Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157327
Websites
130
Industries
113
Countries
52
Avg Score
Page 121 of 408|Showing 6001-6050 of 20394
dinahosting.com favicon

Dinahosting s.l.

dinahosting.com

70
TechnologySpainmediumMEDIUM

Dinahosting s.l. is a well-established Spanish technology company specializing in domain registration, web hosting, VPS, dedicated servers, and cloud services. With over 20 years of experience, it holds a strong market position as a leading independent provider in Spain, offering a comprehensive portfolio of IT infrastructure solutions tailored to individuals, SMEs, and professional agencies. The company emphasizes quality, customer support, and technological innovation, including AI-assisted services and green hosting initiatives. The website demonstrates a mature technical infrastructure with modern web technologies such as jQuery and SVG graphics, optimized for performance and mobile responsiveness. The presence of multiple language versions and a well-structured navigation system reflects a high level of digital maturity and user experience focus. Security posture is robust, with HTTPS enforced, strong domain registration protections, and ISO 27001 certification. However, DNSSEC is not enabled, and there is no published security.txt file, which are areas for improvement. Privacy compliance is well addressed with clear privacy and cookie policies, GDPR adherence, and transparent contact channels. Overall, Dinahosting presents a low-risk profile with strong business credibility, technical competence, and customer trust. Strategic recommendations include enabling DNSSEC, publishing vulnerability disclosure policies, and enhancing incident response visibility to further strengthen security and compliance.

65
50
25
78
77
80
100
hostingdomainsvpsdedicatedserverscloudhosting+5 more
jQueryFontAwesomeSVG graphicsHTML5+2
2025-10-11T02:02:01.696Z
techfak.net favicon

Rechnerbetriebsgruppe

techfak.net

62
EducationGermanysmallMEDIUM

The website techfak.net serves as the official IT support portal for the Faculty of Technology at Bielefeld University, operated by the Rechnerbetriebsgruppe (Computer Operations Group). It provides network maintenance, account management, email, VPN, and other IT infrastructure services primarily for faculty members, students, and staff. The site is well-structured and targets an academic audience with clear navigation and relevant content. The business model is internal IT support within an educational institution, positioning it as a central service unit rather than a commercial entity. Technically, the website is built using MkDocs with the Material theme, hosted by Hetzner Online GmbH, a reputable hosting provider. The site uses HTTPS and has moderate performance with good mobile optimization and accessibility. However, DNSSEC is not enabled, and security headers are missing, indicating room for improvement in security hardening. From a security perspective, the site demonstrates a stable and legitimate domain registration with no suspicious WHOIS patterns. The absence of a cookie consent mechanism and explicit security policies suggests partial privacy compliance. No WAF or blocking mechanisms are detected, and no vulnerabilities or exposed sensitive data were found. Overall, the security posture is adequate but could be enhanced by enabling DNSSEC, adding security headers, and publishing incident response information. The overall risk assessment is low given the academic nature and limited exposure of sensitive services. Strategic recommendations include improving DNS security, implementing security headers, and enhancing privacy compliance to align with GDPR best practices. These steps will strengthen trust and security culture while maintaining the website's professional and reliable presence.

15
53
10
70
95
75
100
educationtechnologyuniversityitsupportnetwork+1 more
HTML5CSS3JavaScript
2025-10-11T01:59:49.172Z
bremennext.de favicon

Radio Bremen

bremennext.de

53
MediaGermanymediumMEDIUM

Bremen NEXT is a youth-oriented media platform operated by Radio Bremen, focusing on music, lifestyle, podcasts, and events for young people in Bremen and Bremerhaven. The website offers a variety of content including radio shows, podcasts, event listings, and interactive features such as contact forms and social media engagement. The platform positions itself as a regional leader in youth media, leveraging the credibility and resources of its parent company, Radio Bremen. Technically, the website employs modern web technologies including lazy loading images, SVG graphics, and asynchronous JavaScript loading. It uses a custom framework likely developed by Radio Bremen and integrates slick carousel for content sliders. The site is mobile-optimized and accessible, with good SEO practices evident from meta tags and structured content. Performance is moderate, with room for optimization. From a security perspective, the site enforces HTTPS and avoids exposing sensitive data. However, it lacks explicit security headers such as Content-Security-Policy and does not provide a vulnerability disclosure or security.txt file. Privacy compliance is limited, with no visible privacy or cookie policies or consent mechanisms, which is a notable gap given GDPR requirements. Overall, the website is professional, content-rich, and trustworthy, but could improve its privacy and security posture to enhance user trust and regulatory compliance.

15
28
2
70
65
60
100
musiclifestylepodcasteventsradio+3 more
JavaScriptCSSHTML5SVG+2
2025-10-11T00:55:15.437Z
dataintensive.net favicon

Martin Kleppmann

dataintensive.net

57
TechnologyN/asmallMEDIUM

The website dataintensive.net is dedicated to promoting the technical book 'Designing Data-Intensive Applications' by Martin Kleppmann. It serves a niche audience of software engineers and technical professionals interested in distributed systems, data scalability, and reliability. The site provides detailed information about the book, author background, testimonials from industry leaders, and purchasing options. The business model centers on book sales and educational content dissemination, positioning itself as a trusted resource in the technology education sector. Technically, the website is built using standard web technologies including HTML5, Bootstrap 3.2.0, and jQuery 1.11.1, hosted via Cloudflare. The site is mobile responsive and well-structured, though it lacks advanced SEO and accessibility features. No CMS or analytics frameworks are detected, indicating a lightweight and straightforward implementation. The site uses HTTPS but lacks DNSSEC and security headers, which could be improved to enhance security posture. From a security perspective, the site demonstrates basic good practices such as HTTPS usage and stable domain registration without privacy protection. However, it lacks formal privacy, cookie, or security policies, and no incident response or vulnerability disclosure mechanisms are present. No forms or data collection points are found, reducing exposure to input-based vulnerabilities. The overall security score is moderate, with recommendations to implement security headers, privacy policies, and DNSSEC. Overall, the website is professional, trustworthy, and content-rich for its target audience. The absence of privacy and cookie policies and limited security headers are notable gaps. The risk level is low given the nature of the site and lack of sensitive data processing, but improvements in compliance and security best practices are advised to maintain trust and regulatory alignment.

15
35
17
70
65
75
100
technologydata-intensivesoftwareengineeringdistributedsystemsbook+4 more
HTML5Bootstrap 3.2.0jQuery 1.11.1
2025-10-11T00:51:12.724Z
D

Domain Protection Services, Inc.

cnr.sh

58
TechnologyUnited StatessmallMEDIUM

The website cnr.sh is a personal professional site for Chris Riccomini, a software engineer, author, and investor. It serves as a platform to share blog posts, talks, and information about his investment fund and open source projects. The site targets software developers, investors, and the tech community, positioning itself as a niche personal brand with a focus on technology and early-stage investing. The business model revolves around personal branding, content sharing, and promoting investment activities. Technically, the site uses modern web technologies including HTML5, CSS3, Google Fonts, FontAwesome, and the htmx JavaScript library. It is hosted on infrastructure associated with Name.com, with moderate performance and good mobile optimization. SEO practices are well implemented, though accessibility is basic. Analytics are minimal, using Tinylytics for lightweight tracking. From a security perspective, the site benefits from HTTPS and domain transfer protection but lacks DNSSEC and security headers. There are no visible vulnerabilities or exposed sensitive data. However, the absence of privacy, cookie, and security policies, as well as contact information for incident response, indicates compliance and transparency gaps. Overall, the website is trustworthy and professional but would benefit from enhanced privacy compliance and security best practices. The risk level is low given the nature of the content and absence of sensitive data, but improvements in policy publication and security headers are recommended.

15
35
2
55
95
85
100
softwareengineeringinvestingopensourcepersonalblogtechnology+1 more
HTML5CSS3Google Fonts (Share Tech Mono)FontAwesome+2
2025-10-11T00:50:52.571Z
F

Just a moment...

fantasywelt.de

51
OtherN/asmallMEDIUM

The website fantasywelt.de is currently inaccessible due to a Cloudflare Turnstile CAPTCHA security challenge, which blocks direct access to the site's content. As a result, no business information, contact details, or policies are available for analysis. The site appears to be protected by Cloudflare's security infrastructure, indicating an intent to mitigate automated access or attacks. However, this also limits the ability to assess the site's business operations, technical maturity, or security posture beyond the presence of the WAF. From a technical perspective, the site uses Cloudflare services including Turnstile CAPTCHA, indicating modern security practices to prevent abuse. The lack of accessible content and metadata prevents evaluation of SEO, accessibility, or user experience. No forms or data collection mechanisms are visible beyond the CAPTCHA widget. Security-wise, the presence of Cloudflare WAF is a positive indicator, but the absence of visible security headers or policies limits the assessment. No vulnerabilities or compliance information can be confirmed. The domain WHOIS data is minimal, with Cloudflare name servers and an unusual domain status, which reduces trustworthiness and transparency. Overall, the site is currently in a blocked state preventing meaningful analysis. The risk assessment is moderate due to lack of transparency and business information. Strategic recommendations include enabling public access to key business pages, publishing privacy and cookie policies, and providing clear contact information to improve trust and compliance.

55
10
2
70
75
70
100
Cloudflare TurnstileJavaScriptHTML5CSS3
2025-10-10T23:49:28.963Z
M

Meta Platforms, Inc.

opengraphprotocol.org

60
TechnologyUnited StatesenterpriseMEDIUM

The website ogp.me serves as the official specification and resource hub for the Open Graph protocol, a technology originally created by Facebook and now maintained by Meta Platforms, Inc. It provides detailed technical documentation and metadata guidelines enabling web developers to integrate their web pages into social graphs effectively. The site targets developers and technical audiences interested in web standards and social media integration. The business model is centered around providing an open standard and community resources rather than direct commercial services. The domain is well-established since 2010 and is owned by Meta Platforms, Inc., reflecting strong legitimacy and market position. Technically, the website is built with standard web technologies including HTML5, CSS, and JavaScript, hosted behind Cloudflare DNS services. The site demonstrates good performance and basic mobile optimization, with clear and structured content. SEO practices are well implemented through comprehensive Open Graph metadata. However, accessibility features are basic, and no advanced frameworks or CMS are detected. From a security perspective, the site uses HTTPS with a good SSL configuration and domain registration protections such as clientDeleteProhibited status. However, DNSSEC is not enabled, and no explicit security headers or policies are published. There is no evidence of privacy, cookie, or terms of service policies, which impacts privacy compliance scores. No contact or incident response information is provided, limiting transparency in security governance. Overall, the website is trustworthy, professional, and focused on its technical mission. The lack of privacy and cookie policies and DNSSEC are minor gaps. Strategic recommendations include enabling DNSSEC, publishing privacy and security policies, and adding security headers to enhance protection and compliance.

15
35
17
70
85
75
100
opengraphmetadatasocialgraphfacebookwebstandards+2 more
HTML5CSSJavaScript
2025-10-10T23:48:23.425Z
ecosia.org favicon

Ecosia GmbH

ecosia.org

72
TechnologyGermanymediumMEDIUM

Ecosia GmbH operates a green search engine that dedicates 100% of its profits to climate action, primarily through tree planting projects worldwide. The company positions itself as a transparent and environmentally responsible alternative to mainstream search engines, with a strong community of over 20 million users. Their business model leverages advertising revenue to fund sustainability initiatives, supported by monthly financial reports and certifications such as B-Corporation. The website is professionally designed, mobile-optimized, and provides clear navigation and calls to action to engage users in their mission. Technically, Ecosia employs modern web technologies including JavaScript frameworks (likely Vue.js), Google Tag Manager for analytics, and Didomi for consent management, ensuring compliance with privacy regulations such as GDPR. The site is served over HTTPS with strong security headers, reflecting a mature security posture. No critical vulnerabilities or exposed sensitive data were detected, and the site includes mechanisms for cookie consent and privacy transparency. Security-wise, Ecosia demonstrates good practices with HTTPS enforcement, consent management, and transparent data processing disclosures. However, no explicit incident response or security policy pages were found, suggesting an opportunity to enhance security communication. The lack of publicly listed contact emails or phone numbers may limit direct user support but aligns with privacy considerations. Overall, Ecosia presents a trustworthy and credible online presence with a clear environmental mission, solid technical infrastructure, and good security hygiene. The absence of WHOIS data limits domain registration insights but does not detract from the evident legitimacy and professionalism of the site. Strategic recommendations include enhancing incident response visibility, maintaining up-to-date technology stacks, and possibly providing more direct contact channels for security or support inquiries.

70
58
2
97
75
90
100
searchengineenvironmenttreeplantingsustainabilitygreentechnology+2 more
JavaScriptCSSHTML5Google Tag Manager+1
2025-10-10T23:45:49.271Z
uberall.com favicon

Uberall

uberall.com

70
TechnologyUnited StatesenterpriseMEDIUM

Uberall is an established AI-powered multi-location marketing platform founded in 2002, targeting enterprise clients with a comprehensive suite of services including listings management, review management, analytics, messaging, and location performance optimization. The platform emphasizes AI integration to enhance local search visibility and customer engagement across multiple locations. Their market position is strong within the technology and retail sectors, supported by a professional and content-rich website with multilingual support and extensive marketing integrations. Technically, the site leverages modern JavaScript frameworks, HubSpot CMS, AWS hosting, and advanced analytics tools, demonstrating a mature digital infrastructure with good mobile optimization and SEO practices. Security-wise, the website enforces HTTPS and employs standard security headers, but the domain's recent expiry and lack of DNSSEC present notable risks. Additionally, the absence of explicit security policies and incident response contacts indicates room for improvement in transparency and compliance. Overall, Uberall presents a professional and trustworthy online presence, but immediate attention to domain renewal and enhanced security disclosures is recommended to maintain trust and operational continuity.

80
100
22
70
77
30
100
aimulti-locationmarketinglistingsmanagementreviewmanagementlocalseo+2 more
JavaScriptGoogle Tag ManagerHubSpotAWS DNS+4

Partner Domains:

get.uberall.com
partner
2025-10-10T23:45:08.866Z
graze.social favicon

Graze.social

graze.social

58
TechnologyN/asmallMEDIUM

Graze.social is a technology company specializing in providing a SaaS platform for building custom social feeds on the Bluesky network using the ATProto protocol. The platform targets feed curators, brands, publishers, developers, and advertisers, enabling them to create personalized feeds, monetize content, and engage audiences without coding. The website demonstrates a strong market position with a growing user base and a clear value proposition centered on user control over social algorithms. Technically, the website is built on modern web technologies including React, JavaScript, and integrates third-party services such as Crisp chat, Beehiiv newsletter, and Plausible analytics. The site is mobile-optimized, fast-loading, and well-structured with good SEO and accessibility features. However, some security best practices like explicit security headers and cookie consent mechanisms are not visibly implemented. From a security perspective, the site uses HTTPS and does not expose sensitive data. The lack of public WHOIS data suggests privacy protection, which is common and justified for startups. No critical vulnerabilities or suspicious patterns were detected. The site lacks publicly disclosed incident response or security policies, which could be improved to enhance trust. Overall, Graze.social presents a professional, trustworthy, and technically mature platform with minor areas for security and privacy compliance improvements. Strategic recommendations include implementing security headers, publishing security policies, and adding cookie consent to align with best practices and regulatory requirements.

30
53
2
40
72
80
100
technologysocialmediacustomfeedsblueskyatproto+2 more
ReactJavaScriptCSSHTML5+5
2025-10-10T23:43:32.669Z
M

Martin Kleppmann

kleppmann.com

58
EducationUnited KingdomsmallMEDIUM

Dr. Martin Kleppmann's website serves as a comprehensive academic and professional platform showcasing his work as an Associate Professor at the University of Cambridge. The site highlights his research focus on local-first collaboration software and distributed systems security, his teaching activities, open source contributions, and a well-regarded book on data-intensive applications. The website targets academics, researchers, students, and professionals interested in distributed systems and cryptography. It also supports his research through Patreon and promotes his publications and conference talks. Technically, the website is built using Jekyll, with a clean and professional design that is mobile-optimized and accessible. It uses standard web technologies including HTML5, CSS3, JavaScript, and MathJax for mathematical rendering. The site performs well with fast loading times and clear navigation. However, it lacks some modern security headers and explicit HTTPS enforcement details are not available from the provided data. From a security perspective, the site does not expose sensitive data or use vulnerable libraries. There are no forms collecting sensitive user data, which reduces attack surface. However, the absence of privacy and cookie policies, security incident response information, and vulnerability disclosure mechanisms indicates gaps in compliance and security transparency. The WHOIS data for the domain is missing, which is unusual and reduces trustworthiness, though the professional nature of the content suggests legitimacy. Overall, the website is a high-quality academic resource with excellent content and user experience but could improve in privacy compliance and security transparency. The missing WHOIS data is a concern that should be investigated further to confirm domain legitimacy.

15
53
17
60
65
75
100
academicdistributedsystemscryptographyresearcheducation+4 more
HTML5CSS3JavaScriptMathJax+1
2025-10-10T23:43:27.651Z
A

Assurance Maladie

ameli.fr

45
GovernmentFranceenterpriseHIGH

The website www.ameli.fr represents the official French social security health insurance service known as Assurance Maladie. It serves as a government platform providing health coverage and related services to insured individuals in France. The site is positioned as a primary national health insurance provider, targeting French residents and insured persons. The business model is public social insurance funded by government and social contributions. The website content is currently inaccessible due to a Cloudflare Turnstile CAPTCHA security challenge, which blocks direct access to the main content. This limits the ability to fully assess the website's content and user experience. Technically, the site uses Cloudflare's security services to mitigate automated bot activity, indicating a strong security posture in terms of access control. However, no detailed security headers or SSL/TLS configuration information is available from the provided data. The security posture is partially observable through the use of CAPTCHA but lacks visible incident response or security policy disclosures. Overall, the site is legitimate and trustworthy given its government affiliation and domain, but the current security challenge limits comprehensive analysis. Strategic recommendations include improving transparency by publishing privacy and cookie policies, providing clear contact and incident response information, and enhancing SEO and accessibility once the security challenge is passed.

55
10
17
85
85
85
-
governmenthealthinsurancesecuritychallengecloudflarefrance
Cloudflare Turnstile CAPTCHAHTML5CSS3JavaScript
2025-10-10T23:43:17.335Z
N

NDR

ndr.de

65
MediaGermanylargeMEDIUM

NDR.de is the official website of Norddeutscher Rundfunk (NDR), a major regional public broadcaster serving Northern Germany. The site offers comprehensive media content including radio and television programming, regional news, sports, culture, and entertainment. It is well-positioned as a trusted source of regional information and media services, leveraging its affiliation with the ARD network and related media partners. The target audience is the general public in Northern Germany and German-speaking users interested in regional news and media content. Technically, the website employs modern web technologies such as responsive design, HTML5, CSS3, and JavaScript, including a custom ARD video player for streaming content. Hosting and DNS are managed via Google Cloud infrastructure, ensuring reliable performance and scalability. The site is optimized for mobile devices and accessibility, with good SEO practices and structured data implemented for enhanced search engine visibility. From a security perspective, the site uses HTTPS with strong SSL configurations and secure streaming URLs. However, explicit security headers are not evident in the provided data, and there is no visible security policy or incident response contact information. Privacy and cookie policies are not explicitly found in the analyzed content, indicating room for improvement in compliance transparency. No vulnerabilities or suspicious elements were detected, and the domain registration aligns with the organization's legitimacy. Overall, NDR.de demonstrates a high level of professionalism, content quality, and technical maturity. Strategic recommendations include publishing clear privacy and cookie policies with consent mechanisms, implementing security headers, and providing a vulnerability disclosure or security.txt file to enhance trust and compliance. These steps will further strengthen the site's security posture and regulatory adherence.

50
28
17
80
95
70
100
newsmediapublicbroadcasterradiotelevision+4 more
HTML5CSS3JavaScriptARD Player (video player)+3

Partner Domains:

www.ardmediathek.de
partner
www.tagesschau.de
partner

+2 more partners

2025-10-10T22:37:10.571Z
moa-batissez-en-prevention.fr favicon

OPPBTP (Organisme Professionnel de Prévention du Bâtiment et des Travaux Publics)

moa-batissez-en-prevention.fr

50
GovernmentFrancemediumMEDIUM

The website moa-batissez-en-prevention.fr is a professional French-language resource dedicated to construction project owners (maîtres d’ouvrage) to help optimize construction operations by integrating risk prevention measures. It is affiliated with OPPBTP, a recognized professional prevention organization in the French construction sector. The site offers advice, tools, solutions, and resources focused on health and safety in construction projects. Technically, the site uses modern web technologies including Google Tag Manager, Matomo analytics, and a cookie consent solution from axept.io. The CMS appears to be Ibexa, supporting structured content and rich media. Security posture is good with HTTPS and no exposed sensitive data, though security headers and explicit security policies are not evident. Privacy compliance is basic with a cookie consent mechanism and a privacy policy linked on a partner domain. The domain registration is consistent and legitimate, registered with GANDI in 2022, appropriate for the business purpose. Overall, the website is professional, trustworthy, and well-targeted to its audience, with moderate technical performance and good content quality.

15
10
2
70
72
55
100
constructionpreventionsafetymatredouvragebtp+3 more
Google Tag ManagerMatomo Analyticsaxept.io (cookie consent)JavaScript+2

Partner Domains:

www.preventionbtp.fr
partner
www.oppbtp.com
partner

+1 more partners

2025-10-10T22:36:55.534Z
schindler.mx favicon

Elevadores Schindler, S.A. de C.V.

schindler.mx

72
TransportationMexicolargeMEDIUM

Elevadores Schindler, S.A. de C.V. is a large, well-established company specializing in vertical transportation solutions such as elevators, escalators, and moving walkways in Mexico. The company operates as a subsidiary of the global Schindler Group and offers a comprehensive range of products and services including manufacturing, installation, maintenance, modernization, and digital traffic management solutions. The website is professionally designed, fully accessible, and optimized for mobile devices, providing clear navigation and rich content in Spanish tailored to the Mexican market. Technically, the site leverages Adobe Experience Manager CMS and integrates multiple modern analytics and marketing tools, ensuring good performance and SEO optimization. Security posture is strong with HTTPS, strict Content Security Policy, and no visible vulnerabilities. Privacy compliance is evident with clear privacy and cookie policies and GDPR considerations. Contact information is complete with phone, physical address, and social media presence, enhancing business credibility. Overall, the website reflects a mature digital presence aligned with the company's market leadership in transportation solutions.

65
50
47
60
82
80
100
elevatorsescalatorsverticaltransportationmaintenanceservicesmodernization+2 more
Adobe Experience Manager (AEM)JavaScriptAdobe Launch (Tag Manager)Adobe Analytics+4

Partner Domains:

digitalplan.schindler.com
partner
group.schindler.com
parent
2025-10-10T21:31:14.211Z
camptocamp.com favicon

Camptocamp

camptocamp.com

56
TechnologySwitzerlandmediumMEDIUM

Camptocamp is a well-established Open Source IT company founded in 2001, specializing in providing innovative solutions in GIS, ERP (Odoo), and IT infrastructure. The company operates internationally with offices in Switzerland, France, and Germany, targeting enterprises seeking flexible and collaborative Open Source technologies. Their business model includes consulting, implementation, subscription management, training, and hosting services, positioning them as a trusted partner in the Open Source ecosystem. Technically, the website is built on modern web technologies including Pimcore CMS, Bootstrap, and integrates multiple analytics and marketing tools such as Google Analytics, Matomo, Facebook SDK, and LinkedIn Insight. Hosting is inferred to be on Amazon AWS, ensuring reliable infrastructure. The website demonstrates excellent design quality, mobile optimization, and accessibility, with a comprehensive cookie consent mechanism supporting GDPR compliance. Security posture is solid with HTTPS enforced and no visible vulnerabilities, though DNSSEC is not enabled and security headers are not explicitly detected. The absence of a published privacy policy and terms of service in the provided content is a gap in compliance documentation. Overall, the domain registration is consistent with the business history and location, supporting legitimacy. The website is safe for general audiences with no adult or questionable content detected.

55
65
2
70
72
75
20
opensourceitsolutionsgiserpodoo+5 more
HTML5CSS3JavaScriptBootstrap+7
2025-10-10T21:28:17.777Z