Skip to main content

E-commerce security reports

Browse 3,261 Guard analyses across this slice of the directory — NIS2 / GDPR readiness, SSL/TLS, DNS hygiene and email authentication.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157364
Websites
130
Industries
113
Countries
52
Avg Score
Page 26 of 66|Showing 1251-1300 of 3261
photodune.net favicon

Photodune

photodune.net

71
E-commerceAustralialargeMEDIUM

PhotoDune is a well-established online marketplace specializing in royalty-free stock photos and images, operating as part of the larger Envato Market ecosystem. Founded in 2010 and headquartered in Melbourne, Australia, it serves a global audience of photographers, designers, and marketers seeking high-quality visual content. The platform offers millions of images with a straightforward purchase model, positioning itself as a key player in the digital asset e-commerce sector. Technically, the website employs modern web technologies including JavaScript frameworks, Datadog for monitoring, Rollbar for error tracking, and Cookiebot for consent management. It leverages Cloudflare for DNS and CDN services, ensuring fast performance and robust availability. The site is mobile-optimized, accessible, and SEO-friendly, reflecting a mature digital infrastructure. From a security perspective, PhotoDune enforces HTTPS, uses CSRF tokens, and implements a comprehensive cookie consent mechanism aligned with GDPR requirements. While security headers are partially observed, there is room for improvement such as enabling DNSSEC and publishing explicit security policies or vulnerability disclosure mechanisms. No critical vulnerabilities or suspicious patterns were detected. Overall, PhotoDune presents a low-risk profile with strong business credibility and compliance posture. Strategic recommendations include enhancing DNS security, publishing incident response contacts, and maintaining ongoing audits of third-party scripts to uphold security and privacy standards.

85
100
83
100
2
65
47
stockphotosroyaltyfreeimagesphotographymarketplacedigitalassetse-commerce+1 more
JavaScriptDatadog monitoringRollbar error trackingCookiebot consent management+2

Partner Domains:

envato.com
parent
graphicriver.net
related

+3 more partners

2025-10-04T02:39:19.894Z
graphicriver.net favicon

Envato

graphicriver.net

71
E-commerceAustralialargeMEDIUM

GraphicRiver is a well-established online marketplace operated by Envato, specializing in digital design assets such as fonts, logos, icons, and graphics. Founded in 2006, it serves a global community of graphic designers and businesses seeking professional creative resources. The platform is part of the larger Envato ecosystem, which includes subscription services and creative tutorial sites, positioning GraphicRiver as a key player in the digital creative marketplace sector. Technically, the website employs modern web technologies including JavaScript frameworks, Datadog for monitoring, Cookiebot for consent management, and Cloudflare for DNS and CDN services. The site demonstrates excellent performance, mobile optimization, and accessibility features, supported by structured data and comprehensive metadata for SEO. The use of robust domain registration practices and HTTPS ensures a secure and trustworthy user experience. From a security perspective, GraphicRiver exhibits strong practices such as domain locking, HTTPS enforcement, and cookie consent mechanisms aligned with GDPR requirements. However, there is room for improvement by enabling DNSSEC and publishing a security.txt file to enhance vulnerability disclosure transparency. No critical vulnerabilities or security issues were detected in the analysis. Overall, GraphicRiver presents a low-risk profile with high business credibility, excellent content quality, and good privacy compliance. Strategic recommendations include enhancing DNS security, formalizing security policies, and continuous monitoring of third-party scripts to maintain a strong security posture.

65
83
2
100
47
85
100
marketplacedesigngraphicsfontslogos+3 more
JavaScriptDatadog monitoringCookiebot consent managementGoogle Tag Manager+1

Partner Domains:

elements.envato.com
subsidiary
placeit.net
partner

+2 more partners

2025-10-04T02:39:14.873Z
trustedshops.com favicon

Trusted Shops GmbH

trustedshops.com

64
E-commerceGermanylargeMEDIUM

Trusted Shops GmbH is a leading European trust brand specializing in e-commerce trust solutions. Their offerings include the Trusted Shops Trustmark, Buyer Protection, authentic customer feedback systems, and the eTrusted SaaS platform for real-time experience feedback. The company targets both consumers and businesses, providing services that enhance digital trust and security in online shopping environments. Their market position is strong, with over 30,000 companies using their solutions, and they maintain a consistent and professional brand presence. Technically, the website is built on modern web technologies including SVG graphics, JavaScript, and a Craft CMS backend served via a CDN. The site is optimized for performance, mobile responsiveness, and accessibility, with a well-structured navigation and comprehensive SEO metadata. Privacy compliance is robust, featuring a comprehensive privacy policy, cookie consent management via Usercentrics, and GDPR adherence. From a security perspective, the site enforces HTTPS, implements security headers such as Content Security Policy, and avoids exposing sensitive data. However, explicit security policies and incident response information are not publicly detailed, and no vulnerability disclosure or security.txt files were found. Overall, the security posture is strong but could be enhanced by publishing more detailed security governance information. The overall risk assessment is low, with no signs of malicious content or suspicious domain registration patterns. Strategic recommendations include enhancing transparency around security policies and incident response, and adding vulnerability disclosure mechanisms to further build trust and security culture.

70
68
17
82
-
85
100
trustecommercebuyerprotectionreviewscertification+2 more
JavaScriptSVG graphicsUsercentrics CMPCDN (Craft Cloud)+1

Partner Domains:

etrusted.com
partner
business.trustedshops.com
partner

+1 more partners

2025-10-04T01:29:20.661Z
amazon.fr favicon

Amazon

amazon.fr

73
E-commerceFranceenterpriseMEDIUM

Amazon.fr is the French regional website of Amazon, a global leader in e-commerce and cloud computing. The site offers a vast range of products including books, electronics, fashion, groceries, and more, targeting a broad consumer audience in France. It operates under the parent company Amazon.com, Inc., leveraging Amazon's extensive logistics and technology infrastructure to provide fast delivery and a personalized shopping experience. The website is professionally designed with excellent content quality and consistent branding, reflecting Amazon's strong market position and enterprise scale. Technically, Amazon.fr employs a sophisticated technology stack including proprietary AmazonUI frameworks, JavaScript libraries, service workers, and advanced client-side instrumentation for performance and user experience monitoring. The site is hosted on Amazon AWS infrastructure, ensuring high availability and fast performance. Mobile optimization and accessibility are well-implemented, supporting a seamless experience across devices. From a security perspective, the website enforces HTTPS with strong SSL configurations and employs security best practices such as Content Security Policy and cookie consent mechanisms. While explicit security policies and incident response contacts are not prominently published, the overall security posture is robust with no evident vulnerabilities or exposed sensitive data. Privacy compliance is strong, with comprehensive privacy and cookie policies aligned with GDPR requirements. Overall, Amazon.fr presents a low-risk profile with high trustworthiness, reflecting its status as a major e-commerce platform. Strategic recommendations include publishing explicit security policies and vulnerability disclosure information to enhance transparency and user trust further.

30
100
25
72
100
70
100
e-commerceretailshoppingamazononlinestore+4 more
JavaScriptAmazonUIVideoJSService Workers+1

Partner Domains:

amazon.com
parent
2025-10-04T00:18:08.817Z
ticketea.com favicon

Eventbrite

ticketea.com

59
E-commerceSpainlargeMEDIUM

Ticketea.com is a Spanish localized event ticketing and management website integrated into the global Eventbrite platform since 2018. It offers users the ability to discover and purchase tickets for concerts, festivals, and other events, while also providing event organizers tools to create and sell tickets online. The website serves as a regional portal redirecting users to Eventbrite's main event listings and services, maintaining consistent branding and professional presentation aligned with Eventbrite's global standards. Technically, the site uses modern JavaScript libraries such as jQuery and Google Tag Manager for analytics and marketing, hosted on AWS infrastructure as indicated by DNS servers. The site is mobile optimized with good SEO and accessibility basics, though some improvements could be made in accessibility and cookie consent mechanisms. Security posture is solid with HTTPS enforced and domain transfer protections, but lacks DNSSEC and visible security headers in the HTML content. Privacy policies and terms of service are comprehensive and GDPR compliant, though explicit cookie consent is missing. Overall, the site reflects a mature, trustworthy e-commerce platform with strong business credibility and moderate technical sophistication.

15
68
2
75
77
55
100
eventticketingeventmanagementconcertsfestivalseventbrite+3 more
jQuery 3.4.1Google Tag ManagerGetSiteControl widget

Partner Domains:

eventbrite.es
parent
eventbrite.com
parent
2025-10-03T19:42:05.128Z
adtribes.io favicon

AdTribes

adtribes.io

62
E-commerceIcelandsmallMEDIUM

AdTribes is a specialized e-commerce technology company providing a WooCommerce product feed plugin that enables online stores to distribute their product listings across major sales channels such as Google Shopping, Facebook, TikTok, and over 100 others. With a strong market presence supported by over 90,000 users and numerous positive reviews, AdTribes positions itself as a leading solution in the WooCommerce ecosystem. The company offers both free and paid versions of its plugin, catering to a wide range of e-commerce businesses seeking to increase sales through enhanced product visibility. Technically, the website is built on a modern WordPress and WooCommerce stack, leveraging popular plugins and integrations such as MonsterInsights for analytics, PushEngage for push notifications, and AffiliateWP for affiliate marketing. The site demonstrates good SEO practices with comprehensive metadata, structured data, and responsive design, ensuring a positive user experience across devices. Hosting and DNS are managed via reputable providers including Cloudflare and NameCheap. From a security perspective, the site enforces HTTPS with SSL and employs domain transfer protections. However, it lacks visible security headers and published security policies or incident response contacts, which are areas for improvement. Privacy compliance is partial, with no explicit privacy or cookie policies detected in the analyzed content, and no consent mechanisms for cookies, which may pose compliance risks under GDPR and similar regulations. Overall, AdTribes presents a professional, trustworthy, and technically sound online presence with strong business credibility. To enhance its security posture and privacy compliance, it should publish comprehensive privacy and cookie policies, implement cookie consent mechanisms, and disclose security and incident response policies. These steps will further solidify trust and regulatory adherence, supporting continued growth and customer confidence.

15
58
17
75
75
75
100
woocommerceproductfeede-commercegoogleshoppingfacebookfeeds+4 more
WordPress 6.8.3WooCommerce 10.1.2PHP (implied by WordPress)Google Analytics (MonsterInsights plugin)+8
2025-10-03T16:20:38.942Z
kurpirkt.lv favicon

KurPirkt.lv - Visi interneta veikali. Uzzini, kur pirkt!

kurpirkt.lv

53
E-commerceLatviasmallMEDIUM

KurPirkt.lv is a Latvian e-commerce price comparison and online store catalog website designed to help users find products and compare prices across various Latvian internet stores. The platform targets Latvian online shoppers and offers services such as product search, price comparison, and listings of popular products. The website is primarily in Latvian with an option for a Russian version, indicating a regional focus. The business model centers on aggregating product data from multiple stores to facilitate informed purchasing decisions. Technically, the site uses standard web technologies including HTML5, CSS3, JavaScript, Google Fonts, and Google Tag Manager for analytics. The design is responsive and user-friendly, providing a good user experience on mobile devices. However, the site lacks advanced technical frameworks or CMS indications and shows moderate performance and SEO optimization. Security-wise, the site uses HTTPS (assumed from URL), but no explicit security headers or advanced protections are detected. There is no visible cookie consent mechanism or comprehensive privacy compliance features, which may pose compliance risks. Contact information is limited to a single email address in the footer, with no phone numbers or physical addresses provided. Overall, the website is functional and serves its business purpose but would benefit from enhanced security measures, privacy compliance, and richer contact information to improve trust and regulatory adherence.

15
28
2
70
72
70
100
pricecomparisone-commercelatviaonlineshoppingproductcatalog
HTML5CSS3JavaScriptGoogle Fonts+1
2025-10-03T15:40:23.436Z
recharge.com favicon

Recharge.com International B.V.

recharge.com

74
E-commerceNetherlandslargeMEDIUM

Recharge.com International B.V. operates a leading global e-commerce platform specializing in digital gift cards, mobile top-ups, and payment cards. Founded in 2015 and headquartered in Amsterdam, the company has established itself as the largest online store in its niche, offering over 750 brands and 23 payment methods. The website targets a global audience seeking instant digital delivery of prepaid products, supported by a multilingual and multicurrency platform. The business model focuses on convenience, instant delivery, and a broad product portfolio, supported by strong trust signals such as extensive positive customer reviews and industry awards. Technically, the website leverages modern web technologies including React and Next.js frameworks, GraphQL for data fetching, and integrates third-party services like Cookiebot for consent management and Trustpilot for customer reviews. The site is optimized for performance, mobile responsiveness, and SEO, providing an excellent user experience. Security best practices are observed with HTTPS enforcement, security headers, and secure cookie handling, although explicit security policy and incident response information are not publicly detailed. The security posture is strong with no detected vulnerabilities or exposed sensitive data. Privacy compliance is well addressed with comprehensive privacy and cookie policies, including GDPR compliance indicators and consent mechanisms. Business credibility is high, supported by clear company information, professional content, and multiple trust indicators. However, WHOIS data is not publicly available, likely due to privacy protection, which slightly limits domain registration transparency. Overall, Recharge.com presents a mature, secure, and trustworthy e-commerce platform with strong market positioning and technical sophistication. Strategic recommendations include publishing explicit security and incident response policies, enhancing transparency around data protection officers, and maintaining vigilance on third-party script security to sustain trust and compliance.

70
83
2
82
80
85
100
e-commercedigital-gift-cardsmobile-top-uppayment-cardstrusted+2 more
ReactNext.jsGraphQLCookiebot+2

Partner Domains:

guthaben.de
subsidiary
recharge.fr
subsidiary

+3 more partners

2025-09-07T03:26:32.979Z
residenza725.com favicon

Residenza 725

residenza725.com

67
E-commerceItalysmallMEDIUM

Residenza 725 is an Italian luxury fashion e-commerce platform specializing in top designer brands for women and men. The website positions itself as a premium online destination for fashion lovers, offering a curated selection of clothing, shoes, bags, and accessories. The business model is focused on online retail with a niche market targeting luxury consumers. The site demonstrates consistent branding and good content quality, appealing to a discerning audience. Technically, the website leverages Magento with the Hyva theme, hosted on AWS Cloudfront CDN, and integrates multiple marketing and analytics tools such as Google Tag Manager, Facebook Pixel, and Rakuten Marketing. The site is mobile optimized and shows good SEO practices. Security posture is solid with HTTPS enforced and secure cookie handling, though some security headers could be improved and no explicit security or incident response policies are published. The WHOIS data is missing or unavailable, which raises some concerns about domain registration transparency, but the website itself appears legitimate and professional. Privacy and cookie policies are present with consent mechanisms, indicating GDPR compliance. Overall, the site is a well-executed luxury e-commerce platform with moderate technical maturity and a good security baseline.

40
88
17
55
77
80
100
luxuryfashione-commerceitalianclothing+3 more
Magento Hyva themeCloudfront CDNGoogle Tag ManagerFacebook Pixel+2

Partner Domains:

boutique.residenza725.com
partner
www.styleisnow.com
partner
2025-09-06T13:32:30.440Z
confianzaonline.es favicon

Confianza Online

confianzaonline.es

42
E-commerceSpainmediumHIGH

Confianza Online is a Spanish organization dedicated to promoting transparency and responsibility in e-commerce. The website serves as an informational platform offering resources on who they are, how consumers can file claims, partnership opportunities, and membership information. The organization appears to be a recognized entity within Spain's e-commerce ecosystem, focusing on consumer protection and dispute resolution. Technically, the website is built on WordPress using the Divi theme and several plugins that enhance functionality and user experience. It employs modern web technologies including HTTPS, Google reCAPTCHA v3 for spam protection, and caching mechanisms for performance. The site is mobile-optimized and presents a professional design with clear navigation. From a security perspective, the site uses HTTPS and implements reCAPTCHA, but lacks visible advanced security headers and explicit security or incident response policies. Privacy and cookie policies are present and appear comprehensive, indicating good GDPR compliance. No WHOIS data was accessible due to registry restrictions, limiting domain legitimacy verification. Overall, the website is professional, trustworthy, and serves its purpose well. Recommendations include enhancing security headers, adding explicit security policies, and implementing cookie consent mechanisms to further improve compliance and security posture.

15
25
2
70
72
75
-
e-commerceconsumerprotectionprivacytransparencyspain+2 more
WordPress 6.8.2Divi Theme 4.27.4jQuery 3.7.1Google reCAPTCHA v3+4
2025-09-06T03:03:57.955Z
minted.com favicon

Minted

minted.com

67
E-commerceUnited StateslargeMEDIUM

Minted is a prominent e-commerce platform specializing in premium wedding invitations, stationery, personalized gifts, and art prints sourced from a community of independent artists. The company targets consumers seeking unique and artistically designed products, positioning itself as a leader in the online stationery and gift marketplace. The website demonstrates a high level of professionalism, with excellent design quality, clear navigation, and comprehensive content relevant to its business model. Technically, the website leverages modern web technologies including JavaScript frameworks, AWS Cloudfront CDN, and third-party personalization and analytics tools such as Monetate and Grafana Faro Web SDK. The site is optimized for performance, mobile responsiveness, and accessibility, reflecting a mature digital infrastructure. From a security perspective, Minted employs HTTPS with strong SSL configurations and standard security headers. While explicit security policies and incident response contacts are not publicly detailed, the site shows adherence to best practices including bot protection and privacy compliance. No critical vulnerabilities or exposed sensitive data were detected. Overall, Minted presents a low-risk profile with strong business credibility and technical maturity. The absence of WHOIS data is a minor concern but likely due to privacy or registry limitations rather than malicious intent. Strategic recommendations include publishing detailed security and incident response policies and establishing a vulnerability disclosure program to enhance transparency and trust.

20
70
17
90
72
85
100
e-commercestationeryweddinggiftsartprints+2 more
JavaScriptAWS CloudfrontCloudflare (likely for CDN)Monetate (personalization)+1
2025-09-05T21:21:32.901Z
brownjug.wine favicon

Brown Jug Wine Club

brownjug.wine

53
E-commerceN/asmallMEDIUM

Brown Jug Wine Club operates as an e-commerce platform specializing in wine club memberships and gift packs, targeting adult customers aged 21 and over. The business positions itself as Alaska's premiere wine club, offering subscription-based wine delivery services. The website employs an age verification gate to comply with legal requirements for alcohol sales and includes a privacy policy hosted on a related domain, indicating attention to privacy compliance. The site uses WordPress with WooCommerce and Elementor, integrating marketing and analytics tools such as Mailchimp and Facebook Pixel to support customer engagement and tracking. From a technical perspective, the website demonstrates a moderate level of digital maturity with a modern tech stack and good mobile optimization. Security posture is solid with HTTPS enforced and age verification implemented, though additional security headers and explicit security policies could enhance protection. Privacy compliance is supported by cookie consent mechanisms aligned with GDPR and CCPA regulations. However, contact information and incident response details are not publicly available, which could be improved to increase trust. Overall, the website presents a legitimate and professional e-commerce business with a focus on adult beverage sales. The lack of WHOIS registrant data due to privacy protection is typical for such businesses and does not raise immediate concerns. The site is accessible without WAF or blocking mechanisms, allowing full content analysis. Strategic recommendations include enhancing security headers, publishing security and incident response policies, and providing clearer contact channels to strengthen business credibility and security posture.

15
85
2
65
72
85
20
e-commercewinesubscriptionageverificationprivacy+3 more
WordPressWooCommerceElementorAge Gate plugin+3

Partner Domains:

privacy.afognak.com
partner
2025-09-05T09:42:41.576Z
grubhub.com favicon

Grubhub

grubhub.com

61
E-commerceN/alargeMEDIUM

Grubhub is a large, well-established online food ordering and delivery platform founded in 2002 and currently owned by Just Eat Takeaway.com. The company operates primarily in the United States, offering services that connect consumers with over 30,000 restaurants across more than 500 cities. The analyzed page is an error page indicating that Grubhub's food delivery service is not available in the visitor's country, limiting content visibility and interaction. Technically, the website uses AngularJS as its front-end framework and hosts static assets on Amazon S3 and Cloudinary, indicating a modern cloud-based infrastructure. DNS is managed by NS1, but DNSSEC is not enabled, which is a potential security improvement area. The page lacks visible security headers and privacy or cookie policies, which are critical for compliance and user trust. From a security perspective, the domain is legitimate and long-standing with no privacy protection on WHOIS, indicating transparency. However, the absence of security headers, privacy policies, and cookie consent mechanisms reduces the overall security posture and privacy compliance. No WAF or security challenge was detected, and the content is safe for general audiences with no adult or explicit material. Overall, the website's current page analyzed is limited in content due to geographic restrictions, impacting content quality and user experience scores. Strategic improvements in privacy compliance, security headers, and accessibility would enhance trust and compliance. The domain registration data supports a high legitimacy score, but the technical and content limitations reduce the overall AI score to a moderate level.

30
50
2
100
72
80
100
fooddeliveryonlineorderingrestauranterrorpagegeoblocking
AngularJS (ng-app attribute)Amazon S3 (static assets hosting)Cloudinary (image hosting)NS1 (DNS provider)
2025-09-05T08:35:49.176Z