Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157327
Websites
130
Industries
113
Countries
52
Avg Score
Page 107 of 166|Showing 5301-5350 of 8293
evercraft.co favicon

shen zhen shi gong zhi yi ke ji you xian gong si

evercraft.co

44
TechnologyChinasmallHIGH

EverCraft is a Chinese technology company specializing in engineering productivity tools, including version control software and online CAD visualization platforms. The company targets engineers and professionals requiring efficient file history management and CAD collaboration tools. Their product suite includes 追光Lite for file versioning, 追光看图 for CAD viewing and annotation, and 分形三维 for 3D CAD visualization. The company operates primarily in China, with hosting and domain registration consistent with local regulations and ICP licensing. Technically, the website is built using modern web technologies such as React and Next.js, hosted on Alibaba Cloud. The site is mobile-optimized and performs moderately well, though accessibility and SEO optimizations are basic. The site uses Baidu Analytics for user tracking but lacks visible cookie consent mechanisms or privacy policies, indicating room for improvement in privacy compliance. From a security perspective, the site uses HTTPS but lacks important security headers and DNSSEC is not enabled. No forms or sensitive data collection points were detected on the homepage, reducing immediate risk. However, the absence of published security policies, incident response contacts, and vulnerability disclosure mechanisms suggests a low maturity in security governance. Overall, the website is professional and trustworthy within its niche but would benefit from enhanced privacy compliance, security hardening, and clearer contact information to improve user trust and regulatory adherence.

20
50
2
70
75
60
-
versioncontrolcadviewer3dvisualizationengineeringsoftwarechinesetechnology
ReactNext.jsJavaScriptSVG images
2025-07-16T22:40:02.982Z
waitwhile.com favicon

Waitwhile Inc.

waitwhile.com

65
TechnologyUnited StatesmediumMEDIUM

Waitwhile Inc. is a technology company specializing in queue management, appointment scheduling, and customer journey management solutions. Established in 2017, the company serves over 50,000 locations worldwide and offers a comprehensive SaaS platform that integrates virtual waitlists, automation, communication, analytics, and resource management. The website demonstrates a strong market position with high customer satisfaction ratings and a clear focus on improving customer experience and operational efficiency for businesses. Technically, the website is built using modern frameworks such as Next.js and React, hosted on Google Cloud infrastructure with DNS managed by Google Domains. It employs best practices in web performance, mobile optimization, and SEO. The presence of cookie consent mechanisms and privacy policies indicates a mature approach to privacy compliance. From a security perspective, the site enforces HTTPS, uses security headers, and employs domain registration protections. However, DNSSEC is not enabled, and explicit incident response or vulnerability disclosure policies are not publicly available, representing areas for improvement. Overall, the security posture is solid with room for enhancement. The overall risk assessment is low, with no signs of malicious activity or content safety concerns. Strategic recommendations include enabling DNSSEC, publishing incident response policies, and enhancing transparency around security certifications to further build trust and compliance.

40
100
17
88
-
85
100
queuemanagementappointmentschedulingcustomerjourneyvirtualwaitlistbusinesssaas+3 more
ReactNext.jsGoogle FontsIntercom+1
2025-07-16T22:38:02.404Z
R

Rakuten Kobo

kobobooks.com

62
E-commerceFinlandlargeMEDIUM

Rakuten Kobo operates a leading global e-commerce platform specializing in digital reading products including eBooks, audiobooks, eReaders, and reading applications. The website targets a broad audience with a strong presence in Finland and worldwide, supported by a comprehensive catalog of over 6 million titles. The business model focuses on direct sales, subscription services (Kobo Plus), and hardware sales, positioning Kobo as a major player in the digital reading market under the Rakuten corporate umbrella. Technically, the site leverages modern web technologies such as React and Next.js, with a content management system powered by Builder.io and search capabilities enhanced by Algolia. The site is well-optimized for performance, mobile responsiveness, accessibility, and SEO, providing an excellent user experience. Security posture is solid with HTTPS enforced and no visible vulnerabilities, though there is room for improvement in implementing and reporting security headers and publishing a dedicated security policy. Privacy compliance is strong, with clear privacy and cookie policies and GDPR adherence. Overall, the site is trustworthy and professional, though the absence of WHOIS registration details is unusual but likely due to registry privacy restrictions. Strategic recommendations include enhancing security transparency and incident response readiness to further strengthen trust and compliance.

55
85
17
65
-
90
100
ebooksaudiobooksereaderse-commercereadingapps+3 more
ReactNext.jsCDN for imagesAlgolia search+2

Partner Domains:

authorize.kobo.com
service
secure.kobobooks.com
service

+2 more partners

2025-07-16T22:36:02.022Z
jaegermeister.com favicon

Mast-Jägermeister SE

jaegermeister.com

62
RetailGermanylargeMEDIUM

Mast-Jägermeister SE operates the official website for Jägermeister, a globally recognized premium herbal liqueur brand established in 1935. The website serves as a comprehensive platform for brand storytelling, product information, and e-commerce, targeting adult consumers interested in nightlife and premium spirits. The company maintains a strong market position with consistent branding and a professional digital presence. Technically, the website leverages modern web technologies including React and Next.js, hosted on Vercel with Contentful CMS integration. The site demonstrates excellent performance, mobile optimization, and SEO practices, reflecting a mature digital infrastructure. From a security perspective, the site enforces HTTPS, includes an age gate to restrict underage access, and implements standard security headers. No critical vulnerabilities or exposed sensitive data were detected. However, the absence of a dedicated security policy or vulnerability disclosure page suggests room for improvement in transparency and incident response readiness. Overall, the website presents a low-risk profile with strong business credibility and compliance with privacy regulations such as GDPR. Strategic recommendations include enhancing security transparency, publishing incident response contacts, and continuous monitoring of third-party scripts to maintain security posture.

35
53
2
70
72
80
100
alcoholliqueurherbalnightlifepremium+3 more
ReactNext.jsVercel Speed InsightsContentful CMS

Partner Domains:

mast-jaegermeister.de
partner
jobs.jaegermeister.com
partner
2025-07-16T22:32:36.043Z
involve.cz favicon

Involve digital s.r.o.

involve.cz

50
TechnologyCzech RepublicsmallMEDIUM

Involve digital s.r.o. is a Czech-based small technology company specializing in front-end and back-end web development, as well as project takeover services. The company emphasizes a friendly and personal approach, maintaining long-term partnerships with clients and delivering agile projects of varying sizes. Their market position is supported by multiple client references and testimonials, indicating a trusted regional presence. Technically, the company employs modern frameworks such as Nette, Doctrine 2, Bootstrap 4, Foundation 6, and React, complemented by automated testing tools like Selenium and Cypress. Their infrastructure includes AWS for performance optimization, reflecting a mature digital environment. The website is well-designed, mobile-optimized, and SEO-friendly, showcasing professional content and clear navigation. From a security perspective, the site uses HTTPS and follows good coding practices, including automated testing and static code analysis. However, it lacks explicit security headers, published privacy and cookie policies, and incident response information, which are areas for improvement. The absence of WHOIS data reduces domain trust slightly but does not detract significantly from the overall legitimacy. Overall, the website and business demonstrate a strong professional posture with moderate security and privacy compliance. Strategic enhancements in transparency and security policies would further strengthen their risk profile and client trust.

15
10
17
70
95
90
20
webdevelopmentfrontendbackendprojecttakeovertechnology+2 more
NetteDoctrine 2Bootstrap 4Foundation 6+4
2025-07-16T20:22:39.931Z
jnjvisionpro.com favicon

Johnson & Johnson | Vision PRO

jnjvisionpro.com

68
HealthcareUnited StatesenterpriseMEDIUM

Johnson & Johnson Vision Pro is a comprehensive online platform dedicated to eye care professionals, offering a wide range of products, educational resources, and expert support. The website reflects the strong market position of Johnson & Johnson in the healthcare and vision care sectors, targeting professionals who require cutting-edge solutions for myopia management, contact lenses, refractive surgery, ocular surface care, and cataract surgery. The platform supports business growth and patient care excellence through tools like online ordering, calculators, and virtual services such as LensAssist. Technically, the website is built using modern frameworks such as Next.js and React, integrated with Contentstack CMS, and employs advanced analytics and user engagement tools including Google Tag Manager, reCAPTCHA Enterprise, and WalkMe. The site demonstrates good performance, mobile optimization, and accessibility features, ensuring a professional user experience. From a security perspective, the site enforces HTTPS, uses security headers, and incorporates consent mechanisms for cookies, reflecting a mature security posture. However, the absence of publicly available WHOIS data is a notable anomaly, although the overall branding and content strongly support the site's legitimacy. No critical vulnerabilities or exposed sensitive data were detected. Overall, the site presents a low risk profile with strong business credibility and technical maturity. Strategic recommendations include publishing explicit security policies, incident response contacts, and vulnerability disclosure information to further enhance trust and compliance.

70
68
2
70
65
85
100
healthcareeyecarevisionmedicalprofessional+2 more
ReactNext.jsGoogle Tag ManagerGoogle reCAPTCHA Enterprise+2
2025-07-16T19:12:52.557Z
clearvisionforyou.com favicon

Clear Vision For You

clearvisionforyou.com

62
HealthcareUnited StatesenterpriseMEDIUM

Clear Vision For You is a healthcare-focused website affiliated with Johnson & Johnson Vision, providing comprehensive information and resources about eye health treatments and vision care solutions. The site targets a general audience seeking education on conditions such as myopia, cataracts, dry eye, and laser vision correction, and offers tools like a 'Find a Doctor' feature to connect users with eye care professionals. The website is professionally designed with consistent branding and high-quality content, reflecting the stature of its parent company in the healthcare industry. Technically, the site leverages modern web technologies including React and Next.js frameworks, integrates Google Tag Manager for analytics, and employs OneTrust for cookie consent management. The content is well-structured, mobile-optimized, and accessible, ensuring a positive user experience. However, the absence of WHOIS data for the domain raises questions about domain registration transparency, although the website's content and external links strongly associate it with Johnson & Johnson Vision. From a security perspective, the site uses HTTPS and includes privacy and cookie policies indicating GDPR compliance. Nonetheless, it lacks explicit security headers and does not provide visible incident response or vulnerability disclosure information, which are areas for improvement. No critical vulnerabilities or suspicious content were detected, and the site maintains a good security posture overall. Overall, Clear Vision For You presents a trustworthy and authoritative resource for eye health information, but should enhance transparency around domain registration and strengthen security policies to further build user trust and compliance assurance.

70
68
2
30
75
70
100
healthcarevisioneyecarejohnsonjohnsonmyopia+4 more
ReactNext.jsGoogle Tag ManagerOneTrust Cookie Consent+1

Partner Domains:

www.jjvision.com
partner
www.jnjvisionpro.com
partner

+1 more partners

2025-07-16T18:35:18.389Z
fibery.io favicon

Fibery

fibery.io

74
TechnologyUnited StatesmediumMEDIUM

Fibery is a technology company offering a modular SaaS platform designed to replace scattered business tools with a unified, customizable company operating system. Their platform targets startups, product companies, software development firms, and digital agencies, providing features such as no-code app creation, flexible database schemas, collaborative documents, and AI-powered automation. Fibery positions itself as a niche player with a strong emphasis on customization and integration, supported by a tiered subscription model including free and enterprise plans. Technically, Fibery employs modern web technologies including React and Next.js, hosted on AWS infrastructure. The website demonstrates excellent performance, mobile optimization, and SEO practices, with comprehensive structured data enhancing search visibility. Privacy-respecting analytics and minimal tracking are used, reflecting a mature digital strategy. From a security perspective, Fibery maintains a strong posture with HTTPS enforcement, SOC 2 certification, GDPR compliance, and advanced platform permissions. However, there is room for improvement in publishing explicit vulnerability disclosure policies and incident response contacts. No critical vulnerabilities or exposures were detected in the analysis. Overall, Fibery presents a professional, trustworthy, and technically sound online presence with a solid business foundation. Strategic recommendations include enhancing transparency around incident response and cookie consent mechanisms to further strengthen compliance and user trust.

50
95
17
90
67
85
100
fiberycompanysoperatingsystemworkspaceno-codeworkflowautomation+14 more
ReactNext.jsAWS DNSJavaScript+1
2025-07-16T18:31:37.494Z
L

L'Echo

lecho.be

70
MediaBelgiumlargeMEDIUM

L'Echo is a well-established Belgian francophone media organization specializing in economic, political, financial, and cultural news. Founded in 1881 and operating under the parent company Mediafin, it holds a leading position in the Belgian media landscape. The website offers a broad range of services including real-time news, market data, podcasts, and subscription-based content, targeting a general audience interested in business and finance. The presence of subsidiaries like Mon Argent and Sabato further diversifies its media offerings. Technically, the website employs modern web technologies such as React, Google Tag Manager, and Adobe Experience Manager CMS, ensuring a responsive and accessible user experience. The site integrates advanced consent management via Didomi and uses multiple advertising and analytics platforms, reflecting a mature digital infrastructure. Performance is moderate with good mobile optimization and SEO practices. From a security perspective, the site enforces HTTPS and uses monitoring tools like Dynatrace. Consent management and privacy policies are comprehensive and GDPR compliant. However, explicit security headers and incident response information are not publicly detailed, suggesting room for improvement in transparency and security posture. Overall, L'Echo presents a trustworthy and professional online presence with strong business credibility and compliance. Strategic recommendations include enhancing security header implementation, publishing a security policy, and establishing a vulnerability disclosure program to further strengthen its security maturity.

30
85
17
85
85
70
100
newsmediafinanceeconomybelgium+5 more
JavaScriptReactGoogle Tag ManagerGoogle Publisher Tags (GPT)+5

Partner Domains:

belegger.tijd.be
partner
investisseur.lecho.be
partner

+3 more partners

2025-07-16T13:37:17.112Z
D

DBtune

dbtune.com

65
TechnologyN/asmallMEDIUM

DBtune is a technology company specializing in AI-powered automated tuning of PostgreSQL databases. Their platform dynamically optimizes database server parameters to improve performance, reduce costs, and increase productivity for a wide range of workloads and machine sizes. The company targets enterprises and database professionals seeking to enhance PostgreSQL efficiency without manual tuning effort. Their market position is supported by reputable clients and positive testimonials, positioning DBtune as a leading innovator in database performance optimization. Technically, the website is built on modern frameworks such as Next.js and React, hosted on Google Cloud infrastructure with DNS managed by Google Domains. The site employs advanced analytics tools including Microsoft Clarity, HubSpot, and Google Analytics, indicating a mature digital marketing and user tracking strategy. The site is well-optimized for performance, mobile responsiveness, and SEO, reflecting a high level of technical maturity. From a security perspective, the site enforces HTTPS with domain status locks to prevent unauthorized domain transfers or deletions. However, DNSSEC is not enabled, which is a recommended improvement. No explicit security policies or incident response information are published, and no vulnerability disclosure program or security.txt file is found. Overall, the security posture is solid but could be enhanced with additional transparency and DNS security. The overall risk assessment is low, with no signs of malicious activity or content safety concerns. The domain registration is consistent with the business profile, showing a stable and legitimate presence since 2018. Strategic recommendations include enabling DNSSEC, publishing security and incident response policies, and establishing a vulnerability disclosure program to further strengthen trust and compliance.

30
83
17
70
52
80
100
aipostgresqldatabasetuningcloudperformanceoptimization+2 more
ReactNext.jsJavaScriptGoogle Clarity Analytics+3
2025-07-16T12:30:50.639Z
dpdmojkurier.sk favicon

Direct Parcel Distribution SK s. r. o.

dpdmojkurier.sk

59
TransportationSlovakiamediumMEDIUM

Direct Parcel Distribution SK s. r. o., operating under the brand DPD Slovakia, is a medium-sized transportation company specializing in parcel delivery and courier services within Slovakia and internationally. The website 'Môj Kuriér' serves private individuals and business customers, offering streamlined parcel shipment ordering, tracking, and payment on delivery options. The company is part of the larger Geopost group, reinforcing its market position as a leading logistics provider in the region. The website content is well-structured, professionally designed, and provides clear navigation and relevant information for its target audience. Technically, the website employs modern web technologies including React and Google Tag Manager, with additional cookie consent management via TrustCommander. The site is mobile-optimized and demonstrates good SEO practices. While performance is moderate, the site is accessible and includes essential metadata. However, no explicit CMS or hosting provider details were identified. Security-wise, the site enforces HTTPS and includes cookie consent mechanisms, but lacks visible security headers and an explicit security policy page. No critical vulnerabilities or exposed sensitive data were detected. Overall, the security posture is solid but could be enhanced by implementing additional HTTP security headers and providing incident response contact details. Privacy compliance is strong with GDPR-aligned policies and consent mechanisms. The absence of explicit contact emails or phone numbers on the main page is noted but social media channels provide indirect contact avenues. The domain WHOIS data aligns well with the business identity, supporting legitimacy and trust. Strategically, the company should focus on enhancing security transparency and incident response readiness, while maintaining its strong privacy compliance and user experience. The website effectively supports the business model and market positioning, contributing to a trustworthy and professional online presence.

70
25
2
40
77
75
100
courierparceldeliverylogisticsshippingdpd+1 more
ReactjQueryGoogle Tag ManagerTrustCommander (cookie consent)+1

Partner Domains:

www.dpd.com
parent
www.geopost.com
parent
2025-07-16T10:34:07.601Z
pix4d.com favicon

Pix4D SA

pix4d.com

73
TechnologySwitzerlandenterpriseMEDIUM

Pix4D SA is a leading enterprise specializing in photogrammetry and drone mapping software solutions. Their website showcases a comprehensive suite of products designed for professional users in surveying, mapping, agriculture, construction, energy, and public safety sectors. The company offers both desktop and cloud-based processing tools, along with data capture applications and hardware integrations such as RTK devices. The website content is rich, well-structured, and targets professional audiences with clear product descriptions and use cases. Technically, the website is built using modern web technologies including React and Gatsby, ensuring fast performance and excellent mobile optimization. Integration with analytics and marketing platforms like Google Analytics, HubSpot, Facebook Pixel, and LinkedIn Insight Tag indicates a mature digital marketing infrastructure. The site employs HTTPS and cookie consent mechanisms, reflecting good privacy compliance practices. From a security perspective, the site enforces HTTPS and avoids exposing sensitive data. However, it lacks publicly available security policies, incident response contacts, and vulnerability disclosure information, which are areas for improvement. The absence of WHOIS registrant data reduces transparency but does not significantly detract from the site's legitimacy given the professional branding and external references. Overall, Pix4D's website presents a professional, trustworthy, and technically sound digital presence with minor gaps in explicit security disclosures. Strategic recommendations include publishing security policies, incident response details, and enhancing security headers to further strengthen trust and compliance.

70
68
17
80
77
85
100
photogrammetrydronemapping3dmodelinggissurveying+4 more
ReactGatsbyGoogle AnalyticsHubSpot+5

Partner Domains:

training.pix4d.com
partner
support.pix4d.com
partner

+1 more partners

2025-07-16T08:18:48.877Z
S

Supplyframe

supplyframe.com

68
TechnologyN/aenterpriseMEDIUM

Supplyframe is a well-established global engineering network specializing in Design-to-Source Intelligence solutions that empower manufacturers, suppliers, and procurement professionals in the electronics industry. The company offers a suite of software products aimed at optimizing new product introductions, strategic sourcing, quoting, and digital marketing to a global engineering audience. With a strong market position supported by partnerships with major industry players and a parent company Siemens, Supplyframe demonstrates a mature business model focused on B2B SaaS and digital platform services. Technically, the website leverages modern web technologies including React and Next.js, ensuring fast performance, mobile responsiveness, and good SEO practices. The presence of analytics and marketing tools such as Google Analytics, HubSpot, and Clearbit indicates a data-driven approach to user engagement and marketing. Privacy and cookie compliance mechanisms are implemented effectively, reflecting awareness of GDPR requirements. From a security perspective, the site uses HTTPS with a good SSL configuration and some security headers, although there is room for improvement by enabling DNSSEC and additional headers like CSP and HSTS. No critical vulnerabilities or exposed sensitive data were detected. The WHOIS data aligns well with the business history and domain age, supporting legitimacy and trustworthiness. Overall, Supplyframe's website reflects a professional, secure, and compliant digital presence suitable for its enterprise audience. Strategic recommendations include enhancing DNS security, publishing explicit security policies, and adding vulnerability disclosure mechanisms to further strengthen trust and security posture.

35
68
17
85
72
80
100
engineeringsupplychainelectronicssaasb2b+3 more
ReactNext.jsGoogle Tag ManagerCookieYes+2

Partner Domains:

www.samacsys.com
subsidiary
intelligence.supplyframe.com
partner
2025-07-16T08:16:53.482Z
skyaccessibility.sky favicon

Sky

skyaccessibility.sky

71
MediaUnited KingdomenterpriseMEDIUM

Sky Accessibility is a dedicated platform by Sky, a leading UK and Ireland media and telecommunications company, focused on ensuring all products and services are inclusive and accessible to customers with various impairments. The website offers detailed information on accessibility features, support services, and collaborations with recognized organizations to enhance user experience for people with disabilities. The platform is well integrated with Sky's corporate ecosystem, reflecting a strong market position and commitment to accessibility. Technically, the website leverages modern web technologies including React and Next.js, supported by Contentstack CMS and Adobe Launch for analytics and tag management. The site demonstrates good performance, mobile optimization, and excellent accessibility compliance, aligning with its mission. Privacy and cookie policies are comprehensive and GDPR compliant, supported by a consent management platform. From a security perspective, the site uses HTTPS with a strong SSL configuration and includes consent management scripts. While explicit security policies and incident response contacts are not found, no vulnerabilities or security issues are evident in the content. The WHOIS data confirms the domain's legitimacy and consistency with Sky's corporate identity. Overall, Sky Accessibility presents a professional, trustworthy, and user-focused digital presence with strong compliance and technical maturity. Strategic improvements could include publishing explicit security policies and vulnerability disclosure information to further enhance trust and security posture.

80
85
2
85
57
70
100
accessibilitymediatelecommunicationsskyinclusive+1 more
ReactNext.jsContentstack CMSAdobe Launch (Tag Manager)+1

Partner Domains:

sky.com
parent
skygroup.sky
parent
2025-07-16T02:30:50.202Z