Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

156127
Websites
130
Industries
113
Countries
52
Avg Score
Page 1298 of 3123|Showing 64851-64900 of 156127
0xbc1.io favicon

Privacy service provided by Withheld for Privacy ehf

0xbc1.io

59
FinanceIcelandsmallMEDIUM

0xbc1.io is a cryptocurrency exchange platform specializing in converting electronic currencies into cash and other fiat payout methods worldwide. The service offers a broad range of payout options including bank cards, Revolut, WISE, PayPal, Zelle, Skrill, and Payoneer, targeting both individual and business customers. The platform is relatively new, established in late 2023, and positions itself as a reliable exchange with a focus on secure and convenient transactions. The website is primarily in Russian with an English version available, catering to a global audience. The presence of partner logos and Trustpilot reviews adds to its market credibility. Technically, the site is built on WordPress and leverages modern JavaScript libraries such as jQuery and Swiper.js for UI enhancements. It integrates analytics and user tracking tools including Google Analytics and Microsoft Clarity, and provides live chat support via LiveChat. The domain is protected by privacy services and uses Cloudflare for DNS, ensuring good uptime and basic security. Mobile optimization and SEO practices are adequately implemented, though some accessibility features could be improved. From a security perspective, the site enforces HTTPS and has domain transfer protections in place. However, it lacks DNSSEC and visible security headers, and does not implement a cookie consent mechanism despite using tracking scripts. No direct contact emails or phone numbers are provided, which may impact user trust. The site publishes AML/KYC policies and terms of service, indicating compliance awareness. Overall, the security posture is moderate but could benefit from enhancements in headers, consent, and incident response transparency. The overall risk assessment suggests a legitimate but young business with room for maturity in security and privacy compliance. Strategic improvements in security headers, cookie consent, and clearer contact information would enhance trust and compliance. The platform's broad payout options and partner ecosystem position it well in the niche crypto exchange market.

20
53
2
85
65
70
100
cryptocurrencyexchangefinancecryptoexchangefiatpayout+2 more
jQuerySwiper.jsLiveChatGoogle Tag Manager+1

Partner Domains:

www.bestchange.ru
partner
minfin.com.ua
partner

+3 more partners

2025-10-03T18:36:55.330Z
desitin.ch favicon

Desitin Pharma GmbH

desitin.ch

59
HealthcareSwitzerlandmediumMEDIUM

Desitin Pharma GmbH is a Swiss pharmaceutical company specializing in epilepsy-related products and medical information services. The company maintains a professional and multilingual website targeting both patients and healthcare professionals, offering resources such as the Vademecum Antiepilepticum Helveticorum and the AmiKo Desitin App. The website reflects an established market position with international regional sites, indicating a broad European presence. Technically, the website is built on WordPress with modern frameworks like Bootstrap and uses various plugins for SEO, cookie management, and user interaction. The site is mobile-optimized and employs Google Analytics for user tracking, with a clear cookie consent mechanism in place. Performance is moderate, with good SEO and accessibility basics. From a security perspective, the site uses HTTPS and has implemented cookie consent and privacy policies compliant with GDPR. However, explicit security policies and incident response information are absent. No critical vulnerabilities or suspicious activities were detected, but improvements in security headers and disclosure practices are recommended. Overall, the website presents a low-risk profile with good business credibility and privacy compliance. Strategic enhancements in security transparency and accessibility would further strengthen its posture.

80
68
2
85
62
75
20
pharmaceuticalhealthcareepilepsymedicalinformationswitzerland+5 more
WordPressYoast SEO pluginBootstrapjQuery+4

Partner Domains:

www.desitinpharma.com
partner
www.desitin.de
partner

+3 more partners

2025-10-03T18:36:25.230Z
gmrpui.com favicon

GMR Power & Urban Infra Limited

gmrpui.com

62
EnergyIndialargeMEDIUM

GMR Power & Urban Infra Limited (GPUIL) is a major Indian infrastructure company specializing in energy, transportation, EPC, DFCC, and urban infrastructure development. The company operates as part of the larger GMR Group and holds a significant market position as a fully integrated power and infrastructure service provider. Their website reflects a professional corporate presence with clear business focus and diversified services including power generation, highways, airports, and urban development projects. The target audience includes business partners, investors, and government stakeholders involved in infrastructure projects. Technically, the website employs modern web technologies including Google Analytics, Google Tag Manager, Microsoft Cognitive Services for voice search, and Cloudflare DNS services. The platform appears to be custom-built on ASP.NET with good mobile optimization and SEO practices. Performance is moderate with a good user experience and clear navigation structure. From a security perspective, the site uses HTTPS and domain registration protections but lacks DNSSEC and explicit security headers. No direct contact emails or phone numbers are provided, and there is no cookie consent mechanism, which may affect privacy compliance. The site holds ISO and OHSAS certifications indicating some level of operational security and quality assurance. Overall, the website is trustworthy and professionally maintained with a strong business credibility score. However, improvements in privacy compliance, security headers, and incident response transparency are recommended to enhance the security posture and regulatory adherence.

65
53
2
60
62
75
100
energyinfrastructureurbandevelopmenttransportationpowergeneration+3 more
Google AnalyticsGoogle Tag ManagerjQueryjQuery UI+3

Partner Domains:

gmrgroup.in
parent
gmraero.com
subsidiary

+1 more partners

2025-10-03T18:35:50.155Z
nbkwealth.com favicon

NBK Wealth

nbkwealth.com

74
FinanceKuwaitlargeMEDIUM

NBK Wealth is a prominent wealth management group operating primarily in the Middle East, affiliated with the NBK Group, a major financial institution. The company offers a broad range of services including private banking, wealth management, asset management, and investment advisory through a global network of offices. Their target clientele includes ultra-high-net-worth individuals and institutions seeking comprehensive financial solutions. The website reflects a mature digital presence with modern technologies such as 3D model viewers and integration of Google services for analytics and security. Technically, the website is built on Concrete CMS and employs standard security measures including HTTPS and Google reCAPTCHA. The site is mobile-optimized and provides a professional user experience with clear navigation and detailed service descriptions. However, there is a notable absence of privacy and cookie policies, which impacts compliance and user trust. The WHOIS data is missing or not publicly available, which is unusual for a financial institution and warrants further verification. From a security perspective, the site uses HTTPS and some security best practices but lacks explicit security headers and published incident response or vulnerability disclosure information. No critical vulnerabilities were detected in the content analyzed. Overall, the site appears trustworthy and professional but could improve transparency and compliance documentation. Strategically, NBK Wealth should focus on enhancing privacy compliance, publishing security policies, and clarifying domain registration details to strengthen trust and regulatory adherence.

80
53
17
85
95
85
100
wealthmanagementprivatebankinginvestmentfinancialservicesnbkgroup+2 more
jQueryGoogle reCAPTCHAGoogle Tag ManagerAzure Media Player+1

Partner Domains:

online.nbk.com.kw
partner
brokerage.nbk.com
partner

+3 more partners

2025-10-03T18:35:35.120Z
crem.coffee favicon

Crem Coffee

crem.coffee

68
ManufacturingFinlandmediumMEDIUM

Crem Coffee is a Finnish-based manufacturer specializing in a broad range of coffee machines and grinders, including automatic, traditional espresso, filter manual, and grinder products. The company targets coffee businesses and enthusiasts, offering a diverse product portfolio that includes well-known models such as the SC Line, Unity1, and EX3. Affiliated with the Ali Group, Crem Coffee positions itself as a reputable player in the coffee equipment manufacturing sector. The website demonstrates a professional design with consistent branding and clear navigation, supporting a positive user experience and trustworthiness. From a technical perspective, the website employs modern JavaScript libraries and frameworks such as jQuery, Bootstrap, FontAwesome, and tracking tools including Google Tag Manager, HubSpot, and Microsoft Application Insights. The site is hosted likely on Azure infrastructure, indicated by telemetry endpoints and resource URLs. Performance and mobile optimization are rated as good, with accessibility features implemented. Privacy compliance is addressed through Usercentrics CMP for cookie consent and a privacy policy page, indicating GDPR awareness. Security posture is generally strong with HTTPS enforced and no visible sensitive data exposure. However, the absence of explicit security headers and incomplete WHOIS data reduce the overall security confidence. No contact emails or phone numbers are explicitly provided, which may impact direct communication and trust. The WHOIS data is unavailable or malformed, possibly due to privacy protection or query issues, which warrants further verification for domain legitimacy. Overall, Crem Coffee's digital presence reflects a mature and professional business with solid technical infrastructure and privacy compliance. Strategic improvements in security headers, WHOIS transparency, and contact information availability would enhance trust and security posture. The website content is safe for general audiences, focusing solely on coffee equipment without any adult or explicit content.

30
58
17
85
90
85
100
coffeeespressocoffeemachinesmanufacturingautomaticcoffeemachines+4 more
jQueryBootstrapFontAwesomeUsercentrics CMP+6

Partner Domains:

www.aligroup.it
partner
2025-10-03T18:35:30.110Z
boardhost.com favicon

Boardhost.com, Inc.

boardhost.com

48
TechnologyN/asmallHIGH

Boardhost.com, Inc. is a long-established provider of free and paid online forum and message board hosting services, operating since 1998. The company targets individuals and communities seeking easy-to-use, customizable discussion platforms with reliable remote hosting. Their business model includes free offerings with optional paid upgrades, positioning them as a niche player with over 25 years of market presence. Technically, the website uses basic web technologies including HTML, CSS, and JavaScript with jQuery 1.6.1. The site is functional with moderate performance and basic mobile optimization but lacks modern frameworks or CMS. SEO and accessibility features are present at a basic level. The hosting provider is not explicitly stated, but the domain is registered with Network Solutions, LLC. From a security perspective, the site uses HTTPS for form submissions but lacks DNSSEC and important security headers. The use of an outdated JavaScript library introduces potential vulnerabilities. No cookie consent or privacy compliance mechanisms are implemented, and no incident response or security policies are published. The WHOIS data is consistent with the business claims, showing a long domain age and no privacy protection, supporting legitimacy. Overall, the website is functional and trustworthy but would benefit from security and privacy improvements to enhance compliance and user trust. The absence of direct contact emails or phone numbers limits immediate support channels, relying instead on contact forms.

15
53
17
60
67
60
40
forummessageboardfreehostingonlinediscussionscommunity
HTML5CSSJavaScriptjQuery 1.6.1
2025-10-03T18:35:10.065Z
opencode.de favicon

Center for Digital Sovereignty of Public Administration (ZenDiS) GmbH

opencode.de

57
GovernmentGermanymediumMEDIUM

openCode is an official open source platform operated by the Center for Digital Sovereignty of Public Administration (ZenDiS) GmbH on behalf of the German Federal Ministry of the Interior (BMI). It serves as a central hub for the German public sector to discover, share, and develop open source software, fostering digital sovereignty and collaboration among administrative organizations. The platform offers a software index, GitLab repository access, consultation services, knowledge sharing, and community events, positioning itself as a trusted and official resource in the government technology space. Technically, the website is built on modern frameworks including React and Next.js, hosted with Cloudflare DNS and CDN services, ensuring fast performance, mobile optimization, and good accessibility. Security posture is strong with HTTPS, comprehensive security headers, and no visible vulnerabilities or exposed sensitive data. However, the site lacks a visible cookie consent mechanism and explicit incident response contact information, which are areas for improvement. Overall, the platform demonstrates high professionalism, trustworthiness, and a strong commitment to quality and security in open source software for public administration.

30
33
22
80
95
70
40
opensourcepublicadministrationdigitalsovereigntygovernmentsoftware+3 more
ReactNext.jsCloudflare DNSGitLab+1

Partner Domains:

zendis.de
partner
2025-10-03T18:34:17.079Z
getbootstrap.com favicon

Bootstrap team

getbootstrap.com

61
TechnologyN/alargeMEDIUM

Bootstrap is a leading open source frontend toolkit widely used by web developers and designers to build responsive, customizable websites and applications. Founded in 2012, it offers a comprehensive set of CSS, Sass, and JavaScript components that enable rapid development with modern web standards. The project is supported by a strong community and corporate sponsors, maintaining its position as a market leader in frontend frameworks. Technically, the website employs modern technologies including Bootstrap 5.3.8, Sass, JavaScript modules, and Astro for static site generation. It leverages CDN delivery with integrity checks and is hosted behind Cloudflare DNS, ensuring fast performance and excellent mobile optimization. Accessibility and SEO best practices are well implemented, contributing to a high-quality user experience. From a security perspective, the site enforces HTTPS with strong SSL configuration and uses integrity attributes on CDN resources. The JavaScript plugins are designed without jQuery dependencies, reducing attack surface. However, the absence of DNSSEC, security headers, and published security policies or incident response information indicates areas for improvement. Privacy compliance is minimal, with no visible privacy or cookie policies or consent mechanisms. Overall, the website is professional, trustworthy, and technically mature, but would benefit from enhanced privacy and security transparency to meet modern compliance standards and user expectations.

40
50
2
70
65
75
100
bootstrapfrontendcssjavascriptsass+3 more
HTML5CSS3SassJavaScript+4
2025-10-03T18:34:06.877Z
Q

Quality Unit s.r.o.

postaffiliatepro.com

78
TechnologyCzech RepublicmediumLOW

Post Affiliate Pro is a leading affiliate software platform developed by Quality Unit s.r.o., offering comprehensive tools for managing affiliate programs, tracking affiliate performance, automating workflows, and generating detailed reports. The company positions itself as a market leader with a strong international presence, supported by multi-language websites and a broad partner ecosystem. The website is professionally designed, mobile-optimized, and rich in content, providing clear navigation and extensive product information. Technically, the site uses modern technologies including Hugo static site generation, JavaScript libraries for search and tracking, and integrates Google Analytics and other tracking tools with user consent mechanisms. Security posture is strong with HTTPS enforcement and security headers, although explicit security policies and incident response contacts are not published. WHOIS data is unavailable, which slightly reduces trust but is mitigated by the professional presentation and trust signals such as customer testimonials and awards. Overall, the site demonstrates a mature digital infrastructure and a solid business model focused on SaaS affiliate marketing solutions.

15
95
55
85
100
90
100
affiliatesoftwareaffiliateprogrammanagementaffiliatetrackingcommissionmanagementaffiliatenetwork+7 more
Hugo (static site generator)JavaScriptFuse.js (search)Mark.js (highlighting)+3

Partner Domains:

qualityunit.com
parent
support.qualityunit.com
service

+1 more partners

2025-10-03T18:34:01.863Z
gatekeeperconsent.com favicon

Ezoic

gatekeeperconsent.com

64
TechnologyN/asmallMEDIUM

GateKeeper is a technology-focused consent management platform designed to facilitate GDPR compliance for website owners and businesses. Developed and maintained by Ezoic, the platform is free to use and emphasizes speed, ease of setup, and compliance with the IAB TCF 2.0 framework. The website presents a professional and consistent brand image with clear messaging targeting businesses requiring consent management solutions. The platform supports multiple languages and integrates over 1000 vendors, including Google and IAB, positioning it as a competitive offering in the consent management market. Technically, the website employs modern web technologies including Bootstrap for responsive design, Cloudflare for DNS and likely CDN services, and asynchronous script loading to optimize performance and Core Web Vitals. The site is well-optimized for SEO and mobile devices, with structured data implemented via JSON-LD. However, explicit security headers are not evident in the provided data, and DNSSEC is not enabled, representing areas for improvement. From a security perspective, the site enforces HTTPS with strong domain registration protections (EPP locks) and uses reputable hosting infrastructure. There is no evidence of exposed sensitive data or vulnerabilities in the visible content. Privacy compliance is supported by an accessible privacy policy and integrated cookie consent mechanisms, though terms of service and incident response information are absent. No direct contact information or data protection officer details are provided, which could impact trust and compliance transparency. Overall, GateKeeper demonstrates a solid security posture and technical maturity appropriate for its business model and market segment. The absence of some compliance and security documentation suggests opportunities to enhance trust and regulatory adherence. Strategic recommendations include enabling DNSSEC, publishing comprehensive security and incident response policies, and providing clearer contact channels to improve user confidence and compliance standing.

85
35
2
60
75
75
100
gdprconsentmanagementtcf20privacyfreesoftware+1 more
JavaScriptBootstrapCloudflare DNSCSS+1

Partner Domains:

ezoic.com
parent
2025-10-03T18:33:56.850Z
A

ASMEL

asmelab.it

52
GovernmentItalysmallMEDIUM

ASMEL operates a specialized digital platform focused on managing public sector job candidacies in Italy, including the MAXI AVVISO ASMEL 2025 and reserved interpellations for registered candidates. The platform integrates with national digital identity systems such as SPID and CIE for secure authentication and supports payment processing via PagoPA. The website targets public sector candidates and entities, providing application management, official notices, and candidate support services. The business is relatively young, founded in 2020, and serves a niche government-related market segment. Technically, the website employs legacy UI frameworks like DHTMLX and jQuery, with PHP backend scripts. The site shows moderate performance and basic mobile optimization. There is no evidence of advanced CMS or modern frontend frameworks. SEO and accessibility features are basic, and no structured metadata (Open Graph or JSON-LD) is present. The site does not appear to use analytics or tracking services, indicating minimal user tracking. From a security perspective, the site uses HTTPS (implied by the URL), but no DNSSEC is enabled for the domain, and no security headers are visible in the HTML content. Authentication leverages SPID and CIE, which are strong identity frameworks in Italy. However, the absence of published privacy or cookie policies and lack of security policies or incident response contacts indicate gaps in compliance and transparency. No vulnerabilities or exposed sensitive data were detected in the content, but improvements are recommended. Overall, ASMEL's website is functional and credible for its public sector recruitment purpose but would benefit from enhanced security practices, privacy compliance, and technical modernization to improve trust and resilience.

20
25
2
60
72
65
100
publicsectorrecruitmentspidciepagopa+2 more
jQueryDHTMLXPHPJavaScript
2025-10-03T18:33:51.837Z
siteimprove.com favicon

Siteimprove

siteimprove.com

75
TechnologyN/aenterpriseMEDIUM

Siteimprove is an enterprise SaaS company specializing in digital accessibility, analytics, SEO, and content strategy solutions. Their platform integrates AI-driven agents to help organizations optimize digital content for accessibility compliance, search visibility, and performance. The company positions itself as a leader in digital governance and analytics, serving a broad audience including accessibility leaders, marketers, content strategists, and developers. The website reflects a mature digital presence with strong branding, comprehensive content, and modern technical infrastructure. Technically, the website employs modern JavaScript frameworks, analytics tools like Microsoft Application Insights and Google Tag Manager, and consent management via Cookiebot. The site is mobile-optimized, accessible, and SEO-friendly. However, explicit security headers and a public security policy are not evident, which could be improved to enhance security posture. Security-wise, the site uses HTTPS and implements cookie consent mechanisms, but lacks visible incident response contacts or vulnerability disclosure policies. The WHOIS data is unavailable or inaccessible, which slightly reduces trust but is likely due to privacy protection or querying issues. Overall, the site demonstrates a strong security baseline with room for improvement in transparency and policy publication. The overall risk is moderate to low given the professional nature of the site and its market position. Strategic recommendations include publishing a security policy, adding security headers, and providing clear security contact information to enhance trust and compliance.

70
73
2
80
100
90
100
accessibilityanalyticsseocontentstrategydigitalgovernance+5 more
JavaScriptReact (implied by chunk.js and modern JS modules)Google Tag ManagerMicrosoft Application Insights+3

Partner Domains:

partners.siteimprove.com
partner
optimizely.com
partner
2025-10-03T18:32:56.515Z
anchor.fm favicon

Spotify

anchor.fm

65
MediaN/aenterpriseMEDIUM

Spotify for Creators is a dedicated platform by Spotify designed to empower podcasters and content creators with tools to manage, grow, and monetize their audio and video podcasts. The platform leverages Spotify's extensive user base and technology infrastructure to provide analytics, customization, and monetization features, positioning itself as a leading service in the podcasting industry. The website reflects Spotify's strong brand identity and professionalism, targeting creators seeking to expand their audience and revenue streams. Technically, the website is built using modern web technologies including React and Next.js, hosted on Spotify's CDN infrastructure. It demonstrates excellent performance, mobile optimization, and accessibility. The presence of Google Tag Manager and cookie consent scripts indicates a mature approach to analytics and privacy compliance. The site is well-structured with comprehensive metadata and SEO optimization. From a security perspective, the site enforces HTTPS and likely employs standard security headers, although explicit security policies and incident response information are not publicly detailed. No vulnerabilities or exposed sensitive data were detected. Privacy and cookie policies are comprehensive and GDPR compliant, supporting user trust and regulatory adherence. Overall, the website presents a low-risk profile with high business credibility and technical maturity. Strategic recommendations include publishing explicit security and incident response policies and providing a vulnerability disclosure channel to further enhance trust and security posture.

40
73
2
82
52
85
100
podcastingaudiovideocreatorsspotify+4 more
ReactNext.jsGoogle Tag ManagerCookieLaw.org scripts
2025-10-03T18:32:51.505Z
C

Cuttly by Web Room Studio

2s.ms

79
TechnologyN/amediumLOW

Cuttly is a technology company specializing in URL shortening and link management services, with a particular focus on compliance for SMS marketing campaigns in India via their 2s.ms domain. The platform offers businesses tools to create TRAI-compliant short links with HEADER integration, ensuring regulatory adherence and smooth message delivery. The company positions itself as a reliable and innovative player in the URL shortening market, supported by positive industry recognition and awards. Technically, the website employs modern web technologies including jQuery, Bootstrap, and Google Tag Manager, hosted behind Cloudflare DNS services. The site is well-optimized for performance, mobile responsiveness, and accessibility, with strong SEO practices and a comprehensive cookie consent mechanism that aligns with GDPR requirements. From a security perspective, the site enforces HTTPS, uses domain locking to prevent unauthorized transfers or deletions, and provides cookie consent controls. However, it lacks explicit security policy documentation and a published vulnerability disclosure or security.txt file. The WHOIS data shows a domain registered since 2018 with stable status, though the registrant name differs from the brand, likely due to third-party registration. Overall, the website demonstrates a mature digital presence with strong privacy compliance and a solid security posture, suitable for its business model. Strategic improvements could include publishing detailed security policies, enabling DNSSEC, and providing direct security contact information to enhance trust and incident response readiness.

65
95
17
80
100
90
100
urlshortenertraicompliancesmsmarketinglinkmanagementprivacypolicy+3 more
jQueryBootstrapGoogle Tag ManagerCloudflare DNS
2025-10-03T18:32:46.493Z