Skip to main content

Other security reports

Browse 26,057 Guard analyses across this slice of the directory — NIS2 / GDPR readiness, SSL/TLS, DNS hygiene and email authentication.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

149793
Websites
130
Industries
113
Countries
52
Avg Score
Page 246 of 522|Showing 12251-12300 of 26057
flufftech.net favicon

rail (that fox)

flufftech.net

50
OtherN/asmallMEDIUM

The website flufftech.net is a personal blog and online presence of an individual known as 'rail' who identifies as a fox on the internet. The site focuses on sharing personal interests, blog posts, and community engagement through links to social and code repositories. It is a small-scale, niche personal site with a consistent branding theme and a friendly, informal tone. The business model is primarily content sharing with voluntary support via Ko-Fi. Technically, the site is built using the Zola static site generator, hosted with Cloudflare DNS and registrar services, and demonstrates good performance and mobile optimization. Security posture is adequate with HTTPS enforced and no visible vulnerabilities, though improvements such as enabling DNSSEC and adding security headers are recommended. Privacy compliance is lacking as no privacy or cookie policies are present, and no contact information or incident response details are provided. Overall, the site is safe, trustworthy for general audiences, and free from adult or questionable content. The domain registration is consistent with the website's nature and age, supporting legitimacy. Strategic recommendations include enhancing privacy compliance, adding security policies, and improving trust signals through contact information and vulnerability disclosure mechanisms.

15
50
2
70
75
70
40
personalblogtechnologyfediverseopensourcecreativecommons+2 more
HTML5CSS3Zola static site generator
2025-07-27T02:12:45.069Z
E

EEP.WTF

eep.wtf

57
OtherGermanysmallMEDIUM

EEP.WTF is a personal website belonging to an individual named Ember, who identifies as a political activist, musician, and community-oriented person. The site serves as a personal expression platform rather than a commercial business, focusing on themes of justice, liberation, and community engagement. The website content is minimal but meaningful, with a casual and direct tone. The target audience is likely individuals interested in activism and personal narratives. Technically, the website is simple, built with basic HTML and CSS, hosted via a registrar in Germany with DNS hosted on alldomains.hosting. There is no evidence of a CMS or advanced frameworks. The site includes an embedded ad iframe from metamuffin.org, indicating some monetization. Mobile optimization and accessibility are basic, and SEO features are minimal. No analytics or tracking scripts were detected. From a security perspective, the site lacks published privacy or cookie policies, security policies, or incident response information. DNSSEC is not enabled, and no security headers were detected in the provided data. The domain is recently registered, consistent with a new personal site, and no suspicious WHOIS patterns were found. The security posture is basic with room for improvement, especially in compliance and security best practices. Overall, the website is low risk but lacks professional security and privacy features. It is suitable for personal use but would benefit from adding privacy and cookie policies, enabling DNSSEC, and improving security headers to enhance trust and compliance.

20
50
2
73
95
65
100
activismpersonalmusicpoliticscommunity
HTML5CSS
2025-07-27T02:12:19.132Z
softkittypa.ws favicon

meow!

softkittypa.ws

57
OtherN/asmallMEDIUM

The website softkittypa.ws is a personal portfolio and creative hub for Lexi, a self-taught programmer and math enthusiast. It showcases personal interests such as indie art, open source projects, Linux, programming, cats, and astrophotography. The site includes interactive elements like a Linux emulator and links to social and federated platforms, reflecting a community-oriented and privacy-conscious individual. The business model is non-commercial, focusing on personal expression and community engagement. Technically, the site uses modern web technologies including HTML5, CSS3, JavaScript with dynamic imports, WebAssembly for emulation, and canvas-based graphics. The performance is moderate with basic mobile optimization and accessibility features. SEO is basic but present through meta tags and Open Graph data. Hosting and CMS details are not explicitly provided. From a security perspective, the site uses HTTPS and avoids collecting sensitive data via forms, which reduces risk. However, no security headers such as CSP or HSTS are detected, and there is no privacy or cookie policy, which limits compliance with GDPR and other regulations. The site uses minimal tracking via a third-party stats service and includes a donation link. No vulnerabilities or malware indicators are found, but security posture could be improved with standard headers and policies. Overall, the site is safe and trustworthy for general audiences, with no adult or questionable content. The domain uses privacy protection, consistent with the personal nature of the site. Recommendations include adding privacy and cookie policies, implementing security headers, and enhancing mobile and accessibility features to improve compliance and security posture.

15
35
2
70
75
85
100
personalprogrammingopensourcelinuxcreative+4 more
HTML5CSS3JavaScript (ES modules, dynamic import)WebAssembly (via v86 emulator)+2
2025-07-27T02:11:53.176Z
P

Private by Design, LLC

webring.wiki

58
OtherUnited StatessmallMEDIUM

webring.wiki is a niche community platform designed to link personal websites of individuals involved in wiki projects, including Wikimedia. The site operates as a webring, facilitating navigation between member sites and fostering community connections. The project is powered by open source software (go-webring) and hosted by majava.org, with domain registration managed by Private by Design, LLC in the US. The website is small-scale, community-focused, and launched recently in 2024. Technically, the site uses clean HTML5 and CSS Grid for layout, with responsive design for mobile devices. It does not rely on a CMS and has minimal external dependencies. Performance is fast due to the simple static nature of the site. However, there is room for improvement in accessibility and SEO optimization. No analytics or advertising scripts are present, indicating a privacy-conscious approach. From a security perspective, the domain is protected with clientDeleteProhibited and clientTransferProhibited statuses, but DNSSEC is not enabled. The website lacks security headers and formal privacy or cookie policies, which are important for compliance and trust. No forms or data collection mechanisms are present, reducing attack surface but also limiting user interaction. Overall, the security posture is moderate but could be enhanced with standard best practices. The overall risk is low given the site's community and informational nature, but improvements in privacy compliance, security headers, and DNS security are recommended to strengthen trust and resilience.

25
50
2
55
75
85
100
webringwikicommunityopensourcego-webring
HTML5CSS Gridgo-webring
2025-07-27T02:11:07.895Z
I

Indeed

indeed.co.uk

56
OtherUnited KingdomenterpriseMEDIUM

Indeed is a globally recognized employment-related search engine and recruitment platform, connecting job seekers with employers. The website is a subdomain of indeed.com, targeting primarily UK users. The platform offers services such as job search, company reviews, salary information, resume uploads, and employer job postings. It operates under the parent company Recruit Holdings Co., Ltd., positioning itself as a leading player in the online recruitment industry. Technically, the site is protected by Cloudflare's security infrastructure, including Turnstile CAPTCHA, which currently blocks full content access. This indicates a mature security posture aimed at mitigating automated threats and bots. However, this protection limits the ability to fully assess the website's technical implementation, performance, and content quality. From a security perspective, the presence of Cloudflare WAF and CAPTCHA is a strong defense mechanism. Yet, the lack of visible security headers, privacy policies, and contact information on the challenge page restricts a comprehensive security and compliance evaluation. The WHOIS data for the subdomain is unavailable, which is typical for subdomains managed under a parent domain, but this limits domain legitimacy verification. Overall, the site is safe for general audiences, with no adult or explicit content detected. The blocking by Cloudflare reduces the AI scoring significantly, and strategic recommendations include improving transparency of policies and ensuring accessibility beyond security challenges for better user experience and compliance.

55
35
17
80
57
85
100
jobsearchemploymentrecruitmentcloudflaresecuritychallenge
CloudflareJavaScriptSVGCSS variables+1
2025-07-27T02:09:42.383Z
P

Private by Design, LLC

sophari.org

42
OtherUnited StatessmallHIGH

Sophari.org is a personal website operated by an individual or small entity registered as Private by Design, LLC in the US. The site serves as a platform for sharing personal projects, blogs, social links, and various interests with an informal and experimental design approach. It targets a general internet audience interested in niche internet culture and personal content. The business model is non-commercial and hobbyist in nature, with no clear market positioning beyond personal expression. Technically, the website is built with basic HTML and CSS, referencing a custom 'infernal-engine' technology. Hosting is provided by Porkbun LLC, with no CMS or advanced frameworks detected. The site shows moderate performance and basic mobile optimization but lacks SEO and accessibility best practices. No analytics or tracking services are employed, reflecting minimal data collection. From a security perspective, the site lacks HTTPS information, security headers, DNSSEC, and any formal security or privacy policies. No contact information or incident response channels are provided, limiting trust and compliance posture. The domain registration is transparent and consistent with the site's personal nature, with no suspicious WHOIS patterns. Overall, the security posture is weak, and privacy compliance is absent. The overall risk is low given the non-commercial, personal nature of the site, but improvements in security, privacy policies, and contact transparency are recommended to enhance trust and compliance.

15
35
2
70
52
75
40
personalinformalexperimentalprojectsblog+1 more
HTML5CSSInfernal-engine (custom)
2025-07-27T01:07:20.478Z
zvava.org favicon

Private by Design, LLC

zvava.org

47
OtherUnited StatessmallHIGH

zvava.org is a personal website and wiki maintained by an individual named Sophia (Sophie). The site serves as a digital brain-out-on-a-table, hosting a variety of personal projects, thoughts, and curated content spanning software, hardware, music, internet culture, and art. It targets a niche audience interested in open source, privacy, and internet subcultures. The business model is primarily personal/hobbyist with donation support. The domain is registered with a privacy-focused entity in the US, consistent with the site's privacy-conscious ethos. Technically, the site uses standard HTML5, CSS3, and JavaScript without major frameworks or CMS. The design is good with clear navigation and mobile optimization. Performance is moderate, and accessibility is basic. No analytics or advertising scripts are present, indicating minimal user tracking. However, the site lacks privacy and cookie policies, security headers, and DNSSEC, which are areas for improvement. From a security perspective, the domain is protected against unauthorized deletion and transfer, but DNSSEC is not enabled. No security headers were detected, and no forms collect user data, reducing attack surface. The site does not provide a security policy or incident response contacts, limiting transparency. Overall, the security posture is moderate but could be enhanced with standard best practices. The overall risk is low given the personal nature and limited data collection, but compliance gaps exist. Strategic recommendations include adding privacy and cookie policies, enabling DNSSEC, implementing security headers, and publishing a security.txt file. These steps would improve trust, compliance, and security posture.

15
35
17
70
52
75
40
personalwikiopensourceprivacytechnology+1 more
HTML5CSS3JavaScript
2025-07-27T01:06:55.366Z
faustball-liga.de favicon

Faustball Deutschland e.V.

faustball-liga.de

44
OtherGermanymediumHIGH

Faustball Deutschland e.V. operates as the official governing body for the sport of Faustball in Germany, providing comprehensive information on leagues, national and international competitions, training, and community engagement. The website serves players, coaches, fans, and the broader Faustball community with news, event details, and resources. It maintains a strong market position as the authoritative source for Faustball in Germany. Technically, the website is built on WordPress with a modern tech stack including jQuery, WooCommerce, NextGEN Gallery, and Jetpack. Hosting is provided by IONOS, and the site demonstrates good mobile optimization and moderate performance. Privacy compliance is well addressed with GDPR-compliant privacy and cookie policies, including a consent mechanism. From a security perspective, the site uses HTTPS with excellent SSL configuration and implements cookie consent. However, it lacks explicit security headers and published security or incident response policies. No critical vulnerabilities or exposed sensitive data were detected. The site integrates analytics tools such as Google Analytics and Jetpack Stats with moderate user tracking. Overall, the website is professional, trustworthy, and well-maintained, with good content quality and user experience. Strategic improvements could focus on enhancing security headers, publishing security policies, and expanding contact information transparency.

15
60
2
70
62
60
-
sportsfaustballgermanyfaustballdeutschlandfaustballliga+4 more
jQueryWooCommerceNextGEN GalleryJetpack+3
2025-07-27T01:02:01.799Z
diefinals.de favicon

Die Finals GmbH

diefinals.de

56
OtherGermanymediumMEDIUM

DieFinals.de is the official website for Die Finals 2025, a major multi-sport event held in Dresden, Germany. The site provides comprehensive information about the event including sports disciplines, venues, schedules, news, and ticketing. It targets sports fans, athletes, media, and the general public interested in German national championships. The business model centers on event organization and promotion with strong media partnerships and government support, positioning it as a key national sports event organizer. Technically, the website employs modern web technologies such as Font Awesome for icons, Flickity for carousels, and Usercentrics for GDPR-compliant cookie consent management. It is hosted behind Cloudflare, ensuring good performance and security. The site is mobile-optimized and offers a professional user experience with clear navigation and relevant content. From a security perspective, the site uses HTTPS and Cloudflare DNS/CDN services, enhancing security and availability. However, explicit security headers and policies are not detected, and there is no public incident response or vulnerability disclosure information. Privacy compliance is well addressed through Usercentrics consent management and a privacy policy page. No critical vulnerabilities or suspicious content were found. Overall, the website is trustworthy, professionally maintained, and compliant with privacy regulations. Strategic improvements include adding security headers, publishing security policies, and providing incident response contacts to enhance security posture and user trust.

15
28
17
70
75
60
100
sportseventmulti-sportgermanydresden+3 more
Font Awesome 6Flickity carouselUsercentrics consent managementCloudflare hosting and DNS
2025-07-27T01:00:19.771Z
randstadgroep.nl favicon

Randstad Groep Nederland

randstadgroep.nl

55
OtherNetherlandsmediumMEDIUM

Randstad Groep Nederland operates as a service organization providing internal support services such as marketing, HR, legal, ICT, and administrative assistance to affiliated Randstad group companies including Randstad Nederland, Tempo-Team, and Yacht. The website serves primarily as an informational portal with minimal content and no direct customer-facing services. The business is positioned as an internal service provider within the Dutch market, founded in 2014, and maintains a moderate size and presence. Technically, the website is basic with minimal modern technologies detected. There is no evidence of advanced CMS, analytics, or tracking tools. The site lacks security headers and DNSSEC, and no privacy or cookie policies are published, indicating a low level of digital maturity and compliance readiness. Performance and mobile optimization are basic but functional. From a security perspective, the site uses HTTPS (assumed from canonical link), but no additional security headers or incident response information is provided. The WHOIS data is consistent and legitimate, with no privacy protection or suspicious patterns. However, the absence of privacy and cookie policies and contact information reduces trust and compliance posture. Overall, the website presents a low-risk profile but requires improvements in privacy compliance, security best practices, and transparency to enhance trustworthiness and regulatory adherence.

45
15
17
70
67
70
100
randstadserviceorganizationhrservicesnetherlandsbusinessservices

Partner Domains:

randstad.nl
partner
tempo-team.nl
partner

+1 more partners

2025-07-27T00:59:39.404Z
P

psvm.co

psvm.co

52
OtherUnited StatessmallMEDIUM

The website at psvm.co currently presents no accessible content, consisting solely of an empty HTML structure. This lack of content prevents any meaningful analysis of the business, its services, or its digital presence. The domain is registered through a privacy protection service, Domains By Proxy, LLC, and is locked against transfer or modification, which is common but reduces transparency. Hosting appears to be via Amazon AWS based on DNS records. No metadata, scripts, or contact information are available, indicating the site may be inactive or under development. From a technical perspective, the absence of content and metadata means no technologies, frameworks, or CMS can be identified. No security headers or SSL information is available, and the site does not present any privacy or cookie policies, nor terms of service. This results in a very low digital maturity and security posture. Security evaluation is limited due to lack of content, but the absence of HTTPS and security headers, combined with privacy-protected WHOIS data and no visible business information, suggests a low trust level. There are no indications of vulnerabilities or malicious content, but the site’s lack of transparency and content is a risk factor. Overall, the site scores very low on content quality, technical implementation, security posture, privacy compliance, and business credibility. Strategic recommendations include establishing a secure, content-rich website with clear business information, implementing HTTPS and security best practices, and publishing privacy and cookie policies to improve trust and compliance.

30
40
17
45
77
85
100
2025-07-27T00:58:18.062Z
faustball.de favicon

Faustball Deutschland e.V.

faustball.de

44
OtherGermanymediumHIGH

Faustball Deutschland e.V. operates as the official governing body for the sport of Faustball in Germany, providing comprehensive information on leagues, national and international competitions, events, and organizational resources. The website serves a dedicated community of players, clubs, fans, and stakeholders with up-to-date news, event highlights, and educational content. It holds a strong market position as the authoritative source for Faustball in Germany. Technically, the website is built on a modern WordPress platform with a robust tech stack including WooCommerce, NextGEN Gallery, and Cookiebot for privacy compliance. Hosting is provided by IONOS, and the site demonstrates good mobile optimization, accessibility, and SEO practices. Analytics and marketing tools such as Google Analytics, Google Tag Manager, and Mailchimp are integrated with user privacy respected through consent mechanisms. From a security perspective, the site enforces HTTPS and employs cookie consent but lacks explicit security headers and a public security policy or incident response contacts. No critical vulnerabilities or exposed sensitive data were detected. WHOIS data confirms domain legitimacy and consistency with the business identity. Overall, the website presents a professional, trustworthy, and user-friendly platform with strong content quality and privacy compliance. Strategic improvements in security headers and formal security policies could further enhance its security posture and trustworthiness.

15
60
2
70
62
60
-
sportsfaustballgermanysportsfederationevents+2 more
WordPress 6.8.2WooCommerce 10.0.2jQuery 3.5.0NextGEN Gallery+4

Partner Domains:

shop.faustball.de
partner
www.faustball.com
partner

+1 more partners

2025-07-26T23:51:45.419Z
B

Bankrupt Trump - Find Better Alternatives

bankrupttrump.org

59
OtherN/asmallMEDIUM

The website 'Bankrupt Trump' serves as an informational platform offering users alternatives to mainstream products and services primarily found in the United States and Russia. It targets a general audience interested in ethical, independent, and innovative options sourced globally. The site positions itself as a niche directory, focusing on providing curated alternatives across multiple categories such as technology, finance, health, and more. The business model appears to be content-driven, relying on user searches and informational listings without direct e-commerce or transactional services. Technically, the website is built on modern web technologies including Next.js and React, ensuring a responsive and user-friendly experience across devices. The site demonstrates good SEO practices and basic accessibility features, with moderate performance. However, there is room for improvement in accessibility and performance optimization. From a security perspective, the site enforces HTTPS and avoids exposing sensitive data. Nonetheless, it lacks important security headers and a cookie consent mechanism, which are critical for enhancing security posture and privacy compliance. The absence of WHOIS data and registrant information introduces some trust concerns, although the website content and structure appear professional and legitimate. Overall, the website presents a moderate risk profile with good content quality and technical implementation but requires enhancements in security practices and privacy compliance to improve trustworthiness and user protection.

30
53
2
70
72
70
100
alternativesethicalindependentnon-usdirectory+2 more
Next.jsReactJavaScriptCSS
2025-07-26T22:48:48.401Z