Skip to main content

United States security reports

Browse 10,271 Guard analyses across this slice of the directory — NIS2 / GDPR readiness, SSL/TLS, DNS hygiene and email authentication.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

148887
Websites
130
Industries
113
Countries
52
Avg Score
Page 98 of 206|Showing 4851-4900 of 10271
fico.com favicon

FICO

fico.com

69
FinanceUnited StatesenterpriseMEDIUM

FICO is a leading analytics company specializing in providing advanced analytics software, solutions, and services that empower businesses to make better decisions, driving growth, profitability, and customer satisfaction. The company is well-established with a founding date in 1956 and operates primarily in the finance and technology sectors, serving lenders, investors, consumers, and enterprises globally. Their product portfolio includes credit scoring models, fraud detection systems, customer communication services, and business outcome simulators, positioning them as a market leader in analytics and decision management. Technically, the FICO website is built on Drupal CMS and leverages modern web technologies such as Google Tag Manager, Osano for consent management, and Maze Analytics for user behavior insights. The site is well-optimized for performance, mobile responsiveness, and accessibility, with comprehensive SEO and metadata implementations. The presence of structured data (JSON-LD) enhances search engine understanding and brand visibility. From a security perspective, the website enforces HTTPS and employs cookie consent mechanisms, indicating a mature privacy compliance posture. While explicit security headers were not fully confirmed in the HTML, the overall security posture is strong with no visible vulnerabilities or exposed sensitive data. The absence of WHOIS data is noted but likely due to registry or privacy policies rather than malicious intent. Overall, FICO's digital presence reflects a professional, trustworthy, and well-managed enterprise with strong compliance and security awareness. Strategic recommendations include enhancing transparency around security policies and incident response, confirming security headers, and establishing a public vulnerability disclosure program to further strengthen trust and security culture.

70
53
25
50
82
85
100
analyticsfinancecreditscoringfrauddetectionbusinessintelligence+5 more
Google Tag ManagerYouTube Widget APILazysizes (lazy loading images)Osano Consent Management+1
2025-07-28T09:32:17.492Z
916ink.org favicon

916 Ink

916ink.org

59
Non-profitUnited StatessmallMEDIUM

916 Ink is a small non-profit organization dedicated to empowering children and youth through creative writing workshops and literacy tutoring in the Sacramento region. The organization offers a variety of programs including after-school workshops, summer camps, and one-on-one tutoring, targeting disadvantaged youth to improve literacy and creative skills. Their market position is that of a community-focused educational non-profit with strong local engagement and social media presence. Technically, the website is built on the Squarespace platform, leveraging modern web technologies such as Google Analytics, Google Tag Manager, and reCAPTCHA for security and analytics. The site is mobile-optimized with good design quality and clear navigation, although some accessibility features could be improved. Performance is moderate, typical for a CMS-based site. From a security perspective, the site enforces HTTPS and uses reCAPTCHA on forms, but lacks advanced security headers like HSTS and Content Security Policy, which are recommended to enhance protection. Privacy compliance is minimal, with no explicit privacy or cookie policies found, which could be improved to meet GDPR and other regulations. Overall, the website is trustworthy and professional, with clear contact information and consistent branding. The lack of WHOIS data is likely due to privacy protection, which is justified for a non-profit. Strategic recommendations include enhancing security headers, adding privacy and cookie policies, and improving accessibility to strengthen compliance and user trust.

35
53
2
70
62
75
100
Squarespace CMSGoogle AnalyticsGoogle Tag ManagerreCAPTCHA+2
2025-07-28T09:32:02.360Z
shoutmousepress.org favicon

Shout Mouse Press

shoutmousepress.org

60
Non-profitUnited StatessmallMEDIUM

Shout Mouse Press is a nonprofit organization dedicated to empowering marginalized youth aged 12 and above through writing workshops, book publication, and public speaking opportunities. The organization focuses on amplifying underrepresented voices in literature and operates primarily within the United States. Their business model centers on nonprofit activities with a strong community and educational focus, supported by book sales and donations. Technically, the website is built on the Squarespace platform, leveraging modern web technologies including Google Analytics and Facebook SDK for tracking and engagement. The site is mobile optimized with good SEO practices and a professional design, though some accessibility features are basic. Performance is moderate, typical for a Squarespace-hosted site. From a security perspective, the site uses HTTPS but lacks some advanced security headers such as HSTS and CSP, which could improve protection against certain web attacks. No critical vulnerabilities or exposed sensitive data were detected. Privacy compliance is addressed with a clear privacy policy and cookie consent banner, indicating GDPR awareness. Overall, the website presents a trustworthy and professional front for a nonprofit organization with a clear mission and active social media presence. The lack of WHOIS data is due to privacy protection, which is justified for this type of entity. Recommendations include enhancing security headers and continuing to maintain privacy compliance and transparency.

35
50
2
70
62
80
100
nonprofityouthempowermentpublishingdiversityliterature+1 more
Squarespace CMSGoogle AnalyticsFacebook SDKTypekit Fonts+1

Partner Domains:

shout-mouse-press.networkforgood.com
partner
kickstarter.com
partner
2025-07-28T09:31:01.456Z
vital.io favicon

Vital Software Inc.

vital.io

64
HealthcareUnited StatesmediumMEDIUM

Vital Software Inc. operates a sophisticated patient experience technology platform that leverages AI and live EHR data integration to enhance healthcare delivery across emergency, inpatient, and urgent care settings. The company is well-positioned in the healthcare technology market, trusted by over 100 hospitals, and recognized for significantly improving patient satisfaction and operational outcomes. Their platform offers seamless integration with major EHR systems and emphasizes enterprise-grade security and compliance, including HITRUST and SOC2 certifications. Technically, the website is built on modern frameworks such as Next.js and React, hosted on AWS infrastructure, and employs advanced analytics and marketing tools like Google Tag Manager and LinkedIn Insight. The site demonstrates excellent performance, mobile optimization, and accessibility, reflecting a mature digital presence. Security practices are robust, with HTTPS enforcement and strong security headers, although DNSSEC is not enabled. The security posture is strong, with no evident vulnerabilities or exposed sensitive data. However, the absence of a cookie consent mechanism and explicit incident response contacts are areas for improvement. Privacy compliance is supported by a comprehensive privacy policy and GDPR adherence, but cookie consent implementation would enhance compliance further. Overall, Vital presents a credible, professional, and secure online presence aligned with its healthcare technology business. Strategic recommendations include enabling DNSSEC, implementing cookie consent, publishing a vulnerability disclosure policy, and providing clear incident response contacts to further strengthen trust and compliance.

40
53
17
65
72
80
100
healthcarepatientexperienceaiehrintegrationhealthcaretechnology+4 more
ReactNext.jsAWS DNSGoogle Tag Manager+2
2025-07-28T09:30:20.859Z
F

Fanatics

fanatics.com

69
RetailUnited StatesenterpriseMEDIUM

Fanatics.com is a leading enterprise-level e-commerce platform specializing in officially licensed sports apparel, fan gear, and collectibles. The website targets sports fans across major leagues such as NFL, MLB, NBA, NHL, and college sports, offering a wide range of merchandise including jerseys, hats, and collectibles. The company holds a strong market position as a trusted retailer with official licensing agreements, catering to a broad audience of sports enthusiasts and collectors. Technically, the website employs modern web technologies including JavaScript, CSS, and integrates third-party analytics and marketing tools such as Google Analytics and Verint Unified Web SDK. The site is well-optimized for mobile devices and demonstrates good SEO and accessibility practices, although some accessibility features could be enhanced. Performance is moderate with efficient use of fonts and preloading strategies. From a security perspective, Fanatics.com enforces HTTPS with strong SSL configuration and implements key security headers to protect users. No critical vulnerabilities or exposed sensitive data were detected. However, the absence of a publicly available security policy and incident response contact information represents an area for improvement. Privacy compliance is robust with clear privacy and cookie policies and consent mechanisms aligned with GDPR requirements. Overall, Fanatics.com presents a professional, trustworthy, and secure online presence suitable for enterprise e-commerce. The main risk factor is the lack of publicly available WHOIS data, which reduces transparency but is likely due to privacy protection or registry limitations. Strategic recommendations include publishing a dedicated security policy, providing incident response contacts, and enhancing accessibility features to further strengthen trust and compliance.

15
73
17
80
100
85
100
sportsapparele-commercefangearcollectibles+1 more
JavaScriptCSSHTML5Verint Unified Web SDK+1

Partner Domains:

shoprunner.com
partner
2025-07-28T09:29:55.806Z
coursereport.com favicon

Course Report

coursereport.com

71
EducationUnited StatesmediumMEDIUM

Course Report operates as a comprehensive online directory and review platform specializing in coding bootcamps. Established in 2013, it serves as a trusted resource for individuals seeking to start or advance careers in technology by providing detailed bootcamp listings, alumni reviews, tuition comparisons, and career tools. The platform positions itself as a market leader in the coding education space, offering a wide range of services including scholarship information and career preparation resources. Technically, the website leverages modern web technologies such as Ruby on Rails, JavaScript frameworks, and CDN services to deliver a fast, responsive, and SEO-optimized user experience. The use of New Relic and Google Tag Manager indicates a mature approach to performance monitoring and analytics. Security-wise, the site enforces HTTPS and employs standard web security practices, though it lacks explicit security headers and published privacy or cookie policies, which are areas for improvement. The absence of WHOIS data for the domain raises some concerns about domain registration transparency, but the overall professional presentation and external trust signals support the legitimacy of the business. Strategic recommendations include enhancing transparency with clear privacy and security policies, improving security headers, and verifying domain registration details to strengthen trust and compliance.

65
68
47
65
72
70
100
educationcodingbootcamptechnologycareerreviews+1 more
JavaScriptNew Relic monitoringGoogle Tag ManagerGoogle Analytics+4
2025-07-28T09:27:55.365Z
D

Design Portland

designportland.org

57
OtherUnited StatessmallMEDIUM

Design Portland is a small, community-focused organization that operated a week-long design festival in Portland from 2012 to 2021. The website now functions as an archival platform preserving resources, editorial content, videos, and images related to the festival. The target audience includes designers, creative professionals, and the local Portland community. The business model is non-profit and community-oriented, with no active commercial transactions on the site. Technically, the website is built with standard HTML5, CSS, and JavaScript modules, hosted behind Cloudflare DNS services. The site is moderately optimized for mobile and performance but lacks advanced SEO and accessibility features. There are no detected CMS or complex frameworks in use. From a security perspective, the site lacks visible security headers and privacy or cookie policies, which lowers its compliance posture. WHOIS data shows privacy protection enabled, which is justified for this type of organization. No forms or data collection mechanisms are present, reducing risk exposure. External links point to reputable domains, and no tracking or advertising technologies are detected. Overall, the website is safe, professional, and trustworthy for its archival purpose but would benefit from improved security headers, privacy policies, and contact information to enhance compliance and user trust.

15
50
2
70
75
70
100
designfestivalportlandarchivecreativecommunity+1 more
HTML5CSSJavaScript (ES Modules)
2025-07-28T08:22:33.131Z
livexavier.com favicon

Morguard Management Company Inc.

livexavier.com

67
Real EstateUnited StatesmediumMEDIUM

Xavier is a modern apartment community located in Chicago, IL, managed by Morguard Management Company Inc. The website showcases upscale apartment rentals with a focus on sustainability, featuring LEED Gold and ENERGY STAR certifications. The business targets apartment seekers in Chicago, including pet owners and environmentally conscious residents, offering studio, one-, and two-bedroom units with a variety of amenities. The site integrates a resident portal for rent payments and maintenance requests, enhancing user convenience. Technically, the website employs a modern tech stack including Entrata CMS, Google Maps API, New Relic monitoring, and social media integrations. It is mobile-optimized, accessible, and performs moderately well. Security measures include HTTPS enforcement, secure forms with CAPTCHA, and monitoring tools, though some security headers could be improved. The security posture is strong with no detected vulnerabilities or exposed sensitive data. Privacy compliance is robust with clear privacy and cookie policies, consent mechanisms, and GDPR indicators. However, the WHOIS data is missing or the domain appears unregistered, which lowers domain trustworthiness despite the professional website presentation. Overall, the website is well-designed and functional, serving its business purpose effectively. Strategic recommendations include enhancing security headers, verifying domain registration details, and maintaining privacy compliance to strengthen trust and security.

55
95
17
60
57
70
100
realestateapartmentschicagosustainabilityleed+3 more
Google Maps APIEntrata platformNew Relic monitoringFacebook Pixel+2

Partner Domains:

livexavier.residentportal.com
service
www.morguard.com
parent
2025-07-28T08:22:23.113Z
worldcoffeeresearch.org favicon

World Coffee Research

worldcoffeeresearch.org

65
Non-profitUnited StatesmediumMEDIUM

World Coffee Research is a US-based non-profit agricultural research organization focused on driving collaborative innovation to ensure the future of coffee. Founded in 2012, it serves a global audience including farmers, roasters, breeders, and policymakers by developing climate-resilient coffee varieties and providing tools and resources to support sustainable coffee production. The organization is well positioned as a leader in coffee agricultural research with over 200 member companies worldwide. Technically, the website is built on Craft CMS, hosted on DigitalOcean, and uses modern web technologies including Google reCAPTCHA v3 and Google Tag Manager for analytics and spam protection. The site is fast, mobile-optimized, and accessible with good SEO practices. However, it lacks some security headers and a cookie consent mechanism, which are areas for improvement. From a security perspective, the site enforces HTTPS, uses CSRF tokens on forms, and employs reCAPTCHA to prevent spam. The domain is privacy protected but consistent with the organization's profile and age. No critical vulnerabilities or exposed sensitive data were detected. The site could enhance its security posture by enabling DNSSEC and publishing a security policy. Overall, the website is professional, trustworthy, and content-rich, with a strong focus on sustainability and industry collaboration. Strategic recommendations include improving security headers, adding cookie consent for GDPR compliance, and publishing incident response and security policies to enhance transparency and trust.

55
68
10
50
72
80
100
coffeeagricultureclimatechangeresearchnon-profit+1 more
JavaScriptGoogle reCAPTCHA v3Google Tag ManagerSVG graphics+1

Partner Domains:

finlays.net
partner
coffein-compagnie.de
partner
2025-07-28T08:21:38.022Z
americanbanker.com favicon

American Banker

americanbanker.com

67
FinanceUnited StateslargeMEDIUM

American Banker is a well-established media publication focused on delivering news, analysis, and insights related to the banking and finance industries in the United States. Owned by Arizent, the website serves banking professionals and industry stakeholders with a variety of content including articles, research, events, podcasts, and webinars. The site demonstrates a mature digital presence with subscription gating and user preference management powered by Piano, indicating a sophisticated approach to content monetization and user engagement. Technically, the site leverages modern JavaScript frameworks, Google Tag Manager, and a robust CMS (Brightspot), ensuring a responsive and accessible user experience. Security posture is strong with HTTPS enforced and secure login mechanisms, though explicit privacy and cookie policies were not detected in the provided content, representing an area for improvement. The absence of WHOIS data reduces transparency but does not detract significantly from the site's legitimacy given its professional branding and association with Arizent. Overall, American Banker presents a credible, professional, and secure platform for banking industry news and analysis.

30
58
37
75
82
75
100
bankingfinancenewsanalysissubscription+1 more
JavaScriptjQueryGoogle Tag ManagerPiano (subscription and gating platform)+4

Partner Domains:

accountingtoday.com
partner
bondbuyer.com
partner

+3 more partners

2025-07-28T07:17:06.859Z
M

Maine Press Association

mainenotices.com

56
OtherUnited StatessmallMEDIUM

The website www.mainenotices.com serves as a public notice search platform primarily targeting the state of Maine. It is operated by the Maine Press Association and provides users with access to legal and public notices through a searchable database. The site offers filtering by county, city, and publication, catering to a general audience including legal professionals and the public interested in official announcements. The business model appears to be subscription or access-based, focusing on niche regional public notice services. Technically, the site is built on ASP.NET Web Forms with usage of jQuery and Microsoft AJAX technologies. It integrates Google Analytics and Microsoft Clarity for user behavior tracking. The design and user experience are basic but functional, with moderate mobile optimization and clear navigation. However, the site lacks modern security headers and comprehensive privacy or cookie policies, which impacts its privacy compliance and security posture. Security-wise, the site uses HTTPS but does not implement additional security headers such as Content-Security-Policy or X-Frame-Options. No vulnerabilities were detected in the visible content, but the absence of security best practices and missing WHOIS data raise concerns. The WHOIS lookup failed to retrieve registration details, which is inconsistent with the active website presence and may indicate privacy protection or domain registration issues. Overall, the site is functional and serves its business purpose but requires improvements in privacy compliance, security hardening, and transparency regarding domain registration to enhance trustworthiness and security posture.

30
35
17
70
62
80
100
publicnoticesmainelegalnoticessearchnews+1 more
ASP.NET Web FormsjQuery 2.2.4Microsoft AJAXGoogle Analytics+4
2025-07-28T07:16:41.813Z