Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

156127
Websites
130
Industries
113
Countries
52
Avg Score
Page 1335 of 3123|Showing 66701-66750 of 156127
woorton.com favicon

Woorton SAS

woorton.com

65
FinanceFrancesmallMEDIUM

Woorton SAS operates as a regulated algorithmic trading desk specializing in digital asset market making and liquidity provision. The company targets institutional clients globally, offering multi-asset trading capabilities, OTC liquidity, and advanced algorithmic solutions. Their market position is strengthened by regulatory compliance, including an AMF DASP license and a registered LEI number, underscoring their legitimacy in the finance and technology sectors. The website reflects a professional and consistent brand image with clear business descriptions and service offerings. Technically, the website is built on the Webflow platform, leveraging modern web technologies such as Google Analytics and Tag Manager for analytics and marketing. The site is mobile optimized with good SEO and accessibility basics, though some improvements in accessibility and security headers could enhance the technical maturity. Performance is moderate, with a clean and structured design that supports user experience. From a security perspective, the site enforces HTTPS and implements cookie consent mechanisms, indicating attention to privacy compliance. However, the absence of explicit security policies, incident response contacts, and security.txt files suggests room for improvement in transparency and readiness. No vulnerabilities or exposed sensitive data were detected, and the overall security posture is solid but could be enhanced with additional headers and documented policies. Overall, Woorton presents a trustworthy and professional digital presence aligned with its business objectives. The main risk lies in the lack of WHOIS domain registration data, which introduces some uncertainty about domain ownership transparency. Strategic recommendations include improving security policy disclosures, enhancing accessibility, and clarifying domain registration details to bolster trust and compliance.

30
83
2
85
59
85
100
digitalassetsmarketmakingalgorithmictradingliquidityfinance+3 more
WebflowGoogle AnalyticsGoogle Tag ManagerjQuery+2

Partner Domains:

woorton.welcomekit.co
partner
trading.woorton.com
service

+1 more partners

2025-09-06T18:05:37.263Z
plentydefi.com favicon

Plenty

plentydefi.com

57
FinanceN/asmallMEDIUM

Plenty DeFi is a decentralized finance platform focused on sustainable yield farming on the Tezos blockchain. The website positions itself as a beta product aimed at bringing more liquidity and users to the Tezos DeFi ecosystem. The platform targets DeFi users and liquidity providers interested in yield farming opportunities within the Tezos blockchain environment. The business model revolves around decentralized finance services, specifically yield farming and liquidity provision, positioning itself as a niche player in the blockchain finance sector. Technically, the website is built using modern JavaScript frameworks such as React and Webpack, hosted and protected by Cloudflare services. The site demonstrates moderate performance and basic mobile optimization. However, accessibility and SEO optimizations are minimal, and no CMS is detected. The technical infrastructure is adequate for a small-scale DeFi project but could benefit from enhancements in accessibility and SEO. From a security perspective, the website uses HTTPS and has domain status locks that prevent unauthorized domain transfers or deletions. However, DNSSEC is not enabled, and no advanced security headers are detected in the provided data. The absence of privacy, cookie, and terms of service policies indicates gaps in compliance and user transparency. No contact or incident response information is provided, limiting trust and security communication. Overall, the website presents a functional but basic online presence for a DeFi project in beta. The lack of privacy and cookie policies, absence of contact information, and minimal security headers reduce the overall trust and compliance posture. Strategic improvements in security practices, compliance documentation, and user communication are recommended to enhance credibility and user trust.

55
35
2
60
60
80
100
plentydefiplentytokenyieldfarmingtezostezosdefiplentydao
ReactWebpackCloudflare
2025-09-06T18:05:32.254Z
siriustoken.io favicon

Sirius: A Liquidity Pair Token on Tezos

siriustoken.io

54
TechnologyN/asmallMEDIUM

Siriustoken.io operates as a niche decentralized finance (DeFi) platform offering a liquidity pool token called Sirius ($SIRS) on the Tezos blockchain. The token simplifies participation in Liquidity Baking, allowing users to earn rewards by purchasing the token instead of performing complex multi-step transactions. The website targets cryptocurrency investors and Tezos users interested in liquidity pool participation. The business model revolves around token issuance and DeFi liquidity provision, positioning itself as a specialized player within the Tezos ecosystem. Technically, the website employs modern web technologies including HTML5, CSS3, JavaScript, and the Swiper.js library for interactive content. Hosting appears to be on Amazon AWS infrastructure, inferred from DNS servers. The site is moderately optimized for performance and mobile devices, with basic accessibility and SEO features. However, no CMS or advanced frameworks are detected, indicating a relatively simple but functional technical setup. From a security perspective, the site lacks visible security headers and DNSSEC is not enabled, which are areas for improvement. The domain uses privacy protection for WHOIS data, common in crypto projects, but no contact or incident response information is provided. No privacy or cookie policies are present, indicating low privacy compliance. The overall security posture is moderate but could be enhanced by implementing standard security best practices and transparency measures. Overall, the website is professional and relevant to its niche but lacks critical compliance and security documentation. Strategic recommendations include adding privacy and cookie policies, enabling DNSSEC, implementing security headers, and providing clear contact and incident response information to improve trust and compliance.

15
35
2
60
77
70
100
cryptocurrencydefitezosliquiditypoolblockchain+1 more
HTML5CSS3JavaScriptSwiper.js+1
2025-09-06T18:05:22.236Z
hextrust.com favicon

Hex Trust

hextrust.com

72
FinanceN/amediumMEDIUM

Hex Trust is a regulated institutional digital asset service provider specializing in custody, staking, and markets services tailored for builders, investors, and service providers in the blockchain and cryptocurrency space. The company positions itself as a leader in digital asset solutions, emphasizing regulatory compliance and institutional-grade security. Their platform supports a broad range of blockchain protocols and assets, reflecting a comprehensive service offering for institutional clients. Technically, Hex Trust leverages modern web technologies including Webflow CMS, Google Tag Manager, Google Analytics, and advanced bot protection via Google reCAPTCHA and Cloudflare Turnstile. The website is well-optimized for performance, mobile responsiveness, and accessibility, indicating a mature digital infrastructure. The presence of cookie consent mechanisms and privacy policies demonstrates attention to privacy compliance. From a security perspective, Hex Trust exhibits strong controls evidenced by SOC 1 and SOC 2 Type II certifications and multiple regulatory licenses across key jurisdictions such as Dubai, Hong Kong, Singapore, Italy, and France. However, the absence of explicit security headers and a dedicated security policy or incident response page suggests areas for improvement. No critical vulnerabilities or exposed sensitive data were detected. Overall, Hex Trust presents a high level of business credibility and trustworthiness, supported by strong partnerships and client testimonials. The lack of WHOIS data is a minor concern but is mitigated by the company's transparent regulatory and certification disclosures. Strategic recommendations include enhancing security header implementation, publishing a formal security policy, and establishing a vulnerability disclosure program to further strengthen trust and security posture.

60
83
17
85
62
85
100
digitalassetscustodystakingmarketsinstitutional+5 more
Google Tag ManagerGoogle AnalyticsGoogle reCAPTCHAWebflow CMS+2

Partner Domains:

aave.com
partner
chainalysis.com
partner

+2 more partners

2025-09-06T18:05:17.221Z
lexr.com favicon

LEXR AG

lexr.com

66
TechnologySwitzerlandmediumMEDIUM

LEXR AG is a specialized law firm serving tech, fintech, and digital companies primarily in Switzerland and Germany, with offices in Berlin, Zurich, St.Gallen, and Lausanne. The firm offers comprehensive legal services including corporate law, M&A, financing rounds, employee participation plans, and contracts tailored for startups, investors, and tech companies. Their business model emphasizes transparent, flat-fee pricing and subscription services, positioning them as a trusted partner for over 1,000 tech clients. The website demonstrates a strong market presence with professional branding, client testimonials, and a broad partner ecosystem. Technically, the website is built on WordPress with a modern tech stack including jQuery, HubSpot forms, Calendly scheduling, and various analytics and marketing tools such as Google Analytics, Microsoft Clarity, and Borlabs Cookie for consent management. The site is well-optimized for SEO, mobile responsive, and fast loading, reflecting a mature digital infrastructure. From a security perspective, the site enforces HTTPS, implements multiple security headers, and uses secure third-party integrations. However, there is no publicly available security policy or incident response contact information, and the WHOIS data for the domain is unavailable, which slightly reduces trustworthiness. No vulnerabilities or exposed sensitive data were detected. Overall, LEXR presents a professional, trustworthy online presence with strong business credibility and technical maturity. The main risk lies in the lack of WHOIS transparency and absence of published security policies, which should be addressed to enhance trust and compliance.

15
100
17
80
57
80
100
legaltechfintechstartuplawfirm+5 more
WordPressjQueryHubSpot formsCalendly widget+7

Partner Domains:

deepjudge.ai
partner
aktionariat.com
partner

+3 more partners

2025-09-06T18:05:12.119Z
tzkt.io favicon

Baking Bad OU

tzkt.io

51
TechnologyEstoniasmallMEDIUM

TzKT.io is a specialized blockchain explorer and API provider focused on the Tezos blockchain. Operated by Baking Bad OU, an Estonian company founded in 2019, it offers comprehensive blockchain data, a user-friendly interface, and an open-source blockchain indexer. The platform targets developers, blockchain users, and the Tezos community, positioning itself as a niche service within the Tezos ecosystem. The business model revolves around providing free and open access to blockchain data and APIs, supporting the broader Tezos network and its users. Technically, the website employs modern frontend technologies including Vue.js and Vuetify, ensuring fast performance, excellent mobile optimization, and good accessibility. The site uses HTTPS and integrates Google Analytics and Google Tag Manager for user tracking. However, it lacks DNSSEC on its domain and does not implement cookie consent mechanisms, which are areas for improvement. The hosting provider is not explicitly identified beyond the registrar Gandi SAS. From a security perspective, the site benefits from HTTPS and domain transfer protection but lacks several security headers and explicit security or incident response policies. No vulnerabilities or exposed sensitive data were detected in the content. Privacy compliance is basic, with privacy and terms policies hosted on the parent Baking Bad developer site but no cookie consent or GDPR compliance indicators on the main site. Overall, TzKT.io presents a professional, trustworthy, and technically mature platform with some gaps in privacy compliance and security best practices. Strategic improvements in DNSSEC, cookie consent, and security policy transparency would enhance its security posture and compliance standing.

30
53
2
70
72
55
40
tezosblockchainexplorerapicrypto+4 more
JavaScriptVue.jsVuetifyGoogle Analytics

Partner Domains:

bakingbad.dev
parent
stake.tezos.com
partner
2025-09-06T18:02:58.718Z
zeeve.io favicon

Zeeve Inc

zeeve.io

78
TechnologyN/amediumLOW

Zeeve Inc operates a blockchain deployment and management platform trusted by thousands of blockchain startups, enterprises, and Web3 developers. The company provides services to deploy, scale, monitor, and manage decentralized applications, positioning itself as a key player in the blockchain technology sector. The website reflects a mature digital presence with professional branding and comprehensive service descriptions targeting blockchain and Web3 audiences. Technically, the website is built on WordPress using Elementor and Yoast SEO, supported by a robust tech stack including multiple analytics and marketing tools such as Google Analytics, Microsoft Clarity, Mixpanel, and Zoho SalesIQ. The site is hosted with CDN support (BunnyCDN) ensuring fast performance and excellent mobile optimization. Security best practices are observed with HTTPS, security headers, and secure form implementations. From a security perspective, the site demonstrates a strong posture with no visible vulnerabilities or exposed sensitive data. However, it lacks publicly available security policies, incident response contacts, and vulnerability disclosure mechanisms, which are recommended for enhanced trust and compliance. The WHOIS data is privacy protected, which is common for tech companies but limits transparency. Overall, Zeeve presents a professional, secure, and well-optimized web presence suitable for its business domain. Strategic improvements in security transparency and incident response readiness would further strengthen its trustworthiness and compliance posture.

45
100
52
85
75
85
100
blockchaindecentralizedapplicationsweb3blockchainplatformblockchaindeployment+3 more
WordPressYoast SEO PremiumElementorGoogle Fonts+8
2025-09-06T18:02:48.700Z
transak.com favicon

Transak Limited

transak.com

74
FinanceUnited KingdomlargeMEDIUM

Transak Limited is a well-established fintech company founded in 2008, specializing in fiat-to-crypto on/off ramp services for Web3 and cryptocurrency applications. The company offers a comprehensive developer toolkit including customizable SDKs, white-label APIs, and partner dashboards, serving both individual users and businesses globally. With regulatory authorizations such as FCA registration in the UK and MSB registration in the US, Transak positions itself as a trusted and compliant infrastructure provider powering over 450 apps worldwide. Their partnerships with industry leaders like MetaMask, Visa, and Uniswap further reinforce their market position. Technically, Transak employs modern web technologies including React and Next.js, hosted behind Cloudflare DNS and CDN services, ensuring fast performance and mobile optimization. The website demonstrates excellent design quality, accessibility, and SEO practices, supported by comprehensive metadata and structured content. Security is a strong focus, evidenced by ISO 27001:2022 and SOC 2 Type II certifications, robust risk management, and multi-level KYC solutions integrated into their platform. The security posture is solid with HTTPS enforced, appropriate security headers, and no visible vulnerabilities or exposed sensitive data. Privacy compliance is well addressed with clear privacy and cookie policies, including consent mechanisms and GDPR adherence. However, the site lacks a dedicated vulnerability disclosure or incident response contact page, which could enhance transparency and security readiness. Overall, Transak presents a highly professional, secure, and trustworthy platform with strong business credibility and technical maturity. Strategic recommendations include publishing a vulnerability disclosure policy, providing explicit incident response contacts, and maintaining continuous monitoring of third-party dependencies to uphold security standards.

90
73
17
87
75
65
100
cryptofiatonrampfiatofframpweb3cryptocurrency+5 more
ReactNext.jsHubSpotGoogle Tag Manager+1

Partner Domains:

docs.transak.com
service
security.transak.com
service

+3 more partners

2025-09-06T18:02:38.657Z
energyweb.org favicon

Energy Web

energyweb.org

76
EnergyN/alargeLOW

Energy Web is a leading global ecosystem focused on accelerating the energy transition through open-source technology and collaboration. Founded in 2017, the organization provides blockchain-powered platforms and decentralized solutions targeting sectors such as electricity, aviation, maritime, e-mobility, and clean mining. Their business model emphasizes open-source software development and ecosystem participation, positioning them as a key player in energy sector digitization. Technically, the website is built on Webflow CMS with modern JavaScript libraries and APIs including Google Fonts, YouTube and Vimeo players, GSAP animations, and advanced slider components. The site is well optimized for performance, mobile responsiveness, and accessibility, with a fast loading experience and clear navigation. Security measures include HTTPS enforcement, CAPTCHA on forms, and cookie consent mechanisms, although explicit security headers and vulnerability disclosure pages are absent. The security posture is strong with no visible vulnerabilities or exposed sensitive data. Privacy compliance is well addressed with comprehensive privacy and cookie policies and GDPR indicators. The WHOIS data is unavailable due to query failure or privacy protection, but the website's professionalism and partner affiliations support its legitimacy. Overall, the site demonstrates a mature digital presence with good security hygiene and privacy awareness. Strategic recommendations include adding explicit security headers, publishing a security policy and vulnerability disclosure, and providing data protection officer contact details to enhance trust and compliance. Continued monitoring of third-party scripts and regular security audits will further strengthen the security posture.

60
83
47
85
72
80
100
energyblockchaindecarbonizationopen-sourcetechnology+2 more
Webflow CMSGoogle Fonts (Open Sans, Roboto)YouTube Player APIVimeo Player API+6
2025-09-06T17:00:17.613Z
ubinetic.com favicon

ubinetic AG

ubinetic.com

45
TechnologyN/asmallHIGH

ubinetic AG is a technology company founded in 2021 that specializes in developing automated, modular, and decentralized tools for creating bespoke synthetic assets. Their business model centers on providing open-source software solutions that enable users to create, store, and manage synthetic assets efficiently and transparently. The company targets developers and businesses interested in decentralized finance and synthetic asset management, positioning itself as a niche provider in this emerging market. Technically, the website is built on WordPress using WPBakery Page Builder, with common web technologies such as jQuery and Font Awesome. The site demonstrates moderate performance and good mobile optimization, with a clean and professional design. SEO practices are adequately implemented, though accessibility features are basic. Hosting details are not explicitly disclosed, but the domain is registered with 1API GmbH. From a security perspective, the site enforces HTTPS and uses domain transfer protection. However, it lacks DNSSEC, security headers, and explicit published security or incident response policies. No cookie consent mechanism is present, which is a compliance gap for GDPR. No vulnerabilities or exposed sensitive data were detected. Social media presence is active, enhancing trust and engagement. Overall, the website presents a moderate risk profile with good business credibility but some areas for security and compliance improvement. Strategic recommendations include enabling DNSSEC, implementing security headers, publishing security policies, and adding cookie consent mechanisms to enhance privacy compliance and security posture.

15
53
2
60
72
80
-
syntheticassetsdecentralizedfinanceopen-sourcetechnologyblockchain
WordPressWPBakery Page BuilderjQueryFont Awesome+1
2025-09-06T17:00:07.593Z
confidentialcomputing.io favicon

The Linux Foundation

confidentialcomputing.io

64
TechnologyUnited StateslargeMEDIUM

The Confidential Computing Consortium website is a professionally designed platform hosted by The Linux Foundation, focusing on advancing confidential computing technologies. The consortium serves as an industry collaboration hub, promoting hardware-based trusted execution environments and related security technologies. The website targets technology companies, developers, and security professionals interested in confidential computing. The business model is that of a consortium facilitating standards development and community building. Technically, the website is built on WordPress with integrations of HubSpot for marketing and analytics, Google Tag Manager, and New Relic for performance monitoring. The site uses modern web technologies and is mobile optimized, though accessibility features are basic. Performance is moderate, with room for improvement in SEO and accessibility. From a security perspective, the site uses HTTPS and has domain transfer protections in place. However, DNSSEC is not enabled, and no explicit security headers were detected in the provided data. There is no visible security policy, incident response information, or vulnerability disclosure program, which are areas for improvement. The domain WHOIS data is consistent and transparent, registered to The Linux Foundation, matching the website's claims. Overall, the website presents a trustworthy and credible front for the consortium but would benefit from enhanced privacy compliance, explicit security policies, and improved security headers to strengthen its security posture and user trust.

25
68
17
60
85
75
100
confidentialcomputinglinuxfoundationtechnologyconsortiumsecurityindustrycollaboration
WordPressHubSpot (analytics, messaging, ads pixel)Google Tag ManagerNew Relic Browser monitoring+2
2025-09-06T16:59:52.436Z
objkt.com favicon

objkt.com - Explore the Leading Digital Art Marketplace

objkt.com

48
TechnologyN/amediumHIGH

objkt.com is a leading digital art marketplace specializing in NFTs and collectibles on the Tezos blockchain. Established in 2016, it offers a platform for users to auction and list digital tokens, catering primarily to digital art collectors and blockchain enthusiasts. The website demonstrates a professional design and consistent branding, supporting a medium-sized business model focused on technology and e-commerce sectors. Technically, the site is built using modern web technologies, notably the Angular framework, and leverages Cloudflare for DNS and domain registration. The site is mobile-optimized and performs moderately well, with good SEO practices evident from meta tags and Open Graph data. However, some accessibility features appear basic, and there is room for improvement in performance optimization. From a security perspective, the site uses HTTPS and has domain transfer protections in place, but lacks DNSSEC and visible security headers, which are recommended for enhanced security. No privacy or cookie policies were detected, indicating potential compliance gaps with GDPR and other privacy regulations. No incident response or vulnerability disclosure information is publicly available. Overall, objkt.com presents a trustworthy and professional marketplace platform with a solid technical foundation but would benefit from enhanced privacy compliance and security best practices to improve user trust and regulatory adherence.

-
-
-
50
75
80
100
digitalartnftmarketplacetezosblockchain+1 more
Google FontsCloudflare DNS and registrar
2025-09-06T16:59:47.426Z
H

Hamilton Communications

hamilton.com

47
TelecommunicationsN/asmallHIGH

Hamilton Communications operates as a private Internet service provider with a long-established domain dating back to 1992. The company does not accept new customers and primarily provides services to existing clients. The website is minimalistic, serving mainly as an informational portal and a point of contact for abuse reporting. The business model is niche and focused on maintaining a private ISP service without public customer acquisition. The market position is limited but stable given the domain age and consistent branding. Technically, the website is built on basic HTML and CSS without modern frameworks or CMS platforms. Hosting is provided by Linode, a reputable provider, with multiple Linode nameservers configured. The site lacks mobile optimization and advanced SEO or accessibility features, indicating a low level of digital maturity. No analytics or tracking technologies are present, reflecting minimal data collection practices. From a security perspective, the domain benefits from transfer and update prohibitions, enhancing domain security. However, the absence of DNSSEC, security headers, and visible HTTPS enforcement reduces the overall security posture. No privacy or cookie policies are published, and no vulnerability disclosure or incident response policies are evident beyond a single abuse contact email. These gaps suggest room for improvement in compliance and security transparency. Overall, the website presents a low-risk profile due to its limited functionality and content but would benefit from enhanced security measures, privacy compliance, and technical modernization to improve trust and resilience against emerging threats.

15
50
2
75
85
75
20
ispinternetserviceproviderhamiltoncommunicationstelecommunications
HTMLCSS
2025-09-06T16:59:17.313Z
apollo.com favicon

Apollo Global Management

apollo.com

76
FinanceUnited StatesenterpriseLOW

Apollo Global Management is a leading global alternative asset management and retirement solutions provider founded in 1990 and headquartered in New York City. The company invests across credit, equity, and real assets, and operates a retirement services business, Athene, providing retirement savings products. The website reflects a mature, enterprise-level financial services firm with a strong market position and diversified investment strategies. Technically, the site uses Adobe Experience Manager CMS, integrates multiple analytics and tracking tools including Google Analytics, LinkedIn Insight, and Facebook Pixel, and employs Brightcove for video content delivery. The site is mobile optimized, accessible, and SEO friendly with comprehensive privacy and cookie consent mechanisms. Security posture is good with HTTPS enforced and no visible vulnerabilities, though explicit security headers and incident response information are not clearly published. WHOIS data is unavailable or privacy protected, which is common for large financial firms but reduces transparency. Overall, the website is professional, trustworthy, and compliant with privacy regulations, supporting Apollo's business credibility and digital maturity.

85
88
17
70
82
80
100
financeassetmanagementretirementsolutionsinvestmentcorporate+3 more
Brightcove video playerGoogle Tag ManagerGoogle Analytics (gtag.js)LinkedIn Insight Tag+3

Partner Domains:

ir.apollo.com
subsidiary
ir.athene.com
subsidiary

+3 more partners

2025-09-06T16:58:52.221Z
outlierventures.io favicon

Outlier Ventures

outlierventures.io

60
TechnologyUnited StatesmediumMEDIUM

Outlier Ventures is a leading global Web3 accelerator founded in 2014, specializing in investing and partnering with top Web3 founders and startups. The company positions itself as the number one Web3 accelerator by volume of investments, supporting over 200 founders annually. Their business model focuses on accelerator programs, advisory services, and building a strong founder community within the blockchain and crypto ecosystem. The website reflects a mature digital presence with professional design, clear navigation, and comprehensive marketing and analytics integration. Technically, the website is built on WordPress using Elementor and Yoast SEO, with integrations for HubSpot forms and multiple tracking pixels including Google Analytics, Facebook, LinkedIn, Twitter, and Reddit. The site is hosted with a reputable registrar and uses HTTPS, ensuring secure communications. Mobile optimization and SEO practices are well implemented, though accessibility features are basic. From a security perspective, the site enforces HTTPS and uses clientTransferProhibited status on the domain, indicating some level of domain security. However, DNSSEC is not enabled and some security headers like Content-Security-Policy are missing, which could be improved. The cookie consent mechanism is robust and GDPR compliant, but no explicit security policy or incident response information is publicly available. Overall, Outlier Ventures demonstrates a strong business credibility and digital maturity with minor security improvements recommended. The domain registration is privacy protected but consistent with the business profile, and no suspicious indicators were found. The website content is safe for general audiences and professionally presented.

15
85
2
75
42
75
100
web3acceleratorinvestmentblockchaintechnology+2 more
WordPressElementorYoast SEOHubSpot Forms+6

Partner Domains:

portfolio.outlierventures.io
partner
2025-09-06T16:58:37.181Z