Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157327
Websites
130
Industries
113
Countries
52
Avg Score
Page 104 of 166|Showing 5151-5200 of 8293
L

LambdaTest

lambdatest.com

74
TechnologyUnited StatesenterpriseMEDIUM

LambdaTest is a leading cloud-based software testing platform that leverages AI and cloud technologies to provide a unified testing environment. It offers a wide range of services including cross-browser testing, real device testing, AI-native testing agents like KaneAI, and fast test orchestration with HyperExecute. The platform targets software developers, QA engineers, and enterprises seeking to accelerate their testing and deployment cycles. With over 2 million users globally and enterprise clients, LambdaTest holds a strong market position in the technology sector. Technically, the website is built on modern frameworks such as React and Next.js, integrating multiple analytics and marketing tools like Google Analytics, Amplitude, and Facebook Pixel. The site is well-optimized for performance, mobile responsiveness, and SEO, providing an excellent user experience. Security best practices are observed with HTTPS enforcement, strong security headers, and secure form handling. From a security perspective, LambdaTest demonstrates a mature posture with no visible vulnerabilities or exposed sensitive data. However, the absence of explicit security policy pages and incident response contacts suggests areas for improvement. Privacy compliance is robust, featuring comprehensive privacy and cookie policies with consent mechanisms aligned with GDPR. Overall, LambdaTest presents a professional, trustworthy, and technically advanced platform. The main risk factor is the lack of publicly available WHOIS domain registration data, which slightly reduces domain legitimacy confidence. Strategic recommendations include publishing detailed security policies, vulnerability disclosure programs, and incident response contacts to enhance trust and compliance.

80
80
17
82
82
65
100
aitestingtoolcloudtestingcrossbrowsertestingseleniumautomation+5 more
ReactNext.jsGoogle AnalyticsAmplitude+5
2025-07-23T12:04:05.146Z
visitcalifornia.com favicon

Visit California

visitcalifornia.com

74
HospitalityUnited StateslargeMEDIUM

Visit California is the official travel and tourism website for the state of California, operated by the California Travel and Tourism Commission. The site provides comprehensive information about attractions, accommodations, events, and travel tips to promote tourism within the state. It targets tourists and travelers seeking to explore California's diverse destinations. The website is well-positioned as a trusted government resource with strong branding and a clear focus on hospitality and tourism services. Technically, the website is built using modern web technologies including React and Gatsby, ensuring fast performance and excellent mobile optimization. The use of Mapbox GL JS enhances interactive map features. The site demonstrates good SEO practices and accessibility features, contributing to a positive user experience. From a security perspective, the site enforces HTTPS, implements key security headers, and avoids exposing sensitive data. Privacy and cookie policies are comprehensive and GDPR compliant, reflecting a mature approach to user privacy. However, no explicit security or incident response policies are published, which could be improved. Overall, Visit California presents a low-risk profile with strong business credibility and technical maturity. Strategic recommendations include publishing a vulnerability disclosure policy, enhancing incident response transparency, and maintaining ongoing security audits to sustain trust and compliance.

80
83
17
75
77
75
100
traveltourismcaliforniaofficialgovernment+1 more
ReactGatsbyMapbox GL JS
2025-07-23T10:57:43.438Z
a11y.info favicon

a11y.info

a11y.info

67
TechnologyUnited StatessmallMEDIUM

a11y.info operates as a niche Mastodon social networking server dedicated to the accessibility and inclusion community. Founded in 2018 and hosted under a US-based domain, it provides an open platform for users interested in digital accessibility topics. The website serves as a community hub with Mastodon integration, offering trending posts and user engagement features. The platform is small in scale with approximately 20 active users, reflecting a focused and specialized audience. Technically, the site leverages Mastodon version 4.4.1 with modern JavaScript frameworks and is hosted with reputable DNS and registrar services. The site demonstrates good mobile optimization and accessibility features, aligning well with its mission. Security posture is solid with HTTPS enforced and domain transfer protections in place, though DNSSEC is not enabled and security headers are absent, indicating room for improvement. Privacy compliance is partial; a privacy policy exists but cookie consent and terms of service are missing. No direct contact information or incident response details are provided, which may limit user trust and compliance readiness. Overall, the site is professionally presented with consistent branding and trustworthy domain registration, but could enhance security and privacy practices to better serve its community and regulatory requirements.

75
58
17
70
75
60
100
accessibilitymastodoncommunitysocialnetworkinclusion
Mastodon 4.4.1JavaScript ES modulesReactSVG icons+2
2025-07-23T09:50:58.939Z
A

AccreditedSchoolsOnline.org

accreditedschoolsonline.org

61
EducationN/amediumMEDIUM

AccreditedSchoolsOnline.org is an established online educational resource specializing in providing comprehensive information about accredited online schools and degree programs. The platform targets prospective students seeking reliable and accredited online education options across various fields and degree levels. The website offers detailed guides, accreditation information, and program listings, positioning itself as a trusted intermediary in the online education market. Technically, the website is built on a modern React and Next.js framework, leveraging cloud-based image hosting and advanced monitoring tools such as New Relic. It employs industry-standard privacy and cookie consent mechanisms via OneTrust, and integrates Google Tag Manager for marketing and analytics. The site demonstrates fast performance, mobile responsiveness, and good SEO practices, reflecting a mature digital infrastructure. From a security perspective, the site enforces HTTPS with strong SSL configuration and includes multiple security headers to protect users. No exposed sensitive data or vulnerabilities were detected in the content or scripts. Privacy compliance is well addressed with clear policies and consent banners, although explicit security policies and incident response contacts are not published. WHOIS data is unavailable due to privacy protection or query failure, but the overall trust indicators and professional presentation support legitimacy. Overall, AccreditedSchoolsOnline.org presents a low-risk profile with strong content quality and technical implementation. Strategic recommendations include publishing explicit security and incident response policies, adding vulnerability disclosure mechanisms, and enhancing transparency around data protection roles to further strengthen trust and compliance.

15
58
17
85
52
80
100
educationonlineschoolsaccreditationonlinedegreeshighereducation
Next.jsReactNew Relic monitoringOneTrust cookie consent+1
2025-07-23T09:45:56.549Z
8x8.com favicon

8x8, Inc.

8x8.com

77
TechnologyUnited StatesenterpriseLOW

8x8, Inc. is a leading enterprise technology company specializing in cloud-based communication, collaboration, and contact center solutions. Their platform unifies contact center, global telecommunications, video messaging, and low-code APIs into an AI-powered solution designed to enhance customer experiences and improve business efficiency. The company targets businesses seeking modern unified communications and customer engagement tools, positioning itself as a global provider in the telecommunications technology sector. Technically, the website is built on a modern stack including Gatsby and React, with integrations for Google Tag Manager, Visual Website Optimizer, and ConsentJS for privacy compliance. The site demonstrates excellent performance, mobile optimization, and SEO practices, reflecting a mature digital infrastructure. Analytics and tracking are implemented with moderate user tracking levels and appropriate consent mechanisms. From a security perspective, the site enforces HTTPS, employs security headers such as CSP and HSTS, and uses cookie consent banners to comply with privacy regulations. However, explicit security policy and incident response information are not publicly available, and no vulnerability disclosure or security.txt files were found. The WHOIS data is not publicly available, likely due to privacy protection, but the website content and branding strongly indicate legitimacy. Overall, 8x8.com presents a professional, secure, and compliant online presence suitable for an enterprise SaaS provider. Strategic recommendations include publishing detailed security policies, incident response contacts, and vulnerability disclosure information to enhance transparency and trust.

60
100
17
85
100
65
100
cloudcommunicationscontactcenterunifiedcommunicationsai-poweredplatformtelecommunications+3 more
GatsbyReactGoogle Tag ManagerVisual Website Optimizer (VWO)+2
2025-07-23T08:37:59.268Z
teamgullit.com favicon

Team Gullit

teamgullit.com

73
MediaNetherlandsmediumMEDIUM

Team Gullit operates as the world’s first independent FIFA esports academy, focusing on scouting and developing top EA FC (FIFA) talents globally. The organization offers professional training, coaching, mentoring, and esports competition participation, positioning itself as a leading entity in the esports media sector. Their business model includes coaching services, online courses, and merchandise sales, supported by partnerships with notable brands and esports organizations. The website reflects a mature digital presence with rich multimedia content and strong branding consistency. Technically, the website is built on modern frameworks such as Next.js and React, integrating Google Analytics and Tag Manager for data collection and marketing. The site is mobile-optimized, fast-loading, and accessible, with good SEO practices. The ecommerce component is powered by Shopify, ensuring a robust platform for merchandise sales. From a security perspective, the site enforces HTTPS and includes standard security headers, demonstrating good security hygiene. However, the absence of explicit terms of service, security policies, and incident response information represents areas for improvement. The lack of WHOIS data for the domain is a notable concern, potentially indicating privacy protection or registration issues, which slightly impacts trustworthiness. Overall, Team Gullit presents a professional and trustworthy online presence with a strong focus on esports development and community engagement. Strategic enhancements in transparency and domain registration clarity would further strengthen their security posture and business credibility.

70
88
2
78
85
80
100
teamgullitteamgullitfifafifa-academy
Next.jsReactGoogle Tag ManagerGoogle Analytics

Partner Domains:

shop.teamgullit.com
service
teamliquid.com
partner

+3 more partners

2025-07-23T06:39:24.723Z
stasher.com favicon

Stasher

stasher.com

70
TransportationUnited KingdommediumMEDIUM

Stasher is a UK-based company specializing in providing secure luggage storage services worldwide through a network of trusted shops and hotels. The platform offers travelers an affordable and convenient alternative to traditional station lockers, with 24/7 access and insured baggage storage. Their business model revolves around an online marketplace and mobile app that connects customers with local storage providers, positioning them as a leading player in the transportation and hospitality sectors. The company has a well-established online presence, supported by a domain registered since 2002, reflecting a mature and stable business. Technically, the website leverages modern web technologies including Next.js and React, with integration of Google Maps API for location services and Cloudflare for DNS and hosting. The site demonstrates good performance, mobile optimization, and SEO practices. Privacy and cookie policies are clearly presented with an active consent mechanism, indicating compliance with GDPR and related regulations. Analytics and marketing tools such as Google Analytics and Tapfiliate are used responsibly with moderate user tracking. From a security perspective, the website enforces HTTPS with strong SSL configuration and implements key security headers. No critical vulnerabilities or exposed sensitive data were detected. However, the absence of a dedicated security policy or incident response contact information suggests room for improvement in transparency and preparedness. Overall, the security posture is solid but could be enhanced by publishing vulnerability disclosure information. The overall risk assessment is low, with the website exhibiting high professionalism, trustworthiness, and compliance. Strategic recommendations include enhancing security transparency, adding incident response details, and considering a public vulnerability disclosure policy to further strengthen user trust and security culture.

30
100
17
70
75
80
100
luggagestoragetravelsecurestoragebagstoragetourism+1 more
Next.jsReactGoogle Maps APICloudflare DNS
2025-07-22T21:19:14.472Z
greenbook.org favicon

GreenBook

greenbook.org

64
OtherN/alargeMEDIUM

GreenBook is a comprehensive online platform dedicated to market research, insights, and analytics. It serves as a resource hub offering a directory of over 1000 verified companies, thousands of articles, reports, podcasts, webinars, and global events. The platform targets market research professionals and organizations seeking trusted partners and industry knowledge. Technically, the website is built using modern frameworks such as Next.js and React, hosted likely on Vercel, and integrates multiple analytics and marketing tools including Google Analytics, Amplitude, Microsoft Clarity, and LinkedIn Insight Tag. The site is well-optimized for performance and mobile devices, providing an excellent user experience with clear navigation and professional design. Security-wise, the site enforces HTTPS and uses Google reCAPTCHA v3 for bot protection, but lacks visible security headers and explicit privacy or cookie policies, which are areas for improvement. WHOIS data is unavailable due to query failure or privacy protection, slightly reducing trust but not undermining the site's legitimacy given its professional content and market presence. Overall, GreenBook is a high-quality, trustworthy platform with strong business credibility but could enhance privacy compliance and security transparency.

30
80
17
70
75
55
100
marketresearchinsightsanalyticsresearchcompaniesreports+3 more
ReactNext.jsGoogle Tag ManagerAmplitude Analytics+4
2025-07-22T16:50:08.358Z
neon.tech favicon

Neon, Inc.

neon.tech

64
TechnologyUnited StatesmediumMEDIUM

Neon, Inc. operates a modern serverless Postgres database platform designed to accelerate application development by providing scalable, reliable, and developer-friendly database services. Positioned as a trusted technology provider, Neon targets developers and technology teams seeking cloud-native database solutions with features like autoscaling, branching, and instant provisioning. The company enjoys a strong market position supported by industry certifications and a growing user base. Technically, the website demonstrates a mature digital infrastructure leveraging Next.js and React frameworks, optimized for performance and mobile responsiveness. The platform integrates with popular developer tools and languages, showcasing a modern tech stack and cloud hosting likely on AWS. The site is well-structured with comprehensive documentation and community engagement channels. From a security perspective, Neon exhibits a robust posture with HTTPS enforcement, multiple security headers, and compliance with major standards including ISO 27001, SOC 2, GDPR, and HIPAA. While no critical vulnerabilities or exposed sensitive data were detected, the absence of explicit incident response contacts and vulnerability disclosure policies suggests areas for improvement. Overall, Neon presents a low-risk profile with high trustworthiness and professionalism. Strategic recommendations include enhancing privacy compliance with cookie consent mechanisms, publishing incident response and vulnerability disclosure information, and maintaining transparency to further strengthen security culture and customer confidence.

30
80
17
70
72
55
100
serverlesspostgresdatabasecloudtechnology+3 more
ReactNext.jsJavaScriptPostgreSQL+1
2025-07-22T16:45:42.059Z
getonepass.eu favicon

OnePass

getonepass.eu

57
TechnologyN/asmallMEDIUM

OnePass operates as a technology platform focused on bridging startups and investors through a trusted gateway that leverages identity verification, investment readiness scoring, and AI-powered matchmaking. The platform targets startups seeking capital and investors looking for vetted opportunities, positioning itself as a key player in the European innovation ecosystem. The business model centers on providing verified connections and streamlined deal flow, enhancing trust and efficiency in fundraising and investing processes. Technically, the website is built using modern web technologies including MeteorJS and React, with integration of Algolia for search capabilities and Umami for analytics. The site demonstrates good mobile optimization, accessibility, and SEO practices, supported by a professional and consistent design. Hosting and domain registration are managed through reputable providers, contributing to the platform's digital maturity. From a security perspective, the site enforces HTTPS and employs verifiable credentials to build trust. However, it lacks explicit security headers and does not publicly disclose incident response contacts or a dedicated security policy. No critical vulnerabilities or exposed sensitive data were detected in the content. Privacy compliance is supported by accessible privacy and terms pages, though cookie consent mechanisms are absent. Overall, OnePass presents a secure and professional online presence with strong business credibility. Strategic improvements in security transparency and privacy mechanisms would further enhance trust and compliance. The platform is well-positioned to serve its target audience effectively while maintaining a solid technical foundation.

15
28
17
55
77
80
100
startupinvestoridentityverificationmatchmakingfunding+2 more
MeteorJSReactAlgolia SearchSVG graphics

Partner Domains:

hub.getonepass.eu
partner
app.getonepass.eu
service

+1 more partners

2025-07-22T16:44:06.225Z
joinmastodon.com favicon

Mastodon gGmbH

joinmastodon.com

72
TechnologyGermanymediumMEDIUM

Mastodon gGmbH operates joinmastodon.org, a leading decentralized social media platform emphasizing user control, privacy, and open-source principles. The platform enables users to join or host independent servers, fostering a federated social network free from corporate control and advertising. The business model is non-profit, sustained by public donations and sponsorships, positioning Mastodon as a key player in the decentralized social media space. Technically, the website is built on modern web technologies including React and Next.js, delivering a fast, mobile-optimized, and accessible user experience. Hosting and CDN services are provided by reputable partners such as Fastly, ensuring reliable performance. The site demonstrates good SEO practices and clear navigation, supporting a broad international audience with multiple language options. From a security perspective, the site enforces HTTPS and employs domain transfer protections, though DNSSEC is not enabled. No critical vulnerabilities or exposed sensitive data were detected. However, the absence of explicit security policies, vulnerability disclosure, and cookie consent mechanisms suggests areas for improvement. The WHOIS data is consistent with the organization's identity and domain age, reinforcing legitimacy. Overall, joinmastodon.org presents a trustworthy, professional, and privacy-conscious platform with strong community and technical foundations. Strategic enhancements in security transparency and privacy compliance would further strengthen its posture.

65
53
17
75
95
80
100
decentralizedopen-sourcesocial-medianon-profitprivacy+2 more
ReactNext.jsJavaScriptCSS

Partner Domains:

mastodon.social
partner
shop.joinmastodon.org
service

+2 more partners

2025-07-22T15:34:17.589Z
vingtcinq.io favicon

La Fabrique VingtCinq

vingtcinq.io

58
TechnologyFrancemediumMEDIUM

La Fabrique VingtCinq is a French digital agency specializing in bespoke web design and development services tailored for SMEs and large enterprises in the industrial and service sectors. Established in 2010 and operating under the parent company e-reflex, the agency has built a solid market position with a portfolio of notable clients including Fnac Darty, Primagaz, and Cartier. Their business model focuses on delivering high-value, custom digital projects with a strong emphasis on technical consulting and operational excellence. Technically, the website leverages modern web technologies such as React and Gatsby, hosted likely on AWS infrastructure, and employs privacy-conscious analytics via Plausible. The site demonstrates excellent performance, mobile optimization, and SEO practices, reflecting a mature digital presence. However, some security best practices like DNSSEC and security headers could be improved. From a security standpoint, the site uses HTTPS with a good SSL configuration and does not expose sensitive data. While no explicit security or incident response policies are published, the overall posture is solid. Privacy compliance is supported by a comprehensive privacy policy, though cookie consent mechanisms are absent, which is a minor compliance gap. Overall, the website is professional, trustworthy, and well-aligned with the business's stated identity. The domain registration data corroborates the legitimacy and maturity of the business. Strategic improvements in security headers and cookie consent would enhance compliance and security posture further.

90
35
2
75
75
65
40
digitalagencywebdevelopmentcustomwebsitestechnologyfrance+1 more
ReactGatsbyAWS DNSPlausible Analytics
2025-07-22T14:25:26.992Z
kde.social favicon

Privacy service provided by Withheld for Privacy ehf

kde.social

64
TechnologyIcelandsmallMEDIUM

kde.social is an independent Mastodon server instance launched in 2023, providing a decentralized social networking platform focused on privacy, ethical design, and user data ownership. It operates within the Mastodon fediverse, targeting users who seek an ad-free and surveillance-free social media experience. The platform currently has a small user base and offers standard Mastodon features such as timelines and trending posts, although the explore page currently shows no trending content. Technically, the website is built on Mastodon version 4.4.1 using modern web technologies including React and ES modules. The site is moderately optimized for mobile devices and provides basic accessibility features. Hosting details are not explicit, but the domain uses HTTPS with a good SSL configuration. However, DNSSEC is not enabled, and no security headers are present in the HTML, indicating room for improvement in security hardening. From a security perspective, the site enforces HTTPS and has domain transfer protections but lacks advanced DNS security and HTTP security headers. There is no visible security policy, incident response contact, or vulnerability disclosure information. Privacy compliance is limited; a basic privacy policy exists but no cookie consent mechanism or terms of service are found. No contact information such as emails or phone numbers is provided, which may impact user trust and support. Overall, kde.social presents as a legitimate, privacy-focused Mastodon instance with a small but niche user base. The site is functional and uses modern technologies but would benefit from enhanced security practices, improved privacy compliance, and clearer business contact information to increase trust and compliance with regulations.

75
58
17
70
52
70
100
mastodonsocialnetworkdecentralizedfediverseprivacy
Mastodon 4.4.1ReactJavaScript ES ModulesCSS+1
2025-07-22T12:09:51.933Z
D

DockYard Inc.

dockyard.com

67
TechnologyN/amediumMEDIUM

DockYard Inc. is a well-established AI development and software consultancy studio with over 15 years of industry experience. They specialize in custom software, mobile and web app development, product design, and strategy, leveraging AI to accelerate product delivery for a diverse clientele including Fortune 500 companies. Their market position is strong, supported by a portfolio of high-profile clients and a broad technology stack that includes Elixir, Phoenix LiveView, React, and AWS among others. The company targets businesses of all sizes across various industries seeking innovative digital product solutions. Technically, DockYard demonstrates a mature and modern infrastructure with a focus on scalable and AI-integrated technologies. Their website is fast, mobile-optimized, and accessible, reflecting a high level of digital maturity. They utilize advanced frameworks and cloud platforms such as AWS and FLY.IO, indicating robust hosting and deployment strategies. From a security perspective, the site employs HTTPS and domain transfer protections, but lacks DNSSEC and explicit security policies or incident response contacts. No cookie consent mechanism was detected, which may impact privacy compliance. The absence of security headers and vulnerability disclosure policies suggests areas for improvement. Overall, the security posture is solid but could be enhanced with additional transparency and controls. The overall risk assessment is low, with no signs of malicious activity or suspicious domain patterns. Strategic recommendations include enabling DNSSEC, publishing security and incident response policies, implementing cookie consent, and adding security headers to strengthen defenses and compliance. These steps will enhance trust and align with best practices for enterprise-grade technology service providers.

45
53
2
98
75
80
100
aidevelopmentsoftwaredevelopmentproductdesigntechnologyconsultingelixir+2 more
ElixirPhoenix LiveViewReactVue+7
2025-07-22T11:00:46.096Z