Skip to main content

E-commerce security reports

Browse 3,261 Guard analyses across this slice of the directory — NIS2 / GDPR readiness, SSL/TLS, DNS hygiene and email authentication.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157364
Websites
130
Industries
113
Countries
52
Avg Score
Page 24 of 66|Showing 1151-1200 of 3261
scentbird.com favicon

Scentbird, Inc.

scentbird.com

65
E-commerceUnited StatesmediumMEDIUM

Scentbird, Inc. operates a subscription-based e-commerce platform specializing in monthly perfume and fragrance deliveries, offering consumers access to over 600 designer scents. The company targets fragrance enthusiasts who prefer to sample perfumes before purchasing full bottles, positioning itself as a niche leader in the fragrance subscription market. Founded in 2013 and headquartered in New York, Scentbird provides personalized fragrance recommendations and flexible subscription management, enhancing customer experience. Technically, the website leverages modern web technologies including React, Apollo GraphQL, and Strapi CMS, supported by robust analytics and tracking tools such as Mixpanel, Google Tag Manager, and RudderStack. The site demonstrates excellent performance, mobile optimization, and SEO practices, reflecting a mature digital infrastructure. From a security perspective, the site enforces HTTPS, employs multiple security headers, and integrates security tools like Jscrambler. Consent management mechanisms are in place to comply with privacy regulations, including GDPR. However, the absence of a public security policy, vulnerability disclosure, and incident response contacts suggests areas for improvement in transparency and readiness. Overall, Scentbird presents a professional, trustworthy online presence with strong business credibility and technical maturity. The lack of WHOIS transparency slightly reduces trust but does not detract significantly from the legitimacy of the business. Strategic enhancements in security policy publication and incident response communication would further strengthen its security posture.

20
68
2
90
77
80
100
perfumesubscriptione-commercefragrancedesignerbrands+1 more
ReactApollo GraphQLMixpanelGoogle Tag Manager+4

Partner Domains:

recurly.com
partner
amazon.com
partner
2025-10-09T14:18:50.216Z
moshimo.com favicon

株式会社もしも

moshimo.com

63
E-commerceJapanmediumMEDIUM

株式会社もしも is a Japanese company specializing in e-commerce solutions including dropshipping, affiliate marketing, and marketing services. The company maintains a professional corporate website presenting detailed business information, news, and recruitment data, positioning itself as a trusted mid-sized player in the Japanese e-commerce market. Their key services focus on enabling commerce and affiliate marketing platforms, supported by related subsidiaries such as TopSeller and もしもアフィリエイト. Technically, the website employs standard web technologies including jQuery and Google Analytics, with asynchronous script loading to optimize performance. The site is moderately optimized for mobile and SEO, with a clean and consistent branding approach. Security posture is solid with HTTPS enforced and no visible vulnerabilities, though some security headers are not explicitly detected in the provided data. Privacy compliance is partial, with a comprehensive privacy policy present but lacking a cookie consent mechanism and terms of service. WHOIS data is unavailable, which slightly reduces trustworthiness but does not negate the legitimacy indicated by the website content and business presence. Overall, the site scores well on professionalism and business credibility, with room for improvement in privacy and security transparency.

45
53
2
60
87
80
100
moshimo
jQuery 3.0.0Google AnalyticsGoogle Tag Manager

Partner Domains:

top-seller.jp
subsidiary
af.moshimo.com
subsidiary

+1 more partners

2025-10-09T13:10:11.705Z
poshmark.ca favicon

Poshmark

poshmark.ca

54
E-commerceCanadalargeMEDIUM

Poshmark.ca is a Canadian localized e-commerce platform specializing in the buying and selling of fashion, home decor, beauty, and related lifestyle products. The website leverages modern web technologies such as Vue.js and is hosted on Amazon AWS infrastructure with Cloudfront CDN, ensuring good performance and scalability. The platform targets consumers interested in secondhand and new fashion and lifestyle goods within Canada, positioning itself as a significant player in the online resale marketplace. The domain is well-established since 2013, indicating a mature business presence in the market. From a technical perspective, the website demonstrates a modern frontend framework usage and good mobile optimization. SEO is supported by structured data (JSON-LD) and Open Graph metadata, enhancing search engine visibility and social media sharing. However, there is a lack of visible security headers and no DNSSEC enabled, which are areas for improvement to strengthen security posture. Privacy compliance is weak due to the absence of explicit privacy and cookie policies or consent mechanisms in the analyzed content. Security-wise, the site uses HTTPS with a valid SSL configuration and domain registration statuses that prevent unauthorized transfers or deletions, which are positive indicators. The WHOIS data shows privacy protection for registrant details, which is common and justified for commercial entities. No critical vulnerabilities or exposed sensitive data were detected in the provided content. However, the absence of published security policies, incident response contacts, and vulnerability disclosure mechanisms suggests room for enhancing transparency and trust. Overall, Poshmark.ca presents a professional and trustworthy e-commerce platform with solid technical foundations but requires improvements in privacy compliance and security best practices to meet higher standards and regulatory requirements. Strategic recommendations include enabling DNSSEC, publishing comprehensive privacy and cookie policies with consent mechanisms, implementing security headers, and providing clear security and incident response information to users and stakeholders.

65
53
2
50
-
85
100
e-commercefashionmarketplacebeautyhomedecor+1 more
Vue.jsGoogle Tag ManagerAWS DNSCloudfront CDN+1
2025-10-09T11:22:27.107Z
fospha.com favicon

Fospha

fospha.com

74
E-commerceN/amediumMEDIUM

Fospha is a technology company specializing in full-funnel marketing measurement for eCommerce brands. Their platform leverages proprietary Bayesian marketing mix modeling to provide daily, ad-level insights across multiple sales channels including direct-to-consumer, Amazon, and TikTok Shop. The company positions itself as a leader in delivering incremental growth insights and forecasting capabilities, supported by scientific rigor and a decade of research and development. Technically, the website is built on modern web technologies including Webflow CMS, HubSpot for forms and marketing automation, Google Tag Manager for analytics, and uses advanced JavaScript libraries like Swiper.js for UI components. The site is well-optimized for performance, mobile responsiveness, and accessibility, with a professional design and clear navigation. From a security perspective, the site enforces HTTPS and includes standard security headers, though explicit security policies and incident response contacts are not publicly available. No critical vulnerabilities or exposed sensitive data were detected. Privacy and cookie policies are present and indicate GDPR compliance, though direct contact information such as emails or phone numbers are not listed, relying instead on contact forms. Overall, Fospha presents a credible and professional online presence with strong business and technical foundations. The lack of public WHOIS data slightly reduces trust but is likely due to privacy protection. Strategic recommendations include enhancing security transparency, adding incident response information, and providing direct contact details to improve trust and compliance.

60
80
17
85
75
90
100
ecommercemarketingmeasurementmmmbayesian+3 more
WebflowGoogle Fonts (Lato)Google Tag ManagerHubSpot Forms+2
2025-10-09T10:31:09.662Z
yoox.com favicon

YOOX NET-A-PORTER GROUP

yoox.com

69
E-commerceFinlandenterpriseMEDIUM

YOOX is a leading enterprise-level e-commerce platform specializing in designer fashion and home decor, targeting consumers primarily in Finland and internationally. The website offers a wide range of products from top Italian and international designers, including clothing, shoes, bags, accessories, and home design items. The platform is part of the YOOX NET-A-PORTER GROUP, a well-known parent company in the luxury retail sector. Technically, the website leverages modern web technologies including Next.js and Material UI, with performance monitoring through Dynatrace and Google Tag Manager. The site is mobile-optimized and provides a good user experience with clear navigation and professional design. However, some accessibility and SEO optimizations could be improved. From a security perspective, the site enforces HTTPS and uses monitoring tools to maintain security posture. While some standard security headers are not explicitly detected, no critical vulnerabilities or exposed sensitive data were found. Privacy compliance indicators such as explicit privacy and cookie policies are not clearly present in the provided content, which is a potential area for improvement. Overall, the website presents a trustworthy and professional e-commerce platform with a strong market position. The absence of WHOIS data reduces transparency but is consistent with privacy practices of large enterprises. Strategic recommendations include enhancing privacy disclosures, improving security headers, and increasing transparency in contact information.

50
73
17
82
67
85
100
fashione-commercedesignerbrandshomedecorretail+1 more
React (Next.js)Material UIDynatrace monitoringGoogle Tag Manager+4

Partner Domains:

net-a-porter.com
parent
2025-10-09T08:11:34.640Z
linkscanner.io favicon

Ablestar

linkscanner.io

59
E-commerceN/asmallMEDIUM

The website 'Shopify Broken Link Checker' is a specialized free tool offered by Ablestar to Shopify store owners, enabling them to scan their stores for broken internal links and receive detailed email reports with direct links to fix issues in the Shopify admin. The business operates in the e-commerce sector, targeting Shopify merchants, and leverages this tool to promote its paid Shopify app, Ablestar Link Manager. The site is professionally designed with consistent branding and clear navigation, providing a good user experience and relevant content for its target audience. Technically, the site uses modern web technologies including Google Fonts, Facebook Pixel, and Google Tag Manager, with assets hosted on Google Cloud Storage, ensuring fast performance and mobile optimization. Security-wise, the site uses HTTPS and includes CSRF protection on its form, but lacks explicit security headers and a cookie consent mechanism, which are areas for improvement. WHOIS data is unavailable due to privacy protection, but the domain appears legitimate and consistent with the business. Overall, the site demonstrates a moderate to good security posture and business credibility, with room for enhancements in privacy compliance and security best practices.

50
53
2
40
72
75
100
shopifybrokenlinkcheckere-commerceablestarlinkmanagement+1 more
Google FontsFacebook PixelGoogle Tag ManagerCSS3+1

Partner Domains:

www.ablestar.com
partner
apps.shopify.com
partner
2025-10-09T03:29:14.932Z
builtt.io favicon

Builtt.io

builtt.io

69
E-commerceUnited StatessmallMEDIUM

Builtt.io is a specialized digital agency focused on delivering high-quality and long-term technology solutions in e-commerce, website development, and digital product creation. The company targets a diverse client base ranging from startups to multinational enterprises, emphasizing effective, captivating, and innovative digital solutions. Their market position is strengthened by multiple industry awards and a portfolio of over 108 clients, reflecting a strong reputation in the e-commerce and digital product development sectors. Technically, the website is built on WordPress CMS with a modern tech stack including JavaScript libraries such as GSAP and jQuery, and integrates Google Tag Manager for analytics and marketing. The site demonstrates good mobile optimization, accessibility, and SEO practices, supported by the Rank Math SEO plugin. Hosting and domain management involve reputable providers like GoDaddy and Cloudflare, although DNSSEC is not enabled. From a security perspective, the site uses HTTPS and implements GDPR-compliant cookie consent mechanisms, ensuring user privacy and regulatory compliance. However, there is room for improvement in security headers and publishing explicit security policies or incident response contacts. No critical vulnerabilities or exposed sensitive data were detected. Overall, Builtt.io presents a professional, trustworthy, and well-maintained digital presence with a solid business foundation and technical infrastructure. Strategic recommendations include enhancing security headers, enabling DNSSEC, and publishing detailed security and incident response policies to further strengthen trust and compliance.

45
95
2
85
65
75
100
e-commercedigitalagencywebdevelopmentproductdevelopmenttechnology+2 more
WordPressPHPJavaScriptGSAP+3
2025-10-09T01:07:43.297Z
restyloh.hr favicon

ReStyloh

restyloh.hr

47
E-commerceCroatiasmallHIGH

ReStyloh is a Croatian e-commerce platform focused on the buying and selling of second-hand clothing and footwear. The website targets general consumers interested in sustainable fashion and offers a marketplace model where users can list and purchase used apparel. The platform is positioned as a niche player in the local market, emphasizing unique fashion finds and environmental consciousness. The website features clear navigation with categorized product listings and search capabilities for both products and users. Technically, the site employs common web technologies including jQuery, Bootstrap, Owl Carousel, and Select2 for UI components, along with Google Fonts for typography. Analytics are implemented via Google Analytics and Clicky, indicating a moderate level of digital maturity. The site uses HTTPS, ensuring encrypted communication, but lacks visible advanced security headers and formal privacy or cookie policies. From a security perspective, the site demonstrates basic good practices such as HTTPS usage and no visible exposure of sensitive data. However, the absence of security headers, privacy policies, and incident response information suggests room for improvement in compliance and security posture. No WAF or blocking mechanisms were detected, and the site content is fully accessible. Overall, ReStyloh presents a functional and professional e-commerce platform with a focus on second-hand fashion in Croatia. To enhance trust and compliance, the site should implement comprehensive privacy and cookie policies, security headers, and clear contact information. These improvements would strengthen the site's security posture and user confidence.

20
10
2
75
72
80
40
secondhandclothingfootweare-commercemarketplace+1 more
jQuery 3.3.1Bootstrap CSSOwl CarouselSelect2+3
2025-10-08T22:51:20.360Z
redirectify.app favicon

Kelsey Judson

redirectify.app

73
E-commerceNew ZealandsmallMEDIUM

Redirectify is a specialized Shopify app developed by Kelsey Judson, designed to help Shopify store owners efficiently manage 301 redirects and fix 404 errors. The app offers features such as live 404 tracking, rule-based automation, live path suggestions, and bulk CSV uploads, targeting e-commerce merchants seeking to improve customer experience and SEO. The app is positioned as a niche solution within the Shopify ecosystem, with a subscription pricing model and positive user feedback indicating strong market acceptance. Technically, the app listing is hosted on Shopify's official app store domain, leveraging modern web technologies including Tailwind CSS, Stimulus JS, and integration with analytics and error monitoring tools like Google Tag Manager and Bugsnag. The website demonstrates good performance, mobile optimization, and accessibility, reflecting a mature digital infrastructure. From a security perspective, the site enforces HTTPS, uses CSRF tokens in forms, and employs nonce attributes in scripts, indicating adherence to security best practices. However, explicit security headers are not detected, and no visible cookie consent mechanism is present, suggesting areas for improvement in privacy compliance and security hardening. Overall, the website and app present a trustworthy and professional offering with a high legitimacy score, minimal security risks, and a clear business focus. Strategic recommendations include enhancing privacy compliance with a cookie consent banner, publishing detailed security policies, and implementing additional security headers to further strengthen the security posture.

60
88
10
100
52
85
100
shopifye-commerceredirectsseoappstore+1 more
Shopify platformJavaScript modulesTailwind CSSBugsnag (error monitoring)+2
2025-10-08T16:43:06.137Z
thewinefamily.ch favicon

theWinefamily.ch

thewinefamily.ch

64
E-commerceSwitzerlandsmallMEDIUM

theWinefamily.ch is a Swiss-based e-commerce retailer specializing in the sale of Swiss and international wines, targeting primarily francophone customers in Switzerland. The website offers a curated selection of wines from various countries and terroirs, emphasizing quality and direct delivery to consumers. The business operates on the Shopify platform, leveraging modern e-commerce technologies and integrations to provide a seamless shopping experience. The site demonstrates good branding consistency and professional design, with clear navigation and mobile optimization. Technically, the website is built on Shopify's Dawn theme, hosted on Shopify's CDN infrastructure, and uses various third-party marketing and analytics tools such as Nosto and Trusted Shops. Performance is moderate with good accessibility and SEO practices. Security posture is strong with HTTPS enforced and use of hCaptcha for form protection, though explicit security headers and policies are not fully documented. Privacy compliance is partial, lacking visible privacy and cookie policies or consent mechanisms. Overall, the site presents a trustworthy and professional front for wine retail, with clear contact information and legitimate WHOIS registration data. However, it would benefit from enhanced privacy disclosures and security policy transparency to improve compliance and user trust.

75
50
17
55
52
80
100
e-commercewineretailshopifyswitzerland+2 more
ShopifyJavaScriptCSSHTML5+4

Partner Domains:

connect.nosto.com
partner
tseish-app.connect.trustedshops.com
partner

+1 more partners

2025-10-08T16:06:46.902Z
R

Refersion Inc.

refersion.com

65
E-commerceN/amediumMEDIUM

Refersion Inc. operates a professional SaaS platform specializing in affiliate marketing and tracking software designed to help brands, influencers, and merchants manage affiliate programs efficiently. The company positions itself as a leading provider with a strong market presence, supported by numerous positive customer reviews and trusted by top online brands. The platform offers key services including affiliate management, commission customization, automated tracking, and one-click payouts, integrating with popular e-commerce platforms such as Shopify and WooCommerce. Technically, the website employs modern web technologies including React, asynchronous loading of third-party scripts like Google Tag Manager and Intercom, and multimedia content to enhance user engagement. The site is mobile-optimized, accessible, and SEO-friendly, reflecting a mature digital infrastructure. Security-wise, the site enforces HTTPS and appears to implement best practices, though explicit security headers and cookie consent mechanisms are not clearly visible. The security posture is solid with no evident vulnerabilities or exposed sensitive data, but the absence of a published security policy or incident response contact limits transparency. Privacy compliance is partially addressed with a comprehensive privacy policy, yet the lack of a cookie consent banner suggests room for improvement. The WHOIS data is unavailable, which slightly reduces domain trust but is likely due to privacy protection or registry restrictions rather than malicious intent. Overall, Refersion presents a trustworthy and professional online presence with strong business credibility and technical implementation. Strategic improvements in privacy compliance and security transparency would further enhance trust and regulatory adherence.

25
68
2
85
75
80
100
affiliatemarketingsaase-commerceinfluencermarketingaffiliatetracking+1 more
JavaScriptReact (implied by JSX-like script module)Google Tag ManagerIntercom widget+2
2025-10-08T13:55:52.704Z