Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

156862
Websites
130
Industries
113
Countries
52
Avg Score
Page 1098 of 3138|Showing 54851-54900 of 156862
sdsc.edu favicon

San Diego Supercomputer Center

sdsc.edu

57
TechnologyUnited StateslargeMEDIUM

The San Diego Supercomputer Center (SDSC) is a prominent academic and research institution specializing in high-performance computing, data-intensive research, and cyberinfrastructure solutions. Affiliated with the University of California, SDSC serves a broad audience including academic researchers and industry partners, providing advanced computing systems, cloud services, data management, and consulting. The website reflects a mature digital presence with comprehensive content, clear navigation, and multimedia integration, supporting its role as a leader in scientific innovation. Technically, the website employs modern frameworks such as Bootstrap and integrates Google services for fonts, analytics, and search functionality. The site is mobile-optimized and demonstrates good SEO practices, although performance is moderate. Security posture is adequate with HTTPS usage, but lacks visible security headers and cookie consent mechanisms, indicating areas for improvement in compliance and protection. The WHOIS data for the www.sdsc.edu subdomain is unavailable, likely due to querying the subdomain rather than the root domain. Despite this, the website's affiliation with UC San Diego and professional presentation strongly support its legitimacy. No suspicious patterns or privacy protection concerns were identified. Overall, SDSC's website is a trustworthy and authoritative resource for its target audience, with recommendations to enhance security headers, privacy compliance, and incident response transparency to further strengthen its security posture and user trust.

15
53
2
55
72
80
100
supercomputinghigh-performancecomputingdatasciencecyberinfrastructureresearch+3 more
Bootstrap 5.1.3Google FontsGoogle Tag Manager (gtag.js)Boxicons+1

Partner Domains:

scids.ucsd.edu
partner
ucsd.edu
partner

+1 more partners

2025-10-12T07:30:40.592Z
ucla.edu favicon

University of California, Los Angeles

ucla.edu

64
EducationUnited StateslargeMEDIUM

The University of California, Los Angeles (UCLA) is a prestigious public university recognized for its excellence in education and research. The website serves as a comprehensive portal for students, faculty, alumni, and the public, offering detailed information on academics, research, campus life, events, and news. UCLA holds a top market position as a leading public university in the United States, supported by strong branding and trust indicators such as Nobel laureates and extensive social media presence. Technically, the website employs a modern technology stack including Google Custom Search, various analytics and tracking tools (Google Tag Manager, Facebook Pixel, TikTok Analytics, Twitter Tag), and popular JavaScript libraries like jQuery and FancyBox. The site is mobile optimized, accessible, and SEO friendly, though performance is moderate likely due to the rich content and third-party integrations. From a security perspective, the site uses HTTPS with good SSL configuration and no visible exposed sensitive data. However, security headers are not explicitly detected, and no dedicated security policy or incident response contacts are published. The WHOIS data is unavailable, which is common for .edu domains, but the site’s legitimacy is supported by consistent branding and institutional content. Overall, UCLA’s website demonstrates a mature digital presence with strong business credibility and privacy compliance. Recommendations include enhancing security headers, publishing a security policy, and adding a vulnerability disclosure mechanism to further strengthen the security posture.

40
53
17
60
90
65
100
educationuniversityresearchacademicscampuslife+3 more
Google Custom Search EnginejQueryFancyBoxMasonry+6

Partner Domains:

uclabruins.com
subsidiary
alumni.ucla.edu
subsidiary

+3 more partners

2025-10-12T07:30:35.582Z
ucsd.edu favicon

University of California San Diego

ucsd.edu

52
EducationUnited StatesenterpriseMEDIUM

University of California San Diego (UCSD) is a leading public research university located in La Jolla, California. The website serves a diverse audience including prospective and current students, faculty, researchers, and the general public. UCSD offers a broad range of academic programs, research initiatives, and student life services, positioning itself as a top-tier institution with a strong emphasis on innovation and community engagement. The site reflects a mature digital presence with comprehensive content and consistent branding aligned with the university's mission and values. Technically, the website employs modern web technologies including Bootstrap, jQuery, and various analytics and tracking tools such as Google Tag Manager and Hotjar. The site is mobile-optimized, accessible, and SEO-friendly, hosted likely on university-managed infrastructure. The use of Cascade CMS is inferred, supporting content management needs. Performance is moderate, with room for optimization. From a security perspective, the site enforces HTTPS and employs standard security headers, though DNSSEC is not enabled, representing a minor security gap. No explicit security policy or incident response contacts are published, which could be improved. The site uses multiple third-party scripts for analytics and marketing, with moderate user tracking levels. Privacy compliance is partial, with a privacy policy present but no visible cookie consent mechanism. Overall, UCSD's website demonstrates a high level of professionalism, trustworthiness, and technical maturity suitable for an enterprise educational institution. Strategic improvements in privacy compliance and domain security would enhance its security posture and user trust.

20
53
2
85
67
85
20
educationuniversityresearchpublicuniversityhighereducation+3 more
HTML5CSS3JavaScriptjQuery+9

Partner Domains:

admission.universityofcalifornia.edu
partner
giving.ucsd.edu
partner

+2 more partners

2025-10-12T07:30:30.571Z
getelevar.com favicon

Elevar

getelevar.com

69
TechnologyN/amediumMEDIUM

Elevar is a technology company specializing in conversion tracking and analytics solutions for eCommerce brands, particularly those using Shopify. The company offers a SaaS platform that enables marketers and analysts to deploy data layers, connect to over 40 marketing channels, and ensure accurate conversion tracking with server-side tagging. Positioned as a trusted solution by over 6,500 direct-to-consumer (D2C) brands, Elevar focuses on improving marketing performance through enhanced data accuracy and integration capabilities. Technically, the website is built on WordPress with Visual Composer and integrates modern web technologies including Google Tag Manager, HubSpot analytics, and Cloudflare DNS services. The platform demonstrates good mobile optimization and SEO practices, although performance is moderate. Security measures include HTTPS, invisible Google reCAPTCHA, and domain status protections, but could be enhanced by enabling DNSSEC and implementing additional security headers. From a security and compliance perspective, the site lacks explicit privacy and cookie policies, as well as incident response and security policy disclosures. No contact emails or phone numbers are directly provided, which may impact user trust and compliance with privacy regulations. The domain WHOIS data is consistent with the business claims, showing a mature registration since 2016 without privacy protection, indicating transparency. Overall, Elevar presents a professional and credible online presence with strong business credibility and technical infrastructure. However, improvements in privacy compliance and security best practices are recommended to enhance trust and regulatory adherence.

30
80
17
85
75
85
100
ecommerceanalyticsconversiontrackingshopifymarketing+2 more
WordPressVisual Composer (WPBakery)Google Tag ManagerGoogle reCAPTCHA (Invisible)+7
2025-10-12T07:30:15.537Z
A

Server Error

av-northern-apps.com

48
OtherN/asmallHIGH

The website at https://av-northern-apps.com/authenticate is currently inaccessible due to a server-side error (HTTP 500). The page content is minimal, displaying only a generic server error message with no business or contact information. The domain is relatively new, registered in 2022 via Amazon Registrar, Inc., and uses Cloudflare nameservers. There is no evidence of privacy policies, cookie consent mechanisms, or terms of service on the page. No scripts, forms, or external links are present in the provided HTML content, indicating a lack of digital maturity and incomplete website deployment. From a technical perspective, the site lacks security headers and DNSSEC is not enabled, which are areas for improvement. The SSL configuration cannot be fully assessed from the data provided, but HTTPS is implied by the URL. The absence of metadata, SEO optimization, and accessibility features further indicates a basic and incomplete technical implementation. No analytics or marketing tools are detected. Security posture is weak due to the server error and missing security best practices. No incident response or security policies are publicly available. The domain WHOIS data is consistent and transparent, with no privacy protection, which supports legitimacy but does not compensate for the lack of website content and security features. Overall, the site scores low on content quality, technical implementation, security posture, privacy compliance, and business credibility. The primary risk is the inaccessibility of the site content, which prevents users from engaging with the service or business. Strategic recommendations include resolving server errors, implementing security headers and DNSSEC, publishing privacy and cookie policies, and providing clear business contact information to improve trust and compliance.

-
50
2
60
75
75
100
servererror500errorunavailablecloudflareamazonregistrar
2025-10-12T07:29:45.475Z
bookthatapp.com favicon

BookThatApp (a Fork Equity company)

bookthatapp.com

68
E-commerceN/amediumMEDIUM

BookThatApp is a specialized SaaS provider offering appointment scheduling solutions primarily for Shopify merchants. Positioned as the #1 Shopify appointment scheduling app, it serves over 8000 customers with a comprehensive suite of booking features including calendar synchronization, automated reminders, and Zoom integration. The company is part of Fork Equity and has been operational since 2010, focusing on streamlining appointment management for various industries such as beauty, wellness, rentals, events, and professional services. The website demonstrates a high level of professionalism, with excellent content quality, clear navigation, and strong customer trust signals. Technically, the site is built on Webflow with modern JavaScript libraries and integrates well with Shopify and other popular platforms. Security posture is good with HTTPS and secure forms, though some security headers are missing and no explicit incident response or vulnerability disclosure policies are published. Privacy compliance is mostly addressed with a comprehensive privacy policy, but lacks a cookie consent mechanism. Overall, the website and business present a credible and mature digital presence, though the absence of WHOIS data for the domain introduces some uncertainty regarding domain registration legitimacy.

45
68
17
75
75
80
100
appointmentschedulingshopifyappbookingsoftwaree-commercecalendarsync+1 more
WebflowjQuery 3.5.1Swiper.jsGoogle Tag Manager+2
2025-10-12T07:29:40.463Z
O

Ordersify

ordersify.com

63
E-commerceVietnamsmallMEDIUM

Ordersify is a small, Vietnam-based company specializing in developing Shopify apps focused on order automation and logistics. Their product suite includes tools such as Order Printer, Automation Tags, Product Alerts, and others, serving over 12,000 merchants globally. The company positions itself as a niche SaaS provider within the e-commerce ecosystem, leveraging Shopify's platform to deliver value-added services that help merchants automate order management and increase sales through notifications and integrations with marketing platforms. Technically, the website employs modern web technologies including Bootstrap, jQuery, and various analytics and customer support tools like Google Analytics, Hotjar, and HelpScout Beacon. The site is hosted behind Cloudflare DNS and CDN services, ensuring good performance and security. Security posture is solid with HTTPS enforced and domain protections in place, though DNSSEC is not enabled and no explicit security or incident response policies are published. Privacy compliance is basic with a privacy policy and cookie consent modal present, but no advanced GDPR indicators or data protection officer information. Overall, the website is professional, well-branded, and trustworthy with clear business information and social media presence. Recommendations include enhancing DNS security, publishing security policies, and improving privacy compliance transparency.

30
53
2
75
77
85
100
shopifye-commerceorderautomationproductalertssaas
JavaScriptjQueryBootstrapFontAwesome+7
2025-10-12T07:29:35.455Z
howuku.com favicon

Equals One Ventures Sdn Bhd

howuku.com

71
TechnologyMalaysiasmallMEDIUM

Howuku is a Malaysia-based technology company founded in 2019, offering an all-in-one website analytics and optimization platform targeted at marketers, agencies, startups, SaaS, and e-commerce businesses. The platform provides comprehensive tools including heatmaps, session recordings, conversion funnels, form analytics, feedback widgets, and A/B testing, positioning itself as a cost-effective alternative to established competitors. The website demonstrates excellent content quality, professional design, and clear navigation, supported by strong trust signals such as customer testimonials and case studies. Technically, the site leverages modern web technologies including Webflow CMS, multiple marketing and analytics tags, and Cloudflare DNS/CDN services, ensuring fast performance and mobile optimization. Security posture is good with HTTPS enforced and domain transfer protection, though improvements can be made by enabling DNSSEC and adding security headers. Privacy compliance is adequate with clear privacy and cookie policies, but lacks an explicit cookie consent mechanism. Overall, Howuku presents a credible and professional online presence with extensive user tracking and marketing integrations.

60
85
2
85
62
85
100
analyticsheatmapsconversionrateoptimizationsessionrecordingsmarketing+5 more
Webflow CMSGoogle Tag ManagerFacebook PixelLinkedIn Insight Tag+6

Partner Domains:

howuku.freshdesk.com
service
howuku.firstpromoter.com
partner

+1 more partners

2025-10-12T07:29:25.388Z
lineicons.com favicon

Lineicons

lineicons.com

62
TechnologyN/asmallMEDIUM

Lineicons.com is a specialized technology company providing a comprehensive library of over 26,000 free and premium line icons tailored for designers and developers. The platform offers icons in various formats including SVG, PNG, React components, and Figma plugins, supported by a free CDN and an icon editor for customization. The business targets creative professionals and developers seeking high-quality iconography for digital projects, positioning itself as a leading icon resource with endorsements from major global brands and a large active user base. Technically, the website leverages modern web technologies such as React and Next.js, with Cloudflare DNS and DigitalOcean hosting for chatbot services. The site is well-optimized for performance, mobile responsiveness, and SEO, featuring a professional design and clear navigation. Analytics are implemented via Google Tag Manager, indicating moderate user tracking. From a security perspective, the site enforces HTTPS and has domain status protections to prevent unauthorized changes. However, it lacks explicit security headers and a cookie consent mechanism, which are areas for improvement. No vulnerability disclosure or incident response policies are publicly available, and contact information is limited to a support page without direct emails or phone numbers. Overall, Lineicons.com presents a trustworthy and professional online presence with strong business credibility and technical maturity. The main risks relate to privacy compliance and security best practices, which if addressed, would enhance user trust and regulatory adherence.

15
53
17
90
75
65
100
iconsdesigndevelopertoolssvgreact+2 more
ReactNext.jsCloudflare DNSDigitalOcean (chatbot hosting)+1
2025-10-12T07:29:05.208Z
texaslottery.com favicon

Texas Department of Licensing and Regulation

texaslottery.com

62
GovernmentUnited StateslargeMEDIUM

The Texas Lottery website serves as the official online presence for the Texas Department of Licensing and Regulation's lottery operations. It provides comprehensive information about various lottery games, including Powerball, Mega Millions, Lotto Texas, and scratch tickets, targeting adult residents of Texas. The site supports responsible gambling initiatives and offers resources for players, retailers, and the media. The website is well-structured, mobile-optimized, and professionally designed, reflecting a mature digital presence for a government entity. Technically, the site employs modern web technologies such as jQuery and the Foundation CSS framework, with content management facilitated by OpenCMS. While the site demonstrates good accessibility and SEO practices, there is room for improvement in security headers and explicit cookie consent mechanisms. The absence of WHOIS data is notable and should be investigated to ensure domain registration transparency. From a security perspective, the site uses HTTPS and sanitizes user inputs on forms, but lacks visible security policies, incident response contacts, and vulnerability disclosure programs. No critical vulnerabilities or exposed sensitive data were detected in the content. Overall, the site presents a moderate to strong security posture suitable for a government-operated lottery platform. Strategically, the Texas Lottery website is a trusted source for lottery information in Texas, with strong branding and official government backing. However, enhancing transparency in domain registration and security policies would further strengthen trust and compliance.

30
53
2
60
90
85
100
lotterytexasgamblinggovernmentgaming+3 more
jQueryFoundation CSS frameworkJavaScript

Partner Domains:

www.txbingo.org
partner
2025-10-12T07:29:00.197Z
totomacaupools.club favicon

Privacy service provided by Withheld for Privacy ehf

totomacaupools.club

52
OtherIndonesiasmallMEDIUM

The website totomacaupools.club operates as an online platform providing live lottery results and streaming services primarily for Toto Macau 4D and 5D games. It targets a mature audience interested in lottery and gambling activities, with content mainly in Chinese and Indonesian languages. The business model revolves around delivering real-time lottery information and related tools such as number generators and result checkers. The site appears to be a niche player in the online lottery results market, with a small-scale operation founded in 2017. From a technical perspective, the site uses a standard technology stack including jQuery, Bootstrap, and Google Analytics for tracking. Hosting and DNS services are provided via Cloudflare, but the site lacks advanced security configurations such as DNSSEC and security headers. The website is moderately optimized for mobile devices and has basic SEO and accessibility features. Performance is average with no significant technical debt visible. Security posture is moderate but with notable gaps. The site uses HTTPS but lacks important security headers and DNSSEC. There is no visible privacy or cookie policy, and no contact or incident response information is provided, which reduces compliance and trustworthiness. The domain is privacy-protected, which is common for gambling-related sites but reduces transparency. No WAF or blocking mechanisms were detected, and the content is fully accessible. Overall, the site presents moderate risk due to limited transparency, lack of compliance documentation, and missing security best practices. Strategic improvements in security headers, privacy compliance, and contact information would enhance trust and reduce risk.

20
35
2
60
75
70
100
lotterytotogambling4d5d+4 more
jQuery 3.2.1jQuery UI 1.12.1Bootstrap 3.3.7Google Analytics+1
2025-10-12T07:28:55.189Z
hartmann-holzbau-hessen.de favicon

Hartmann Holzbau GmbH & Co. KG

hartmann-holzbau-hessen.de

48
Real EstateGermanymediumHIGH

Hartmann Holzbau GmbH & Co. KG is a well-established family-owned company specializing in ecological timber construction with over 100 years of tradition in the Hessen region of Germany. The company offers a range of services including house building, timber construction, renovations, and engineering timber works, focusing on sustainable and regional building practices. Their website reflects a professional and consistent brand image with clear contact information and multiple certifications that reinforce their market credibility. Technically, the website is built on TYPO3 CMS with modern front-end libraries such as jQuery, Owl Carousel, and Bootstrap, providing a responsive and user-friendly experience. The site is well-structured with good SEO practices and mobile optimization, although some accessibility features could be improved. No advanced analytics or tracking scripts were detected, indicating a privacy-conscious approach. From a security perspective, the website uses HTTPS with a good SSL configuration but lacks important security headers and a cookie consent mechanism, which are recommended for GDPR compliance and enhanced security. There is no visible incident response or vulnerability disclosure information, which could be improved to strengthen trust and preparedness. Overall, the website presents a trustworthy and professional image with solid business credibility and technical implementation. Strategic improvements in privacy compliance and security policies would further enhance their security posture and regulatory adherence.

25
28
2
70
95
60
20
holzbauecologicalconstructiontimberconstructionfamilybusinessregional+1 more
TYPO3 CMSjQueryOwl CarouselLightGallery+1
2025-10-12T07:27:29.983Z
krause-systems.de favicon

KRAUSE-Systems GmbH

krause-systems.de

58
ManufacturingGermanylargeMEDIUM

KRAUSE-Systems GmbH is a well-established German manufacturer specializing in climbing technology and related occupational safety equipment. The company offers a broad portfolio of products including ladders, steps, scaffolding, and safety gear, complemented by services such as training seminars, product testing, and customer support. Their website reflects a strong market position with comprehensive product information and a professional presentation targeting both industrial professionals and private users. Technically, the website is built on the TYPO3 CMS platform, leveraging modern web technologies including jQuery and privacy-conscious analytics via Matomo. The site is well-structured, mobile-optimized, and includes a robust cookie consent mechanism compliant with GDPR requirements. Hosting is managed through a reputable provider, and performance is moderate with good SEO and accessibility practices. From a security perspective, the site enforces HTTPS and integrates consent management for tracking technologies such as Facebook Pixel and Google Tag Manager. However, explicit security policies and incident response contacts are not published, and some security headers are not explicitly detected. No vulnerabilities or exposed sensitive data were found in the provided content. Overall, the website demonstrates a high level of professionalism, trustworthiness, and compliance with privacy regulations. Strategic improvements in security policy transparency and header implementation could further enhance their security posture.

30
68
2
97
90
70
20
manufacturingsteigtechniksafetyladdersindustrial+5 more
TYPO3 CMSjQueryMatomo AnalyticsFacebook Pixel+1
2025-10-12T07:27:04.611Z
ustream.tv favicon

IBM

ustream.tv

71
TechnologyN/aenterpriseMEDIUM

IBM Video Streaming is a professional cloud-based video streaming platform offered by IBM, providing end-to-end services such as video hosting, live streaming, transcoding, automated speech to text, and analytics. The platform targets businesses and organizations requiring scalable and reliable video streaming solutions globally. The website demonstrates strong IBM branding and a consistent, professional presentation aligned with IBM's enterprise market position. Technically, the website leverages modern web technologies including React, Webpack, and IBM's Carbon Design System, hosted on Akamai CDN for performance and global reach. The site is mobile optimized, accessible, and uses HTTPS with CSRF protections, indicating a mature digital infrastructure. Privacy and cookie policies are comprehensive and GDPR compliant, reflecting IBM's commitment to privacy and regulatory compliance. From a security perspective, the site shows good practices such as HTTPS enforcement and CSRF tokens, but lacks explicit security headers and a published security policy or incident response contacts. No vulnerabilities or suspicious content were detected. The WHOIS data for the subdomain is not separately available, which is typical for subdomains under a large enterprise domain like ibm.com, supporting legitimacy. Overall, the website is trustworthy, professionally maintained, and suitable for enterprise clients. Strategic recommendations include enhancing security headers, publishing a dedicated security policy, and implementing a vulnerability disclosure program to further strengthen security posture and trust.

55
68
2
97
77
85
100
videostreamingibmcloudplatformlivestreamingvideohosting+2 more
ReactWebpackIBM Plex Sans fontAkamai CDN+2
2025-10-12T07:26:49.582Z
N

Nishith Desai Associates

nishithdesai.com

55
OtherIndialargeMEDIUM

Nishith Desai Associates is an established international law firm specializing in legal, tax, regulatory, and cross-border advisory services with offices in multiple global locations including India, Singapore, Munich, and Silicon Valley. The firm targets corporate clients and international businesses, positioning itself as a research-based and strategic legal advisor. The website reflects a professional and consistent brand image with good content quality and clear navigation. Technically, the website uses a traditional tech stack including jQuery and Google Analytics, with moderate performance and basic mobile optimization. Hosting and domain registration are stable and consistent with the firm's long history. However, the site lacks advanced security headers and DNSSEC, which are recommended for improved security posture. From a security perspective, the site uses HTTPS and has domain transfer protection enabled, but lacks explicit privacy, cookie, and security policies. There is no visible incident response or vulnerability disclosure information. Tracking scripts are present, indicating moderate user tracking without clear privacy compliance disclosures. Overall, the website is trustworthy and professional but would benefit from enhanced security configurations and privacy compliance improvements to align with modern standards and regulations.

15
35
2
60
72
80
100
lawfirmlegalservicestaxadvisoryinternationalcorporatelaw
jQueryGoogle AnalyticsCANDDi tracking
2025-10-12T07:26:14.518Z
smefutures.com favicon

SME Futures

smefutures.com

69
MediaIndiasmallMEDIUM

SMEFutures.com is an Indian niche media website dedicated to providing news, insights, and updates about the Small and Medium Enterprises (SME) and Micro, Small and Medium Enterprises (MSME) sectors in India. The website offers a variety of content types including news articles, opinion pieces, interviews, videos, and web stories, targeting entrepreneurs, business professionals, and stakeholders in the Indian SME ecosystem. The business operates primarily as an online media publication with a focus on SME-related developments and policy updates. Technically, the website is built on WordPress CMS using Elementor for page building and Yoast SEO for search engine optimization. It employs modern web technologies including jQuery and integrates Google Adsense for monetization and Google Analytics for visitor tracking. The domain is registered with GoDaddy.com, LLC since 2016 and uses Cloudflare for DNS services, indicating a stable and mature digital infrastructure. Mobile optimization and SEO practices are good, though accessibility features are basic. From a security perspective, the site uses HTTPS with a good SSL configuration and domain locking statuses to prevent unauthorized changes. However, it lacks DNSSEC, security.txt, and explicit privacy or cookie policies, which are important for compliance and security transparency. The site collects user data via Google Analytics and FingerprintJS but does not provide clear privacy or cookie consent mechanisms, indicating gaps in privacy compliance. Overall, SMEFutures.com presents a professional and content-rich platform with moderate technical and security maturity. To enhance trust and compliance, it should implement comprehensive privacy and cookie policies, enable DNSSEC, and publish vulnerability disclosure information. These improvements will strengthen its security posture and regulatory adherence, supporting its role as a credible SME news source in India.

55
80
17
70
75
80
100
smemsmeindiabusinessnewssmallbusiness+5 more
WordPressElementorYoast SEOjQuery+2
2025-10-12T07:25:59.491Z
grandesecousse.org favicon

La Grande Secousse du Québec

grandesecousse.org

51
GovernmentCanadasmallMEDIUM

La Grande Secousse du Québec is a non-profit organization dedicated to earthquake preparedness and education in Quebec. It organizes the Great ShakeOut, the largest earthquake simulation exercise in the world, engaging tens of thousands of participants annually. The website serves as an information hub for registration, educational resources, news, and events related to earthquake safety. The organization partners with government bodies and civil security associations to promote resilience and preparedness among Quebec residents, schools, and organizations. Technically, the website is built on Joomla CMS with modern JavaScript modules, Bootstrap 5, and uses CDN-hosted resources for fonts and scripts. It is hosted by WHC Online Solutions Inc. and employs HTTPS with a valid SSL certificate. The site is mobile-optimized, accessible, and SEO-friendly, though some security headers are missing and DNSSEC is not enabled, representing minor security gaps. From a security perspective, the site enforces HTTPS, uses cookie consent mechanisms compliant with GDPR, and avoids exposing sensitive data. However, it lacks explicit security policies, incident response contacts, and vulnerability disclosure information. The domain registration is consistent with the organization's history and shows no suspicious patterns. Overall, the site demonstrates a good security posture suitable for its public safety mission. The overall risk is low, with recommendations to enhance DNS security, implement security headers, and publish security and incident response policies to further strengthen trust and compliance.

75
53
17
70
42
70
-
earthquakepreparednesssimulationpublicsafetyeducation+3 more
Joomla CMSJavaScript ES6 modulesjQueryBootstrap 5+3

Partner Domains:

bac-quebec.qc.ca
partner
www.quebec.ca
partner

+3 more partners

2025-10-12T07:25:24.354Z
S

Shakeout BC

shakeoutbc.ca

53
GovernmentCanadasmallMEDIUM

Shakeout BC is a regional public safety initiative focused on earthquake preparedness in British Columbia, Canada. The website serves as a platform to promote annual earthquake drills, provide educational resources, and facilitate participant registration. The organization targets residents and institutions within British Columbia to enhance community resilience against earthquakes. The site is positioned as a trusted non-profit or government-affiliated campaign with a clear mission and consistent branding. Technically, the website is built on WordPress with common plugins such as Yoast SEO and MonsterInsights for analytics. It employs modern web technologies including jQuery and Selectize.js, and integrates Google Fonts and social media platforms. The site demonstrates good mobile optimization and SEO practices, although some accessibility features could be improved. From a security perspective, the site uses HTTPS and includes reCAPTCHA scripts to protect forms. However, it lacks explicit security headers and published incident response or vulnerability disclosure policies. Privacy compliance is partially addressed with a comprehensive privacy policy, but no cookie consent mechanism is present, which may pose compliance risks. Overall, the website is professional, trustworthy, and serves its public safety purpose effectively. Strategic improvements in security headers, privacy compliance, and incident response transparency would enhance its security posture and regulatory adherence.

15
53
29
85
62
85
20
earthquakepreparednessbritishcolumbiapublicsafetydrill+2 more
WordPress 6.6.4Yoast SEO pluginGoogle Analytics (MonsterInsights)jQuery 3.5.1+3
2025-10-12T07:25:19.344Z