Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157327
Websites
130
Industries
113
Countries
52
Avg Score
Page 12 of 40|Showing 551-600 of 1960
plentydefi.com favicon

Plenty

plentydefi.com

57
FinanceN/asmallMEDIUM

Plenty DeFi is a decentralized finance platform focused on sustainable yield farming on the Tezos blockchain. The website positions itself as a beta product aimed at bringing more liquidity and users to the Tezos DeFi ecosystem. The platform targets DeFi users and liquidity providers interested in yield farming opportunities within the Tezos blockchain environment. The business model revolves around decentralized finance services, specifically yield farming and liquidity provision, positioning itself as a niche player in the blockchain finance sector. Technically, the website is built using modern JavaScript frameworks such as React and Webpack, hosted and protected by Cloudflare services. The site demonstrates moderate performance and basic mobile optimization. However, accessibility and SEO optimizations are minimal, and no CMS is detected. The technical infrastructure is adequate for a small-scale DeFi project but could benefit from enhancements in accessibility and SEO. From a security perspective, the website uses HTTPS and has domain status locks that prevent unauthorized domain transfers or deletions. However, DNSSEC is not enabled, and no advanced security headers are detected in the provided data. The absence of privacy, cookie, and terms of service policies indicates gaps in compliance and user transparency. No contact or incident response information is provided, limiting trust and security communication. Overall, the website presents a functional but basic online presence for a DeFi project in beta. The lack of privacy and cookie policies, absence of contact information, and minimal security headers reduce the overall trust and compliance posture. Strategic improvements in security practices, compliance documentation, and user communication are recommended to enhance credibility and user trust.

55
35
2
60
60
80
100
plentydefiplentytokenyieldfarmingtezostezosdefiplentydao
ReactWebpackCloudflare
2025-09-06T18:05:32.254Z
aave.com favicon

Aave

aave.com

68
FinanceN/alargeMEDIUM

Aave is a leading decentralized finance (DeFi) protocol that enables users to supply, borrow, swap, and stake digital assets across multiple blockchain networks. It operates as a non-custodial liquidity market with a strong emphasis on open-source development and community governance. The platform holds a prominent market position as one of the largest liquidity protocols in the DeFi space, offering innovative services such as the Aave-native stablecoin GHO and multi-network deployment capabilities. The website reflects a mature and professional digital presence with excellent design, clear navigation, and comprehensive content tailored to DeFi users, developers, and financial institutions. Technically, the site leverages modern web technologies including React and Next.js, hosted on Cloudflare for performance and security. It is optimized for mobile devices and accessibility, with fast loading times and proper SEO practices. Security is robust, featuring HTTPS, security headers, public audit reports, and a bug bounty program hosted on Immunefi. However, DNSSEC is not enabled, and a security.txt file is absent, which are areas for improvement. The security posture is strong with no detected vulnerabilities or exposed sensitive data. Privacy compliance is well addressed with clear privacy and cookie policies, including consent mechanisms and GDPR adherence. Business credibility is high, supported by transparent domain registration, consistent branding, and trust signals such as community governance and partnerships. No direct contact emails or phone numbers are publicly listed, which is common for decentralized protocols but could be enhanced for user support. Overall, Aave presents a secure, trustworthy, and technically advanced platform with a clear focus on DeFi innovation and community engagement. Strategic recommendations include enabling DNSSEC, publishing a security.txt file, and enhancing incident response contact transparency to further strengthen trust and security culture.

40
53
20
85
75
80
100
defifinanceblockchaincryptocurrencylending+5 more
ReactNext.jsCloudflareWeb3 integrations+2

Partner Domains:

app.aave.com
service
governance.aave.com
service

+1 more partners

2025-09-06T11:10:27.346Z
mintology.app favicon

Mintology, Inc.

mintology.app

67
TechnologyN/aenterpriseMEDIUM

Mintology, Inc. is an enterprise-focused technology company specializing in NFT API solutions that enable businesses to integrate blockchain technology for customer engagement, loyalty, and memberships. The company is positioned as a trusted provider for Fortune 500 clients and offers a comprehensive suite of NFT-related products including wallets, token gating, tokenization, and gasless minting. Their market position is strong within the NFT and blockchain technology sector, targeting large enterprises and global businesses. Technically, Mintology's website is built on a modern React and Next.js stack, hosted behind Cloudflare, ensuring fast performance and good mobile optimization. The site employs security best practices such as HTTPS, security headers, and does not expose sensitive data. However, it lacks a visible cookie consent mechanism and detailed security or incident response policies. From a security perspective, the site demonstrates a mature posture with strong SSL configuration and security headers. No vulnerabilities or exposed sensitive data were detected. The absence of explicit security contact information and vulnerability disclosure policies is a minor gap. Overall, the site is secure and trustworthy. The overall risk assessment is low, with recommendations to improve privacy compliance by adding cookie consent and publishing security policies. Enhancing transparency with direct contact emails for security and abuse reporting would further strengthen trust. The website is professional, well-branded, and provides clear business information, supporting its credibility in the enterprise NFT market.

55
53
2
75
75
90
100
nftenterpriseblockchainapitechnology+2 more
ReactNext.jsCloudflareGoogle Tag Manager

Partner Domains:

mintable.com
partner
immutable.com
partner

+2 more partners

2025-09-06T10:02:46.180Z
B

Bitvavo

bitvavo.com

72
FinanceNetherlandslargeMEDIUM

Bitvavo is a leading European cryptocurrency exchange founded in 2017, offering a platform to trade, buy, sell, and store over 400 digital assets. It serves a broad audience including beginners, experienced traders, and institutional investors, with a strong market presence evidenced by over 1.5 million active users and €10 billion in monthly trading volume. The company emphasizes regulatory compliance, being authorized under the EU MiCA regulation by the AFM, and provides security features including an account guarantee for unauthorized access losses. Technically, the website is built using modern frameworks such as Gatsby and React, hosted with Cloudflare DNS and Amazon Registrar for domain management. It employs multiple analytics and marketing tools including Google Analytics, Google Tag Manager, AppsFlyer, and Facebook Pixel, indicating a mature digital marketing infrastructure. The site is fast, mobile-optimized, and accessible with good SEO practices. From a security perspective, the site enforces HTTPS, uses domain status protections, and maintains a security page outlining its measures. However, DNSSEC is not enabled, and no security.txt or explicit incident response contacts were found. The domain registration is consistent and transparent, supporting the legitimacy of the business. Overall, Bitvavo presents a professional, secure, and compliant platform with strong business credibility and technical maturity. The risk level is low, but improvements in DNS security and vulnerability disclosure practices are recommended.

65
83
2
80
75
85
100
cryptocurrencyexchangefinancetradingblockchain+3 more
ReactGatsbyCloudflareGoogle Analytics+3
2025-09-06T07:42:01.091Z
dedaub.com favicon

Dedaub

dedaub.com

60
TechnologyN/amediumMEDIUM

Dedaub is a specialized blockchain security company focusing on smart contract audits, decompilation, and real-time monitoring solutions for Web3 projects. Established in 2018, it has built a strong market position with over 200 audits and partnerships with major blockchain entities such as the Ethereum Foundation, Coinbase, and Chainlink. Their business model revolves around providing expert security services and a comprehensive Security Suite platform to enhance blockchain project safety. Technically, the website is built on modern frameworks like Next.js and React, hosted on Cloudflare, and integrates HubSpot for marketing and forms. The site is well-optimized for performance, mobile responsiveness, and SEO, reflecting a mature digital infrastructure. Security posture is strong with HTTPS, security headers, and no visible vulnerabilities, although DNSSEC is not enabled. Privacy compliance is an area for improvement, as explicit privacy and cookie policies are missing. Overall, the domain registration data supports the legitimacy and maturity of the business. Strategic recommendations include publishing comprehensive privacy and cookie policies, enabling DNSSEC, and adding vulnerability disclosure and incident response information to enhance trust and compliance.

30
35
17
70
62
80
100
blockchainsmartcontractsecuritysecurityauditsweb3decompiler+3 more
ReactNext.jsHubSpotCloudflare+2

Partner Domains:

arbitrum.io
partner
securityalliance.org
partner

+3 more partners

2025-09-06T03:11:03.059Z
E

editec-online.com | 521: Web server is down

editec-online.com

43
OtherN/asmallHIGH

The website editec-online.com is currently inaccessible due to a Cloudflare error 521 indicating the web server is down and not responding. This prevents access to any substantive content or business information. The domain is registered with 101domain GRS Limited since December 2020 and uses Cloudflare DNS services. No privacy, cookie, or terms of service policies are present, nor is there any contact information or business details visible. The technical infrastructure relies on Cloudflare for DNS and security, but the hosting server is currently offline, severely impacting availability and trust. From a security perspective, the site lacks visible security headers and does not have DNSSEC enabled, which could improve domain security. The SSL configuration cannot be fully assessed due to the server being down. No forms or scripts are detected, indicating minimal data collection or tracking. The overall security posture is weak due to the server downtime and lack of security best practices visible. The website quality is poor with minimal content, no SEO or accessibility features, and no mobile optimization. The lack of business information and contact details reduces credibility and trustworthiness. Given the site is blocked by Cloudflare due to server issues, the AI scoring is capped low, reflecting the inability to perform a full analysis. Strategic recommendations include restoring server availability immediately, enabling DNSSEC, implementing security headers, ensuring HTTPS is properly configured, and establishing monitoring for uptime and security incidents to improve trust and security posture.

-
35
2
40
75
70
100
errorcloudflareserverdownsecurityunavailable
Cloudflare
2025-09-05T22:27:37.530Z
commoninja.com favicon

Common Ninja

commoninja.com

68
TechnologyN/amediumMEDIUM

Common Ninja is a technology company specializing in providing no-code Widgets+ that enhance website engagement and conversions. Their platform offers a wide range of customizable widgets that integrate seamlessly with popular website builders and platforms. With a strong market presence evidenced by over 500,000 businesses using their widgets and more than 1 million widgets created, Common Ninja positions itself as a leading SaaS provider in the website enhancement space. The company emphasizes ease of use, customization, and integration capabilities to serve website creators and businesses effectively. Technically, the website is built on modern frameworks such as Next.js and React, leveraging Cloudflare for hosting and performance optimization. The site is well-optimized for mobile and accessibility, with comprehensive SEO and analytics implementations including Google Analytics, Mixpanel, and Facebook Pixel. Security posture is strong with HTTPS enforced, security headers present, and no visible vulnerabilities. Privacy compliance is robust, featuring a detailed privacy policy, cookie consent mechanism, and GDPR adherence. However, WHOIS data is unavailable, likely due to privacy protection, which slightly impacts trust but is common for SaaS providers. Overall, the website demonstrates a mature digital infrastructure, professional business operations, and a secure environment suitable for its target audience.

30
68
2
98
75
85
100
widgetsno-codesaaswebsitetoolsanalytics+3 more
ReactNext.jsJavaScriptCloudflare+5
2025-09-05T21:21:57.968Z
I

Attention Required! | Cloudflare

indexo.lv

50
OtherN/asmallMEDIUM

The website indexo.lv is currently inaccessible due to a Cloudflare Web Application Firewall (WAF) block page. The page content is minimal and only displays a security block message, preventing access to any business-related information or services. As a result, no data about the company's operations, services, or contact details can be extracted. The site is protected by Cloudflare, indicating an intent to secure against online attacks, but this also limits the ability to analyze the site's content and security posture comprehensively. From a technical perspective, the site uses Cloudflare's security and performance services, including Cloudflare Insights for analytics. However, no other technologies, CMS, or frameworks are detectable due to the block. The lack of accessible content means no SEO, accessibility, or user experience assessments can be made. Security-wise, the presence of a Cloudflare block page suggests active protection against threats, but no detailed security headers or policies are visible. There are no published privacy, cookie, or terms of service policies, nor any contact information for incident response or data protection officers. This limits the assessment of compliance with GDPR or other regulations. Overall, the site’s risk assessment is limited by the block. The lack of accessible content and policies results in a low trust and credibility score. Strategic recommendations include resolving the block to allow legitimate access, publishing comprehensive privacy and security policies, and improving transparency and contact availability.

35
10
2
85
75
70
100
cloudflarewafblockedsecurity
CloudflareJavaScript
2025-08-04T06:01:26.548Z