Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157327
Websites
130
Industries
113
Countries
52
Avg Score
Page 134 of 166|Showing 6651-6700 of 8294
trilliondollarcoach.com favicon

Alphabet Inc.

trilliondollarcoach.com

62
TechnologyN/amediumMEDIUM

The website trilliondollarcoach.com serves as the official platform for the book 'Trillion Dollar Coach,' which encapsulates the leadership and management lessons of Bill Campbell, a renowned Silicon Valley coach. The site is professionally designed, featuring rich content including testimonials from prominent industry leaders and multiple purchase options. It targets business leaders and managers interested in leadership principles derived from Silicon Valley's top executives. The business model centers on book sales and leadership education, with strong brand association to Alphabet Inc., enhancing its market credibility. Technically, the website employs modern web technologies such as React, Google Analytics, and Swiper.js, ensuring a fast, mobile-optimized, and accessible user experience. The domain is registered with a reputable registrar and shows no signs of suspicious activity. However, the site lacks explicit privacy and cookie policies, which are critical for compliance with data protection regulations. From a security perspective, the site uses HTTPS and avoids exposing sensitive data, but it does not implement security headers or provide incident response contacts or vulnerability disclosure mechanisms. The use of Google Analytics indicates moderate user tracking, but without clear privacy compliance disclosures. Overall, the site demonstrates a solid security posture but has room for improvement in privacy and security transparency. The overall risk assessment is low, with recommendations focusing on enhancing privacy compliance, implementing security headers, and publishing incident response information to strengthen trust and regulatory adherence.

60
35
17
40
85
75
100
leadershipmanagementsiliconvalleybusinessbook+1 more
ReactGoogle AnalyticsGoogle FontsSwiper.js
2025-06-27T01:43:16.085Z
centra.dev favicon

Centra

centra.dev

60
E-commerceN/amediumMEDIUM

Centra is a technology company specializing in providing developer-centric e-commerce solutions through APIs and headless commerce platforms. Their website offers comprehensive documentation, guides, and sandbox access aimed at developers and e-commerce businesses seeking to build custom commerce stacks. The company positions itself as a flexible and modern alternative in the e-commerce technology market, focusing on Direct-to-Consumer and Wholesale business models. Technically, the website leverages modern frameworks such as Next.js and React, with GraphQL APIs and integrations with HubSpot for forms and Leadfeeder for tracking. The site demonstrates good performance, mobile optimization, and accessibility, reflecting a mature digital infrastructure. SEO practices are well implemented with appropriate meta tags and Open Graph data. From a security perspective, the site enforces HTTPS and uses asynchronous script loading to optimize performance and security. However, it lacks published security policies, incident response information, and vulnerability disclosure mechanisms, which are important for transparency and trust. Privacy and cookie policies are also missing, indicating compliance gaps with GDPR and related regulations. Overall, Centra's website is professional and trustworthy, with strong business credibility and technical maturity. The main risks relate to privacy compliance and security transparency, which should be addressed to enhance user trust and regulatory adherence.

30
35
47
40
72
75
100
e-commercedeveloperapigraphqlheadlesscommerce+2 more
ReactNext.jsGraphQLHubSpot Forms+1
2025-06-26T22:23:56.869Z
pdfgeneratorapi.com favicon

PDF Generator API

pdfgeneratorapi.com

74
TechnologyN/asmallMEDIUM

PDF Generator API is a technology company specializing in providing an API service that automates PDF document creation from templates and JSON data. Their platform targets developers and businesses seeking to integrate PDF generation capabilities into their applications, offering a browser-based drag-and-drop editor for template management. The company appears to be a small-sized entity founded around 2017, with a focused niche in document automation technology. Technically, the website leverages modern web technologies including Next.js and React, supported by analytics and monitoring tools such as Mixpanel, Google Analytics 4, RudderStack, and Bugsnag. Hosting is likely on Amazon AWS infrastructure, indicated by the DNS servers. The site demonstrates moderate performance and good mobile optimization, with basic accessibility and SEO practices in place. From a security perspective, the site enforces HTTPS and includes a cookie consent mechanism with granular user options, reflecting some privacy compliance efforts. However, the absence of DNSSEC, security headers, explicit privacy policy, terms of service, and contact information for security or incident response reduces the overall security posture. No WAF or blocking mechanisms were detected, and the domain registration is consistent and legitimate. Overall, the website presents a professional and functional service with room for improvement in privacy transparency, security hardening, and contact availability. Strategic recommendations include enabling DNSSEC, implementing security headers, publishing comprehensive privacy and security policies, and providing clear contact channels for incident response.

30
100
55
70
77
85
100
pdfgenerationapidocumentautomationtechnologydevelopertools
Next.jsReactMixpanelGoogle Analytics 4+4
2025-06-26T21:09:31.765Z
gramedia.com favicon

PT Gramedia Asri Media

gramedia.com

67
RetailIndonesialargeMEDIUM

Gramedia.com is the largest and most trusted online bookstore in Indonesia, operated by PT Gramedia Asri Media. The website offers a comprehensive catalog of books and related products, targeting Indonesian consumers interested in literature and educational materials. The business model is e-commerce retail with a strong emphasis on official stores and promotional campaigns. The company maintains a significant market position as a leading book retailer in the region. Technically, the website is built on modern frameworks such as React and Next.js, incorporating various analytics and marketing tools including Google Analytics, Hotjar, TikTok Pixel, and Facebook Pixel. The site demonstrates good mobile optimization and SEO practices, although accessibility features could be improved. Performance is moderate, with a well-structured and professional design. From a security perspective, the site enforces HTTPS and employs standard security headers, reflecting a solid security posture. However, the absence of a visible cookie consent mechanism and explicit security or incident response policies indicates room for improvement in privacy compliance and transparency. The WHOIS data is unavailable, which slightly reduces trust but is mitigated by the company's established market presence and consistent branding. Overall, Gramedia.com is a credible and professionally managed e-commerce platform with a strong business foundation and good technical implementation. Strategic enhancements in privacy compliance and security transparency would further strengthen its trustworthiness and regulatory adherence.

20
70
17
85
77
85
100
e-commercebooksretailindonesiaonlinestore+1 more
ReactNext.jsGoogle Tag ManagerGoogle Analytics+6

Partner Domains:

help.gramedia.com
service
ebooks.gramedia.com
service

+2 more partners

2025-06-26T17:50:44.221Z
E

email.com

email.com

56
OtherN/asmallMEDIUM

The website at email.com/lander is a minimal placeholder or parking page with very limited content. It primarily loads a React-based frontend with Google AdSense scripts for advertising. There is no visible business information, contact details, or compliance policies, which significantly limits the ability to assess the business or its market position. The domain itself is very old, registered since 1997 with Register.com, Inc., which suggests legitimacy in terms of domain ownership but contrasts with the lack of substantive website content. From a technical perspective, the site uses modern JavaScript frameworks (React) and integrates Google advertising scripts. However, there is no evidence of HTTPS enforcement or security headers, and DNSSEC is not enabled on the domain. The site’s performance and mobile optimization are basic, and SEO and accessibility features are minimal or absent. Security posture is weak due to the absence of HTTPS information, security headers, and privacy or cookie policies. No incident response or vulnerability disclosure information is present. The lack of contact information and business details further reduces trustworthiness. There are no signs of WAF or blocking mechanisms, so the site is accessible but offers minimal value or assurance to visitors. Overall, the website appears to be a parked domain or placeholder with advertising scripts but no real business presence or security/compliance maturity. Strategic recommendations include implementing HTTPS, adding comprehensive privacy and cookie policies, providing clear contact information, and improving security headers and DNSSEC to enhance trust and compliance.

25
50
2
70
77
85
100
placeholderparkingadsenseminimal-content
ReactGoogle AdSense
2025-06-26T17:44:21.925Z
wittl.co favicon

Wittl

wittl.co

62
TechnologyN/asmallMEDIUM

Wittl is a SaaS company providing a modern applicant tracking system tailored for small and medium-sized teams. Their platform enables users to create job postings, customize career sites, manage applicant reviews, and collaborate efficiently during the hiring process. Positioned as an affordable and user-friendly alternative to legacy ATS solutions, Wittl targets SMBs seeking streamlined recruitment workflows. The website demonstrates a professional and consistent brand presence with clear service offerings and customer testimonials, reinforcing trust and market relevance. Technically, the site is built on a modern React and Next.js stack, delivering fast performance and excellent mobile optimization. The use of privacy-focused analytics (Plausible) aligns with contemporary data protection expectations. However, the absence of certain security headers and cookie consent mechanisms indicates room for improvement in security and privacy compliance. From a security perspective, the site enforces HTTPS and avoids exposing sensitive data, reflecting good baseline security hygiene. The lack of published security policies or incident response contacts suggests an opportunity to enhance transparency and preparedness. The WHOIS data is privacy protected, which is typical for SaaS businesses but limits external verification of registrant details. Overall, Wittl presents a credible and well-executed online presence with minor gaps in privacy compliance and security best practices. Strategic enhancements in these areas would further strengthen user trust and regulatory alignment.

30
58
2
70
72
80
100
applicanttrackinghiringrecruitmentsaassmallbusiness+3 more
ReactNext.jsJavaScriptSVG+1
2025-06-26T16:39:31.215Z
videogen.io favicon

VideoGen, Inc.

videogen.io

59
TechnologyIcelandsmallMEDIUM

VideoGen, Inc. operates a cutting-edge AI-powered video generation platform designed to simplify and accelerate video creation for content creators, marketers, educators, and businesses. The platform offers a wide range of AI-driven features including script writing, voiceover generation, avatar integration, and multi-format video outputs tailored for social media and professional use. Backed by Y Combinator and trusted by millions, VideoGen positions itself as a leading SaaS solution in the AI video generation market. Technically, the website is built on modern web technologies including React and Next.js, hosted and secured via Cloudflare. It demonstrates excellent performance, mobile optimization, and SEO practices. The security posture is strong with HTTPS enforcement and appropriate security headers, although privacy compliance could be enhanced by implementing explicit cookie consent mechanisms. From a security perspective, no critical vulnerabilities or exposed sensitive data were detected. The domain uses privacy protection for WHOIS data, which is justified for a startup. The business credibility is high, supported by professional branding, testimonials, and a comprehensive affiliate program. Overall, VideoGen presents a mature digital presence with room for minor improvements in privacy transparency and security policy disclosures.

15
53
17
72
65
65
100
aivideogeneratorsaascontentcreationmarketing+2 more
ReactNext.jsCloudflare DNSGoogle Fonts+3

Partner Domains:

webforms.pipedrive.com
partner
app.dover.com
partner
2025-06-26T15:29:21.187Z
cekura.ai favicon

Tatva Labs Inc.

cekura.ai

63
TechnologyUnited StatessmallMEDIUM

Cekura, operated by Tatva Labs Inc., is a technology company specializing in AI voice agent testing and observability solutions. The company offers a SaaS platform that enables enterprises and conversational AI companies to efficiently test, monitor, and improve their AI voice agents. Positioned as a trusted partner with backing from Y Combinator and strategic partnerships with Cisco, Cekura serves over 50 conversational AI companies globally. Their platform supports scenario simulation, persona emulation, and real-time alerting to ensure AI agents perform reliably in complex conversational workflows. Technically, the website is built on modern frameworks such as Next.js and React, with integrated analytics via PostHog and scheduling via Cal.com, demonstrating a mature digital infrastructure with fast performance and excellent mobile optimization. Security-wise, the company holds SOC2 Type2 and HIPAA compliance certifications, indicating a strong commitment to data protection and regulatory adherence. However, the site lacks explicit security headers and a public vulnerability disclosure, which are recommended for enhanced security posture. Overall, Cekura presents a professional, trustworthy, and technically sound presence in the AI voice technology market.

30
53
55
35
72
75
100
aivoiceevaluationaivoiceobservabilityaivoiceqaautomatedvoiceaitestingvoiceaitesting+4 more
ReactNext.jsPostHog analyticsVideo embedding+1

Partner Domains:

cisco.com
partner
retell.ai
partner
2025-06-26T15:28:56.130Z
getnowadays.com favicon

Nowadays AI, Corp.

getnowadays.com

62
TechnologyN/asmallMEDIUM

Nowadays AI, Corp. operates a technology-driven platform that leverages artificial intelligence to streamline corporate event planning. The company positions itself as an in-house event planner for businesses, offering services such as venue search, negotiation with venues globally, and travel agency capabilities certified by IATA. The platform targets corporate clients seeking efficient and hassle-free event organization, supported by notable trust signals including Y Combinator backing and press coverage. Technically, the website is built using modern frameworks such as Next.js and React, with integrations like Intercom for customer engagement and embedded YouTube videos for marketing. The site demonstrates good mobile optimization and SEO practices, though some accessibility features could be enhanced. Performance is moderate, with room for improvement in loading speed and security headers. From a security perspective, the site uses HTTPS (implied by the URL), but no explicit security headers were detected in the HTML content. Privacy and terms of service pages are present, indicating some compliance with data protection regulations such as GDPR. However, no cookie consent mechanism or detailed security policies were found, suggesting areas for compliance improvement. Overall, the risk profile is moderate with no critical security issues detected. The lack of public WHOIS data is typical for startups and does not detract from legitimacy given the professional branding and external validations. Strategic recommendations include enhancing security headers, implementing cookie consent, and publishing more detailed security and incident response policies to strengthen trust and compliance.

35
53
17
75
72
65
100
aieventplanningcorporatesaasycombinator+1 more
ReactNext.jsJavaScriptIntercom+1
2025-06-26T15:28:41.100Z
lmc.eu favicon

Alma Career

lmc.eu

67
OtherCzech RepubliclargeMEDIUM

Alma Career is a prominent HR and recruitment services provider operating primarily in Czechia and across Europe. The company offers a comprehensive suite of services including job portals, online education platforms, recruitment management tools, employee engagement surveys, and salary benchmarking. Their market position is strong, supported by multiple well-known brands such as Jobs.cz and Platy.cz, serving a broad audience of HR professionals, employers, and job seekers. The website reflects a mature digital presence with modern technologies and a professional design. Technically, the website is built using Next.js and React frameworks, leveraging modern web standards and optimized for performance and mobile responsiveness. The use of Google Tag Manager and Analytics indicates a moderate level of user tracking balanced with privacy compliance. The site employs security best practices including HTTPS, security headers, and cookie consent mechanisms, though explicit security policies and incident response contacts are not published. From a security perspective, the site demonstrates a good posture with no visible vulnerabilities or exposed sensitive data. However, the absence of WHOIS data for the domain introduces some uncertainty regarding domain legitimacy, although the strong brand presence and consistent business information mitigate this concern. Overall, the risk is moderate with recommendations to enhance transparency around security policies and incident response. Strategically, Alma Career should focus on publishing detailed security and incident response policies, consider a vulnerability disclosure program, and continue to monitor domain registration details to maintain trust. Enhancing accessibility and expanding data retention disclosures would further improve compliance and user trust.

30
85
2
85
72
80
100
hrrecruitmentjobportalonlineeducationsalarydata+5 more
ReactNext.jsGoogle Tag ManagerGoogle Analytics+3

Partner Domains:

jobs.cz
subsidiary
platy.cz
subsidiary

+3 more partners

2025-06-26T13:11:18.921Z
pizzacoloseum.cz favicon

Wi s.r.o.

pizzacoloseum.cz

46
HospitalityCzech RepublicmediumHIGH

Pizza Coloseum is a Czech hospitality business specializing in Italian cuisine, operating multiple restaurant locations primarily in Prague, Ostrava, and Teplice. The company emphasizes tradition and authentic Italian flavors, targeting local customers and visitors seeking quality dining experiences. The business model is based on brick-and-mortar restaurants with an integrated online reservation system, positioning itself as a regional restaurant chain with a medium-sized footprint. Technically, the website is built using modern web technologies including React, Next.js, and Apollo GraphQL, hosted on a Czech provider (WEDOS). The site includes a comprehensive cookie consent mechanism powered by Cookiebot, reflecting a moderate level of digital maturity and privacy compliance. Performance and mobile optimization are good, though accessibility features are basic. From a security perspective, the site uses HTTPS and implements cookie consent but lacks visible security headers and explicit security policies or incident response contacts. No critical vulnerabilities or exposed sensitive data were detected. The domain is long-established (since 1999) and registration data is consistent with the business location, supporting legitimacy. Overall, the website presents a professional and trustworthy online presence with room for improvement in privacy policy publication, security header implementation, and contact information transparency. Strategic recommendations include enhancing security headers, publishing clear privacy and terms documents, and adding incident response contacts to strengthen compliance and trust.

-
83
2
70
62
75
-
restaurantpizzaitaliancuisinecookieconsenthospitality+2 more
ReactNext.jsCookiebotApollo GraphQL
2025-06-26T12:05:10.802Z
nf2091.org favicon

VAKOVAKO | Endowment fund

nf2091.org

62
Non-profitCzech RepublicsmallMEDIUM

VAKOVAKO is a Czech Republic-based non-profit endowment fund operating a global donation platform focused on environmental and humanitarian causes. The platform connects donors with carefully vetted nonprofits working in areas such as rainforests, oceans, biodiversity, endangered species, and humanity. The business model emphasizes transparency, with 100% of donations going directly to nonprofits and audited bank accounts. The platform supports donations via a mobile app available on iOS and Android, facilitating easy and fast contributions with no minimum or maximum limits. Technically, the website is built using modern web technologies including React and Next.js, with integrations for Stripe payments, Google Tag Manager, Facebook Pixel, and Cookiebot for consent management. The site is well-optimized for mobile devices, fast loading, and includes accessibility features. Security best practices are observed with HTTPS, security headers, and reCAPTCHA integration, though no explicit security policy or incident response information is published. The WHOIS data for the domain is unavailable or malformed, indicating privacy protection which is common and justified for non-profit organizations. Despite this, the website's transparency, presence of official policies, and contact information support its legitimacy. Overall, the site presents a professional, trustworthy, and user-friendly platform for charitable donations. Recommendations include publishing a dedicated security policy, incident response contacts, and vulnerability disclosure information to further enhance trust and security posture.

35
73
2
60
72
70
100
donationnonprofitcharityenvironmenthumanity+3 more
ReactNext.jsStripeGoogle Tag Manager+3
2025-06-26T10:56:51.918Z