Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157327
Websites
130
Industries
113
Countries
52
Avg Score
Page 129 of 248|Showing 6401-6450 of 12372
R

Registrant of useplaintext.email

useplaintext.email

51
TechnologyUnited KingdomsmallMEDIUM

The website useplaintext.email serves as an educational and advocacy platform promoting the use of plain text email over HTML email. It provides detailed guidance on configuring various email clients, etiquette recommendations, and implementation advice for software developers. The site targets technical users and communities who prefer or require plain text email, positioning itself as a niche resource within the technology sector. The business model is informational, supported by the open source community and hosted on sourcehut, a known free software platform. The content quality is good, with consistent branding and trust indicators such as the 'Plain Text Certified' badge and MIT licensing. Technically, the website is built with simple HTML and CSS, hosted on sourcehut infrastructure, and exhibits good performance and mobile optimization. There are no detected CMS or complex frameworks, which aligns with the site's minimalist and security-conscious approach. Accessibility and SEO are basic to good, with clear navigation and structured content. No third-party scripts or analytics services are used, reflecting a strong privacy stance. From a security perspective, the site lacks advanced security headers and DNSSEC is not enabled, which are areas for improvement. The absence of forms or data collection reduces attack surface, and no vulnerabilities or exposed sensitive data were detected. The WHOIS data is consistent and transparent, with a domain age appropriate for the site's purpose and no privacy protection masking registrant details. However, no formal privacy, cookie, or security policies are published, which limits compliance and trust signals. Overall, the website presents a low-risk profile with a strong focus on privacy and minimalism but would benefit from enhanced security headers, formal policies, and DNSSEC implementation to improve its security posture and compliance. The business credibility is high given the clear purpose and community backing, but privacy compliance scores lower due to missing policies.

30
50
17
60
65
70
40
plaintextemailemailclientsemailsecurityemailetiquettetechnicalguide+1 more
HTML5CSS
2025-07-26T20:15:09.631Z
O

Organizaţia Profesioniştilor Pieţei de Capital

oppc.ro

41
FinanceRomaniasmallHIGH

Organizaţia Profesioniştilor Pieţei de Capital (OPPC) is a Romanian professional organization dedicated to the capital market sector. Founded in 2012, it provides professional training, organizes conferences and seminars, and advocates for the development of the Romanian capital market. The website content is primarily in Romanian and targets professionals and stakeholders in the financial sector. The organization holds authorization from the Romanian Financial Supervisory Authority (ASF), which adds to its credibility and trustworthiness. Technically, the website is built on a custom HTML/CSS/JavaScript stack using older versions of jQuery and plugins such as bxSlider and fancybox. The hosting is provided by CYBER_FOLKS S.R.L., a Romanian registrar and hosting provider. The site shows moderate performance and basic mobile optimization but lacks modern CMS or frameworks. SEO and accessibility are basic but functional. From a security perspective, the site lacks HTTPS enforcement information, uses outdated JavaScript libraries, and does not implement modern security headers or cookie consent mechanisms. There is no visible incident response or vulnerability disclosure policy. The WHOIS data is consistent with the website's business claims, showing a domain age of over 10 years, which supports legitimacy. Overall, the website is a functional professional organization site with good business credibility but requires improvements in security posture, privacy compliance, and technical modernization to enhance trust and user experience.

15
10
17
70
62
65
20
financecapitalmarketprofessionaltrainingromanianon-profit+1 more
jQuery 1.5.2jQuery bxSliderjQuery fancyboxJavaScript+1

Partner Domains:

sifm.ro
partner
bancatransilvania.ro
partner

+1 more partners

2025-07-26T16:52:34.166Z
sbmfc.ca favicon

Les Services de bien-être et moral des Forces canadiennes (SBMFC)

sbmfc.ca

58
GovernmentCanadalargeMEDIUM

Les Services de bien-être et moral des Forces canadiennes (SBMFC) is a Canadian government-related social enterprise focused on providing welfare, morale, and support services to members of the Canadian Forces and their families. The website offers comprehensive information on a wide range of services including family support, child care, relocation assistance, education, employment, physical conditioning, sports, and mental health. The target audience is primarily military members and their families, with content presented in French and structured for ease of navigation. Technically, the website is built on the Kentico CMS platform, utilizes Cloudflare for DNS and likely CDN services, and integrates multiple analytics and tracking tools such as Microsoft Clarity, Google Tag Manager, and Facebook Pixel. The site demonstrates good mobile optimization and SEO practices but lacks visible security headers and consent mechanisms for privacy and cookies, which are areas for improvement. From a security perspective, the domain is legitimate with consistent WHOIS data and no privacy protection, indicating transparency. However, the absence of DNSSEC, security headers, and published privacy or incident response policies lowers the security posture. No WAF or blocking mechanisms were detected, and the site content is safe and appropriate for a general audience. Overall, the website is professional and trustworthy but would benefit from enhanced privacy compliance, security hardening, and clearer contact information to improve user trust and regulatory adherence.

45
58
17
40
75
60
100
militarycanadianforcesfamilysupporthealtheducation+4 more
Kentico CMSCloudflare DNSGoogle Tag ManagerMicrosoft Clarity+3

Partner Domains:

cfmws.ca
partner
2025-07-26T16:50:15.877Z
S

Société canadienne de la sclérose en plaques

recherchesp.ca

59
HealthcareCanadamediumMEDIUM

The website 'Portail sur la recherche en SP' is a French-language portal managed by the Canadian Multiple Sclerosis Society (Société canadienne de la sclérose en plaques). It serves as an information and recruitment platform for multiple sclerosis research studies and clinical trials conducted in Canada. The portal targets researchers seeking participants and individuals interested in participating in MS research. The business operates as a non-profit organization with a clear focus on healthcare research facilitation within Canada. The website content is professionally presented with consistent branding and clear contact information, supporting its credibility and trustworthiness. Technically, the site uses a traditional web stack including HTML, CSS, JavaScript with jQuery and jQuery UI libraries, and Google Analytics for user tracking. Hosting is provided via Linode, indicated by the domain's nameservers. The site demonstrates moderate performance and basic mobile optimization but lacks advanced CMS or modern frameworks. SEO and accessibility features are basic but functional. From a security perspective, the site uses domain status protections and HTTPS for analytics scripts but lacks DNSSEC and visible security headers such as CSP or HSTS. There is no cookie consent mechanism or explicit security policy disclosed, which presents compliance gaps. The WHOIS data shows a long-standing domain with privacy protection justified for a non-profit. Overall, the security posture is moderate with room for improvement in headers and privacy compliance. The overall risk assessment is low to moderate, with no critical vulnerabilities detected. Strategic recommendations include implementing security headers, enabling DNSSEC, adding cookie consent, and publishing security and incident response policies to enhance trust and compliance.

60
35
2
40
85
70
100
healthcarenon-profitresearchmultiplesclerosisclinicaltrials+1 more
HTML5CSSJavaScriptjQuery 1.7.1+2

Partner Domains:

scleroseenplaques.ca
partner
msresearch.ca
partner
2025-07-26T15:40:11.517Z
M

MS Society of Canada

msresearch.ca

61
HealthcareCanadamediumMEDIUM

The MS Research Portal is a specialized non-profit website operated by the MS Society of Canada, aimed at connecting Canadian residents with multiple sclerosis research studies seeking participants. The portal supports transparency and accessibility for research initiatives funded by recognized agencies, excluding commercial or for-profit studies. The website serves both potential study participants and researchers, providing contact information and study listings sorted by province. The organization is well-established with a domain age of over a decade, reinforcing its credibility in the healthcare non-profit sector. Technically, the website employs a traditional web stack with HTML, CSS, and JavaScript, including older versions of jQuery and jQuery UI. Hosting is provided via Linode, and Google Analytics is used for visitor tracking. While the site is functional and well-structured, it lacks modern security headers and uses outdated JavaScript libraries, which could expose it to vulnerabilities. Mobile optimization and accessibility are basic but adequate for the target audience. From a security perspective, the site benefits from HTTPS and domain registration protections but lacks DNSSEC and explicit security policies or incident response information. The absence of a cookie consent mechanism is a compliance gap given the use of Google Analytics. No critical vulnerabilities or malicious content were detected, and the site maintains a high trust level appropriate for a healthcare non-profit. Overall, the MS Research Portal is a credible, professionally maintained resource with room for technical and security improvements. Strategic enhancements in security headers, library updates, and privacy compliance would strengthen its posture and user trust.

60
53
2
40
85
70
100
healthcarenon-profitresearchmultiplesclerosiscanada
HTML5CSSJavaScriptjQuery 1.7.1+2

Partner Domains:

mssociety.ca
parent
mssociety.donorportal.ca
service

+1 more partners

2025-07-26T14:34:43.821Z
eyemedvisioncare.com favicon

EyeMed Vision Care

eyemedvisioncare.com

71
HealthcareUnited StatesenterpriseMEDIUM

EyeMed Vision Care operates a comprehensive vision benefits platform offering affordable vision insurance plans, eye exams, eyewear, and LASIK savings. The company targets a broad audience including members, employers, brokers, providers, and insurance carriers, positioning itself as a large enterprise in the healthcare sector with a strong market presence and extensive provider network. The website demonstrates a high level of professionalism with clear navigation, rich content, and multiple user portals tailored to different stakeholders. Technically, the site employs modern tracking technologies such as Google Tag Manager and Google Analytics, and is optimized for mobile devices with good accessibility and SEO practices. Security posture is strong with HTTPS enforced and no exposed sensitive data, though additional security headers could enhance protection. Privacy compliance is well addressed with comprehensive privacy and cookie policies and consent mechanisms. WHOIS data is unavailable, likely due to privacy protection, which slightly reduces trust but is common for enterprises. Overall, the site is trustworthy, well-maintained, and aligned with industry standards.

80
58
2
85
80
80
100
visioninsurancehealthcareeyecarebenefitslasik+1 more
Google Tag ManagerGoogle AnalyticsAdobe DTM (commented)JavaScript+2

Partner Domains:

eyemedvisioncare.com
partner
eyemedinfocus.com
partner

+1 more partners

2025-07-26T13:28:20.572Z
G

Gamedev Place

gamedev.place

42
TechnologyLithuaniasmallHIGH

Gamedev Place is a small community-focused website hosting a Mastodon instance dedicated to game developers and discussions about game development. The platform serves a niche audience of approximately 20,000 users as of late 2022. The website is minimalistic, providing basic information and links to the Mastodon instance and a code of conduct. The operator is an individual named Aras Pranckevičius, with domain registration protected by privacy services. The business model centers on community hosting rather than commercial services. Technically, the website uses basic HTML and CSS, hosted on DreamHost with standard DNS configuration. There is no evidence of advanced frameworks or CMS usage. Mobile optimization and accessibility are basic, and no analytics or advertising technologies are detected. The site lacks privacy and cookie policies, and no forms or data collection mechanisms are present. From a security perspective, the domain is protected with clientTransferProhibited status but lacks DNSSEC and security headers. No incident response or security policy information is provided. The absence of privacy and cookie policies and security headers indicates room for improvement in compliance and security posture. No vulnerabilities or exposed sensitive data were detected. Overall, the website is safe and suitable for a general audience with no adult or explicit content. The risk level is low but could be improved by implementing security best practices, privacy compliance, and clearer contact information.

15
50
2
60
62
70
20
gamedevelopmentmastodoncommunitysocialnetwork
HTML5CSS
2025-07-26T11:05:09.852Z
X

Xiph.org Foundation

xspf.org

49
TechnologyCanadasmallHIGH

The XSPF website represents the Xiph.org Foundation's open XML playlist format project. The foundation is a small, technology-focused non-profit entity based in Canada, with a long-established domain dating back to 2004. The website primarily serves developers and users interested in open multimedia standards, offering documentation and links to related codec projects under the Xiph.org umbrella. The site content is technical, focused on open standards without commercial or advertising elements. Technically, the website uses basic HTML and CSS with no detected advanced frameworks or CMS. The site is moderately optimized for performance and accessibility but lacks modern SEO and mobile optimization features. No analytics or tracking scripts were detected, indicating a privacy-conscious approach. However, the site does not implement DNSSEC or security headers, and no HTTPS or SSL configuration details were provided, which may impact security posture. From a security perspective, the site is accessible without WAF or blocking mechanisms, but it lacks published privacy, cookie, or security policies. No contact information or incident response channels are provided, limiting transparency and user trust. The WHOIS data is consistent and trustworthy, showing a legitimate long-term registration by the Xiph.org Foundation. Overall, the site is low risk but would benefit from improved security and privacy practices. Strategically, the foundation should prioritize implementing security headers, publishing privacy and cookie policies, and providing clear contact information for security and general inquiries. These steps will enhance trust, compliance, and security posture while maintaining the foundation's open and community-driven ethos.

30
50
2
60
85
60
40
xspfplaylistopensourcemultimediaxiphorg+3 more
HTML5CSSXML
2025-07-26T09:58:57.448Z
X

xiph.org

speex.org

50
TechnologyUnited StatessmallMEDIUM

Speex.org is the official website for the Speex codec, an open source, patent-free audio compression format designed specifically for speech. The project is affiliated with xiph.org and the GNU Project, emphasizing free software principles. The website serves developers and organizations interested in speech codec technology, particularly for VoIP and internet audio streaming applications. Although Speex has been obsoleted by the Opus codec, it remains available for legacy use. The site provides technical documentation, downloads, and community engagement avenues such as mailing lists and roadmap information. Technically, the website is built with basic HTML, CSS, and minimal JavaScript, with no detected CMS or advanced frameworks. The site is moderately performant with basic mobile optimization and accessibility features. SEO is basic but sufficient for the niche audience. No analytics or tracking technologies are present, reflecting a privacy-conscious approach. However, the site lacks modern security headers and explicit HTTPS enforcement information, which could be improved. From a security perspective, the site shows minimal security configurations and no published security or incident response policies. The WHOIS data is consistent and trustworthy, showing a long domain age and clear registrant information matching the project. No privacy or cookie policies are present, which limits GDPR compliance. No contact emails or phone numbers are explicitly listed, though a contact page exists. Overall, the security posture is basic and could benefit from enhancements. The overall risk is low given the non-commercial, open source nature of the site, but improvements in security headers, privacy policies, and contact transparency are recommended to enhance trust and compliance.

30
50
2
60
85
70
40
opensourceaudiocodecspeechcompressiontechnologyfreesoftware+2 more
HTMLCSSJavaScript (minimal)
2025-07-26T09:58:52.416Z
xiph.org favicon

Xiph.Org Foundation

xiph.org

52
TechnologyUnited StatessmallMEDIUM

The Xiph.Org Foundation is a well-established non-profit organization dedicated to the development and protection of open multimedia protocols and codecs. Their website reflects their mission by providing resources, downloads, and documentation related to their open-source projects such as Opus, FLAC, Vorbis, and Theora. The foundation targets developers, businesses, and the general public interested in free multimedia technologies. Their market position is strong within the open-source multimedia community, supported by a domain age dating back to 1999 and consistent WHOIS data. Technically, the website is built with basic HTML and CSS, lacking modern frameworks or CMS platforms. The site performs moderately with basic mobile optimization and accessibility features. No advanced analytics or tracking technologies are detected, indicating a privacy-conscious approach but also a lack of modern marketing tools. The absence of privacy and cookie policies suggests room for improvement in compliance. From a security perspective, the site uses HTTPS but lacks DNSSEC and security headers, which are recommended to enhance protection. No forms with sensitive data collection were found, reducing risk exposure. The WHOIS data is transparent and consistent with the organization's identity, supporting legitimacy. Overall, the security posture is moderate but could benefit from implementing best practices such as security headers and DNSSEC. The overall risk assessment is low given the non-commercial, non-sensitive nature of the site and its content. Strategic recommendations include adding privacy and cookie policies, enabling DNSSEC, implementing security headers, and providing clear incident response and vulnerability disclosure information to enhance trust and compliance.

30
50
2
70
85
65
40
open-sourcemultimediacodecsnon-profittechnology
HTMLCSS
2025-07-26T09:58:32.335Z
iconfactory.world favicon

The Iconfactory

iconfactory.world

58
TechnologyN/asmallMEDIUM

The website iconfactory.world/about is the official Mastodon instance for The Iconfactory, a small technology and design company specializing in icons, app interfaces, and software development. The site serves as a decentralized social media platform for the Iconfactory community and its products, leveraging the Mastodon open source platform version 4.2.7. The business model focuses on community engagement and product promotion within a niche market. The website content is well-structured, professionally designed, and consistent with the brand identity, targeting users interested in the Iconfactory's offerings. Technically, the site uses modern web technologies including JavaScript, CSS, and HTML5, hosted under a domain registered with privacy protection via NameCheap. The performance is moderate with good mobile optimization and basic accessibility features. SEO is basic but sufficient for the niche audience. No CMS is detected, and the hosting provider beyond the registrar is not explicitly identified. From a security perspective, the site enforces HTTPS and has domain status clientTransferProhibited, but lacks DNSSEC and security headers such as CSP or HSTS. No cookie consent mechanism or terms of service are published, which limits privacy compliance. No incident response or security policies are visible. The domain registration is privacy protected but consistent with the small community server use case, and no suspicious patterns are detected. Overall, the website is safe, professional, and trustworthy for its intended audience. Recommendations include enabling DNSSEC, adding security headers, publishing privacy and security policies, and implementing cookie consent to improve compliance and security posture.

75
53
17
60
72
70
40
mastodondecentralizedsocialmediaiconfactorytechnologycommunity
Mastodon 4.2.7JavaScriptCSSHTML5
2025-07-26T08:49:35.811Z
triode.app favicon

The Iconfactory, Inc.

triode.app

52
TechnologyUnited StatessmallMEDIUM

Triode is a specialized internet radio application developed by The Iconfactory, Inc., targeting Apple device users who want seamless access to internet radio stations across iOS, macOS, and tvOS platforms. The app emphasizes integration with Apple Music, iCloud syncing, and features like CarPlay and AirPlay 2 support, positioning itself as a niche player in the music streaming ecosystem. The website reflects a professional and consistent brand image with comprehensive version history and user testimonials from reputable tech media. Technically, the website is built with standard web technologies including HTML5, CSS, and JavaScript, and uses Google Analytics for visitor tracking. The site is mobile-optimized and accessible, with good SEO practices evident from meta tags and Open Graph data. However, there is room for improvement in security headers and cookie consent mechanisms. The absence of forms and personal data collection on the site reduces immediate privacy risks. From a security perspective, the site uses HTTPS (implied by Apple App Store links and Google Analytics script loading over HTTPS), but no explicit security headers were detected in the provided data. There is no published security policy or incident response contact information, which could be enhanced to improve trust and compliance. The WHOIS data aligns well with the company identity, supporting legitimacy and trustworthiness. Overall, the website and business demonstrate a mature digital presence with strong branding and user focus, but could benefit from enhanced privacy compliance and security transparency to further strengthen user trust and regulatory alignment.

30
53
10
60
62
75
40
internetradioapplemusicstreamingios+4 more
HTML5CSSJavaScriptGoogle Analytics (gtag.js)+1

Partner Domains:

iconfactory.com
partner
iconfactoryapps.com
partner

+1 more partners

2025-07-26T01:34:55.775Z
e-mistic.org favicon

Domain Protection Services, Inc.

e-mistic.org

40
OtherUnited StatessmallHIGH

The website e-mistic.org is a niche religious and software platform primarily focused on Orthodox Christian content, including apps like MicroSinaxar and BibleExplorer for Android. It provides informational content such as monastery maps, religious calendars, and sinaxar data. The site targets users interested in Orthodox Christianity and related software tools. The business model appears to be centered on providing free or downloadable religious software and informational resources, with a small market presence and limited commercial activity. Technically, the website is built using basic HTML, CSS, and JavaScript without modern frameworks or CMS. Hosting is provided by Hosterion, with domain privacy protection enabled. The site shows moderate performance and basic mobile optimization but lacks advanced SEO and accessibility features. There is no evidence of modern analytics or tracking tools. From a security perspective, the domain is long-established with privacy protection and clientTransferProhibited status, indicating some domain security awareness. However, the site lacks DNSSEC, security headers, HTTPS enforcement details, and published privacy or cookie policies, reflecting a low security and compliance maturity. No contact or incident response information is provided, limiting trust and transparency. Overall, the website is functional and safe for general audiences but requires significant improvements in security posture, privacy compliance, and business transparency to enhance trustworthiness and professional standing.

20
50
2
70
62
55
-
religionorthodoxsoftwareandroidbible+3 more
HTMLCSSJavaScript
2025-07-26T00:26:05.067Z
S

SZTUKA BIEGANIA

sztukabiegania.pl

39
OtherPolandsmallHIGH

The website sztukabiegania.pl is an online photography gallery dedicated to sports photography, with a particular focus on running and other athletic activities including triathlon, swimming, extreme sports, and events involving people with disabilities. The site serves a niche audience of sports enthusiasts and photography lovers, offering curated photo reportages. The business appears to be small and Poland-based, with a domain registered since 2011, consistent with the website's content and language. Technically, the website uses basic web technologies including HTML, CSS, JavaScript, and jQuery, along with Google Analytics for visitor tracking. The site lacks modern CMS or frameworks and shows limited mobile optimization and accessibility features. SEO is basic with minimal meta tags and no structured data formats like JSON-LD or Open Graph present. From a security perspective, the site uses HTTPS but lacks important security headers such as Content-Security-Policy and X-Frame-Options. DNSSEC is not enabled, and no privacy or cookie policies are present, indicating poor GDPR compliance. The site does not have forms or interactive inputs on the homepage, reducing attack surface but also limiting user engagement. Overall, the security posture is basic and could be improved. The overall risk is moderate with no critical vulnerabilities detected but with room for improvement in privacy compliance, security headers, and mobile usability. Strategic recommendations include implementing security headers, enabling DNSSEC, adding privacy and cookie policies, and enhancing mobile and accessibility features to improve user experience and compliance.

15
10
2
65
52
85
20
photographysportsrunninggallerypoland
HTMLCSSJavaScriptjQuery+1
2025-07-25T22:13:06.683Z
S

SEUL

seul.org

46
EducationN/asmallHIGH

SEUL.org is a volunteer-driven open source project hub dedicated to providing a comprehensive suite of GPL-licensed applications for the Linux platform, with a focus on education, science, and advocacy for free software. The website hosts and coordinates numerous projects, serving a niche community of Linux users, developers, educators, and free software advocates. The business model is community and volunteer-based, emphasizing open collaboration and resource sharing. Technically, the website uses basic HTML 4.01, CSS, and JavaScript without modern frameworks or CMS. The site lacks mobile optimization and advanced accessibility features, reflecting a modest technical infrastructure. Performance is moderate, and SEO is basic. No advanced analytics or tracking tools are detected, indicating a privacy-conscious approach. From a security perspective, the site lacks HTTPS enforcement and security headers, which are critical for protecting user data and ensuring secure communications. Forms do not show advanced security features like CSRF protection. The absence of privacy and cookie policies indicates compliance gaps with GDPR and other privacy regulations. WHOIS data is malformed or unavailable, reducing domain trustworthiness, though the site content and external project links suggest legitimacy. Overall, SEUL.org presents a trustworthy but technically basic and security-light profile. Strategic improvements in HTTPS deployment, security headers, privacy compliance, and WHOIS transparency would significantly enhance its security posture and user trust.

25
50
2
55
62
75
40
opensourcelinuxeducationfreesoftwarevolunteer+1 more
HTML 4.01CSSJavaScript
2025-07-25T21:04:19.558Z
dju.social favicon

ver.di - Vereinte Dienstleistungsgewerkschaft

dju.social

48
MediaGermanysmallHIGH

The website dju.social is a Mastodon-based decentralized social network instance operated by the German trade union ver.di, specifically its Deutsche Journalistinnen- und Journalisten-Union (dju) division. It provides a platform for media professionals and interested parties to engage in friendly and constructive social exchange. The platform leverages the open-source Mastodon software (version 4.2.17) and offers features such as user profiles, content discovery, and hashtag exploration. The domain registration is consistent with the organization's identity and country, indicating legitimacy and trustworthiness. Technically, the site uses modern web technologies including React and WebSockets, with a moderate performance profile and good mobile optimization. However, some security best practices such as enabling DNSSEC and implementing security headers are missing. Privacy compliance is partial, with a privacy policy present but no cookie consent mechanism detected. Contact information and security policies are not explicitly provided on the explored page. The security posture is generally good with HTTPS enforced and domain transfer protection enabled, but improvements are recommended to enhance DNS security and security headers. The content is safe for general audiences, focusing on media and journalism without any adult or explicit content. Overall, the site is professionally designed, trustworthy, and serves a niche community effectively.

75
53
17
55
-
65
40
mastodonsocialnetworkjournalismmediagerman+1 more
Mastodon 4.2.17JavaScriptReactFontAwesome+2
2025-07-25T19:50:46.207Z
O

Odontotos rack railway

odontotos.com

42
TransportationGreecesmallHIGH

The website odontotos.com is dedicated to promoting the Odontotos rack railway, a historic and scenic narrow-gauge railway line in Greece connecting Diakopto and Kalavryta. It serves as an informational portal targeting tourists and railway enthusiasts, providing detailed historical context, technical specifications, renovation updates, schedules, ticket prices, and regional tourism links. The site is primarily in Greek with some English navigation options, reflecting its regional focus. From a technical perspective, the website is built using basic HTML, CSS, and JavaScript without modern CMS or frameworks. The design is dated and lacks mobile optimization and accessibility features. There is no evidence of HTTPS enforcement or security headers, which raises concerns about security posture. No privacy, cookie, or terms of service policies are present, indicating low privacy compliance. Contact information is limited but includes an email and phone numbers, and social media presence is limited to a Facebook group link. Security-wise, the site lacks modern security best practices such as HTTPS, security headers, and secure forms. There are no visible vulnerabilities but also no advanced protections. The absence of privacy and cookie policies suggests non-compliance with GDPR and related regulations. Overall, the site is functional for informational purposes but requires significant improvements in security, privacy, and technical modernization. The overall risk is moderate given the lack of security controls and privacy compliance, but the content is safe and non-malicious. Strategic recommendations include implementing HTTPS, adding security headers, publishing privacy and cookie policies, improving mobile responsiveness, and enhancing user experience and trust signals.

15
35
17
70
72
75
-
railwaytourismgreecehistorictransportation
HTMLCSSJavaScript
2025-07-25T18:46:40.764Z
duo.com favicon

Duo Security

duo.com

80
TechnologyUnited StatesmediumLOW

Duo Security, a Cisco company founded in 2009 and headquartered in Ann Arbor, Michigan, specializes in identity security and multi-factor authentication solutions. The company offers a comprehensive suite of products including MFA, Single Sign-On, Passwordless Authentication, Device Trust, and Identity Intelligence, targeting enterprises, SMBs, government agencies, and managed service providers. Duo Security holds a strong market position as a leading provider in identity security, leveraging Cisco's global presence and resources. The website reflects a mature, professional business with clear branding and consistent messaging. Technically, the site is hosted on Amazon AWS infrastructure, employs modern web technologies, and integrates advanced analytics and consent management tools, ensuring good performance, mobile optimization, and accessibility. Security posture is robust with HTTPS enforcement, security headers, and no visible vulnerabilities, although DNSSEC is not enabled, which is recommended for enhanced DNS security. Privacy compliance is well addressed with comprehensive privacy and cookie policies and active consent mechanisms. Contact information and social media presence are transparent and verified, enhancing business credibility. Overall, the website demonstrates a high level of digital maturity and trustworthiness, suitable for its enterprise audience.

65
88
47
80
82
85
100
identitysecuritymulti-factorauthenticationmfaphishingresistancezerotrust+4 more
JavaScriptCSSHTML5JSON-LD+4

Partner Domains:

cisco.com
parent
2025-07-25T17:37:01.659Z
janez-puh.si favicon

The Compatriot Johann Puch - Janez Puh Juršinci Society

janez-puh.si

36
OtherSloveniasmallHIGH

The Compatriot Johann Puch - Janez Puh Juršinci Society operates as a small non-profit organization focused on preserving the legacy of Johann Puch through museum management and cultural promotion in Slovenia. The website serves as an informational portal for the museum, society activities, and related heritage content, targeting general audiences interested in historical and technical heritage. The society has established partnerships with local government and corporate sponsors, enhancing its community presence. Technically, the website employs basic web technologies including HTML5, CSS, JavaScript with jQuery and Modernizr, but lacks modern CMS or advanced frameworks. Performance and mobile optimization are moderate, with room for improvement in accessibility and SEO. The site is accessible without WAF or blocking mechanisms, but lacks advanced security headers and visible SSL configuration details. Security posture is moderate with cookie consent implemented but missing critical elements such as privacy policy, security headers, and incident response contacts. No analytics or tracking scripts were detected, indicating minimal user tracking and privacy risk. The domain WHOIS data aligns well with the website content and business history, supporting legitimacy. Overall, the website is professional and trustworthy but would benefit from enhanced privacy compliance, security hardening, and technical modernization to improve user trust and regulatory adherence.

20
25
2
70
-
75
20
museumheritagejohannpuchjanezpuhjurinci+3 more
HTML5CSSJavaScriptjQuery+1

Partner Domains:

www.jursinci.si
partner
www.magna.com
partner
2025-07-25T17:36:21.358Z