Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157327
Websites
130
Industries
113
Countries
52
Avg Score
Page 115 of 408|Showing 5701-5750 of 20394
B

Bento

bentonow.com

75
TechnologyUnited StatessmallMEDIUM

Bento is a technology company offering a comprehensive email marketing and CRM platform tailored for small businesses. Founded in 2019, Bento provides an all-in-one solution that includes marketing automation, transactional email services, AI-powered CRM features, and spam protection. The company positions itself as a user-friendly and developer-friendly platform with strong deliverability and enterprise-grade security, evidenced by its SOC 2 Type II compliance. The website reflects a modern, professional brand with clear messaging and a focus on ease of use and integration capabilities. Technically, Bento's website is built using modern web technologies including React and Next.js, hosted with Cloudflare DNS and leveraging cloud media services. The site is fast, mobile-optimized, and accessible, with good SEO practices and structured data enhancing search visibility. Security best practices are observed with HTTPS enforcement, security headers, and domain registration protections, although DNSSEC is not enabled. Privacy compliance is an area for improvement as no explicit privacy or cookie policies are present. From a security perspective, Bento demonstrates a mature posture with SOC 2 Type II certification and features like Spam Shield to maintain email list hygiene. No vulnerabilities or exposed sensitive data were detected in the analysis. However, the absence of published security policies, incident response contacts, and vulnerability disclosure mechanisms suggests room for enhancing transparency and readiness. Overall, Bento presents a trustworthy and professional online presence with strong technical and security foundations. To further improve, the company should address privacy compliance gaps, publish comprehensive policies, and enhance contact options to build greater user trust and regulatory adherence.

30
85
55
85
75
85
100
emailmarketingmarketingautomationcrmsmallbusinesstransactionalemail+2 more
ReactNext.jsCloudflare DNSJavaScript+2
2025-10-12T18:54:40.137Z
iprpraha.cz favicon

Institut plánování a rozvoje hlavního města Prahy

iprpraha.cz

46
GovernmentCzech RepublicmediumHIGH

Institut plánování a rozvoje hlavního města Prahy (IPR Praha) is the primary conceptual and planning institution for the city of Prague, focusing on architecture, urbanism, and city development. The organization holds a strong market position as the authoritative body for urban planning in Prague, offering services such as metropolitan planning, urban data analytics, and public engagement through its CAMP center. The website reflects a mature digital presence with comprehensive content tailored to residents, city officials, and professionals in urban development. Technically, the website employs modern JavaScript modules, integrates Google Analytics and Tag Manager for tracking, and uses Google reCAPTCHA v3 for bot mitigation. The site is mobile-optimized, accessible, and SEO-friendly, hosted under a reputable Czech registrar. Privacy compliance is well addressed with cookie consent mechanisms and a detailed privacy policy. Security posture is solid with HTTPS enforced and no visible vulnerabilities or exposed sensitive data. However, the absence of explicit security policies or incident response contacts suggests room for improvement in transparency and readiness. Overall, the site is trustworthy, professional, and well-maintained, supporting the organization's public service mission effectively.

45
10
17
65
42
85
20
urbanismplanninggovernmentpraguedevelopment+3 more
JavaScript ES6 modulesGoogle Tag ManagerGoogle AnalyticsGoogle reCAPTCHA v3+3

Partner Domains:

praha.camp
partner
www.geoportalpraha.cz
partner
2025-10-12T18:54:10.070Z
pumpparty.com favicon

PumpParty - Goon for Cash

pumpparty.com

61
TechnologyN/asmallMEDIUM

PumpParty is a newly launched skill-based gaming platform targeting a Gen-Z audience interested in mobile games and live competitions for cash prizes. The website promotes weekly live gameshows and skill-based trading games accessible via a mobile app. The business model centers on engaging users through skill rather than luck, positioning itself in a niche market of competitive gaming. Technically, the website employs modern web standards with HTML5, CSS3, and JavaScript, and integrates PostHog analytics for user behavior tracking. Hosting and DNS services leverage Cloudflare infrastructure, providing reliable performance and DNS management. The site is mobile-optimized with smooth animations and responsive design, though accessibility features are basic. From a security perspective, the site uses HTTPS and has domain status protections to prevent unauthorized transfers or deletions. However, no security headers were detected, and DNSSEC is not enabled, representing areas for improvement. The absence of privacy, cookie, and terms of service policies, as well as lack of contact information, reduces compliance and trustworthiness. No forms or user input fields were found, limiting attack surface but also indicating limited direct user data collection on the site. Overall, the website is functional and professionally designed but lacks critical compliance and security disclosures. The domain is very new, consistent with a startup phase. Strategic recommendations include implementing privacy and cookie policies, adding security headers, enabling DNSSEC, and providing clear contact and incident response information to enhance trust and compliance.

15
50
2
85
100
70
100
skill-basedgaminglivegameshowsmobileappcashprizesgaming+1 more
HTML5CSS3JavaScriptPostHog Analytics+1
2025-10-12T17:48:45.616Z
js.org favicon

JS.ORG

js.org

58
TechnologyN/asmallMEDIUM

JS.ORG is a niche technology service providing free subdomains under js.org for JavaScript developers hosting projects on GitHub Pages. The website serves as a community hub and resource for developers to obtain a sleek, free URL for their projects, emphasizing a clear connection to JavaScript. The business model is community-driven and open source, with no direct monetization evident beyond advertising and donations. The site enjoys a strong reputation within its niche, supported by a popular GitHub repository and active social media presence. Technically, JS.ORG employs modern web standards with HTML5, CSS3, and JavaScript, leveraging Cloudflare DNS and GitHub Pages for hosting user projects. The site is performant, mobile-optimized, and SEO-friendly, though accessibility is basic. Security is adequate with HTTPS enforced and domain transfer protections in place, but lacks DNSSEC and security headers, representing areas for improvement. Security posture is moderate; no critical vulnerabilities or exposed sensitive data were detected. However, the absence of DNSSEC, security headers, and a vulnerability disclosure policy limits the security maturity. Privacy compliance is basic with a privacy policy present but no cookie consent mechanism. Contact information is minimal, which may impact user trust and support. Overall, JS.ORG is a trustworthy, well-maintained community resource with good technical foundations but could enhance security and privacy practices to align with best practices and regulatory expectations.

15
53
2
70
65
80
100
javascriptdevelopergithubpagesfreehostingopensource
HTML5CSS3JavaScriptCloudflare DNS+1
2025-10-12T17:44:52.993Z
aidepot.co favicon

AI Depot

aidepot.co

51
TechnologyN/asmallMEDIUM

AI Depot operates as a specialized online directory and discovery platform for new AI tools, targeting AI enthusiasts, startups, and professionals interested in AI technologies. The website offers curated listings of AI tools, sponsored placements, event promotions, and a newsletter subscription service to engage its audience. Its market position is niche-focused, providing value through aggregation and community engagement within the AI ecosystem. Technically, the website employs modern web standards including HTML5, CSS3, Google Fonts, and Font Awesome icons. It leverages third-party services such as ConvertKit for newsletter management and Google Analytics alongside Cloudflare Insights for traffic analysis. The site is hosted behind Cloudflare, enhancing performance and security. Mobile optimization and responsive design are well implemented, though accessibility features are basic and could be improved. From a security perspective, the site enforces HTTPS and avoids exposing sensitive data. However, it lacks explicit security headers and published security or incident response policies. Privacy compliance is partial; while a privacy policy and terms of service exist, there is no cookie consent mechanism, which may impact GDPR compliance. The site uses third-party scripts that should be regularly audited for vulnerabilities. Overall, AI Depot presents a moderate risk profile with good business credibility and technical implementation but with room for improvement in privacy compliance and security best practices. Strategic recommendations include implementing cookie consent, enhancing security headers, publishing security policies, and improving accessibility to strengthen trust and compliance.

30
53
2
70
-
75
100
aiartificialintelligenceaitoolstechnologystartup+3 more
HTML5CSS3Font AwesomeGoogle Fonts+2

Partner Domains:

inventive.ai
partner
ai-chat.it
partner

+3 more partners

2025-10-12T16:43:29.937Z
kons.fyi favicon

Kons

kons.fyi

60
TechnologyN/asmallMEDIUM

Kons is a small independent design agency focused on creative digital design and experimentation. The website serves as a minimalist personal landing page highlighting 13 years of design experience and links to related projects and social media. The business model centers on providing unique design perspectives rather than generic solutions, targeting clients seeking usability combined with aesthetics. The market position is that of a boutique design practitioner with a clear value proposition. Technically, the website employs modern web technologies including HTML5, CSS3, JavaScript, Lottie animations for interactive elements, and Umami analytics for privacy-focused user tracking. The site is mobile optimized with good design quality and basic accessibility features. However, no CMS or hosting provider details are evident, and performance is moderate. From a security perspective, the site uses HTTPS as indicated by canonical URLs, but no explicit security headers are detected. There are no forms or inputs, reducing attack surface, but the absence of privacy and cookie policies, contact information, and security disclosures limits compliance and trust. WHOIS data is unavailable due to TLD restrictions and privacy protections, which is common for small personal domains but reduces transparency. Overall, the website is professional and safe for general audiences but lacks comprehensive privacy and security documentation. Strategic improvements in security headers, privacy compliance, and contact transparency would enhance trust and compliance posture.

30
50
2
65
75
85
100
designagencydigitalcreativepersonal+1 more
HTML5CSS3JavaScriptWebFont Loader+3
2025-10-12T16:40:52.139Z
lauraedwards.net favicon

LAURA EDWARDS

lauraedwards.net

56
OtherUnited KingdomsmallMEDIUM

The website www.lauraedwards.net is a personal portfolio site primarily showcasing photography and lifestyle content. It is hosted on the Squarespace platform, leveraging modern web technologies such as Typekit fonts and Google Fonts, with a responsive design optimized for mobile devices. The site presents a professional and consistent branding experience aimed at a general audience interested in visual arts and lifestyle imagery. However, the business model appears to be individual or small-scale personal branding without explicit commercial services or e-commerce functionality. From a technical perspective, the site is built on a stable and widely used CMS platform (Squarespace), ensuring reliable hosting and performance. The site uses HTTPS with a valid SSL certificate, enhancing security and user trust. However, there is a lack of advanced security headers and no visible analytics or tracking scripts, which may limit insights into user behavior but also reduces privacy concerns. Security posture is moderate; while HTTPS is enforced, the absence of security headers and privacy policies indicates room for improvement in compliance and protection. The WHOIS data for the domain is unavailable, which is unusual and reduces the trustworthiness of the domain registration. This discrepancy suggests either recent registration, privacy protection, or data unavailability, which should be further investigated. Overall, the website is functional and visually appealing but lacks critical compliance documentation such as privacy and cookie policies. The absence of WHOIS data and security policies lowers the overall risk profile. Strategic recommendations include implementing security headers, publishing privacy and cookie policies, and clarifying domain registration details to enhance trust and compliance.

35
35
17
55
62
75
100
portfoliophotographypersonalsquarespacelifestyle
SquarespaceTypekit fontsGoogle FontsJavaScript+2
2025-10-12T16:36:32.742Z
ontoplist.com favicon

OnToplist.com

ontoplist.com

58
MediaUnited StatessmallMEDIUM

OnToplist.com operates as a specialized online directory platform focusing on categorizing and listing blogs and local businesses primarily within the United States. The platform offers users an extensive, human-curated directory to discover quality blogs across various niches such as digital tech, health, law, and lifestyle, as well as local business listings including digital agencies, law firms, and other service providers. The business model includes paid listing options to enhance online visibility for businesses and bloggers. The website has been operational since 2006, positioning itself as a niche media directory with a focus on quality and user engagement. Technically, the website employs modern web standards including HTML5, CSS3, and JavaScript with AJAX-powered forms and search autocomplete features. It uses HTTPS with a valid SSL certificate ensuring secure data transmission. The site is mobile responsive and optimized for good user experience and SEO, although some accessibility features could be improved. The technical infrastructure appears moderate in performance with no evident CMS or hosting provider disclosed. From a security perspective, the site demonstrates good practices such as CSRF token implementation in forms and secure login mechanisms. However, it lacks explicit security headers and a cookie consent mechanism, which are important for GDPR compliance and enhanced security posture. The absence of WHOIS data for the domain raises concerns about domain registration transparency and trustworthiness, although the website content and structure suggest a legitimate business operation. Overall, OnToplist.com presents a professional and functional directory service with a solid content offering and user interface. The main risks relate to domain registration opacity and minor compliance gaps. Strategic improvements in security headers, privacy consent, and domain transparency would enhance trust and compliance.

25
53
17
65
52
75
100
blogdirectorybusinesslistingslocalbusinessesusbusinessesseo+3 more
HTML5CSS3JavaScriptFetch API+1
2025-10-12T14:18:36.615Z
ncl.com favicon

Norwegian Cruise Line

ncl.com

71
TransportationN/alargeMEDIUM

Norwegian Cruise Line operates a comprehensive online platform offering cruise vacations to various global destinations including Alaska, the Caribbean, Europe, and more. The website targets general consumers interested in leisure travel and provides extensive services such as cruise booking, shore excursions, onboard experiences, and travel protection. The company holds a strong market position as a major global cruise line with a well-established brand and a large-scale business model. Technically, the website employs a modern technology stack including JavaScript frameworks, Adobe Dynamic Tag Manager, and Akamai CDN services, ensuring good performance and mobile optimization. The use of service workers and advanced analytics tools reflects a mature digital infrastructure. The site is well-structured with comprehensive SEO and accessibility features. From a security perspective, the website enforces HTTPS, includes key security headers, and avoids exposing sensitive data. However, it lacks publicly available security policies and incident response contacts, and does not provide a vulnerability disclosure program or security.txt file. The absence of WHOIS data is a notable anomaly but does not significantly detract from the overall legitimacy given the professional presentation and compliance with privacy regulations. Overall, the website presents a low-risk profile with strong business credibility and technical maturity. Strategic recommendations include publishing explicit security policies, implementing a vulnerability disclosure program, and enhancing transparency around incident response to further strengthen trust and security posture.

85
58
2
85
72
85
100
cruisetravelvacationsholidaybooking+1 more
JavaScriptAdobe DTM (Dynamic Tag Manager)Akamai Service WorkerMotionPoint (for multilingual content)+2
2025-10-12T13:14:02.327Z