Skip to main content

N/a security reports

Browse 28,961 Guard analyses across this slice of the directory — NIS2 / GDPR readiness, SSL/TLS, DNS hygiene and email authentication.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

148885
Websites
130
Industries
113
Countries
52
Avg Score
Page 87 of 580|Showing 4301-4350 of 28961
rentcityspace.com favicon

Host Your Event At WBUR's CitySpace

rentcityspace.com

57
HospitalityN/asmallMEDIUM

The website www.rentcityspace.com represents a venue rental service branded as WBUR's CitySpace, a state-of-the-art event venue located in Boston. The site is built on the Wix platform, leveraging Wix's Thunderbolt framework and standard web technologies such as HTML5, CSS3, and JavaScript. The business model focuses on providing event space rental services targeting general audiences seeking venue solutions in the hospitality sector. The website content is minimal but relevant to the business purpose, with a clear title and description emphasizing the venue's location and quality. From a technical perspective, the site is hosted on Wix infrastructure, which provides a moderate level of performance and good mobile optimization. However, the site lacks advanced SEO and accessibility features, and no advanced analytics or marketing tools are detected. The absence of privacy, cookie, and terms of service policies indicates a gap in compliance and user transparency. Security posture is basic with HTTPS enabled but no additional security headers detected. The lack of WHOIS data for the domain raises concerns about domain registration legitimacy and trustworthiness. No contact information or social media links are provided, limiting user engagement and business credibility. Overall, the site is functional but requires improvements in security, compliance, and business transparency to enhance trust and professionalism. Strategic recommendations include implementing comprehensive privacy and cookie policies, enhancing security headers, providing clear contact information, and verifying domain registration details to improve legitimacy and user confidence.

35
50
10
60
72
70
100
venuerentaleventspacehospitalitywixboston
WixJavaScriptHTML5CSS3
2025-10-18T14:45:59.481Z
R

Robert Forster

robertforster.net

59
OtherN/asmallMEDIUM

The website robertforster.net serves as a straightforward promotional platform for the artist Robert Forster, featuring sections such as news, recordings, performances, writing, biography, videos, and links. The site highlights the album 'Strawberries' released in 2025, targeting fans and music enthusiasts. The business model is informational and promotional, with a niche market position focused on the artist's audience. The website is small in scale and has been online since 2006, consistent with the domain registration data. Technically, the site is built with basic HTML and CSS without advanced frameworks or CMS detected. Hosting is likely through the registrar 123-Reg Limited with DNS services from ui-dns providers. The site shows moderate performance and basic mobile optimization but lacks modern SEO and accessibility features. No analytics or marketing tools are present, indicating minimal digital maturity. From a security perspective, the site lacks HTTPS and security headers information is unavailable, suggesting potential gaps in security best practices. No privacy, cookie, or terms of service policies are present, and no contact or incident response information is provided. The domain registration is consistent and legitimate, with no suspicious patterns detected. Overall, the security posture is basic with room for improvement. The overall risk is low given the non-sensitive nature of the content, but the site would benefit from implementing HTTPS, security headers, privacy policies, and contact information to enhance trust and compliance. Strategic recommendations include enabling DNSSEC, adding privacy and cookie policies, improving security headers, and providing clear contact channels for incident response.

15
50
17
70
100
60
100
musicartistrobertforsterstrawberriespromotional
HTMLCSS
2025-10-18T14:44:11.694Z
hojberg.xyz favicon

Simon Højberg ❈ Principal Frontend Engineer

hojberg.xyz

55
TechnologyN/asmallMEDIUM

The website hojberg.xyz is a personal professional portfolio for Simon Højberg, a principal front-end engineer and UX lead at Unison. The site serves as a platform for publishing essays, technical explorations, and personal expressions related to programming and technology. It targets developers and technologists interested in frontend engineering and programming culture. The business model is primarily personal branding and thought leadership, with no commercial transactions or services offered directly on the site. Technically, the site is built using the Astro framework (version 5.14.1) with custom fonts and CSS styling. It is hosted with domain registration via Squarespace Domains II LLC and DNS managed by Google Cloud DNS, though DNSSEC is not enabled. The site performs well with good mobile optimization and SEO practices, but lacks advanced accessibility features. From a security perspective, the site uses HTTPS and has domain status protections to prevent unauthorized transfers or deletions. However, it lacks security headers, DNSSEC, and published security or privacy policies. No contact information for incident response or vulnerability disclosure is provided, which limits its compliance posture and security transparency. Overall, the site is safe, professional, and well-designed for its purpose but would benefit from enhanced privacy compliance, security headers, and contact information to improve trust and security posture.

30
50
2
60
52
75
100
personaltechnologyprogrammingfrontendessays+1 more
Astro v5.14.1IBM Plex Sans fontCSSJavaScript
2025-10-18T14:43:56.458Z
jakearchibald.com favicon

Jake Archibald

jakearchibald.com

59
TechnologyN/asmallMEDIUM

JakeArchibald.com is a personal blog operated by Jake Archibald, a web developer and technologist. The site focuses on technical content related to web development, including topics such as progressive image rendering, JavaScript, CSS animations, and browser bugs. The blog targets web developers and technology enthusiasts, serving as a platform for thought leadership and knowledge sharing. The business model is primarily content publishing without commercial transactions or advertising. The domain has been registered since 2006, indicating a long-standing presence in the web development community. Technically, the website is built with modern web standards using HTML5, CSS, and JavaScript modules. It is hosted with Cloudflare DNS services, likely leveraging CDN capabilities for performance. The site is fast, mobile-optimized, and accessible, with good SEO practices evident from meta tags and structured content. No CMS or third-party frameworks are detected, suggesting a custom or static site architecture. From a security perspective, the site uses HTTPS (implied by Cloudflare hosting and modern scripts) but lacks explicit security headers in the HTML content. The domain registration includes protective statuses preventing unauthorized transfers or deletions, enhancing domain security. However, DNSSEC is not enabled, and no privacy or cookie policies are published, indicating gaps in compliance and security best practices. No forms or user input mechanisms are present, reducing attack surface. Overall, the website is trustworthy, professional, and safe for general audiences. The main risks relate to privacy compliance and security header hardening. Strategic improvements in these areas would enhance the site's security posture and regulatory adherence.

45
35
2
60
75
75
100
webdevelopmentblogjavascriptcssprogressiveimagerendering+1 more
HTML5CSSJavaScript (ES Modules)Cloudflare DNS
2025-10-18T14:43:36.169Z
I

IndieAuth - Sign in with your domain name

indieauth.com

49
TechnologyN/asmallHIGH

IndieAuth.com is a specialized technology service focused on providing decentralized authentication solutions that allow users to sign in to websites using their own domain names instead of traditional passwords or third-party social logins. It is part of the broader IndieWeb movement aimed at empowering users with control over their online identities. The website offers an IndieAuth server, developer APIs, and educational resources to facilitate adoption of this authentication method. Technically, the website employs a classic web stack including Bootstrap 3.3.7, jQuery 3.2.1, and Mustache.js, hosted on Linode infrastructure. The site uses HTTPS and Google Analytics for tracking but lacks modern security headers and DNSSEC, indicating room for security improvements. Mobile optimization and accessibility are basic but functional. From a security perspective, the site enforces HTTPS and domain transfer protections but does not provide explicit privacy, cookie, or security policies, nor does it disclose vulnerability handling or incident response procedures. The absence of these compliance and security disclosures represents a gap in user trust and regulatory adherence. Overall, IndieAuth.com is a credible niche service with a solid technical foundation and community backing but would benefit from enhanced privacy compliance, security hardening, and clearer contact and incident response information to improve trust and regulatory posture.

50
35
2
60
62
70
40
authenticationindieauthindieweblogindeveloper+1 more
Bootstrap 3.3.7jQuery 3.2.1Mustache.jsGoogle Analytics (ga.js)

Partner Domains:

indielogin.com
service
indieweb.org
partner
2025-10-18T14:43:16.130Z
resilientwebdesign.com favicon

Jeremy Keith

resilientwebdesign.com

50
TechnologyN/asmallMEDIUM

Resilient Web Design is a specialized educational website authored by Jeremy Keith, offering a free web book on resilient web design principles. The site targets web designers and front-end developers seeking to deepen their understanding of web design philosophy. It provides multiple downloadable formats and podcast versions, enhancing accessibility and user engagement. The website enjoys a strong reputation within the web development community, supported by numerous positive testimonials from recognized professionals. Technically, the website employs a clean and modern tech stack based on HTML5, CSS3, and JavaScript, with hosting infrastructure leveraging Amazon S3 for content delivery. The site demonstrates excellent mobile optimization, accessibility, and SEO practices, contributing to a fast and user-friendly experience. However, it lacks advanced security headers and DNSSEC, which could be improved to enhance security posture. From a security perspective, the site benefits from HTTPS and domain transfer protection but lacks published privacy, cookie, or security policies, which are important for compliance and user trust. No forms or contact information are provided, limiting direct communication channels. No vulnerabilities or malicious content were detected, and no WAF or blocking mechanisms interfere with content access. Overall, the website presents a low-risk profile with strong content quality and business credibility but would benefit from enhanced privacy compliance and security best practices to further solidify trust and regulatory adherence.

30
35
17
60
-
75
100
webdesigneducationtechnologypodcastfreebook+1 more
HTML5CSS3JavaScript
2025-10-18T14:43:01.099Z
K

Kay Belardinelli

kangabell.com

44
OtherN/asmallHIGH

The website kangabell.com represents a personal and professional online presence for Kay Belardinelli, an artist and web accessibility specialist. The site is simple and minimalistic, focusing on presenting the individual's name, pronouns, and professional description. There is no evidence of commercial activity, contact forms, or extensive business information, indicating a small-scale personal portfolio or professional showcase. From a technical perspective, the site is built with basic HTML and CSS, using custom fonts loaded locally. There is no detected CMS or advanced frameworks, and the hosting is provided by DreamHost, LLC. The site appears to be moderately optimized for mobile devices and accessibility, though it lacks advanced SEO and performance optimizations. No third-party analytics or advertising technologies are present. Security posture is minimal; the domain uses HTTPS (implied by the URL), but no security headers or advanced configurations are detected. The WHOIS data is transparent and consistent with the website content, showing a long-standing domain registration without privacy protection, which is appropriate for this type of site. However, the absence of privacy and cookie policies, as well as contact information, limits compliance and trust. Overall, the site is low risk, safe for general audiences, and serves as a basic professional portfolio. Strategic recommendations include adding privacy and cookie policies, implementing security headers, and providing contact information to improve trust and compliance.

15
50
2
60
72
75
20
artistwebaccessibilitypersonalwebsiteprofessionalportfolio
HTML5CSS3WOFF2 fontsWOFF fonts+1
2025-10-18T14:42:41.060Z
burnsnotice.com favicon

Burns Notice

burnsnotice.com

58
MediaN/asmallMEDIUM

Burns Notice is an independent journalism website run by Katelyn Burns, focusing on trans rights, politics, internet culture, gaming, and occasional sports commentary. The site operates primarily as a newsletter subscription platform with additional podcast content, targeting a general audience interested in progressive political commentary. The website is built on the Ghost CMS platform, leveraging modern web technologies including JavaScript, CSS, and integrations with Stripe for payment processing and Art19 for podcast delivery. The site demonstrates good design quality, mobile optimization, and SEO practices, though accessibility features are basic. From a security perspective, the website enforces HTTPS and uses secure form inputs but lacks explicit security headers such as Content-Security-Policy and X-Frame-Options. No privacy or cookie policies are published, which impacts compliance with GDPR and other privacy regulations. The absence of WHOIS registration data raises concerns about domain legitimacy and transparency, although the website content and branding appear professional and consistent. Overall, the site presents a moderate security posture with room for improvement in privacy compliance and security best practices. The lack of direct contact information and incident response details limits trust signals. Strategic recommendations include publishing privacy and cookie policies, adding security headers, and clarifying domain registration status to enhance credibility and compliance.

15
35
2
70
95
75
100
independentjournalismnewslettertransrightspoliticsmedia
Ghost CMSJavaScriptCSSStripe (payment processing)+3
2025-10-18T14:42:11.005Z
mollywhite.net favicon

Molly White

mollywhite.net

60
TechnologyN/asmallMEDIUM

Molly White's website serves as a platform for independent research, critical writing, and commentary focused on the cryptocurrency industry, blockchain technology, and web3. The site highlights her work as a researcher, software engineer, and public speaker with a strong presence in media and academia. The business model centers on content publishing, freelance writing, and advocacy, targeting technology professionals, researchers, and policymakers. The website is well-branded, professionally designed, and content-rich, reflecting a high level of expertise and trustworthiness. Technically, the site uses modern web standards including HTML5, CSS3, and JavaScript, with evidence of Tailwind CSS usage and webmention support. It is mobile-optimized and accessible, with good SEO practices. However, no CMS or hosting provider information is evident. Performance is moderate, with no major technical issues detected. Security posture is generally good with HTTPS enforced and no visible vulnerabilities or exposed sensitive data. However, the absence of security headers and formal privacy or cookie policies indicates room for improvement. The WHOIS data is missing or indicates the domain may not be registered, which is unusual given the active content and subdomains. This discrepancy warrants further investigation to confirm domain legitimacy. Overall, the website is a credible and professional resource in its niche but would benefit from enhanced privacy compliance, security policy publication, and domain registration transparency to strengthen trust and compliance.

30
35
17
65
72
80
100
cryptocurrencytechnologyresearchweb3blockchain+1 more
HTML5CSS3JavaScriptTailwind CSS (inferred from heroicons usage)+1
2025-10-18T14:41:30.914Z
ravelry.com favicon

Ravelry

ravelry.com

63
OtherN/amediumMEDIUM

Ravelry is a community-driven platform focused on knitters, crocheters, and fiber artists, providing a comprehensive organizational tool and a yarn and pattern database. The website presents a professional and consistent brand image with a clear focus on its niche audience. The login page includes standard security features such as CSRF tokens and password reveal toggles, indicating attention to user security during authentication. However, the absence of WHOIS data limits the ability to fully verify domain legitimacy and ownership details. Technically, the site uses modern web technologies including HTML5, CSS, JavaScript, and video formats (WebM and MP4) for dynamic splash content. The site is mobile-optimized and includes privacy-focused analytics via plausible.io, reflecting a moderate level of digital maturity. SEO and accessibility are basic to good, but there is room for improvement in security headers and explicit privacy compliance disclosures. From a security perspective, the site enforces HTTPS (implied by canonical URL), uses authenticity tokens in forms, and avoids exposing sensitive data in the HTML. However, no explicit security headers were detected, and privacy and cookie policies are missing from the analyzed content, which could impact compliance with GDPR and other regulations. No contact or incident response information is provided, limiting transparency. Overall, the website is safe, professional, and functional for its intended audience but lacks comprehensive privacy and security disclosures. The domain's WHOIS data absence is a concern for trust but may be due to privacy protection or recent registration. Strategic improvements in privacy policy visibility, security headers, and contact transparency would enhance trust and compliance.

60
50
2
85
57
85
100
communityknittingcrochetingfiberartslogin+3 more
JavaScriptHTML5CSSWebM video+1
2025-10-18T14:41:25.903Z
tinylytics.app favicon

Tinylytics

tinylytics.app

69
TechnologyN/asmallMEDIUM

Tinylytics is a privacy-focused analytics platform launched in 2023, targeting small websites, blogs, and personal projects. It offers GDPR-compliant, cookie-free tracking with features such as uptime monitoring, SSL and domain monitoring, automated insights, and customizable public stats pages. The business operates on a SaaS subscription model with a free tier and paid plans, emphasizing simplicity and privacy. The founder, Vincent Ritter, is prominently associated with the platform, providing personal support and transparency. Technically, the website is built on a modern Ruby on Rails stack with a rich JavaScript ecosystem including Turbo Rails, Stimulus, Tailwind CSS, and Chart.js. The site is performant, mobile-optimized, and accessible, with strong SEO and metadata implementation. Hosting is claimed to be in Europe, aligning with the privacy and GDPR compliance focus. Security posture is strong with HTTPS enforced, multiple security headers, and no use of cookies or PII collection. However, formal security policies and vulnerability disclosure mechanisms are not publicly documented, representing an area for improvement. The domain registration is consistent with the business claims, and no suspicious patterns were detected. Overall, Tinylytics presents a trustworthy, professional, and privacy-conscious analytics service with a clear market niche. Strategic recommendations include publishing formal security and incident response policies, adding vulnerability disclosure information, and considering certifications to enhance trust further.

65
65
17
60
75
80
100
privacyanalyticsgdprcookie-freeuptimemonitoring+2 more
JavaScriptTailwind CSSTurbo RailsStimulus+5

Partner Domains:

paddle.com
partner
2025-10-18T14:40:40.816Z
thestorygraph.com favicon

The StoryGraph Ltd.

thestorygraph.com

64
TechnologyN/asmallMEDIUM

The StoryGraph Ltd. operates a specialized digital platform focused on book tracking, personalized recommendations, and community engagement for readers. Positioned as an Amazon-free alternative to Goodreads, it leverages AI to tailor book suggestions based on user mood and preferences. The platform offers a freemium business model with a paid Plus plan for enhanced features, targeting avid readers and book enthusiasts globally. The website is professionally designed, mobile-optimized, and features comprehensive content that clearly communicates its value proposition and services. Technically, the website is built on a modern stack including Ruby on Rails and Tailwind CSS, hosted behind Cloudflare for DNS and CDN services. The site demonstrates good performance, accessibility, and SEO practices, with secure HTTPS connections and CSRF protections in place. However, some security headers are not evident in the provided data, and DNSSEC is not enabled, representing areas for improvement. From a security perspective, the site maintains a solid posture with encrypted communications and domain transfer protections. The absence of a published security policy or incident response contacts and lack of a cookie consent mechanism are notable gaps. No vulnerabilities or exposed sensitive data were detected. The WHOIS data aligns well with the business claims, showing a mature domain registration consistent with the company's operational history. Overall, The StoryGraph presents a trustworthy, well-maintained platform with strong business credibility and technical maturity. Strategic enhancements in security policy transparency, cookie consent, and DNS security would further strengthen its compliance and user trust.

55
53
2
70
75
75
100
booksreadingrecommendationsbooktrackingreadinghabits+3 more
Tailwind CSSCloudflare DNS and likely CDNGoogle FontsJavaScript (custom application.js)
2025-10-18T14:38:07.225Z
W

Webmention.io

webmention.io

49
TechnologyN/asmallHIGH

Webmention.io is a specialized hosted service designed to facilitate the reception of webmentions on any web page, primarily targeting web developers and the IndieWeb community. The service offers APIs to retrieve mention counts and detailed mentions, along with JavaScript widgets to display mention counters. The website is well-structured with clear technical documentation and open source code available on GitHub, indicating transparency and community engagement. The business model revolves around providing a niche webmention infrastructure service, positioning itself as a key player within the IndieWeb ecosystem since its founding in 2013. Technically, the website employs modern web standards including HTML5, CSS, JavaScript, and uses Linode as its hosting provider. The site is mobile optimized and performs well with fast loading times. The use of HTTPS is enforced, and domain security is enhanced by clientTransferProhibited status, although DNSSEC is not enabled. The technical implementation is solid but could benefit from additional security headers and enhanced accessibility features. From a security perspective, the site demonstrates good baseline practices such as HTTPS and domain transfer protection. However, it lacks published privacy, cookie, and security policies, as well as vulnerability disclosure information. No contact information or incident response channels are provided, which limits transparency and user trust. No advertising or tracking technologies are detected, indicating minimal user tracking. Overall, the security posture is adequate but could be improved with formal policies and headers. The overall risk assessment is moderate with no critical vulnerabilities detected. Strategic recommendations include enabling DNSSEC, publishing privacy and cookie policies, adding security headers, and providing clear contact and incident response information to enhance trust and compliance. The website is safe for general audiences and maintains a professional and functional presence within its niche.

35
35
2
60
72
70
40
webmentionapiindiewebwebmentionsopensource+1 more
HTML5CSSJavaScriptFetch API+3
2025-10-18T14:38:02.199Z
P

Principles for Responsible Management Education (PRME)

unprme.org

55
EducationN/amediumMEDIUM

The Principles for Responsible Management Education (PRME) website represents a globally recognized initiative affiliated with the United Nations, focusing on embedding sustainability and responsible management principles into higher education institutions worldwide. With over 880 signatory members, PRME serves as a collaborative platform promoting the UN Sustainable Development Goals (SDGs) through education, research, and community engagement. The website's content is rich, professionally designed, and well-structured, targeting academic institutions, educators, and students interested in sustainability and responsible leadership. Technically, the website employs modern web technologies including Alpine.js for interactivity, Cloudfront CDN for content delivery, and Google Analytics for user tracking. The site is mobile-optimized and demonstrates good SEO and accessibility practices. However, explicit privacy and cookie policies are not detected in the provided content, which is a gap in privacy compliance. Security posture is strong with HTTPS enforced and no visible vulnerabilities, though explicit security headers are not confirmed. The WHOIS data is unavailable due to a malformed response, limiting domain trust verification. Despite this, the website's affiliation with the United Nations and the professional presentation strongly support its legitimacy. Overall, the site scores well on content quality, technical implementation, and business credibility, with room for improvement in privacy compliance and transparency. Strategic recommendations include adding clear privacy and cookie policies, publishing security and incident response information, and enhancing domain registration transparency to strengthen trust and compliance.

60
35
17
70
77
60
40
unitednationssignatorymemberseducation+9 more
Google AnalyticsGoogle Tag ManagerCloudfront CDNAlpine.js (x-data directives)+2
2025-10-18T13:29:52.597Z
typecast.com favicon

Monotype

typecast.com

67
TechnologyN/aenterpriseMEDIUM

Monotype is a globally recognized technology company specializing in fonts and typography solutions. Their business model revolves around font licensing, subscription services, custom font design, and embedded font technologies targeting designers, developers, and enterprises. The website branding and navigation reflect a professional and consistent corporate identity. However, the analyzed URL is blocked by a security mechanism returning a 403 Access Denied error, limiting content visibility and analysis. Technically, the site uses Drupal CMS and integrates modern analytics and marketing tools such as Google Tag Manager, Datadog RUM, and Adobe Launch. The site is mobile optimized with basic accessibility features but lacks visible security headers and explicit privacy or cookie policies on the blocked page. The absence of WHOIS data reduces trust signals, although external links to known Monotype services support legitimacy. Security posture is moderate with HTTPS enforced but missing key security headers and incident response information. Privacy compliance is poor due to missing policies and consent mechanisms. Overall, the site presents a moderate risk profile primarily due to content blocking and lack of transparency in domain registration. Strategic recommendations include implementing comprehensive privacy and cookie policies with consent mechanisms, enhancing security headers, providing clear contact and incident response channels, and improving accessibility and SEO features to strengthen trust and compliance.

85
65
2
80
95
85
100
fontstypographyfontsubscriptionmonotypefontlicensing+2 more
Google Tag ManagerDatadog RUMAdobe LaunchDrupal CMS+1
2025-10-18T12:25:03.564Z
P

PPG Industries, Inc.

ppgpmc.com

65
EnergyN/aenterpriseMEDIUM

PPG Protective & Marine Coatings is a business-focused website representing PPG Industries, Inc., a global leader in paints, coatings, and materials with over 130 years of history. The site offers detailed information on protective and marine coatings solutions tailored for industries such as infrastructure, transportation, mining, oil, gas, chemical, power, water, wastewater, and fire protection. The company targets industrial clients and coating specifiers, providing advanced products and digital tools to simplify coating selection. Technically, the website employs modern technologies including Google Tag Manager, Didomi Consent SDK for privacy compliance, and Algolia for search autocomplete. The site appears to be built on the Kentico CMS platform and is optimized for mobile devices with good SEO and accessibility features. Performance is moderate, with no major technical issues detected. From a security perspective, the site uses HTTPS and a consent management platform to comply with GDPR. However, no explicit security headers were detected, and no public security policy or incident response contacts were found. The absence of WHOIS data for the domain is a concern, as it suggests the domain may not be properly registered or the data is hidden, which is unusual for an enterprise-level business. Overall, the website is professional, trustworthy, and compliant with privacy regulations, but the missing domain registration information and lack of visible contact details slightly reduce its credibility. Strategic recommendations include verifying domain registration, enhancing security headers, publishing security policies, and improving contact information visibility.

15
80
17
70
72
85
100
industrialcoatingsmarinecoatingsprotectivecoatingsfireprotectionhightemperatureresistance+5 more
Google Tag ManagerDidomi Consent SDKAlgolia AutocompleteMaterial Icons
2025-10-18T12:24:22.786Z