Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

149091
Websites
130
Industries
113
Countries
52
Avg Score
Page 13 of 61|Showing 601-650 of 3048
trenitalia.com favicon

Trenitalia

trenitalia.com

11
TransportationItalyenterpriseCRITICAL

Trenitalia is the primary Italian national rail operator providing a wide range of train services including high-speed, intercity, and regional trains. The website serves as a comprehensive portal for ticket sales, travel information, loyalty programs, and additional travel-related services. It targets the general public and train travelers within Italy, positioning itself as a leading transportation service provider with a strong market presence supported by its parent company Ferrovie dello Stato Italiane and multiple subsidiaries. Technically, the website is built on Adobe Experience Manager, leveraging modern web technologies and third-party analytics and marketing tools such as Google Tag Manager, Facebook Pixel, and OneTrust for cookie consent. The site demonstrates good mobile optimization, accessibility, and SEO practices, although performance is moderate likely due to the extensive use of external scripts. From a security perspective, the site employs HTTPS and a strict Content-Security-Policy header, minimizing risks from cross-site scripting and other common web vulnerabilities. However, there is room for improvement by adding additional security headers and publishing a security.txt file to enhance vulnerability disclosure transparency. Privacy compliance is well addressed with clear privacy and cookie policies and consent mechanisms. Overall, Trenitalia's website is professional, trustworthy, and secure, reflecting its enterprise-level status and commitment to user experience and regulatory compliance. Strategic recommendations include enhancing security header coverage, improving incident response visibility, and maintaining vigilance on third-party script security.

-
-
-
-
-
-
-
transportationrailwaytrainticketshigh-speedrailitaly+3 more
Adobe Experience Manager (AEM)OneTrust Cookie ConsentGoogle Tag ManagerFacebook Pixel+7

Partner Domains:

fsitaliane.it
parent
fondazionefs.it
subsidiary

+3 more partners

2025-10-22T20:39:39.863Z
fstechnology.it favicon

FSTechnology

fstechnology.it

61
TransportationItalymediumMEDIUM

FSTechnology is a medium-sized technology company operating within the transportation sector in Italy, primarily serving as a digital transformation and technology service provider for the Ferrovie dello Stato Italiane group. The company offers a range of services including continuous and project-based technological services, managed and proprietary platforms, and advanced digital solutions such as IoT, blockchain, 5G, and robotic process automation. The website reflects a professional and consistent corporate identity with a focus on innovation and sustainability. Technically, the site is built on Adobe Experience Manager, leveraging modern analytics and marketing tools, and implements strong security measures including HTTPS and a strict Content-Security-Policy. Privacy compliance is well addressed with a comprehensive cookie consent mechanism and a detailed privacy policy. However, explicit contact information and security policies are not prominently displayed on the homepage, which could be improved. Overall, the website and domain registration data indicate a legitimate and trustworthy business entity with a solid market position in Italy's transportation technology sector.

55
40
17
75
52
70
100
transportationtechnologydigitaltransformationiotblockchain+4 more
Adobe Helix RUMjQueryOneTrust Cookie ConsentAdobe DTM (Dynamic Tag Management)+7

Partner Domains:

fsitaliane.it
parent
trenitalia.com
partner

+1 more partners

2025-10-22T17:27:20.239Z
italcertifer.com favicon

Italcertifer S.p.A.

italcertifer.com

55
TransportationItalymediumMEDIUM

Italcertifer S.p.A. is a medium-sized Italian company specializing in railway certification, testing, and safety verification services. It is a subsidiary or closely affiliated entity of Ferrovie dello Stato Italiane, Italy's national railway group, and collaborates with prominent Italian universities. The company positions itself as a center of excellence in railway conformity and safety, offering services such as certification of rolling stock, signaling, infrastructure, energy, and urban transport, alongside laboratory testing and project verification. The website content is professionally presented in Italian, targeting industry stakeholders and clients requiring railway safety and compliance services. Technically, the website is built on Adobe Experience Manager CMS, utilizing modern JavaScript libraries such as jQuery and Swiper.js, and integrates analytics and marketing tools including Siteimprove Analytics, Adobe Launch, and LinkedIn Insight Tag. The site is mobile-optimized with good accessibility and SEO practices. Cookie consent and privacy policies are implemented in compliance with GDPR, reflecting a mature digital presence. From a security perspective, the site enforces HTTPS and uses cookie consent mechanisms but lacks visible HTTP security headers and explicit incident response or vulnerability disclosure information. No critical vulnerabilities or exposed sensitive data were detected in the HTML content. However, the WHOIS data for the domain is missing or unavailable, which raises some concerns about domain registration transparency, though the website's affiliation with a reputable parent company mitigates this risk. Overall, Italcertifer's website demonstrates a solid business and technical foundation with good security hygiene, though improvements in domain registration transparency and security header implementation are recommended to enhance trust and compliance.

55
50
17
60
-
80
100
railwaycertificationsafetytransportationitaly+3 more
jQueryAdobe LaunchOneTrust Cookie ConsentYouTube IFrame API+3

Partner Domains:

www.fsitaliane.it
partner
www.trenitalia.com
partner

+1 more partners

2025-10-22T17:26:30.380Z
safe.com favicon

Safe Software

safe.com

65
TechnologyCanadamediumMEDIUM

Safe Software is a Canadian technology company specializing in data integration and transformation solutions, primarily through its flagship product, FME. The company targets organizations that require robust data handling capabilities to improve operational efficiency and data utilization. Safe Software holds a strong market position as a leader in data integration software, supported by a professional and well-structured website that clearly communicates its value proposition and services. The website demonstrates a mature digital presence with comprehensive SEO optimization, mobile responsiveness, and user-friendly navigation. Technically, the website is built on WordPress and leverages modern web technologies including jQuery, HubSpot marketing and analytics tools, Google Tag Manager, and OneTrust for cookie consent management. The site is well-optimized for performance and accessibility, reflecting a high level of digital maturity. Security best practices are observed with HTTPS enforcement and appropriate security headers, although explicit security policies and incident response information are not publicly available. The security posture is solid with no evident vulnerabilities or exposed sensitive data. Privacy compliance is strong, featuring a detailed privacy policy and cookie consent mechanism aligned with GDPR requirements. However, the absence of WHOIS domain registration data introduces some uncertainty regarding domain transparency and ownership verification. Overall, the website and business appear legitimate and trustworthy, but domain registration opacity slightly reduces the trust score. Strategically, Safe Software should consider publishing detailed security policies and incident response contacts to enhance transparency and trust. Implementing a vulnerability disclosure program or security.txt file would further demonstrate commitment to security. Continuous monitoring of third-party scripts and maintaining privacy compliance will support ongoing risk management and regulatory adherence.

70
88
2
87
72
80
40
dataintegrationfmesoftwaretechnologyprivacy+4 more
WordPressYoast SEO pluginjQueryHubSpot scripts+2
2025-10-22T13:58:47.184Z
reply.com favicon

Reply

reply.com

81
TechnologyItalyenterpriseLOW

Reply is an established enterprise specializing in digital services, technology, and consulting. The company supports leading industrial groups by leveraging advanced technologies such as artificial intelligence, big data, cloud computing, and the Internet of Things to enable innovative business models. Their market position is strong within the technology consulting sector, offering a broad portfolio of services including AI, cybersecurity, digital commerce, and supply chain management. The website reflects a mature digital presence with comprehensive service offerings and a clear focus on enterprise clients. Technically, the website employs modern marketing and analytics technologies including HubSpot, Google Analytics, and OneTrust for cookie consent management. The site is well-optimized for mobile devices, has good accessibility features, and demonstrates solid SEO practices. Performance is moderate, with no critical technical issues detected. From a security perspective, the site enforces HTTPS and includes standard security headers, indicating a good baseline security posture. However, explicit security policies, incident response information, and vulnerability disclosure mechanisms are not publicly available, which could be improved to enhance transparency and trust. The absence of WHOIS data limits domain registration trust analysis, but the professional presentation and contact information mitigate concerns. Overall, Reply's website presents a professional, secure, and privacy-conscious digital front that aligns with its enterprise consulting business. Strategic recommendations include publishing detailed security policies, establishing a vulnerability disclosure program, and enhancing incident response contact channels to further strengthen security posture and stakeholder trust.

80
88
47
70
100
80
100
consultingdigitalservicestechnologycloudcomputingartificialintelligence+4 more
HubSpotGoogle Tag ManagerGoogle AnalyticsSleeknote+1
2025-10-22T11:01:09.594Z
zeppelin.com favicon

Zeppelin Konzern

zeppelin.com

71
EnergyGermanyenterpriseMEDIUM

Zeppelin Konzern is a large German enterprise specializing in providing innovative solutions across construction, industry, plant engineering, and energy sectors. The company operates globally with over 200 locations, emphasizing sustainability and corporate social responsibility. Their business model focuses on B2B services including machinery, rental, power systems, and engineering solutions. The website reflects a mature digital presence with professional design and comprehensive content tailored to industrial clients and partners. Technically, the website leverages modern frameworks such as Next.js and React, supported by CDN hosting and enhanced with Google Tag Manager and OneTrust for privacy compliance. The site is mobile-optimized, fast-loading, and accessible, indicating a high level of digital maturity. Security best practices are observed with HTTPS enforcement and security headers, although no public vulnerability disclosure or incident response information is provided. The security posture is strong with no visible vulnerabilities or exposed sensitive data. Privacy compliance is well implemented with clear cookie consent mechanisms and GDPR-aligned privacy policies. However, the absence of WHOIS data for the domain introduces some uncertainty regarding domain registration legitimacy, though the website content and branding strongly support the authenticity of the business. Overall, Zeppelin Konzern presents a professional, trustworthy, and secure online presence suitable for its enterprise audience. Strategic recommendations include publishing a vulnerability disclosure policy, incident response contacts, and continuing regular security audits to maintain and enhance trust.

50
83
2
85
82
85
100
constructionindustryenergyengineeringsustainability+2 more
ReactNext.jsjQueryGoogle Tag Manager+1
2025-10-22T08:39:41.094Z
majidalfuttaim.com favicon

Majid Al Futtaim

majidalfuttaim.com

81
RetailUnited Arab EmiratesenterpriseLOW

Majid Al Futtaim is a prominent integrated lifestyle provider operating in sectors including shopping malls, hotels, cinemas, hypermarkets, and lifestyle brands primarily in the Middle East. The company positions itself as a leading enterprise offering diverse consumer experiences and business services. The website reflects a mature digital presence with comprehensive content, clear navigation, and consistent branding, targeting consumers and business partners in retail and hospitality sectors. Technically, the website employs modern tracking and analytics technologies such as Google Analytics, Facebook Pixel, LinkedIn Insight Tag, and uses Akamai for hosting and content delivery. The site is mobile optimized, accessible, and SEO friendly, with a cookie consent mechanism implemented via OneTrust, indicating good privacy compliance. Performance is moderate with room for optimization. From a security perspective, the site enforces HTTPS and uses reputable third-party scripts. However, explicit security headers are not evident in the provided data, and no public security or incident response policies are found. The absence of WHOIS data limits domain registration transparency, but the overall digital footprint and corporate content suggest legitimacy. No critical vulnerabilities or exposed sensitive data were detected. Overall, the website demonstrates a strong business and technical foundation with good privacy and security practices, though improvements in security header implementation and public security policies are recommended to enhance trust and compliance.

80
88
20
90
95
90
100
corporateretailhospitalitylifestyleprivacy+2 more
Google Tag ManagerGoogle AnalyticsFacebook PixelLinkedIn Insight Tag+2
2025-10-22T05:52:29.614Z
aldar.com favicon

Aldar Properties

aldar.com

74
Real EstateUnited Arab EmirateslargeMEDIUM

Aldar Properties is a prominent real estate developer and investment company based in Abu Dhabi, UAE, offering a wide range of premium residential, commercial, hospitality, and educational properties and services. The company targets UAE residents and investors, providing property sales, rentals, investment opportunities, and related e-services through a professionally designed and well-structured website. The site demonstrates a mature digital presence with integration of modern analytics and tracking technologies, including Datadog, Microsoft Clarity, TikTok Pixel, and Facebook Pixel, alongside a cookie consent mechanism via OneTrust. The technical infrastructure suggests hosting on Microsoft Azure and use of Sitecore CMS, supporting good performance and mobile optimization. Security posture is strong with HTTPS enforced and sandboxed iframes for interactive elements, though explicit security headers and policies are not fully visible. The absence of WHOIS registration details is a notable anomaly, possibly due to privacy protection or query failure, but the website content and external references strongly support legitimacy. Overall, Aldar's digital presence aligns with its market position as a leading real estate entity in the UAE, though improvements in privacy policy visibility and security disclosures are recommended.

75
73
17
92
80
80
100
realestateabudhabipropertyinvestmentresidential+6 more
JavaScriptCSSHTML5Google Tag Manager+7

Partner Domains:

khidmah.com
partner
asteco.com
partner

+3 more partners

2025-10-22T05:52:09.573Z
kew.org favicon

Royal Botanic Gardens Kew

kew.org

69
GovernmentUnited KingdomlargeMEDIUM

Royal Botanic Gardens Kew is a globally recognized non-profit botanical institution based in the United Kingdom, dedicated to plant science, conservation, and public education. The website serves a diverse audience including researchers, families, schools, and general visitors, offering access to botanical collections, scientific resources, educational programs, and membership opportunities. The institution holds a strong market position as a leading botanical garden and research center. Technically, the website is built on Drupal 10, leveraging modern web technologies and integrating tools such as Google Tag Manager and Visual Website Optimizer for analytics and user experience optimization. The site demonstrates good performance, excellent mobile responsiveness, and accessibility features, reflecting a mature digital infrastructure. From a security perspective, the site enforces HTTPS, employs standard security headers, and integrates a comprehensive cookie consent mechanism compliant with GDPR. However, it lacks a publicly visible dedicated security policy or incident response contact, and no vulnerability disclosure or security.txt file is present. No vulnerabilities or exposed sensitive data were detected. Overall, the website is professional, trustworthy, and secure, with strong privacy compliance and clear business credibility. The absence of WHOIS data limits domain registration insights but does not detract from the site's legitimacy. Strategic recommendations include publishing explicit security policies and incident response information to enhance transparency and trust.

50
100
17
73
52
75
100
botanicalscienceeducationnon-profitgardens+2 more
Drupal 10Google Tag ManagerVisual Website Optimizer (VWO)OneTrust Cookie Consent
2025-10-22T02:24:30.822Z
conservation.org favicon

Conservation International

conservation.org

77
Non-profitUnited StateslargeLOW

Conservation International is a well-established non-profit organization founded in 1987, dedicated to protecting oceans, forests, and other vital ecosystems globally. The organization targets a broad audience including donors, environmental advocates, and the general public. Their business model focuses on conservation efforts, scientific research, community partnerships, and advocacy. The website reflects a mature digital presence with integrated donation capabilities and active social media engagement. Technically, the website is built on the Sitefinity CMS platform, utilizing modern technologies such as Bootstrap, jQuery, and various third-party widgets for fundraising and analytics. The site demonstrates good mobile optimization, accessibility, and SEO practices, supported by comprehensive privacy and cookie policies with user consent mechanisms. From a security perspective, the site enforces HTTPS, employs standard security headers, and avoids exposing sensitive data. However, it lacks publicly available security policies, incident response details, and vulnerability disclosure mechanisms, which are recommended for enhanced transparency and trust. Overall, the website is professional, trustworthy, and secure, with minor areas for improvement in security communication and incident handling. The absence of WHOIS data is due to privacy protection, which is justified for this type of organization. The domain and website content align well, supporting a high legitimacy score.

80
88
25
80
77
80
100
environmentconservationnon-profitenvironmentalprotectiondonation+1 more
jQueryBootstrapYouTube iframe APIFundraise Up widget+4

Partner Domains:

give.conservation.org
partner
conservation.org.co
partner

+1 more partners

2025-10-22T02:24:10.765Z
U

UEFA

uefa.ch

63
OtherSwitzerlandlargeMEDIUM

UEFA.com is the official digital presence of the Union of European Football Associations, the governing body for football in Europe. The website serves as a comprehensive platform for football fans, media, and stakeholders, offering news, live scores, video content, and detailed information about UEFA's competitions and initiatives. UEFA holds a leading position in European and global football, organizing prestigious tournaments such as the UEFA Champions League and UEFA EURO. The site targets a broad audience including football enthusiasts, clubs, and national associations. Technically, the website employs modern web technologies including React, integrates multiple analytics and marketing tools such as Google Analytics and OneTrust for cookie consent, and uses secure HTTPS protocols with strong security headers. The site is well-optimized for mobile devices and accessibility, providing a fast and user-friendly experience. From a security perspective, UEFA.com demonstrates good practices with HTTPS enforcement, security headers, and privacy compliance mechanisms. However, explicit security policies, incident response contacts, and vulnerability disclosure information are not publicly available, representing areas for improvement. The absence of WHOIS data for the domain is noted but does not detract from the site's legitimacy given the strong branding and official nature. Overall, UEFA.com presents a professional, secure, and trustworthy platform with excellent content quality and technical implementation. Strategic recommendations include enhancing transparency around security policies and incident response, publishing vulnerability disclosure details, and providing data protection officer contact information to further strengthen trust and compliance.

-
73
17
70
80
75
100
sportsfootballuefaeuropeanfootballsoccer+2 more
JavaScriptReactJWPlayerGoogle Analytics+2

Partner Domains:

shopuefa.com
partner
clubcompetitions-shop.com
partner

+3 more partners

2025-10-21T17:14:14.620Z
bimobject.com favicon

BIMobject

bimobject.com

73
TechnologyFinlandlargeMEDIUM

BIMobject is a leading technology platform specializing in providing free BIM (Building Information Modeling) objects and content for architects, engineers, and construction professionals. The website offers a comprehensive catalog of BIM objects from over 2,000 manufacturers, supporting multiple design software platforms such as Revit, SketchUp, and ArchiCAD. The platform also enables manufacturers to publish their products, positioning BIMobject as a key player in the digital construction ecosystem. Technically, the website is built on a modern Angular framework with integrations for Google Tag Manager and OneTrust for privacy compliance, reflecting a mature digital infrastructure. Security posture is strong with HTTPS enforcement and standard security headers, although explicit security policies and incident response contacts are not publicly detailed. Overall, the site demonstrates high professionalism, good privacy compliance, and a trustworthy user experience, though the absence of WHOIS registration data slightly reduces transparency. Strategic recommendations include publishing detailed security policies, adding vulnerability disclosure mechanisms, and providing direct contact channels for security and business inquiries.

55
80
2
80
100
85
100
bimbuildinginformationmodelingarchitectureengineeringconstruction+4 more
Angular 19.2.8Google Tag ManagerOneTrust Cookie ConsentWebmanifest+1

Partner Domains:

business.bimobject.com
partner
account.bimobject.com
service
2025-10-21T13:52:52.062Z
fifa.com favicon

FIFA

fifa.com

60
OtherN/alargeMEDIUM

The FIFA website represents the official online presence of the Fédération Internationale de Football Association, the global governing body for football. FIFA organizes major international football tournaments and serves a worldwide audience of football fans, players, officials, and media. The organization operates as a large non-profit entity with a global market position as the authoritative football institution. However, the provided HTML content is inaccessible, showing only a loading animation, indicating the presence of a Web Application Firewall or security mechanism blocking content access. This limits the ability to fully analyze the website's content, policies, and technical details. Technically, the website appears to use modern JavaScript frameworks such as React, with integrations of marketing and tracking tools like AppsFlyer, Adobe DTM, and OneTrust for cookie consent. Despite this, the lack of accessible content and absence of visible privacy or cookie policies in the provided data suggest gaps in privacy compliance and transparency. Security headers and SSL configuration details are not discernible from the content, and no contact or incident response information is available. From a security posture perspective, the site is protected by a WAF or similar mechanism, which is a positive security control but also restricts content visibility. The absence of WHOIS data reduces trust signals, though the domain is globally recognized. Overall, the site scores low on content quality and privacy compliance due to blocked content and missing policies. Strategically, FIFA should ensure that its website content is accessible to legitimate users and that privacy and security policies are clearly published and compliant with regulations such as GDPR. Enhancing transparency and contact availability would improve trust and user confidence.

75
50
2
70
75
85
100
sportsfootballfifasoccerinternational+1 more
React (implied by chunked JS files)WebpackAppsFlyer SDKOneTrust Cookie Consent+2
2025-10-21T13:48:57.205Z
worldofwarcraft.com favicon

Blizzard Entertainment

worldofwarcraft.com

75
TechnologyUnited StatesenterpriseMEDIUM

World of Warcraft's official website, hosted under the Blizzard Entertainment domain, serves as a comprehensive portal for one of the most popular MMORPGs globally. The site targets gamers and fans of fantasy online games, offering game information, updates, and community engagement. As part of the Activision Blizzard group, it benefits from strong brand recognition and a large enterprise infrastructure. The website is professionally designed with excellent content quality and clear navigation, optimized for both desktop and mobile users. Technically, the site employs modern web technologies including JavaScript frameworks, Google Tag Manager for analytics, and OneTrust for cookie consent management, indicating a mature digital infrastructure. Performance is fast, and SEO and accessibility practices are well implemented. However, explicit security headers are not visibly present in the HTML, and no public security policy or incident response information is found, which could be improved. Security posture is strong with HTTPS enforced and no visible vulnerabilities or exposed sensitive data. Privacy compliance is good, with comprehensive privacy and cookie policies and GDPR compliance indicators. Business credibility is high due to clear branding, association with Blizzard Entertainment, and professional presentation. WHOIS data is unavailable due to the domain being a subdomain of blizzard.com, which is typical for large enterprises and privacy protected domains. Overall, the website presents a low risk profile with strong trust indicators, though it could enhance transparency by publishing security policies and vulnerability disclosure information.

75
88
2
87
77
85
100
gamingmmorpgblizzardworldofwarcraftonlinegame+1 more
JavaScriptGoogle Tag ManagerOneTrust Cookie ConsentCSS3+1

Partner Domains:

blizzard.com
parent
activision.com
parent
2025-10-21T08:07:59.522Z