Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157327
Websites
130
Industries
113
Countries
52
Avg Score
Page 120 of 248|Showing 5951-6000 of 12372
kraluv-dvur.cz favicon

Město Králův Dvůr

kraluv-dvur.cz

47
GovernmentCzech RepublicsmallHIGH

The website kraluv-dvur.cz serves as the official digital presence for the town of Králův Dvůr in the Czech Republic. It provides residents and visitors with municipal information, including news updates, event calendars, public notices, and contact details for city offices. The site is positioned as a local government portal, focusing on transparency and community engagement. The business model is typical for a municipal government, offering public services and information without commercial intent. Technically, the website is built on the vismo CMS platform and incorporates standard web technologies such as HTML5, CSS, and JavaScript. It integrates Google Analytics and Google Tag Manager for visitor tracking, with a cookie consent mechanism that respects user privacy by default denying analytics and marketing cookies. The site is mobile-optimized and accessible, with good SEO practices and a clear navigation structure. From a security perspective, the site enforces HTTPS and implements cookie consent in compliance with GDPR. However, it lacks explicit security policies, incident response contacts, and advanced security headers, which are recommended for enhanced protection. No vulnerabilities or exposed sensitive data were detected in the content. The domain registration is consistent with the municipal nature of the site, having been established in 2001, indicating a mature and legitimate online presence. Overall, kraluv-dvur.cz is a trustworthy and professionally maintained municipal website with good content quality and privacy compliance. Strategic improvements in security policy transparency and technical security headers would further strengthen its security posture.

25
25
17
75
70
60
20
municipalgovernmentlocalservicesczechrepublicpublicinformation
JavaScriptGoogle AnalyticsGoogle Tag ManagerGoogle Translate widget+2
2025-07-29T06:48:38.803Z
velaro.com favicon

Velaro

velaro.com

69
TechnologyUnited StatesmediumMEDIUM

Velaro is a well-established technology company specializing in live chat and customer engagement platforms designed to help businesses convert online prospects into customers. Their comprehensive suite includes live chat software, AI chatbots, messaging, voice communication, and knowledge base tools, targeting businesses seeking to enhance conversational marketing and sales automation. The company has a strong market position with a medium-sized operational scale and a founding date in 2000, indicating significant industry experience. Technically, Velaro's website demonstrates a mature digital infrastructure leveraging modern web technologies such as Webflow CMS, Google Tag Manager, Cloudflare security services, and Apollo.io tracking. The site is well-optimized for performance, mobile responsiveness, and accessibility, reflecting a high level of digital maturity and user experience focus. From a security perspective, Velaro employs HTTPS with strong SSL configurations, security headers, and client transfer protection on their domain. While no explicit security or incident response policies are published, the use of Cloudflare Turnstile captcha and absence of vulnerabilities indicate a solid security posture. Privacy compliance is well addressed with clear privacy and cookie policies and GDPR adherence. Overall, Velaro presents a low-risk profile with strong business credibility, technical robustness, and privacy compliance. Strategic recommendations include enabling DNSSEC, publishing detailed security policies, and adding vulnerability disclosure mechanisms to further enhance trust and security transparency.

60
58
2
85
72
85
100
livechatcustomerengagementaichatbotsmessagingvoicecommunication+2 more
Google Tag ManagerGoogle FontsCloudflare TurnstileApollo.io tracker+3
2025-07-29T05:44:21.330Z
T

TSYS

tsys.com

74
FinanceN/aenterpriseMEDIUM

TSYS is a leading payment solutions provider specializing in scalable issuer solutions and payment processing technology. As part of the Global Payments family, TSYS serves a broad audience including financial institutions, fintech companies, and retailers worldwide. Their cloud-native, API-driven platform supports a wide range of services from digital onboarding to fraud management and loyalty programs. The website reflects a mature digital presence with professional design, clear navigation, and multimedia content that highlights their expertise and market leadership. Technically, the site leverages modern web technologies, including Sitecore CMS, advanced analytics tools, and a robust cookie consent mechanism, indicating a commitment to user privacy and data protection. Security posture is solid with HTTPS usage and privacy compliance tools, though explicit security policies and incident response contacts are not published. WHOIS data is unavailable, which is a minor concern but does not detract significantly from the site's legitimacy given the strong brand presence and content quality. Overall, TSYS presents a trustworthy and professional online presence aligned with its enterprise-scale business model.

55
85
40
75
75
80
100
paymentstsysprocessingfinancialinstitutionspaymentstack+3 more
Cloud-native platformMicroservices architectureJavaScriptCSS+6

Partner Domains:

developers.tsys.com
partner
jobs.globalpayments.com
parent
2025-07-29T05:43:45.963Z
paymentexpress.com favicon

Windcave

paymentexpress.com

71
FinanceN/amediumMEDIUM

Windcave operates as a global payment gateway and EFTPOS solutions provider, delivering omni-channel payment processing services to a diverse range of industries including retail, finance, hospitality, and government. The company positions itself as a trusted platform facilitating seamless payment experiences for thousands of recognizable brands worldwide. Their key offerings include online, in-store, and unattended payments, supported by features such as global acquiring, tokenization, and data insights. Technically, the website is built with standard web technologies including HTML5, CSS, JavaScript, and leverages Cloudflare for performance and security monitoring. The site demonstrates good mobile optimization, clear navigation, and professional design quality. However, some accessibility features could be enhanced, and no CMS or hosting provider beyond Cloudflare is explicitly identified. From a security perspective, the site enforces HTTPS and includes secure login mechanisms. While no critical vulnerabilities or exposed sensitive data were detected, the absence of explicit security policies, incident response contacts, and vulnerability disclosure mechanisms suggests room for improvement. Privacy compliance is supported by a comprehensive privacy policy and terms of use, though the lack of a cookie consent mechanism is a notable gap. Overall, the website presents a professional and trustworthy front for a payment services company, but the missing WHOIS data and limited direct contact information slightly reduce trustworthiness. Strategic improvements in privacy compliance and security transparency would enhance the company's security posture and user confidence.

75
53
2
85
82
90
100
paymentgatewayeftposonlinepaymentspcicompliantmerchantservices+1 more
HTML5CSSJavaScriptCloudflare Insights
2025-07-29T04:36:39.827Z
mszafir.pl favicon

Krajowa Izba Rozliczeniowa Spółka Akcyjna (KIR)

mszafir.pl

64
FinancePolandlargeMEDIUM

The mSzafir website is a professionally designed platform operated by Krajowa Izba Rozliczeniowa Spółka Akcyjna (KIR), a reputable Polish financial infrastructure entity. It offers qualified electronic signature and seal services compliant with the eIDAS regulation, targeting businesses and individuals requiring secure digital signing solutions. The platform supports both one-time and long-term certificates accessible via a web portal and mobile applications for iOS and Android. The site includes comprehensive user guides, FAQs, and activation instructions, enhancing user experience and trust. Technically, the website employs modern web technologies including JavaScript frameworks, Google Tag Manager, and Google reCAPTCHA for security. The site is mobile-optimized and uses a custom CMS likely provided by Ideo/edito. Security best practices such as HTTPS, CSRF tokens, and cookie consent mechanisms are implemented, though some security headers could be improved. Analytics and marketing tools are used responsibly with clear privacy policies and GDPR compliance. From a security perspective, the site demonstrates a strong posture with no visible vulnerabilities or exposed sensitive data. The lack of public WHOIS data is typical for .pl domains and is justified given the nature of the business. Overall, the domain and website present a trustworthy and professional digital presence suitable for handling sensitive electronic signature services. Strategically, the company should continue to enhance security headers and accessibility features while maintaining transparency in privacy and data protection. The integration with official KIR resources and partner domains strengthens its market position and credibility.

65
25
17
70
77
75
100
electronicsignaturequalifiedcertificateeidasdigitalsignaturemobileapp+3 more
Google Tag ManagerGoogle reCAPTCHAJavaScriptCSS+1

Partner Domains:

www.elektronicznypodpis.pl
partner
www.kir.pl
parent
2025-07-29T02:20:15.673Z
test-ipv6.cz favicon

CZ.NIC z.s.p.o

test-ipv6.cz

52
TechnologyCzech RepublicsmallMEDIUM

The website test-ipv6.cz is a specialized technical service operated by CZ.NIC z.s.p.o, a Czech domain registry organization. It provides IPv6 connectivity testing tools that help users and network administrators verify their IPv6 readiness and diagnose potential issues. The site is positioned as a niche technical resource with a focus on IPv6 adoption and network diagnostics. The business model appears to be a free service supported by CZ.NIC and community contributions, targeting technically savvy users and ISPs. From a technical perspective, the website uses standard web technologies including JavaScript, jQuery, and Piwik analytics. The hosting provider is identified as HETZNER-AS based on IP and ISP data. The site performs moderately in performance and mobile optimization, with basic accessibility and SEO features. The technical infrastructure is functional but could benefit from modern security headers and enhanced mobile responsiveness. Security posture is moderate; the site uses HTTPS for test URLs and avoids exposing sensitive data. However, it lacks explicit security headers such as Content-Security-Policy and HSTS, and does not publish privacy or cookie policies, which are compliance gaps. No incident response or vulnerability disclosure information is provided. The WHOIS data confirms domain legitimacy with consistent registration by CZ.NIC since 2011. Overall, the website is a trustworthy and useful technical resource with good business credibility but has room for improvement in privacy compliance and security best practices. Strategic recommendations include implementing privacy and cookie policies, adding security headers, and publishing vulnerability disclosure and incident response details to enhance trust and compliance.

15
25
17
60
47
80
100
ipv6connectivitytestnetworkingtechnologycznic
JavaScriptjQueryPiwik AnalyticsCSS+1
2025-07-29T02:14:19.457Z
govguamdocs.com favicon

Data Management Resources, LLC

govguamdocs.com

53
GovernmentGuamsmallMEDIUM

GovGuamDocs.com is an informational website serving as a centralized resource for Government of Guam forms across multiple departments and agencies. It provides downloadable PDF forms and links to official government payment portals, targeting residents and businesses interacting with Guam government services. The site is operated by Data Management Resources, LLC, as indicated by the copyright notice. The website's market position is as a primary online resource for Guam government forms, with a straightforward business model focused on information dissemination. Technically, the website is built using basic HTML, CSS, and JavaScript without modern frameworks or CMS. The design is dated with fixed-width layouts and minimal mobile optimization. SEO and accessibility features are basic, and performance is moderate. The site uses Google Analytics for tracking but lacks modern privacy and cookie compliance mechanisms. From a security perspective, the site lacks HTTPS, security headers, and privacy policies, which significantly lowers its security posture. The WHOIS data for the domain is missing or unregistered, which raises concerns about domain legitimacy despite the presence of official government-related content. No incident response or vulnerability disclosure information is provided. Overall, the website is functional for its purpose but requires urgent improvements in security, privacy compliance, and domain registration legitimacy to enhance trust and protect users. Strategic recommendations include implementing HTTPS, adding security headers, publishing privacy and cookie policies, and resolving domain registration inconsistencies.

15
35
17
60
62
85
100
governmentformsguampdfofficial+1 more
HTMLCSSJavaScript

Partner Domains:

pay.guam.gov
partner
guamtax.com
partner

+3 more partners

2025-07-29T01:07:45.904Z
G

Guam Department of Revenue and Taxation

myguamtax.com

58
GovernmentGuammediumMEDIUM

MyGuamTax.com serves as the official online portal for the Guam Department of Revenue and Taxation, providing essential tax filing, payment, vehicle registration, and passport-related services to residents and businesses in Guam. The website is positioned as the primary government platform for these services, offering a range of e-filing and payment options tailored to individuals and businesses. The portal integrates with related Guam government services and payment gateways, reinforcing its role as a centralized tax and revenue service hub. From a technical perspective, the website employs standard web technologies including JavaScript, CSS, and Google Tag Manager for analytics. While the site is functional and moderately optimized for mobile devices, there is room for improvement in accessibility and SEO. The absence of a CMS or advanced frameworks suggests a relatively straightforward technical infrastructure. Performance is moderate, with no critical errors detected. Security-wise, the site benefits from HTTPS encryption and secure login forms, but lacks visible security headers such as Content-Security-Policy and HSTS, which are recommended for enhanced protection. The absence of published security policies or incident response information indicates a gap in transparency and preparedness. Additionally, no cookie consent mechanism is present, which may impact privacy compliance. Overall, the website is trustworthy and professional, reflecting its government affiliation. However, the missing WHOIS data for the domain is a notable anomaly that reduces the trust score. Strategic improvements in security headers, privacy compliance, and technical modernization would strengthen the site's security posture and user trust.

15
58
17
60
67
75
100
governmenttaxonlineservicesguame-filing+2 more
JavaScriptGoogle Tag ManagerCSSHTML5

Partner Domains:

pay.guam.gov
partner
guamtax.com
partner

+1 more partners

2025-07-29T01:07:30.869Z
C

Capsis B.V.

capsis.nl

42
TechnologyNetherlandssmallHIGH

Capsis B.V. is a specialized technology company based in the Netherlands, founded in 2004, offering professional web archiving solutions including software packages and online services. Their market position is niche-focused, targeting organizations that require reliable and user-friendly website archiving to preserve digital cultural heritage and ensure compliance with public records requirements. The company provides two main products: NetTrack, an online archiving service, and Presurf, a software package for large-scale archiving. Technically, the website employs standard web technologies such as HTML, CSS, JavaScript, and jQuery 1.7.1, along with the Nivo Slider plugin for image display. The site is moderately optimized for performance and basic mobile responsiveness but lacks modern frameworks or CMS platforms. DNSSEC is enabled on the domain, indicating some attention to domain security, but no security headers or HTTPS enforcement details were found in the provided data. From a security perspective, the site shows moderate maturity with no visible vulnerabilities or exposed sensitive data. However, the absence of privacy and cookie policies, outdated JavaScript libraries, and lack of security headers represent areas for improvement. No incident response or vulnerability disclosure information is provided, which could impact trust and compliance. The domain's WHOIS data is consistent and legitimate, supporting the company's credibility. Overall, Capsis B.V. presents a professional and trustworthy web presence with solid business credibility but would benefit from enhanced security practices and privacy compliance measures to strengthen its risk posture and regulatory alignment.

20
25
2
70
62
60
20
websitearchivingwebarchivingdigitalpreservationcapsisnettrack+1 more
HTMLCSSJavaScriptjQuery 1.7.1+1
2025-07-28T21:45:04.994Z
mijnfeelingz.nl favicon

Feelingz

mijnfeelingz.nl

47
E-commerceNetherlandssmallHIGH

MijnFeelingz.nl is an e-commerce platform based in the Netherlands specializing in personalized gift selection accessible via a personal order code. The website presents a clean, modern login interface with a focus on privacy and compliance with GDPR, as evidenced by the cookie consent banner and privacy policy. The business holds the Thuiswinkel Waarborg certification, a recognized trust mark in Dutch e-commerce, enhancing its credibility. The domain has been active since 2013, indicating a stable online presence. Technically, the site uses modern JavaScript modules and CSS with some React-like structure implied. Hosting appears to be managed by Novulo, a known hosting provider. The site is mobile-optimized with good design quality and basic accessibility features. However, no advanced SEO or structured data markup was detected, which could be improved for better search visibility. From a security perspective, HTTPS is used, and cookie policies are transparent with no third-party tracking cookies detected. However, the absence of explicit security headers such as CSP and HSTS is a gap. No incident response or vulnerability disclosure information is provided, which could be a concern for security maturity. The site does not expose sensitive data or show signs of vulnerabilities in the analyzed content. Overall, the website scores well in content quality, privacy compliance, and business credibility but has room for improvement in security posture and technical SEO. Strategic recommendations include implementing security headers, publishing incident response contacts, enhancing SEO with structured data, and maintaining transparency in data protection practices.

30
28
2
5
72
65
100
e-commerceloginprivacycookie-consentpersonalized-gifts+1 more
JavaScript ES ModulesCSSSweetAlert2 (swal2)React (implied by root div and JSX-like structure)
2025-07-28T21:40:38.230Z
kir.pl favicon

Krajowa Izba Rozliczeniowa S.A.

kir.pl

63
FinancePolandlargeMEDIUM

Krajowa Izba Rozliczeniowa S.A. (KIR) is a key technological hub and infrastructure provider for the Polish payment system, offering a broad range of digital solutions for banks, companies, public sector entities, and individual clients. Their services include interbank settlements (Elixir), instant payments (Express Elixir), electronic signatures (Szafir and mSzafir), electronic identification (mojeID), and open banking interfaces (HUB PSD2). The company holds a strong market position as a critical infrastructure entity in Poland's financial ecosystem. Technically, the website employs modern web technologies including Google Tag Manager and Google reCAPTCHA, with a CMS platform (edito) supporting content management. The site is mobile-optimized, accessible, and SEO-friendly, reflecting a mature digital presence. Security measures such as HTTPS, CSRF tokens, and bot protection are implemented, though explicit security headers could be further verified. The security posture is solid with no visible vulnerabilities or exposed sensitive data. Privacy and cookie policies are comprehensive and GDPR compliant, supporting user data protection. However, no explicit incident response or vulnerability disclosure policies were found, which could enhance trust and security readiness. Overall, the website and business present a low-risk profile with strong credibility and professional digital infrastructure. Strategic recommendations include enhancing security header transparency, publishing vulnerability disclosure information, and improving contact information visibility to further strengthen trust and compliance.

65
25
17
60
72
80
100
bankingpaymentsdigitalsignatureelectronicidentificationfinancialinfrastructure+1 more
Google Tag ManagerGoogle reCAPTCHACSSJavaScript

Partner Domains:

www.mszafir.pl
service
www.elektronicznypodpis.pl
service

+3 more partners

2025-07-28T20:32:50.833Z
nps.gov favicon

National Park Service

nps.gov

67
GovernmentUnited StatesenterpriseMEDIUM

The National Park Service website (nps.gov) serves as the official digital presence of the U.S. federal agency responsible for managing national parks and cultural heritage sites. It provides comprehensive information for visitors, educators, volunteers, and partners, including park details, educational resources, event information, and multimedia content. The site is authoritative and well-positioned as the primary source for national park information in the United States. Technically, the website employs a mature infrastructure with CommonSpot CMS, legacy jQuery 1.12, and modern web standards including HTTPS and responsive design. The site demonstrates good mobile optimization, accessibility, and SEO practices, although some legacy scripts and lack of explicit cookie consent mechanisms indicate areas for modernization. From a security perspective, the site benefits from HTTPS encryption and published privacy and vulnerability disclosure policies. However, the absence of explicit security headers and cookie consent banners suggests room for improvement in compliance and defense-in-depth. The WHOIS data is incomplete but typical for a .gov domain, which inherently carries high trust and legitimacy. Overall, the website is a high-quality, trustworthy government resource with strong content and user experience. Strategic enhancements in security headers, privacy compliance, and incident response transparency would further strengthen its posture and user trust.

30
53
20
85
85
80
100
governmentnationalparkseducationtourismconservation+3 more
jQuery 1.12JavaScriptCSSHTML5+3

Partner Domains:

www.doi.gov
partner
www.nationalparks.org
partner
2025-07-28T19:25:57.955Z
werkendoejebij.nl favicon

Postcode Lottery Group

werkendoejebij.nl

70
Non-profitNetherlandslargeMEDIUM

The website www.werkendoejebij.nl represents the Postcode Lottery Group, a well-established non-profit organization operating lotteries in the Netherlands to raise funds for charitable causes. The site targets job seekers interested in working for this organization and provides detailed information about departments, vacancies, and the company's mission. The business is large, founded in 1989, and has a strong market position in the Dutch lottery and charity sector. The website content is professionally presented, consistent in branding, and includes rich media such as videos and employee stories. Technically, the site uses modern web technologies including the Elm framework for interactive components, Google Tag Manager and Google Analytics for tracking, and embedded YouTube videos served via privacy-enhanced domains. The site is mobile-optimized and SEO-friendly with proper metadata and structured data. Cookie consent is implemented with granular user control, reflecting good privacy practices. From a security perspective, the site enforces HTTPS and employs cookie consent mechanisms to comply with GDPR. However, no explicit security headers or incident response policies are published, and no vulnerability disclosure information is available. No critical vulnerabilities or exposed sensitive data were detected in the HTML content. Overall, the website is trustworthy, professionally maintained, and compliant with privacy regulations. Strategic improvements could include publishing security policies, enhancing security headers, and providing clearer contact information for security incidents.

75
83
2
73
75
70
100
non-profitlotteryemploymentcharitydutch+4 more
Elm (frontend keyword search component)Google Tag ManagerGoogle Analytics (gtag)YouTube embedded videos (nocookie domain)+3

Partner Domains:

www.postcodeloterij.nl
partner
2025-07-28T19:24:57.652Z
C

Capsis B.V.

presurf.nl

42
TechnologyNetherlandssmallHIGH

Capsis B.V. is a specialized technology company based in the Netherlands that provides website archiving solutions to organizations seeking to preserve their web communications and digital heritage. Their offerings include an online archiving service (NetTrack) and a software package (Presurf) designed for professional and large-scale website archiving. The company positions itself as a niche provider with a clear focus on digital preservation and compliance with public records requirements. The website infrastructure is built on standard web technologies including HTML, CSS, JavaScript, and jQuery, with a slider component for visual presentation. While functional and professionally designed, the technical stack shows signs of aging (e.g., use of jQuery 1.7.1) and lacks modern security headers and advanced SEO or accessibility features. The site is moderately optimized for performance and mobile use but could benefit from modernization. From a security perspective, the site is accessible without WAF or blocking mechanisms and does not expose sensitive data. However, it lacks visible security headers and privacy compliance documentation such as privacy and cookie policies, which are critical for GDPR compliance. No forms or user input fields are present on the analyzed page, reducing immediate data protection risks. WHOIS data confirms the legitimacy of the domain and company, with consistent registrant information matching the website's claims. Overall, Capsis B.V. presents a trustworthy and professional web presence with room for improvement in privacy compliance and security best practices. Strategic enhancements in these areas would strengthen their security posture and regulatory adherence, supporting their business credibility and customer trust.

20
25
2
70
62
60
20
websitearchivingdigitalpreservationwebarchivecapsisnettrack+1 more
HTMLCSSJavaScriptjQuery 1.7.1+1
2025-07-28T19:24:02.343Z
outdoorstereo.nl favicon

Outdoor Stereo Festival

outdoorstereo.nl

55
HospitalityNetherlandssmallMEDIUM

Outdoor Stereo Festival is a small-scale event organizer focused on hosting an outdoor music festival in the Netherlands, scheduled for August 30, 2025. The website serves primarily as a promotional platform to showcase the event, artists, and facilitate ticket sales through a third-party vendor. The target audience is music enthusiasts, particularly those interested in outdoor festivals within the Dutch region. The business model revolves around event organization and ticketing. Technically, the website is built using modern web technologies including Next.js and React, ensuring a responsive and visually appealing user experience. Performance is moderate with good mobile optimization and basic accessibility features. SEO practices are adequately implemented with proper meta tags and Open Graph data. From a security perspective, the site enforces HTTPS and uses asynchronous loading for scripts, but lacks explicit security headers and does not provide visible security or incident response policies. Privacy compliance is limited due to the absence of a privacy policy and terms of service, though a cookie consent mechanism is present. Overall, the website is professional and trustworthy for its purpose but would benefit from enhanced privacy and security disclosures to improve compliance and user trust.

35
43
2
60
62
65
100
musicfestivaleventoutdoornetherlandstickets+2 more
Next.jsReactJavaScriptCSS+1

Partner Domains:

shop.simpleticket.eu
partner
festivalweekendhoorn.nl
partner

+1 more partners

2025-07-28T17:22:29.976Z
ubi.com favicon

Ubisoft

ubi.com

66
MediaN/aenterpriseMEDIUM

Ubisoft is a globally recognized video game developer and publisher, known for iconic franchises such as Assassin's Creed, Rainbow Six, and Far Cry. Their official website serves as a comprehensive platform for game promotion, news updates, and digital services including Ubisoft+ subscription and Ubisoft Connect. The site targets a broad audience of gamers and enthusiasts worldwide, offering rich multimedia content and seamless navigation. Technically, the website employs modern web technologies including React and Next.js, ensuring fast performance, mobile optimization, and accessibility. The integration of consent management tools like OneTrust and marketing platforms such as Google Tag Manager and Abtasty reflects a mature digital infrastructure focused on privacy and user experience. From a security perspective, the site enforces HTTPS, utilizes robust security headers, and manages cookie consent effectively. No critical vulnerabilities or exposed sensitive data were detected. However, the absence of publicly visible incident response contacts or vulnerability disclosure programs suggests areas for improvement. Overall, the website demonstrates a high level of professionalism, trustworthiness, and compliance with privacy regulations. The missing WHOIS data is likely due to privacy or registrar policies and does not detract from the site's legitimacy. Strategic recommendations include enhancing transparency around security incident response and vulnerability reporting to further strengthen trust.

35
35
2
87
100
80
100
gamingvideogamesentertainmentubisoftassassinscreed+4 more
ReactNext.jsJavaScriptCSS+3
2025-07-28T16:22:27.182Z
R

Revolution Hall + Show Bar

shoprevolutionhall.com

60
E-commerceUnited StatessmallMEDIUM

Revolution Hall + Show Bar operates a small-scale e-commerce website selling branded merchandise such as apparel and gift cards related to their music venue and show bar. The website is built on the Shopify platform using the Dawn theme, providing a modern, responsive, and accessible user experience. The business targets fans and patrons of the venue, offering a straightforward online shopping experience. The domain is recently registered in 2023, consistent with the new business launch. Technically, the site leverages Shopify's infrastructure and scripts, ensuring secure payment processing and integration with digital wallets. Performance and SEO are adequate, with proper meta tags and structured data present. However, the site lacks explicit privacy, cookie, and terms of service pages, which are critical for compliance and user trust. No direct contact information or security policies are published, limiting transparency. From a security perspective, HTTPS is enforced, and domain transfer protections are in place. However, DNSSEC is not enabled, and no security headers are detected, representing areas for improvement. No vulnerabilities or malicious content were found. The site uses tracking pixels and analytics typical for e-commerce but lacks visible cookie consent mechanisms. Overall, the website is functional and professional but would benefit from enhanced privacy compliance, security hardening, and improved transparency to increase trustworthiness and regulatory adherence.

75
35
2
55
75
60
100
e-commerceshopifymerchandisemusicvenueretail
ShopifyJavaScriptCSSHTML5
2025-07-28T15:17:35.357Z
datafyhq.com favicon

Datafy

datafyhq.com

65
TechnologyUnited StatessmallMEDIUM

Datafy is a specialized technology company offering an integrated analytics and advertising platform designed to empower businesses with data-driven marketing solutions. Their platform combines comprehensive data analytics, strategic advertising via an owned demand-side platform (DSP), and campaign measurement with attribution, targeting industries such as attractions, retail, and travel & tourism. The company emphasizes customization, transparency, and direct client engagement, supported by in-house software development and data science expertise. Technically, the website is built on modern frameworks including Next.js and React, with a strong focus on performance, mobile optimization, and user experience. The presence of a consent management platform (Osano) and Google Tag Manager indicates mature digital marketing and privacy compliance practices. However, the absence of visible security headers and explicit security policies suggests areas for improvement in security posture. Security-wise, Datafy demonstrates good practices such as HTTPS enforcement and SOC 2 certification, which are positive trust signals. Nonetheless, the lack of WHOIS data raises questions about domain registration legitimacy, which should be addressed to enhance trust. The site does not expose vulnerabilities or sensitive data visibly, but could benefit from publishing incident response contacts and vulnerability disclosure policies. Overall, Datafy presents a professional and trustworthy digital presence with strong business credibility and technical maturity. Addressing the WHOIS data gap and enhancing security transparency would further strengthen their risk profile and stakeholder confidence.

30
53
17
85
65
85
100
dataanalyticsadvertisingattributionmarketingdsp+3 more
ReactNext.jsJavaScriptCSS+2
2025-07-28T15:13:28.662Z
C

CKSource Holding sp. z o.o.

cke-cs.com

58
TechnologyPolandmediumMEDIUM

CKEditor Cloud Services is a technology-focused business providing cloud-based services for the CKEditor rich text editor ecosystem. The website serves primarily as an informational landing page linking users to status monitoring, dashboard management, and documentation resources. The company, CKSource Holding sp. z o.o., is a medium-sized technology entity founded in 2017 and based in Poland. The business model centers on SaaS offerings for content editing tools targeting developers and organizations integrating CKEditor products. Technically, the website is minimalistic, built with standard HTML, CSS, and JavaScript, hosted on Amazon Web Services. It lacks advanced SEO, accessibility, and performance optimizations but provides a functional and consistent user experience. No CMS or complex frameworks are detected. The site is mobile responsive at a basic level. From a security perspective, the domain registration is stable and consistent with the business, with domain locks enabled to prevent unauthorized changes. However, the website lacks DNSSEC, security headers, privacy and cookie policies, and incident response contact information. No analytics or tracking scripts are present, indicating minimal user tracking. The security posture is moderate but could be improved by implementing standard security best practices and compliance documentation. Overall, the website is safe, professional, and trustworthy but limited in content and compliance features. Strategic improvements in privacy, security headers, and user engagement elements would enhance the site's credibility and compliance standing.

15
50
2
60
100
75
100
ckeditorcloudservicesrichtexteditortechnologydevelopertools
HTML5CSSJavaScript
2025-07-28T12:57:14.765Z