Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

156862
Websites
130
Industries
113
Countries
52
Avg Score
Page 1131 of 3138|Showing 56501-56550 of 156862
thebal.com favicon

NBA Media Ventures, LLC

thebal.com

72
MediaN/alargeMEDIUM

The Basketball Africa League (BAL) website, hosted as a subdomain of nba.com, serves as the official digital platform for the BAL, a professional basketball league featuring 12 teams across Africa. The site provides comprehensive content including news, schedules, team information, statistics, videos, and merchandise, targeting basketball fans and the African basketball community. Affiliated with NBA Media Ventures, LLC, the site benefits from strong brand recognition and a large organizational backing. Technically, the website employs modern web technologies such as React and Next.js, integrates advanced analytics and marketing tools including Google Tag Manager, Adobe DTM, and Facebook Pixel, and ensures a fast, mobile-optimized user experience. The site is well-structured with good SEO and accessibility practices, reflecting a mature digital infrastructure. From a security perspective, the site enforces HTTPS, implements key security headers, and includes privacy and cookie policies aligned with GDPR requirements. However, explicit security policies, incident response contacts, and vulnerability disclosure mechanisms are not present, representing areas for improvement. The absence of WHOIS data for the subdomain is expected given it is part of the nba.com domain, which is a trusted and established entity. Overall, the BAL website demonstrates a high level of professionalism, security, and compliance, with strong business credibility and user trust. Strategic recommendations include publishing detailed security policies, adding vulnerability disclosure information, and enhancing contact transparency for security incidents.

25
95
17
85
82
85
100
sportsbasketballafricanbabal+5 more
ReactNext.jsAdobe DTMGoogle Tag Manager+3

Partner Domains:

nba.com
parent
wnba.com
partner

+2 more partners

2025-10-11T09:35:47.191Z
W

Women's National Basketball Association

wnba.com

74
MediaUnited StateslargeMEDIUM

The Women's National Basketball Association (WNBA) official website serves as the authoritative digital platform for the league, providing comprehensive information including schedules, standings, player stats, team details, news, ticket sales, and merchandise. The site targets basketball fans and sports enthusiasts, positioning itself as a key media outlet for women's professional basketball in the United States. The website is well-branded, professionally designed, and consistently maintained, reflecting the league's stature and market presence. Technically, the site leverages modern web technologies such as React and Next.js, ensuring fast performance, mobile responsiveness, and good accessibility. It integrates various third-party services for analytics, advertising, and consent management, demonstrating a mature digital infrastructure. The presence of comprehensive privacy and cookie policies with active consent mechanisms indicates a strong commitment to privacy compliance, including GDPR. From a security perspective, the website enforces HTTPS with excellent SSL configuration and implements multiple security headers, contributing to a robust security posture. No critical vulnerabilities or exposed sensitive data were detected. However, the absence of a publicly accessible security.txt or incident response information suggests room for improvement in transparency and vulnerability management. Overall, the website presents a low-risk profile with high trustworthiness and professionalism. The main limitation is the lack of publicly available WHOIS data, likely due to privacy protection, which does not detract from the site's legitimacy given its official branding and content. Strategic recommendations include publishing security and incident response policies and enhancing contact transparency to further strengthen trust and security culture.

30
100
17
85
90
85
100
sportsbasketballwnbawomenssportsmedia+3 more
ReactNext.jsJavaScriptCSS+3

Partner Domains:

wnbacleveland.com
partner
wnbaexperiences.com
partner

+1 more partners

2025-10-11T09:35:36.824Z
D

Access Denied

draftkings.com

60
OtherN/aMEDIUM

The website www.draftkings.com is currently inaccessible due to an access denial page, likely caused by a Web Application Firewall (WAF) or server-side security mechanism. This prevents any meaningful extraction of website content, metadata, or business information. The WHOIS lookup also failed to return any registrar or domain registration details, indicating either privacy protection or an unregistered domain in the public WHOIS database. Consequently, no detailed business, technical, or security analysis can be performed on the website content or infrastructure. From a business perspective, the lack of accessible content and WHOIS data severely limits the ability to assess the company's market position, services, or credibility. Technically, the site appears to be protected by security controls that block external automated queries or unauthorized access, which while enhancing security, also restricts transparency and analysis. Security posture evaluation is constrained by the absence of accessible data, but the presence of a WAF or similar blocking mechanism suggests some level of security awareness. However, the inability to verify SSL configuration, security headers, or compliance policies is a significant gap. Overall, the risk assessment is elevated due to the lack of transparency and accessibility. Strategic recommendations include resolving access issues to allow legitimate security and compliance assessments, publishing clear WHOIS and business information, and ensuring that security controls do not impede necessary transparency for trust and compliance verification.

25
50
17
85
95
85
100
2025-10-11T09:35:31.705Z
allgaeuer-zeitung.de favicon

Allgaeuer Zeitung

allgaeuer-zeitung.de

55
MediaGermanymediumMEDIUM

Allgaeuer Zeitung is a regional media company providing current news and background information focused on the Allgäu region, Bavaria, and broader world events. The website serves as a digital news portal offering political, economic, sports, and cultural content. It operates a subscription-based business model supplemented by advertising revenue, supported by multiple subdomains for events, weather, classifieds, and subscription management. The company maintains a consistent brand presence and targets a general audience interested in regional news. Technically, the website employs modern JavaScript frameworks and integrates third-party services such as Usercentrics for consent management, Piano for paywall and subscription handling, Stroeer and Taboola for advertising, and Cleverpush for push notifications. Hosting is provided by SchlundTech, a German hosting provider, and the site is optimized for mobile devices with good SEO and accessibility practices. Performance is moderate, with room for improvement in security headers and accessibility. From a security perspective, the site enforces HTTPS and uses consent management to comply with privacy regulations. However, explicit security headers like CSP and HSTS are not detected, and no public security policy or incident response information is available. No vulnerabilities or exposed sensitive data were found in the analyzed content. The domain registration data is consistent with the business location and operations, indicating a trustworthy and legitimate entity. Overall, the website presents a professional and trustworthy digital presence for a regional news publisher. Strategic improvements in security policies, transparency, and contact information could enhance trust and compliance further.

-
33
17
55
90
65
100
newsregionalmediabavariaallgu+4 more
JavaScriptUsercentrics CMPPiano (Tinypass) paywallStroeer advertising+4

Partner Domains:

veranstaltungen.allgaeuer-zeitung.de
partner
wetter.allgaeuer-zeitung.de
partner

+3 more partners

2025-10-11T09:34:43.521Z
suedkurier.de favicon

SÜDKURIER GmbH Medienhaus

suedkurier.de

55
MediaGermanylargeMEDIUM

SÜDKURIER GmbH Medienhaus operates www.suedkurier.de, a leading regional news website serving the Bodensee, Schwarzwald, and Hochrhein regions in Germany. The site offers comprehensive regional news coverage, subscription-based digital newspaper access, and advertising services. It targets a general audience interested in local and regional news. The business model combines advertising revenue with subscription services, positioning SÜDKURIER as a prominent regional media player with a strong digital presence. Technically, the website employs a modern JavaScript-based tech stack including jQuery, Swiper, and custom CMS frameworks (fcmsJs). It integrates multiple third-party services for analytics (Matomo, Webtrekk), marketing (Usercentrics CMP, Tinypass/Piano), and advertising (Google Ad Manager, Taboola, Stroeer). The site is mobile-optimized with good SEO and accessibility practices, though some accessibility features could be enhanced. From a security perspective, the site enforces HTTPS and uses a consent management platform to comply with GDPR. While explicit security headers are not fully evident, no critical vulnerabilities or exposed sensitive data were found. The absence of a public security policy or incident response contact is noted. Overall, the security posture is solid but could benefit from additional header implementations and transparency. The domain WHOIS data aligns with the business branding and shows no suspicious patterns. The website content is fully accessible without WAF or blocking mechanisms. Privacy and cookie policies are present and comprehensive, supporting GDPR compliance. Contact information is clearly provided, including email, phone, and physical address. Strategic recommendations include enhancing security headers, publishing explicit security policies, and improving accessibility compliance to further strengthen trust and compliance.

15
40
2
60
77
65
100
newsregionalmediasubscriptionadvertising+4 more
JavaScriptjQuerySwiperMatomo Tag Manager+7

Partner Domains:

zeitung.suedkurier.de
subsidiary
leserservice.suedkurier.de
subsidiary

+3 more partners

2025-10-11T09:34:33.485Z
O

Omeda

dragonforms.com

59
TechnologyN/amediumMEDIUM

Dragonforms.com is a domain owned and managed by Omeda, serving primarily as a form hosting URL for Omeda's clients. The website itself is minimalistic, acting as an informational placeholder with links directing users to Omeda's main website and privacy policy. The business operates in the technology and media sectors, focusing on form hosting and data collection services for media clients. The domain age and WHOIS data indicate a legitimate and consistent registration aligned with the business's operational timeline. Technically, the website employs basic web technologies with minimal metadata and structured data. There is no evidence of advanced frameworks or CMS usage. The site lacks cookie policies, terms of service, and contact information, which limits its completeness from a user engagement and compliance perspective. Performance and mobile optimization appear basic but functional given the site's simplicity. From a security standpoint, the domain benefits from clientTransferProhibited status, indicating ownership protection. However, the absence of DNSSEC, security headers, and incident response information suggests room for improvement in security posture. No vulnerabilities or exposed sensitive data were detected, but the lack of cookie consent and security policies reduces privacy compliance. Overall, the website presents a low-risk profile but would benefit from enhanced security practices, improved privacy compliance, and richer content to better serve users and demonstrate professionalism.

40
53
2
60
77
75
100
formhostingomedamediatechnologyprivacypolicy
JSON-LDISO-8859-1 charset
2025-10-11T09:34:08.379Z
yobi.ai favicon

Yobi Ventures, Inc.

yobi.ai

61
TechnologyN/amediumMEDIUM

Yobi Ventures, Inc. is a technology company specializing in AI-driven behavioral intelligence models that leverage large-scale consented consumer data to enable enterprises to anticipate consumer demand and optimize marketing, personalization, and fraud prevention. Positioned as a B2B SaaS provider, Yobi offers a foundation model that integrates with existing customer data to enhance machine learning capabilities and digital experiences. The company targets enterprises across retail, telecommunications, media, and shipping sectors, emphasizing privacy and data protection. The website is built on a modern Webflow CMS platform, utilizing advanced JavaScript libraries such as Typed.js and Rive animations, and integrates Google Analytics and Tag Manager for tracking. Cloudflare Turnstile captcha is employed on forms to prevent automated abuse, indicating a mature approach to security. The site is mobile-optimized, fast-loading, and professionally designed, reflecting a high level of digital maturity. Security posture is strong with HTTPS enforced and no visible vulnerabilities or exposed sensitive data. However, the absence of explicit security headers and incident response information suggests areas for improvement. Privacy compliance is well addressed with clear privacy and cookie policies, including GDPR considerations. WHOIS data is privacy protected but consistent with a legitimate tech business. Overall, Yobi demonstrates a solid security and compliance foundation with room to enhance transparency and incident readiness.

30
53
2
70
72
75
100
aimachinelearningbehavioralintelligencemarketingoptimizationpersonalization+2 more
Webflow CMSGoogle Tag ManagerGoogle Analytics (gtag.js)Typed.js+3
2025-10-11T09:33:28.285Z
P

Porsche

porsche.com

61
TransportationN/aenterpriseMEDIUM

Porsche is a globally recognized premium automotive manufacturer specializing in luxury sports cars, SUVs, and sedans. The analyzed webpage serves as a country and region selector to direct users to localized Porsche websites, supporting a global customer base. The website demonstrates consistent branding and a professional design leveraging modern web technologies such as Angular and the Porsche Design System, indicating a mature digital infrastructure. From a technical perspective, the site uses modern frameworks and modular JavaScript with good mobile optimization and accessibility basics. However, explicit security headers and privacy compliance mechanisms such as cookie consent banners or privacy policies are not present on this page, which could be improved to meet modern compliance standards. The WHOIS data for the domain is unavailable, which is unusual but likely due to privacy protection or registry policies rather than malicious intent. Security posture is moderate with HTTPS implied but no visible security headers or incident response information. No tracking or analytics scripts were detected, suggesting minimal user tracking on this page. Overall, the website is safe, professional, and trustworthy but could enhance privacy and security transparency. Strategic recommendations include implementing comprehensive privacy and cookie policies with consent mechanisms, adding security headers, and publishing incident response contacts to improve compliance and user trust. The domain's legitimacy is supported by brand consistency despite missing WHOIS data.

25
50
2
70
72
90
100
automotiveluxurybrandcountry-selectorporsche+2 more
Angular 18.2.13Porsche Design SystemJavaScript ES ModulesCSS3+1
2025-10-11T09:33:13.260Z
int-comp.org favicon

International Compliance Association

int-comp.org

68
EducationUnited KingdommediumMEDIUM

The International Compliance Association (ICA) is a leading professional body specializing in qualifications, training, and membership services for professionals in Anti Money Laundering (AML), Compliance, Customer Due Diligence (CDD), Sanctions, and Financial Crime Prevention. The organization targets a global regulatory and financial crime compliance community, offering a comprehensive portfolio of educational products and corporate solutions. ICA is positioned as a reputable and established entity within the compliance education sector, supported by its parent company Wilmington PLC. Technically, the ICA website is built on the Umbraco CMS platform and integrates a modern technology stack including Google Tag Manager, multiple analytics and tracking pixels (Google Analytics, TikTok, Twitter, Bing, Crazy Egg, LinkedIn), and marketing tools such as Shareaholic and Cookie Script for consent management. The site demonstrates good performance, mobile optimization, accessibility, and SEO practices, reflecting a mature digital infrastructure. From a security perspective, the website enforces HTTPS with excellent SSL configuration and employs secure forms with validation. While explicit security headers are not fully visible in the HTML content, the site follows best practices including cookie consent mechanisms and no visible exposure of sensitive data. The lack of a published incident response or vulnerability disclosure page is noted as an area for improvement. The domain WHOIS data is privacy protected, but the association with Wilmington PLC and consistent business information supports the domain's legitimacy. Overall, the ICA website presents a low-risk profile with strong business credibility, professional content, and a secure technical foundation. Strategic recommendations include enhancing security header implementation, publishing incident response contacts, and improving transparency on data retention policies to further strengthen trust and compliance posture.

90
68
10
50
57
85
100
complianceeducationfinancialcrimeamltraining+5 more
Google Tag ManagerGoogle Analytics (gtag.js)TikTok PixelTwitter Universal Website Tag+6

Partner Domains:

wilmingtonplc.com
parent
events.int-comp.org
service
2025-10-11T08:32:02.746Z
leasingmarkt.de favicon

LeasingMarkt.de GmbH

leasingmarkt.de

55
TransportationGermanymediumMEDIUM

LeasingMarkt.de GmbH operates Germany's leading online marketplace for auto leasing offers, providing consumers and businesses with a platform to compare leasing deals across all major car brands and models. The website facilitates direct contact with dealers and offers additional services such as leasing takeovers, newsletters, and WhatsApp deal alerts. The company positions itself as a market leader in the transportation sector within Germany, targeting both private and commercial customers seeking flexible leasing options. Technically, the website is built with modern web technologies including JavaScript ES modules, CSS3, and SVG graphics, hosted on Amazon AWS infrastructure. It integrates a sophisticated consent management platform aligned with GDPR requirements, ensuring user privacy and compliance. The site demonstrates good mobile optimization and SEO practices, although some accessibility features could be enhanced. From a security perspective, LeasingMarkt.de enforces HTTPS and employs consent mechanisms for cookie and data processing compliance. However, it lacks explicit security headers and publicly available security policies or incident response contacts, which could be improved to strengthen trust and resilience. No critical vulnerabilities or suspicious patterns were detected in the analysis. Overall, LeasingMarkt.de presents a professional, trustworthy, and user-friendly platform with strong privacy compliance and a solid technical foundation. Strategic enhancements in security transparency and accessibility would further elevate its market standing and user confidence.

15
40
2
65
72
65
100
autoleasingleasingmarketplacecarleasinggermanyautomotive+3 more
JavaScript ES ModulesCSS3HTML5AWS DNS (Amazon Route 53)+2

Partner Domains:

autoscout24.de
partner
leasevergelijker.nl
partner

+2 more partners

2025-10-11T08:31:37.699Z
xyflow.com favicon

xyflow

xyflow.com

60
TechnologyGermanysmallMEDIUM

xyflow is a small Berlin-based technology company specializing in the development and maintenance of open source libraries for building node-based user interfaces with React and Svelte. Their flagship products, React Flow and Svelte Flow, are widely adopted by developers and companies such as Stripe and Typeform, positioning xyflow as a key player in the niche of interactive diagram and workflow UI components. The company operates an informative and professionally designed website that serves both as a marketing platform and a community hub. Technically, the website is built using modern web technologies including Next.js, React, and Svelte, hosted on alwaysdata.com. It demonstrates excellent performance, mobile optimization, and SEO practices. The site integrates minimal user tracking via Fathom Analytics, respecting user privacy without intrusive cookie consent mechanisms. The technical infrastructure reflects a mature digital presence suitable for a small but focused software development team. From a security perspective, the site enforces HTTPS and employs domain transfer protection. However, it lacks some advanced security headers and does not publicly disclose a security policy or incident response contacts. No vulnerabilities or suspicious activities were detected in the content or WHOIS data. The domain registration is consistent with the company's history and transparent, enhancing trustworthiness. Overall, xyflow presents a low-risk profile with a strong business credibility and technical foundation. Strategic improvements in security headers, cookie consent, and public security policies would further enhance their security posture and compliance standing.

30
53
2
55
72
80
100
xyflownode-baseduireactsvelteopensource+5 more
ReactSvelteNext.jsJavaScript+1

Partner Domains:

reactflow.dev
partner
svelteflow.dev
partner
2025-10-11T08:31:32.691Z
porscheholding-newsroom.at favicon

Porsche Holding

porscheholding-newsroom.at

68
TransportationAustriaenterpriseMEDIUM

Porsche Holding newsroom is a corporate communication platform operated by Porsche Holding, a leading automotive distributor and service provider based in Austria. The website serves as a media hub offering press releases, news stories, press contacts, and a newsletter subscription service targeted at media representatives, journalists, bloggers, and the online community. The platform is professionally designed and well-structured, reflecting the company's strong market position in the transportation sector. Technically, the website is built on TYPO3 CMS with Tailwind CSS for styling and integrates modern analytics and marketing tools such as Google Tag Manager, eTracker, and Signalize. It features GDPR-compliant privacy and cookie policies with active consent mechanisms, ensuring compliance with European data protection regulations. The site is mobile optimized and accessible, providing a good user experience. From a security perspective, the website enforces HTTPS and includes cookie consent but lacks explicit security headers and a public security policy or incident response contact. No vulnerabilities or exposed sensitive data were detected in the HTML content. The absence of WHOIS data due to quota limits restricts domain registration verification, but the website's branding and content strongly indicate legitimacy. Overall, the website presents a secure, compliant, and professional digital presence for Porsche Holding's corporate communications. Strategic improvements include adding security headers, publishing a security policy, and providing incident response contacts to enhance trust and security posture.

70
88
2
60
72
75
100
automotivenewsroomcorporatecommunicationmediapress+2 more
TYPO3 CMSTailwind CSSGoogle Tag ManagereTracker+1
2025-10-11T08:31:27.680Z
autostadt.de favicon

Autostadt GmbH

autostadt.de

71
TransportationGermanylargeMEDIUM

Autostadt GmbH operates a prominent automotive visitor attraction and brand experience center located in Wolfsburg, Germany. The website serves as a comprehensive portal for visitors, offering information on vehicle pick-up, events, educational programs, hospitality services, and corporate information. The company targets a broad audience including families, automotive enthusiasts, educational groups, and business clients. The business model integrates experiential marketing, education, and hospitality services, positioning Autostadt as a leading destination in the automotive and transportation sector. Technically, the website is built on the Liferay CMS platform, utilizing modern web technologies such as jQuery and SVG graphics. Hosting is supported by Azure CDN, ensuring good performance and availability. The site is mobile-optimized and accessible, with clear navigation and SEO-friendly metadata. Cookie consent mechanisms and privacy policies demonstrate compliance with GDPR requirements. From a security perspective, the site enforces HTTPS and employs a cookie consent modal for user privacy. However, no explicit security headers were detected in the HTML source, and no dedicated incident response or vulnerability disclosure information is published. No vulnerabilities or exposed sensitive data were found in the provided content. Overall, the security posture is solid but could be enhanced by adding security headers and a security.txt file. The domain WHOIS data is minimal but consistent with a legitimate German hosting provider. The lack of detailed registrant information slightly reduces trust but does not raise suspicion. The website content is safe for general audiences, with no adult or questionable material. Social media presence and multiple contact channels enhance business credibility. Strategic recommendations include improving security header implementation, publishing incident response contacts, and enhancing transparency around vulnerability disclosures to strengthen trust and compliance.

80
68
17
75
82
65
100
automotivevisitorattractioneducationeventshospitality+1 more
jQueryLiferay PortalCSS3HTML5+1

Partner Domains:

autostadt.regiondo.de
partner
jobs.volkswagen-group.com
partner

+1 more partners

2025-10-11T08:31:07.639Z
sikovnarezerva.sk favicon

ELET, s.r.o

sikovnarezerva.sk

59
FinanceSlovakiasmallMEDIUM

Šikovná rezerva is an online insurance service based in Slovakia, offering insurance coverage for household monthly bill payments in case of job loss or long-term sick leave. The service is provided in partnership with MetLife Slovensko and operated by ELET, s.r.o. The website targets Slovak residents seeking affordable and simple insurance solutions, emphasizing mobile-first contract and payment processes. The business model relies on monthly SMS payments and electronic contracts, positioning itself as a niche player in the Slovak insurance market. The website content is professionally presented in Slovak language with clear navigation and client testimonials enhancing trust. Technically, the site uses modern web technologies including Bootstrap, jQuery, Google Tag Manager, Google Analytics, Facebook Pixel, and Hotjar for analytics and marketing. Hosting and DNS are managed via Cloudflare, providing robust infrastructure and SSL encryption. Security posture is good with HTTPS enforced and no visible sensitive data exposure, but lacks some security headers and explicit cookie consent mechanisms, which are recommended for full GDPR compliance. Contact information is clearly provided with company email and phone number. Overall, the website is well-structured, trustworthy, and professionally maintained, though improvements in privacy compliance and security policies would enhance its posture.

60
10
2
65
72
85
100
insurancefinanceslovakiamobileinsurancemetlife+1 more
BootstrapjQueryGoogle Tag ManagerGoogle Analytics+2

Partner Domains:

metlife.sk
partner
elet.sk
partner
2025-10-11T08:30:22.462Z
floriankarsten.com favicon

Florian Karsten Studio

floriankarsten.com

50
TechnologyCzech RepublicsmallMEDIUM

Florian Karsten Studio is a small creative technology business based in Brno, Czech Republic, specializing in graphic design, UX, and development services. The studio emphasizes open-source projects, peer-to-peer networks, and automation, targeting clients interested in independent and functional digital systems. The website presents a professional portfolio with clear branding and a focus on design and technology integration. Technically, the website uses modern web technologies including HTML5, CSS, JavaScript, and libraries such as jQuery and Slick Carousel. Hosting and DNS are managed via Cloudflare and NameCheap, ensuring reliable performance and security. The site is mobile optimized and includes privacy-respecting analytics via Plausible. However, there is room for improvement in accessibility and security headers. From a security perspective, the site enforces HTTPS and uses domain transfer protection, but lacks DNSSEC and security headers which are recommended for enhanced protection. No privacy or cookie policies are present, indicating compliance gaps with GDPR and other privacy regulations. No forms or sensitive data collection mechanisms reduce risk exposure. Overall, the security posture is moderate but could be strengthened with additional policies and technical controls. The overall risk is low given the nature of the business and website content, but strategic improvements in privacy compliance and security best practices are advised to enhance trust and regulatory adherence.

25
50
2
55
72
75
40
graphicdesignuxdevelopmentopen-sourcepeer2peer+2 more
HTML5CSSJavaScriptjQuery+3

Partner Domains:

fonts.floriankarsten.com
service
karsten.systems
service
2025-10-11T08:30:12.365Z