Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

156665
Websites
130
Industries
113
Countries
52
Avg Score
Page 1160 of 3134|Showing 57951-58000 of 156665
S

Shopify

foxkit.app

60
E-commerceN/aenterpriseMEDIUM

The analyzed URL is a security verification page hosted on accounts.shopify.com, protected by Cloudflare's Web Application Firewall (WAF) and Turnstile captcha. This page acts as a gatekeeper to verify user connections before allowing access to the actual login or account services. Shopify is a leading e-commerce platform provider, offering SaaS solutions for merchants to create and manage online stores globally. However, this specific page contains minimal content and no direct business or policy information, reflecting its purpose as a security checkpoint rather than a content page. Technically, the page leverages Cloudflare's security infrastructure, including bot mitigation via Turnstile captcha, but lacks visible SEO metadata, structured data, or accessibility features. The absence of privacy, cookie, or terms of service links on this page is expected given its function but limits direct compliance assessment. No forms or data collection fields are present except a hidden captcha response input, indicating minimal data exposure risk at this stage. From a security perspective, the use of Cloudflare WAF and captcha indicates a strong posture against automated attacks and abuse. However, the lack of visible security headers and policy documents on this page reduces transparency. The WHOIS data for the subdomain accounts.shopify.com is unavailable, which is typical for subdomains managed under a parent domain with privacy or delegation. This does not raise legitimacy concerns given Shopify's established reputation. Overall, the page is secure but inaccessible for full content or compliance analysis due to the WAF challenge. Strategic recommendations include providing accessible policy documents on related pages, enhancing security header implementation, and ensuring comprehensive privacy compliance disclosures on user-facing pages.

65
35
17
100
52
85
100
e-commercesecurity-challengecloudflarecaptchashopify
CloudflareJavaScriptTurnstile Captcha
2025-10-10T12:12:03.988Z
hockeystack.com favicon

HockeyStack

hockeystack.com

75
TechnologyN/amediumMEDIUM

HockeyStack is a B2B SaaS analytics platform focused on providing GTM (Go-To-Market) intelligence that connects marketing and revenue data to help teams track attribution, pipeline, and ROI. The company targets marketing leaders, sales leaders, demand generation, and marketing operations professionals, positioning itself as a comprehensive solution for integrated marketing and sales analytics. The website demonstrates a strong market presence with customer logos, case studies, and a recent $20M Series A funding announcement, indicating growth and investor confidence. Technically, the website is built on Webflow CMS and leverages a modern tech stack including Google Analytics, Google Tag Manager, Facebook Pixel, Reddit Pixel, Microsoft Clarity, CrazyEgg, Hotjar, Leadfeeder, Ahrefs, and custom HockeyStack tracking scripts. The site is well-optimized for performance, mobile responsiveness, accessibility, and SEO, reflecting a mature digital infrastructure. From a security perspective, the site enforces HTTPS with redirection and uses multiple reputable third-party analytics and tracking services. However, explicit security headers like X-Frame-Options and Referrer-Policy are not clearly present in the HTML, and no dedicated security or incident response policies are published. The absence of WHOIS data for the domain is a notable anomaly, reducing trust slightly despite the professional appearance and content. Overall, HockeyStack presents a professional and trustworthy online presence with extensive marketing and analytics integration. The main risk lies in the lack of WHOIS transparency and limited published security policies. Strategic recommendations include enhancing security header implementation, publishing security and incident response information, and considering a vulnerability disclosure program to strengthen trust and compliance.

70
95
17
85
65
85
100
analyticsmarketingb2bsaasgtm+3 more
Webflow CMSGoogle Tag ManagerGoogle Analytics (gtag.js)Facebook Pixel+10
2025-10-10T12:11:53.963Z
speedkom.info favicon

ID.KOM

speedkom.info

65
TechnologyGermanymediumMEDIUM

ID.KOM is a well-established IT service provider based in Germany with over 30 years of experience specializing in IT outsourcing, cloud services, managed hosting, telecommunications, and IT security. The company targets medium-sized businesses primarily in the Allgäu region and operates its own ISO 27001 certified data centers, emphasizing security and reliability. Their service portfolio includes comprehensive IT solutions such as Microsoft 365, VPN access, server storage, and telecommunication systems, supported by a professional service desk and multiple contact channels. Technically, the website is built on WordPress using the Divi theme and integrates modern technologies like Gravity Forms, Google Tag Manager, and Borlabs Cookie for GDPR-compliant cookie management. The site demonstrates good performance, mobile optimization, and SEO practices, reflecting a mature digital presence. Hosting appears to be managed by Speedkom, consistent with the DNS information. From a security perspective, the company maintains a strong posture with HTTPS enforcement, ISO 27001 certification, and use of security headers. However, there is no public vulnerability disclosure policy or explicit incident response contact, which could be improved. Privacy compliance is well addressed with clear privacy and cookie policies and consent mechanisms. Overall, ID.KOM presents a trustworthy and professional business with a solid technical foundation and security awareness. The domain registration data aligns well with the website content, reinforcing legitimacy. Strategic enhancements in transparency around incident response and vulnerability disclosure would further strengthen their security posture.

30
48
30
83
70
75
100
itservicesclouddatacenteriso27001managedservices+3 more
WordPressDivi ThemeGravity FormsjQuery+5

Partner Domains:

connexta.de
parent
2025-10-10T12:11:48.954Z
graftik.com favicon

Graftik Solutions

graftik.com

49
TechnologyLatviasmallHIGH

Graftik Solutions is a Riga, Latvia-based design studio specializing in digital design, branding, web development, and multimedia services. The company positions itself as a leading design studio in the Baltic region, serving brands and organizations with tailored digital design solutions. Their portfolio includes notable clients such as Luminor and Apple, indicating a strong market presence and reputable partnerships. The website content is professionally presented with clear navigation and consistent branding, targeting businesses seeking comprehensive digital design services. Technically, the website employs modern JavaScript libraries including jQuery and GSAP for animations, and integrates Google Tag Manager, Google Analytics, and Facebook Pixel for analytics and marketing. Hosting is provided by Linode, a reputable provider. The site is mobile optimized and uses HTTPS with a good SSL configuration. However, no explicit security headers were detected in the provided data, and no CMS or backend platform was identified. From a security perspective, the site demonstrates good practices such as HTTPS enforcement and cookie consent mechanisms compliant with GDPR. There are no visible vulnerabilities or exposed sensitive data. However, the absence of detailed security policies, incident response contacts, and security.txt files suggests room for improvement in transparency and incident readiness. The WHOIS data aligns with the website's claims, showing consistent domain registration and hosting information. Overall, the website is professional, secure, and compliant with privacy regulations, with a strong business credibility score. Strategic recommendations include enhancing security headers, publishing security policies, and improving accessibility features to further strengthen the security posture and user trust.

55
43
2
55
72
65
20
designbrandingwebdevelopmentdigitaldesignriga+1 more
jQueryGSAP (TweenMax)Google Tag ManagerGoogle Analytics+2

Partner Domains:

dnb.lv
partner
apple.com
partner

+3 more partners

2025-10-10T12:11:33.511Z
M

Meta

messenger.com

70
TechnologyN/aenterpriseMEDIUM

Messenger.com is the official web platform for Meta's Messenger service, a leading global instant messaging and communication tool integrated with Facebook. The website offers users the ability to connect with friends and family through text, voice, and video, supporting community building and social interaction. The platform targets a broad general audience and operates under the Meta corporate umbrella, reflecting a mature and enterprise-level business model. Technically, the website employs modern web technologies including React and Facebook's proprietary BigPipe framework, ensuring fast performance and excellent mobile optimization. The infrastructure is hosted on Meta's own robust infrastructure, providing high availability and scalability. The site demonstrates good SEO and accessibility practices, with comprehensive metadata and multi-language support. From a security perspective, the site enforces HTTPS, uses secure login forms with encrypted password submission, and includes standard security headers. However, explicit cookie consent mechanisms and dedicated security policy pages are not evident, suggesting room for improvement in privacy compliance and incident response transparency. No vulnerabilities or exposed sensitive data were detected in the analyzed content. Overall, messenger.com presents a highly professional, trustworthy, and secure platform consistent with Meta's brand. The absence of WHOIS data is likely due to privacy protection and does not detract significantly from the site's legitimacy. Strategic recommendations include enhancing privacy compliance with explicit consent mechanisms, publishing security and incident response information, and providing clearer contact channels for security matters.

70
88
2
85
42
90
100
messagingsocialcommunicationmetafacebook+2 more
ReactJavaScriptCSSBigPipe+2

Partner Domains:

facebook.com
parent
2025-10-10T11:11:06.257Z
S

Staatssekretariat für Bildung, Forschung und Innovation SBFI

berufsbildungplus.ch

61
EducationSwitzerlandmediumMEDIUM

BerufsbildungPlus.ch is a Swiss government-backed platform operated by the Staatssekretariat für Bildung, Forschung und Innovation (SBFI) to promote vocational education and training for adults and youth. The website serves as an informational and community hub, providing resources, news, and engagement opportunities related to apprenticeships and vocational pathways in Switzerland. It holds a strong market position as an official government initiative with clear branding and trust signals. Technically, the website uses a modern JavaScript stack including jQuery, Modernizr, and the Foundation framework, with Matomo analytics hosted on a Swiss domain, reflecting a privacy-conscious approach. The site is mobile optimized and well-structured, though some accessibility features could be improved. Performance is moderate with good SEO practices. From a security perspective, the site enforces HTTPS and avoids exposing sensitive data. However, it lacks several security headers and does not provide explicit security policies or incident response information. No vulnerability disclosure or security.txt file is present. Privacy compliance is partial, with a privacy policy present but no cookie consent mechanism. Overall, the website is trustworthy and professional with a solid business credibility score. Recommendations include enhancing security headers, implementing cookie consent, and publishing security and incident response policies to improve compliance and security posture.

40
53
2
75
62
75
100
educationvocationaltraininggovernmentswitzerlandsbfi+1 more
jQueryModernizrFoundation frameworkMatomo Analytics

Partner Domains:

www.sbfi.admin.ch
partner
2025-10-10T11:09:00.191Z
spital-emmental.ch favicon

Regionalspital Emmental AG

spital-emmental.ch

59
HealthcareSwitzerlandmediumMEDIUM

Spital Emmental AG operates as a regional hospital in Switzerland with two main locations in Burgdorf and Langnau. The hospital provides a broad spectrum of healthcare services including emergency care, specialized medical departments, patient and visitor services, and additional comfort options for insured patients. The website targets patients, visitors, healthcare professionals, and referring physicians, positioning itself as a trusted regional healthcare provider. The company maintains a professional online presence with clear contact information, certifications, and active social media engagement. Technically, the website employs a modern technology stack including jQuery, Font Awesome, and various analytics and marketing tools such as Google Analytics, HubSpot, and Siteimprove. The site is mobile optimized with a responsive design and good SEO practices. Security measures include HTTPS enforcement and a Content Security Policy, although additional security headers could enhance protection. Privacy compliance is well addressed with comprehensive privacy and cookie policies and consent mechanisms. The security posture is solid with no evident vulnerabilities in the HTML content. However, the use of multiple third-party scripts suggests a need for ongoing privacy and security reviews. The domain registration details are consistent with the hospital's identity, supporting the legitimacy and trustworthiness of the website. Overall, the site demonstrates a good balance of business credibility, technical implementation, and privacy compliance, making it a reliable resource for its audience.

80
68
2
70
62
85
20
healthcarehospitalpatientservicesemergencymedical+2 more
jQueryjQuery UIFont AwesomeSlick Carousel+5

Partner Domains:

live.solique.ch
partner
kita-aemmehuepfer.ch
partner

+1 more partners

2025-10-10T11:08:55.183Z
F

FISCHER Spindle Group AG

fischerspindle.com

72
ManufacturingSwitzerlandmediumMEDIUM

FISCHER Spindle Group AG is a Swiss-based international technology leader specializing in the development and manufacturing of high-precision rotary products including milling spindles, grinding spindles, milling heads, and high-speed turbo compressors. The company emphasizes in-house production and quality control, serving a global industrial and manufacturing audience. Their website reflects a mature digital presence built on TYPO3 CMS, integrating modern technologies such as Google Analytics, reCAPTCHA, and Cookiebot for privacy compliance. The site is professionally designed, mobile-optimized, and provides comprehensive content including product information, news, events, and contact forms with CAPTCHA protection. Security posture is strong with HTTPS enforced and privacy mechanisms in place, though explicit security headers and incident response policies are not published. WHOIS data is missing, which raises some concerns about domain registration transparency, but the overall business credibility is supported by consistent branding, ISO certification, and active social media channels. Strategic recommendations include enhancing security headers, publishing a security policy, and improving domain registration transparency.

90
83
17
85
52
70
100
technologymanufacturingprecisionengineeringspindlesindustrial+4 more
TYPO3 CMSGoogle AnalyticsGoogle reCAPTCHACookiebot+2

Partner Domains:

connect.fischerspindle.com
service
2025-10-10T11:08:50.174Z
onelink.me favicon

AppsFlyer

onelink.me

73
TechnologyN/aenterpriseMEDIUM

AppsFlyer is a leading enterprise technology company specializing in mobile attribution and marketing analytics solutions. Their platform focuses on enhancing customer experience and engagement through advanced deep linking tools, enabling marketers and app developers to optimize mobile campaigns effectively. The company positions itself as a trusted partner in the mobile marketing ecosystem, offering comprehensive analytics and attribution services to a global audience. Technically, the website is built on WordPress with a modern tech stack including Yoast SEO, Google Tag Manager, Mixpanel, and OneTrust for cookie consent management. The site demonstrates good digital maturity with responsive design, SEO optimization, and integration of marketing automation tools. Performance is moderate with room for improvement in accessibility features. From a security perspective, the site enforces HTTPS, uses reCAPTCHA on forms, and implements cookie consent mechanisms aligned with GDPR. While some security headers are not explicitly detected, the overall posture is strong with no visible vulnerabilities or exposed sensitive data. The lack of public WHOIS data suggests privacy protection, which is justified for this business type. Overall, the website presents a professional, trustworthy, and secure front for AppsFlyer, supporting their market position as a top mobile marketing analytics provider. Strategic recommendations include enhancing security headers, publishing a security.txt file, and continuous monitoring of third-party scripts to maintain security and compliance.

55
88
17
85
72
85
100
mobilemarketingdeeplinkingcustomerexperienceattributionanalytics+2 more
WordPressYoast SEOGoogle Tag ManagerMixpanel+4
2025-10-10T11:08:40.158Z
G

GeneratePress

generatepress.com

60
TechnologyN/amediumMEDIUM

GeneratePress is a well-established provider of lightweight, high-performance WordPress themes and tools, targeting a broad audience including hobbyists, freelancers, agencies, and small businesses. The company offers a suite of products including a WordPress theme, a block-based page builder, starter sites, pattern libraries, and cloud hosting for pattern libraries. With over 6 million downloads and 100,000+ customers, GeneratePress holds a strong market position in the WordPress ecosystem. The business operates under EDGE22 Studios LTD and has been active since 2014. Technically, the website is built on WordPress 6.8.3, utilizing modern plugins such as Yoast SEO, Easy Digital Downloads for commerce, and Stripe for payment processing. The site is optimized for performance, accessibility, and SEO, with a mobile-responsive design and clean code. DNS is managed via Cloudflare, though DNSSEC is not enabled. Analytics are handled via Fathom Analytics, and affiliate marketing is supported through Affiliate WP. From a security perspective, the site enforces HTTPS, uses domain status locks to prevent unauthorized changes, and employs plugins to mitigate user enumeration attacks. However, there is room for improvement by enabling DNSSEC, adding security headers, and publishing explicit security policies and incident response procedures. Privacy compliance is partially addressed with a comprehensive privacy policy and terms of service, but lacks a cookie consent mechanism. Overall, GeneratePress presents a professional, trustworthy, and technically sound web presence with a high level of business credibility. Strategic recommendations include enhancing privacy compliance with cookie consent, improving DNS security, and publishing security and incident response information to further strengthen trust and security posture.

30
35
2
70
75
80
100
wordpressthemegeneratepressblockscloud+3 more
WordPress 6.8.3Yoast SEO pluginEasy Digital DownloadsGenerateBlocks Pro plugin+4

Partner Domains:

stripe.com
partner
2025-10-10T11:08:25.078Z
swedenabroad.com favicon

Sweden Abroad

swedenabroad.com

54
GovernmentSwedenenterpriseMEDIUM

Sweden Abroad is the official online portal representing Sweden's embassies and consulates worldwide. The website provides comprehensive information for Swedish citizens traveling or living abroad, as well as for non-Swedish citizens seeking information about Sweden. It serves as a centralized resource for travel advisories, embassy locations, and consular services, reflecting the Swedish government's commitment to supporting its citizens internationally. The site is multilingual, offering content in Swedish, English, French, Spanish, German, and Portuguese, enhancing accessibility for a global audience. Technically, the website employs modern web standards including HTML5, CSS3, and JavaScript, with integration of Google Tag Manager and Microsoft Azure Application Insights for analytics and monitoring. The site is mobile-optimized and accessible, with good SEO practices evident in meta tags and structured navigation. While no CMS or hosting provider details are explicitly identified, the site demonstrates moderate performance and good technical implementation. From a security perspective, the site enforces HTTPS and uses reputable analytics tools, but lacks explicit security headers and published security policies or incident response contacts. No vulnerabilities or exposed sensitive data were detected in the content. Privacy and cookie policies are present and appear GDPR compliant, though no terms of service or vulnerability disclosure policies were found. WHOIS data for the exact domain is unavailable, likely because the domain is a subdomain, but the website's official branding and government affiliations strongly support its legitimacy. Overall, Sweden Abroad presents a professional, trustworthy, and well-maintained government resource. Strategic recommendations include enhancing security headers, publishing incident response and vulnerability disclosure information, and providing clearer contact details to improve transparency and user trust.

15
25
17
60
75
60
100
governmentembassyconsulatetravelsweden+2 more
HTML5CSS3JavaScriptGoogle Tag Manager+2
2025-10-10T11:07:55.002Z