Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157326
Websites
130
Industries
113
Countries
52
Avg Score
Page 12 of 261|Showing 551-600 of 13036
fortressa.com favicon

Fortressa

fortressa.com

55
TechnologyN/asmallMEDIUM

Fortressa is a technology company providing an app store platform for open-source applications, enabling organizations to replace costly per-seat SaaS products with self-hosted, privacy-focused alternatives. The website presents a clear business model centered on cost savings, data ownership, and customization for businesses seeking control over their software stack. The company appears to be established, with a domain registered since 2004 and a consistent brand presence. Technically, the website uses modern front-end technologies such as Tailwind CSS, Alpine.js, and HTMX, delivering a responsive and user-friendly experience. The site is hosted securely with HTTPS, though some security best practices like DNSSEC and security headers are not fully implemented. Analytics are handled via Shynet, a privacy-conscious alternative, indicating a commitment to user privacy. Security posture is moderate; while HTTPS is enforced and forms include basic anti-bot challenges, the absence of DNSSEC and security headers suggests room for improvement. Privacy compliance is partial, with a privacy policy and terms of service present but lacking a cookie consent mechanism. Contact options include email forms and social media, but no phone or physical address is provided. Overall, Fortressa presents a trustworthy and professional online presence with a niche focus on open-source SaaS alternatives. Strategic improvements in security headers, DNSSEC, and privacy compliance would enhance their security posture and regulatory alignment.

15
53
2
90
72
90
40
open-sourceappstoresaasalternativeprivacyself-hosting+3 more
Tailwind CSSAlpine.jsHTMXJavaScript+2
2025-11-01T13:18:40.846Z
eclipse.foundation favicon

Eclipse Foundation AISBL

eclipse.foundation

73
TechnologyBelgiumlargeMEDIUM

The Eclipse Foundation AISBL is a well-established international non-profit organization based in Brussels, Belgium, dedicated to fostering open source software collaboration and innovation. It supports a large global community with over 410 open source projects and more than 360 members worldwide. The foundation provides a vendor-neutral environment that promotes industry-ready open source innovation across multiple technology sectors including cloud, automotive, IoT, and AI. The website reflects a mature digital presence with comprehensive content, clear navigation, and strong branding consistency. Technically, the website is built using modern technologies such as the Hugo static site generator, Google Tag Manager for analytics, and FontAwesome for icons. It demonstrates good performance, mobile optimization, and accessibility. SEO best practices are followed with proper meta tags and structured navigation. The site uses HTTPS exclusively, ensuring secure communications. From a security perspective, the site implements cookie consent mechanisms and maintains privacy and legal policies that indicate GDPR compliance. However, explicit security headers are not detected in the HTML content, and no security.txt file is published for vulnerability disclosure. No exposed sensitive data or vulnerabilities are apparent. The WHOIS data is privacy protected, which is appropriate for a non-profit of this scale, though it limits direct verification of domain registration details. Overall, the Eclipse Foundation website presents a trustworthy, professional, and secure platform for its community and stakeholders. Strategic recommendations include enhancing security headers, publishing a security.txt file, and providing clearer incident response contacts to further strengthen security posture and transparency.

75
83
2
80
77
85
100
opensourcetechnologynon-profitsoftwarefoundation+2 more
Hugo (static site generator)Google Tag ManagerFontAwesomeGoogle Fonts (Roboto)+3
2025-11-01T12:55:17.671Z
mirekbenes.cz favicon

Mirek Beneš

mirekbenes.cz

43
TechnologyCzech RepublicsmallHIGH

Mirek Beneš operates as a freelance frontend developer based in the Czech Republic, offering specialized services in HTML template coding, JavaScript programming, WordPress development, graphic design, and email newsletter coding. The website serves as a professional portfolio showcasing client references and detailed service offerings, targeting businesses and clients across the Czech Republic seeking quality frontend development and web design solutions. The business model is focused on external collaboration and contract work, with a clear emphasis on usability and modern web standards. Technically, the website is well-constructed using modern web technologies including HTML5, CSS3, SVG graphics, and JavaScript libraries such as Swiper.js for carousels. The site is mobile-optimized, fast-loading, and SEO-friendly, with minimal but privacy-conscious analytics implemented via Plausible Analytics. However, there is no detected CMS or hosting provider information, and no advanced frameworks are identified. From a security perspective, the site uses HTTPS and does not expose sensitive data. However, it lacks explicit security headers and formal privacy or cookie policies, which are important for GDPR compliance and user trust. There is no visible incident response or vulnerability disclosure information, which could be improved to enhance security posture and transparency. Overall, the website presents a professional and trustworthy image for a small freelance business but would benefit from improved privacy compliance and security best practices. The absence of WHOIS data reduces domain trustworthiness slightly, but the content quality and business transparency mitigate this concern. Strategic recommendations include implementing privacy and cookie policies, adding security headers, and publishing incident response contacts to strengthen compliance and security.

35
25
2
65
52
70
20
frontenddevelopmentwebdesignhtmlcodingjavascriptprogrammingwordpress+2 more
HTML5CSS3JavaScriptSVG+1
2025-11-01T12:51:51.658Z
sursiendo.org favicon

Sursiendo

sursiendo.org

10
OtherArgentinasmallCRITICAL

Sursiendo is a small non-profit organization focused on digital rights and digital culture, primarily serving Spanish-speaking communities in Latin America, particularly Argentina. The organization has been active since 2011 and provides advocacy, research, community accompaniment, and educational materials to promote collective digital rights and open, collaborative digital environments. Their website reflects a clear mission and thematic focus, targeting activists, researchers, and community members interested in digital culture and rights. Technically, the website is built on WordPress using the Understrap theme framework and employs jQuery. The site is mobile-optimized with good SEO practices and a moderate performance profile. Hosting details are not explicit, but the domain is registered with Gandi SAS, a reputable registrar. The website uses HTTPS but lacks advanced security headers and DNSSEC, which could be improved to enhance security posture. From a security perspective, the site demonstrates basic good practices such as HTTPS and clientTransferProhibited domain status but lacks cookie consent mechanisms and security headers like CSP or HSTS. No direct contact emails or phone numbers are provided, only a contact form. There is no visible security policy or incident response information. The domain WHOIS data is transparent and consistent with the organization's claims, supporting legitimacy. Overall, the website is professional, trustworthy, and content-rich but could improve privacy compliance and security hardening. Strategic recommendations include enabling DNSSEC, implementing security headers, adding cookie consent, and publishing security and incident response policies to strengthen trust and compliance.

-
-
-
-
-
-
-
digitalrightsculturenon-profitadvocacyspanish+2 more
WordPressjQueryPHPCSS3+1
2025-11-01T12:47:10.284Z
purebasic.com favicon

Fantaisie Software

purebasic.com

48
TechnologyN/asmallHIGH

PureBasic.com is the official website for PureBasic, a modern BASIC programming language developed by Fantaisie Software since 1998. The site provides comprehensive information about the language's features, supported platforms, and related products such as SpiderBasic. The business targets both beginner and expert programmers seeking a fast, portable, and easy-to-use BASIC compiler and IDE. The website is professionally designed with clear navigation and relevant content, supporting multiple languages and offering user login functionality. Technically, the site uses a modern tech stack including HTML5, CSS3, JavaScript libraries like jQuery, Modernizr, and Google Analytics for tracking. The site is mobile optimized and SEO friendly but lacks some advanced accessibility features. No CMS or hosting provider details are evident. Performance is moderate with no blocking or WAF detected. Security posture is moderate; the site uses HTTPS but lacks visible security headers and published security policies. Forms use POST methods but no explicit cookie consent or GDPR compliance mechanisms are present. WHOIS data is missing, which reduces trustworthiness but the site content and business information appear legitimate. No vulnerabilities or exposed sensitive data were detected. Overall, PureBasic.com is a trustworthy and professional site for a niche programming language product. Strategic improvements in security headers, privacy compliance, and WHOIS transparency would enhance trust and compliance.

20
53
2
65
42
85
40
programmingbasicsoftwaredevelopmenttechnology
HTML5CSS3JavaScriptjQuery+5

Partner Domains:

www.spiderbasic.com
partner
2025-11-01T12:21:55.700Z
dlang.org favicon

D Language Foundation

dlang.org

42
TechnologyN/amediumHIGH

The D Language Foundation operates the official website for the D programming language, a general-purpose, statically typed language with systems-level access and C-like syntax. The foundation supports the language's development, community engagement, and ecosystem growth. The website serves as a comprehensive resource hub offering documentation, tutorials, community forums, package management, and downloadable compiler binaries. It targets software developers and technology enthusiasts interested in efficient and modern programming languages. The foundation is a non-profit entity coordinating volunteer efforts and sponsorships to sustain the language's evolution. Technically, the website is well-structured, leveraging modern web technologies such as HTML5, CSS3, JavaScript, jQuery, and CodeMirror for interactive code examples. It uses Cloudflare for DNS and likely CDN services, ensuring fast performance and good mobile optimization. The site is accessible, SEO-friendly, and provides a rich user experience with clear navigation and relevant content. However, it lacks some modern security headers and DNSSEC is not enabled. From a security perspective, the site enforces HTTPS and avoids exposing sensitive data or vulnerable libraries. There are no forms collecting sensitive personal data, reducing attack surface. However, the absence of a privacy policy, cookie consent mechanism, security policy, and incident response contact information represents compliance and transparency gaps. No vulnerability disclosure or security.txt files were found, which could hinder responsible vulnerability reporting. Overall, the website is professional, trustworthy, and technically sound but could improve privacy compliance and security transparency. Strategic recommendations include publishing privacy and cookie policies, enabling DNSSEC, adding security headers, and providing clear security and incident response information to enhance user trust and regulatory compliance.

30
35
27
75
62
5
20
programmingtechnologyopen-sourcedeveloperdlanguage+2 more
HTML5CSS3JavaScriptjQuery 1.7.2+2
2025-11-01T12:20:50.518Z
Ú

Ústav biologie a lékařské genetiky 2. LF UK a FN Motol

ublg.cz

48
HealthcareCzech RepublicsmallHIGH

The website ublg.cz represents the Ústav biologie a lékařské genetiky 2. LF UK a FN Motol, an academic and healthcare institute affiliated with Charles University and the Motol University Hospital in the Czech Republic. It serves as an informational and service portal for patients, students, and laboratory service applicants, providing access to satisfaction surveys, genetic counseling information, educational videos, and event registration. The site is modest in size and scope, targeting a specialized audience in healthcare and education sectors. Technically, the website employs modern web technologies such as Bootstrap 5 for responsive design and is structured with clean HTML5 markup. However, it lacks advanced SEO and accessibility features and does not appear to use a CMS or advanced analytics tools. Performance is moderate with good mobile optimization but basic accessibility. From a security perspective, the site is accessible over HTTPS (assumed from domain context though SSL details not provided), but lacks visible security headers and published security or privacy policies. No contact information or incident response channels are provided, which limits transparency and user trust. The WHOIS data is consistent and supports the legitimacy of the domain, which has been active since 2011. Overall, the website is functional and professional but would benefit from enhanced privacy compliance, security hardening, and clearer contact and policy disclosures to improve trust and regulatory adherence.

40
15
2
65
72
85
40
healthcareeducationgeneticsuniversitylaboratory+1 more
Bootstrap 5.3.2HTML5CSS3

Partner Domains:

www.fnmotol.cz
partner
video.ublg.cz
service
2025-11-01T11:13:09.324Z
I

iua2026

iua2026.com

52
OtherN/asmallMEDIUM

The website iua2026.com serves primarily as a landing page embedding an external event registration platform via an iframe. It targets attendees or registrants for an event named 'iua2026', providing language options for Spanish and English, though the language selection buttons are currently commented out. The site itself contains minimal content and no direct business or contact information, relying on the embedded third-party platform for user interaction and data collection. From a technical perspective, the site uses basic HTML, CSS, and JavaScript without any detected frameworks or CMS. The domain is registered through GoDaddy but shows suspicious WHOIS data with a future creation date, which undermines trust. No DNSSEC or security headers are enabled, and no privacy or cookie policies are present, indicating a weak security and compliance posture. The site does not appear to use analytics or advertising technologies, resulting in minimal user tracking. Security-wise, the absence of security headers and DNSSEC, combined with questionable WHOIS data, lowers the overall security score. The embedded iframe uses HTTPS, but the main domain's SSL configuration is unknown. No forms or sensitive data are directly handled on the main site, reducing exposure but also limiting business credibility. There are no signs of adult or questionable content, making the site safe for general audiences. Overall, the website's risk profile is moderate due to minimal content and weak security controls. Strategic improvements should focus on correcting WHOIS data, implementing security best practices, and adding privacy and cookie policies to enhance compliance and trustworthiness.

30
50
2
40
72
75
100
eventregistrationiframelandingpagemultilanguage
HTML5CSS3JavaScript
2025-11-01T11:12:20.545Z
bilapastelka.cz favicon

Sbírka Bílá pastelka

bilapastelka.cz

57
Non-profitCzech RepublicmediumMEDIUM

The website bilapastelka.cz represents a well-established charitable campaign focused on supporting people with visual impairments in the Czech Republic. It operates as a non-profit initiative, encouraging donations and volunteer participation to fund training programs, guide dog services, and employment opportunities for the visually impaired. The site is professionally designed, with clear navigation and integration of donation widgets, social media links, and volunteer statistics, reflecting a mature digital presence. Technically, the website is built on the Webnode CMS platform, leveraging modern web technologies including HTTPS, CDN delivery via Amazon Cloudfront, and analytics tools such as Google Analytics and Google Tag Manager. The site demonstrates good mobile optimization and basic accessibility features, although there is room for improvement in security headers and explicit privacy documentation. From a security perspective, the site enforces HTTPS and provides a cookie consent mechanism with granular user options, aligning with GDPR requirements. However, the absence of explicit privacy policies, terms of service, and security.txt files indicates gaps in compliance and vulnerability disclosure practices. No critical vulnerabilities or exposed sensitive data were detected in the HTML content. Overall, the website presents a trustworthy and professional front for its charitable mission, but the lack of WHOIS data and formal privacy documentation slightly reduces its trust score. Strategic improvements in security headers, privacy policy publication, and domain registration transparency would enhance its security posture and compliance standing.

35
25
2
70
72
75
100
charitynon-profitdisabilitysupportvisualimpairmentdonation+1 more
HTML5CSS3JavaScriptGoogle Analytics+4

Partner Domains:

www.sons.cz
partner
www.darujme.cz
partner
2025-11-01T10:51:54.026Z
erixx.de favicon

erixx GmbH

erixx.de

56
TransportationGermanymediumMEDIUM

erixx GmbH is a regional passenger rail service provider operating in Niedersachsen and northern Germany, focusing on routes through Harz, Heide, and Wendland. The company is positioned as a trusted regional transportation operator with a clear business model centered on passenger rail services. The website provides comprehensive travel information, live schedules, ticketing options, and customer support, targeting regional train passengers. The parent company is Netinera, a known transportation group, which adds to erixx's market credibility. Technically, the website employs modern web technologies including HTML5, CSS3, JavaScript, and integrates a Progressive Web App manifest for enhanced user experience. Hosting and DNS are managed via Cloudflare, ensuring reliable performance and security. The site is mobile-optimized, accessible, and SEO-friendly, with embedded third-party widgets for timetable and route planning. From a security perspective, the website enforces HTTPS and follows several best practices, though explicit security headers like X-Frame-Options and X-Content-Type-Options are not clearly visible in the HTML. No vulnerabilities or exposed sensitive data were detected. However, the absence of a published security policy or incident response contact limits transparency in security governance. Overall, the website is professional, trustworthy, and compliant with GDPR, featuring clear privacy and cookie policies. The risk profile is low with no signs of malicious activity or content safety concerns. Strategic recommendations include enhancing security header implementation, publishing a security.txt file, and providing explicit incident response contacts to improve security posture and trust.

55
33
2
70
47
60
100
regionaltraintransportationpublictransitgermanyniedersachsen+3 more
HTML5CSS3JavaScriptCloudflare DNS+2

Partner Domains:

www.netinera.de
parent
www.lnvg.de
partner

+2 more partners

2025-11-01T10:50:58.881Z
benevol-sg.ch favicon

benevol St. Gallen

benevol-sg.ch

58
Non-profitSwitzerlandmediumMEDIUM

benevol St.Gallen is a well-established non-profit organization serving as the primary contact point for volunteer organizations, associations, and individuals interested in volunteering in the St.Gallen region of Switzerland. The website effectively communicates its mission, services, and community engagement through a professional and well-structured digital presence. It offers a variety of services including consulting, job boards, training, and rental spaces, supported by a network of over 300 partners. The organization maintains a strong market position as a regional leader in volunteer facilitation. Technically, the website employs modern web technologies such as Google Tag Manager, Google Analytics, and CookieYes for consent management, alongside Cloudflare's Turnstile captcha for security. The site is mobile-optimized, accessible, and SEO-friendly, reflecting a mature digital infrastructure. Security posture is solid with HTTPS enforced and privacy compliance evident through comprehensive cookie consent mechanisms and GDPR-aligned privacy policies. No critical vulnerabilities or suspicious activities were detected. Overall, the site demonstrates high professionalism, trustworthiness, and business credibility, making it a reliable resource for its target audience.

35
83
2
80
72
85
20
volunteeringnon-profitcommunityeducationevents+2 more
HTML5CSS3JavaScriptGoogle Tag Manager+4

Partner Domains:

benevol.ch
partner
2025-11-01T10:48:18.281Z
bahnshop.de favicon

cyber-Wear Heidelberg GmbH

bahnshop.de

53
TransportationGermanymediumMEDIUM

bahnshop.de is the official merchandise e-commerce platform for Deutsche Bahn, operated by cyber-Wear Heidelberg GmbH. The website offers a wide range of branded products including collectibles, travel accessories, family and kids items, and other merchandise targeted at Bahn fans, travelers, and families. It holds a strong market position as the official shop for Deutsche Bahn merchandise, leveraging the brand's reputation and customer base. The business model focuses on online retail with customer account management and a comprehensive product catalog. The site is well-branded, consistent, and professionally maintained with a medium-sized operational scale and a founding date around 2014. Technically, the website is built on the Shopware CMS platform, utilizing modern web technologies such as JavaScript, CSS3, and HTML5. It integrates Google Tag Manager and Google Analytics for marketing and analytics purposes, and PayPal Unified for payment processing. Hosting is managed via EuroDNS nameservers, indicating a stable and professional hosting environment. The site demonstrates good mobile optimization, accessibility, and SEO practices, with moderate performance. From a security perspective, the site enforces HTTPS, uses CSRF tokens on forms, and implements cookie consent mechanisms compliant with GDPR. Security headers are present but could be enhanced with additional policies like Content-Security-Policy. No vulnerabilities or exposed sensitive data were detected in the HTML content. However, the site lacks a published security.txt or explicit incident response contact information, which could improve transparency and security posture. Overall, bahnshop.de presents a low-risk profile with strong business credibility, good technical implementation, and solid privacy compliance. Strategic recommendations include publishing a security.txt file, enhancing security headers, and providing incident response contacts to further strengthen trust and security readiness.

30
83
2
70
52
60
40
e-commercetransportationmerchandisedeutschebahnshopware+2 more
Shopware CMSGoogle Tag ManagerGoogle AnalyticsPayPal Unified+3

Partner Domains:

mycybergroup.com
partner
2025-11-01T09:40:54.473Z