Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

156240
Websites
130
Industries
113
Countries
52
Avg Score
Page 1257 of 3125|Showing 62801-62850 of 156240
al.com favicon

Advance Local

al.com

69
MediaUnited StateslargeMEDIUM

The website www.al.com is a prominent regional news portal serving Alabama, operated by Advance Local, a large media company with multiple regional news subsidiaries. It provides comprehensive local news, sports, weather, and entertainment content tailored to Alabama residents and interested audiences. The site supports a subscription model alongside advertising revenue, targeting a broad audience interested in local and regional news coverage. Technically, the site employs a modern technology stack including React, Arc Publishing CMS, and integrates multiple third-party services for analytics, advertising, and content personalization. The infrastructure appears robust with good performance and mobile optimization, leveraging CDNs and security services such as Datadome for bot protection. From a security perspective, the site enforces HTTPS, uses standard security headers, and manages user consent through a comprehensive privacy and cookie policy framework. However, it lacks explicit public incident response contacts and vulnerability disclosure mechanisms, which could be improved to enhance trust and compliance. Overall, the site demonstrates a mature digital presence with strong business credibility and compliance posture, though there is room for improvement in transparency and security communication. The risk profile is low, with no critical vulnerabilities detected, making it a reliable source for local news consumers.

30
58
17
92
85
85
100
newslocalnewssportsweatheralabama+3 more
ReactGoogle Tag ManagerGoogle AnalyticsMarfeel SDK+5

Partner Domains:

cleveland.com
subsidiary
lehighvalleylive.com
subsidiary

+3 more partners

2025-10-07T17:41:06.866Z
smartcitiesdive.com favicon

TechTarget Inc.

smartcitiesdive.com

65
MediaUnited StatesmediumMEDIUM

Smart Cities Dive is a specialized digital media publication operated by TechTarget Inc., focusing on news and analysis related to smart cities, urban planning, and sustainable technology. The website targets professionals and stakeholders interested in the latest trends shaping connected and livable cities. It offers industry news, opinion pieces, event coverage, and newsletters, positioning itself as a niche leader in smart city journalism. Technically, the site employs modern web technologies including JavaScript frameworks, Google Tag Manager, New Relic monitoring, and Osano for consent management, hosted on a CDN for performance. The website is well-optimized for mobile and accessibility, with good SEO practices and fast loading times. Security-wise, the site enforces HTTPS, uses standard security headers, and implements cookie consent mechanisms, though it lacks explicit security policy and incident response contact information. The absence of WHOIS data limits domain trust assessment, but the professional content and corporate affiliation with TechTarget support legitimacy. Overall, the site presents a strong digital presence with room for improvement in transparency and security disclosures.

30
68
65
40
65
70
100
smartcitiesnewstechnologyurbanplanningsustainability+3 more
JavaScriptGoogle Tag ManagerNew Relic Browser monitoringOsano Consent Management+2

Partner Domains:

www.informatechtarget.com
partner
www.techtarget.com
parent
2025-10-07T17:40:46.830Z
I

iStockphoto LP

istockphoto.com

70
MediaN/aenterpriseMEDIUM

iStockphoto LP operates the iStock website, a leading digital marketplace offering millions of royalty-free stock images, videos, and vectors. The platform targets creative professionals and businesses seeking licensed media content for various projects. As a subsidiary of Getty Images, iStock holds a strong market position in the stock media industry, leveraging a subscription and credit-based licensing business model. The website demonstrates a professional and consistent brand presence with good content quality and user experience. Technically, the site employs modern JavaScript frameworks such as AngularJS and uses Webpack for asset bundling. It integrates third-party services like OneTrust for cookie consent and Google Tag Manager for analytics and marketing. The site is well-optimized for mobile devices and SEO, with fast loading times and basic accessibility features. However, explicit CMS or hosting provider details are not disclosed. From a security perspective, the site enforces HTTPS with CSRF protection and bot detection mechanisms. While some security headers are not explicitly observed, the overall posture is strong with no visible vulnerabilities or exposed sensitive data. Privacy compliance is partially addressed through cookie consent, but no explicit privacy policy or terms of service links were found on this page. WHOIS data is unavailable, which is unusual but likely due to privacy or registry policies rather than malicious intent. Overall, iStock presents a low-risk profile with a mature digital infrastructure and strong business credibility. Strategic improvements include publishing comprehensive privacy and security policies, enhancing security headers, and providing clear contact information for security and compliance inquiries.

65
50
17
85
72
90
100
stockmediaroyalty-freedigitalassetsphotographymediamarketplace
JavaScriptAngularJS (ng-app, ng-scope)WebpackOneTrust Cookie Consent+1
2025-10-07T17:39:06.627Z
ooba.co.za favicon

ooba

ooba.co.za

51
FinanceSouth AfricalargeMEDIUM

ooba is a leading South African home finance expert specializing in mortgage brokerage and advisory services. The company helps customers find the best home loan deals by shopping around various lenders, serving thousands of homeowners. Their market position is strong within the South African finance and real estate sectors, offering key services such as home loan brokerage, mortgage advice, and related insurance products. The website reflects a professional and trustworthy brand with consistent branding and high-quality content tailored to South African home buyers. Technically, the website is built on WordPress with modern frameworks like Bootstrap and integrates multiple analytics and marketing tools including Google Analytics, Facebook Pixel, Crazy Egg, and Visual Website Optimizer. The site is mobile-optimized, SEO-friendly, and employs security best practices such as HTTPS and security headers. Performance is moderate with room for optimization. From a security perspective, the site demonstrates a good posture with SSL encryption, secure forms, and no visible vulnerabilities. However, it lacks a public vulnerability disclosure policy and explicit incident response contacts. Privacy compliance is well addressed with a comprehensive privacy policy, cookie consent mechanisms, and GDPR considerations. WHOIS data is privacy protected, which is typical for financial services, and does not raise immediate concerns. Overall, ooba presents a low-risk profile with strong business credibility and technical maturity. Strategic recommendations include publishing a vulnerability disclosure policy, enhancing incident response transparency, and continuous monitoring of third-party scripts to maintain security integrity.

40
58
17
80
62
70
-
homeloansmortgagefinancesouthafricarealestate+2 more
Google Tag ManagerCrazy EggFacebook PixelGoogle Analytics+5
2025-10-07T17:38:56.607Z
flickr.com favicon

Flickr

flickr.com

71
TechnologyUnited StateslargeMEDIUM

Flickr is a well-established online photography community platform founded in 2003, offering photo storage, sharing, and community engagement services. It operates a freemium business model with a premium Flickr Pro subscription that provides enhanced features such as unlimited storage and ad-free browsing. The platform is positioned as one of the largest collections of Creative Commons-licensed imagery and targets photographers and creative enthusiasts worldwide. Owned by SmugMug, Flickr maintains a strong brand presence with consistent design and professional content. Technically, Flickr leverages modern web technologies including Webflow CMS, Google Tag Manager, Cloudflare security services, and AWS DNS hosting. The site is optimized for performance, mobile responsiveness, and accessibility, with a comprehensive content security policy and HTTPS enforcement ensuring a secure user experience. The use of CAPTCHA on forms and consent management tools demonstrates a mature approach to user privacy and bot mitigation. From a security perspective, Flickr exhibits strong security posture with proper HTTPS, CSP headers, and no visible vulnerabilities or exposed sensitive data. However, DNSSEC is not enabled, and there is no publicly available security policy or incident response contact information, which could be improved. Privacy compliance is robust with clear privacy and cookie policies aligned with GDPR requirements. Business credibility is high, supported by certifications and trust indicators. Overall, Flickr presents a secure, professional, and user-friendly platform with a strong market position in the photography community space. Strategic improvements in DNS security and transparency around security policies would further enhance trust and resilience.

55
68
2
80
82
90
100
photographyphotosharingcommunitycreativecommonsflickrpro+2 more
Google Tag ManagerCloudflare Turnstile CAPTCHAjQuery 3.5.1Webflow CMS+2

Partner Domains:

flickrads.com
partner
flickr.org
partner
2025-10-07T17:38:36.561Z
un.org favicon

United Nations

un.org

71
GovernmentN/aenterpriseMEDIUM

The United Nations website serves as the official digital presence of the international intergovernmental organization dedicated to global peace, security, and humanitarian efforts. It provides multilingual access to reports, programs, and initiatives, targeting a global audience including governments, NGOs, and the public. The site is professionally designed with consistent branding and good content quality, reflecting its authoritative position. Technically, the site employs a mature technology stack including Bootstrap, jQuery, and Google Analytics with IP anonymization, ensuring a responsive and accessible user experience. However, the absence of explicit privacy and cookie policies and lack of security headers indicate areas for improvement in privacy compliance and security hardening. From a security perspective, the site uses HTTPS effectively but lacks visible security headers and detailed incident response or data protection contact information. The WHOIS data is unavailable or malformed, which limits domain registration trust analysis but does not detract from the site's legitimacy given its branding and content. Overall, the website is trustworthy and professional but would benefit from enhanced privacy disclosures, security headers, and transparent contact information to improve compliance and security posture.

85
35
2
85
100
80
100
governmentinternationalnon-profitmultilingualhumanitarian+1 more
jQuery 3.7.1Bootstrap 3.3.5Font Awesome 4.6.3Google Fonts (Roboto)+1
2025-10-07T17:38:06.498Z
F

🖤 ANTI-META FEDI PACT 🖤

fedipact.online

63
OtherN/asmallMEDIUM

The website fedipact.online serves as a community-driven platform advocating for Fediverse instance administrators and moderators to block Meta-owned instances, specifically targeting the project92 threat. It operates as a niche initiative within the decentralized social media ecosystem, providing a list of participating admins and a mechanism to sign a pact via an external cryptpad form. The site is simple in design and content, focusing on community coordination rather than commercial activity. Technically, the website is built with standard HTML, CSS, and JavaScript without reliance on major frameworks or CMS platforms. Hosting appears to be through Namecheap, consistent with the domain registration data. The site demonstrates basic mobile optimization and accessibility but lacks advanced SEO and performance optimizations. No analytics or advertising technologies are detected, indicating minimal user tracking. From a security perspective, the site lacks important security headers and does not enable DNSSEC, which could be improved to enhance domain and site security. There is no published privacy, cookie, or terms of service policy, which limits compliance with GDPR and other privacy regulations. Contact information is minimal but present, including an email address and a Mastodon handle for communication. Overall, the website is functional and serves its community purpose but would benefit from improved security practices, privacy compliance, and more professional content presentation to enhance trust and credibility.

40
50
17
70
95
70
100
fediversecommunitymoderationanti-metaprivacy+1 more
HTML5CSS3JavaScript
2025-10-07T17:38:00.803Z
masto.host favicon

Masto.host

masto.host

53
TechnologyN/asmallMEDIUM

Masto.host is a specialized service provider offering fully managed Mastodon hosting solutions. Founded in 2017, the company targets individuals and organizations seeking an easy and secure way to run Mastodon instances without the complexity of self-hosting. Their business model is subscription-based, with plans starting at $6 per month, emphasizing managed installation, security, and upgrades. The website reflects a focused niche market position with clear service offerings and positive user testimonials, indicating a trusted presence in the Mastodon hosting ecosystem. Technically, the website is built using modern static site generation technology (Eleventy), delivering fast performance and good mobile optimization. The absence of heavy scripts or analytics tools suggests a privacy-conscious approach. However, the site lacks some advanced security headers and cookie consent mechanisms, which could be improved to enhance compliance and security posture. From a security perspective, the site enforces HTTPS and uses domain status protections but does not enable DNSSEC or publish a security policy or incident response contacts. No vulnerabilities or exposed sensitive data were detected in the content. Overall, the security posture is solid but could benefit from additional hardening and transparency. The overall risk assessment is low, with no critical issues found. Strategic recommendations include enabling DNSSEC, implementing security headers, adding cookie consent for privacy compliance, and publishing a security policy. These steps will improve trust, compliance, and resilience against potential threats.

25
53
17
72
72
80
20
mastodonhostingmanagedservicesocialmediaopensource
Eleventy v2.0.1Font Awesome Pro 6.4.0Poppins fontSVG graphics
2025-10-07T17:37:45.718Z
trackjs.com favicon

TrackJS LLC

trackjs.com

67
TechnologyUnited StatessmallMEDIUM

TrackJS LLC is a specialized technology company providing JavaScript error monitoring solutions primarily targeting developers and businesses that require robust frontend error tracking. The company offers a SaaS platform with features such as telemetry timelines, AI-powered debugging, and seamless integration with popular web frameworks and Node.js environments. Their market position is supported by reputable clients and positive customer testimonials, indicating a trusted niche player in the developer tools space. The website is professionally designed, well-structured, and optimized for SEO and mobile devices, reflecting a mature digital presence. Technically, TrackJS employs a modern technology stack including React, Angular, Next.js, and Node.js, complemented by analytics and performance monitoring tools like PostHog and Request Metrics. The site uses HTTPS with excellent SSL configuration and integrates multiple third-party scripts responsibly. Privacy and security policies are clearly stated, with GDPR and CCPA compliance noted, although cookie consent mechanisms could be improved. No critical vulnerabilities or suspicious content were detected. From a security perspective, TrackJS demonstrates good practices such as token-based authentication, data minimization, and server-side filtering of errors. However, the absence of publicly disclosed incident response contacts and vulnerability disclosure policies suggests areas for enhancement. Overall, the security posture is strong but could benefit from additional transparency and security headers. The domain registration data aligns well with the company's business claims, showing a consistent and legitimate registration history. The company maintains a small but focused team and operates primarily in the US. Strategic recommendations include implementing explicit cookie consent, publishing incident response and vulnerability disclosure information, and enhancing security headers to further strengthen trust and compliance.

15
65
47
75
72
75
100
javascripterrormonitoringdevelopertoolssaasfrontend+3 more
JavaScriptReactAngularNode.js+5

Partner Domains:

requestmetrics.com
partner
certkit.io
partner

+1 more partners

2025-10-07T17:37:35.690Z
thisisbeacon.com favicon

Veracity Trust Network

thisisbeacon.com

74
TechnologyN/amediumMEDIUM

Veracity Trust Network is a technology company specializing in AI-powered bot protection and ad fraud prevention solutions. Their patented Veracity Bot Protection Suite aims to secure digital infrastructure from automated attacks, API abuse, and fraudulent activities in real time. The company targets businesses and organizations that require advanced cybersecurity measures to protect their online assets and advertising investments. The website reflects a professional and consistent brand presence with a focus on B2B cybersecurity services. Technically, the website is built on WordPress using modern frameworks such as Bootstrap and Font Awesome, with integrations for Google Tag Manager and Cookiebot for analytics and cookie consent management. Hosting and DNS are managed via Cloudflare, providing a reliable infrastructure. Security posture is good with HTTPS enforced and domain registration locked against unauthorized transfers, though there is room for improvement in publishing explicit security policies, incident response contacts, and vulnerability disclosure information. Privacy compliance is partially addressed through cookie consent but lacks a clearly published privacy policy and terms of service. Overall, the website is professional, trustworthy, and well-positioned in the cybersecurity market, but could enhance transparency and security communication to further build trust.

55
95
47
60
75
80
100
cybersecuritybotprotectionadfraudpreventionaisecuritywebthreatprotection
WordPressWPBakery Page BuilderFont Awesome 6.7.2Google Tag Manager+3
2025-10-07T17:36:44.982Z
veracitytrustnetwork.com favicon

Veracity Trust Network

veracitytrustnetwork.com

74
TechnologyUnited KingdommediumMEDIUM

Veracity Trust Network is a UK-based cybersecurity company specializing in AI-powered bot protection and fraud prevention solutions. Founded in 2021, it serves enterprises, MSSPs, risk teams, and digital platforms globally, with offices in the UK and Singapore. The company offers patented machine learning technologies to detect and prevent automated attacks, synthetic identity fraud, and ad click fraud, positioning itself as an innovative leader in the cybersecurity market. Their award-winning solutions and partner programs underscore their strong market presence and credibility. Technically, the website is built on WordPress with modern frameworks like Bootstrap and integrates various third-party services such as Google Tag Manager and Microsoft Clarity for analytics and marketing. The site is well-optimized for mobile and SEO, with good performance and accessibility standards. DNS is managed via Cloudflare, though DNSSEC is not enabled, representing a minor security gap. From a security perspective, the site enforces HTTPS, uses domain locking statuses, and implements cookie consent mechanisms aligned with GDPR. However, it lacks a publicly available security policy, incident response contacts, and vulnerability disclosure information, which are recommended for enhanced transparency and trust. The domain registration data is consistent with the business claims, showing no privacy protection and a legitimate registration history. Overall, Veracity Trust Network demonstrates a strong security posture and professional digital presence, with room for improvement in publishing explicit security policies and enabling DNSSEC. The website content is safe for general audiences and reflects a mature, credible cybersecurity business.

55
95
47
60
75
80
100
cybersecuritybotprotectionaisecurityfraudpreventionenterprisesecurity+4 more
WordPress 6.8.3WPBakery Page BuilderBootstrapjQuery+2

Partner Domains:

platform.veracitytrustnetwork.com
service
go.veracitytrustnetwork.com
service
2025-10-07T17:36:39.955Z
soundcloud.com favicon

SoundCloud

soundcloud.com

74
MediaUnited StateslargeMEDIUM

SoundCloud is a leading online music streaming and sharing platform, hosting over 320 million tracks and serving a global community of artists, bands, DJs, and audio creators. Established in 2005, it has grown to become one of the largest music communities worldwide, offering services that enable music discovery, sharing, and community engagement. The platform supports web, iOS, and Android applications, leveraging modern web technologies and cloud hosting to deliver a fast and responsive user experience. Technically, SoundCloud employs a robust infrastructure including AWS DNS hosting, React-based frontend, and advanced bot protection via Datadome. The site is optimized for mobile devices, includes accessibility features, and integrates analytics and advertising networks such as Google Analytics and DoubleClick. Security posture is strong with HTTPS enforcement, security headers, and domain transfer protections, though DNSSEC is not enabled. From a security and compliance perspective, SoundCloud maintains comprehensive privacy and cookie policies with GDPR compliance indicators. However, explicit security policies and incident response contacts are not publicly detailed. The platform does not expose sensitive data and uses secure forms for user interactions. Overall, the site demonstrates a mature security culture with room for improvement in transparency around security operations. The overall risk assessment is low, with no critical vulnerabilities detected. Strategic recommendations include enabling DNSSEC, publishing a security.txt file, and enhancing incident response transparency to further strengthen trust and security posture.

60
73
17
85
82
85
100
musicstreamingaudiocommunitymedia+1 more
JavaScriptReact (inferred from script structure and assets)AWS DNS hostingDatadome bot protection+3
2025-10-07T17:36:14.881Z
dreamdata.io favicon

Dreamdata.io ApS

dreamdata.io

74
TechnologyDenmarkmediumMEDIUM

Dreamdata.io ApS operates a specialized B2B SaaS platform focused on revenue attribution and marketing activation. The company provides advanced tools for mapping the B2B customer journey, leveraging AI signals, and enabling marketers to optimize revenue-driving activities. Positioned as a technology leader in B2B marketing analytics, Dreamdata targets marketing and sales professionals seeking precise attribution insights. The company maintains offices in Denmark and the US, reflecting an international presence. Technically, the website is built on Squarespace CMS with integrations including Cookiebot for GDPR-compliant cookie management, Segment and HubSpot for analytics and marketing automation, and Typekit for fonts. The site demonstrates good performance, mobile optimization, and SEO best practices. Structured data and social media links enhance discoverability and trust. Security posture is strong with HTTPS enforced, HSTS enabled, and no exposed sensitive data detected. However, DNSSEC is not enabled, and no explicit security or incident response policies are published. Privacy compliance is robust with a clear privacy policy and cookie consent mechanism. Business credibility is supported by consistent WHOIS data, professional content, and multiple trust signals. Overall, Dreamdata.io presents a mature, professional online presence with strong technical and security foundations. Strategic improvements could include enabling DNSSEC, publishing security policies, and enhancing accessibility features to further strengthen compliance and trust.

50
100
17
90
62
85
100
b2battributionmarketingsaasanalytics+2 more
Squarespace CMSTypekit fontsCookiebot for cookie consentSegment analytics+1
2025-10-07T17:35:44.341Z