly impacts its security posture and trustworthiness. No privacy, cookie, or terms of service policies are present, and no contact information or business details are available on the error page. The technical infrastructure relies on Cloudflare as a CDN and security provider, but the SSL misconfiguration undermines the site's availability and security. From a security perspective, the primary concern is the invalid SSL certificate that blocks user access and may expose visitors to risks if bypassed. The absence of security headers and policies further weakens the site's security maturity. Business credibility and privacy compliance cannot be assessed due to lack of accessible content. Overall, the site scores very low on content quality, privacy compliance, and business credibility, with a moderate score on security posture limited by the SSL issue. Strategic recommendations include immediate installation of a valid SSL certificate on the origin server, enabling DNSSEC, and implementing standard security headers. Additionally, publishing privacy and cookie policies and providing clear contact information would improve compliance and trust. Monitoring and maintaining SSL certificates and security configurations will enhance availability and user confidence.

-
35
2
70
75
70
100
errorsslcloudflaresecurityblocked
Cloudflare
2025-06-26T13:14:44.425Z