Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

149793
Websites
130
Industries
113
Countries
52
Avg Score
Page 136 of 777|Showing 6751-6800 of 38825
knightlab.com favicon

Northwestern University Knight Lab

knightlab.com

57
EducationUnited StatesmediumMEDIUM

Northwestern University Knight Lab is an academic and research community focused on advancing journalism and media innovation through exploration, experimentation, and open-source storytelling tools. The Lab serves a diverse audience including students, educators, journalists, and media makers, providing tools, classes, and research initiatives that push the boundaries of storytelling and media technology. The Lab is well-positioned as a leader in media innovation with strong ties to Northwestern University and a global user base for its open-source projects. Technically, the website employs modern web standards with HTML5, CSS3, and JavaScript, including Google Analytics for tracking. The site is mobile-optimized with good SEO and accessibility basics, hosted likely on Northwestern's infrastructure or associated CDNs. However, there is room for improvement in security headers and privacy compliance, as no explicit privacy or cookie policies are found, and no cookie consent mechanism is implemented. From a security perspective, the site uses HTTPS with good SSL configuration and no visible vulnerabilities in the provided content. The absence of security headers and privacy policies are notable gaps. The WHOIS data is unavailable, typical for edu subdomains, but the domain's affiliation with Northwestern University and consistent website content support legitimacy. Overall, the site demonstrates a solid security posture but could enhance compliance and transparency. The overall risk is low given the academic nature and reputable affiliation, but strategic improvements in privacy, security headers, and user consent would strengthen trust and compliance.

15
35
2
70
90
65
100
mediajournalismeducationopen-sourcestorytelling+2 more
HTML5CSS3JavaScriptGoogle Analytics (gtag.js)+2
2025-10-22T16:17:53.804Z
ge.ch favicon

Etat de Genève

ge.ch

70
GovernmentSwitzerlandlargeMEDIUM

The website www.ge.ch is the official online portal for the République et canton de Genève, serving as the authoritative source for government information, public services, and administrative procedures for residents and businesses in the Canton of Geneva, Switzerland. It offers comprehensive access to official news, e-demarches (online administrative procedures), publications, and institutional information, positioning itself as a critical government communication and service platform. Technically, the site is built on the Drupal CMS platform, leveraging modern web technologies including responsive design, JavaScript, and Matomo analytics for user tracking with consent. The site demonstrates good digital maturity with mobile optimization, accessibility features, and SEO best practices. Hosting details are not explicitly stated but are likely managed by government infrastructure. From a security perspective, the site enforces HTTPS and uses a consent-based cookie banner compliant with GDPR. While explicit security headers are not visible in the HTML, no vulnerabilities or exposed sensitive data were detected. The absence of a published security policy or vulnerability disclosure page is noted as an area for improvement. The WHOIS data confirms the domain is registered to the official government entity, reinforcing legitimacy. Overall, the site is highly trustworthy, professionally designed, and well-maintained, with strong privacy compliance and a clear focus on public service. No adult or questionable content is present, and the site is fully accessible without WAF or blocking mechanisms.

65
65
17
75
67
85
100
governmentpublicservicee-governmentgenevaswitzerland+2 more
Drupal CMSMatomo AnalyticsFontAwesomeJavaScript+2
2025-10-22T16:10:36.918Z
fondazionevalore.org favicon

Fondazione Valore

fondazionevalore.org

60
Non-profitItalysmallMEDIUM

Fondazione Valore is a non-profit foundation established in 2022 in Italy, focused on promoting circular economy principles by facilitating donations of goods, services, and skills to reduce waste and recover social and economic value. The organization collaborates with third sector entities, businesses, and public institutions to foster sustainable development and social impact. Their key services include surplus donations, skills volunteering, urban regeneration, and training programs. The website reflects a clear mission and target audience aligned with sustainability and social responsibility. Technically, the website is built on WordPress with Elementor, hosted via Register SpA, and employs modern web technologies ensuring good mobile optimization and SEO practices. The site uses HTTPS and includes a cookie consent mechanism compliant with GDPR, though it lacks advanced security headers and DNSSEC, which are recommended for enhanced security. No analytics or advertising scripts were detected, indicating a privacy-conscious approach. From a security perspective, the site demonstrates a moderate security posture with secure forms and no exposed sensitive data. However, the absence of DNSSEC and security headers suggests room for improvement. Incident response and vulnerability disclosure information are not present, which could be addressed to improve trust and compliance. Overall, the domain registration data aligns well with the website's claims, supporting legitimacy. The website content is safe for general audiences, with no adult or questionable material. The site provides a professional user experience with clear navigation and relevant content, though contact information is limited to a form and physical address without direct emails or phone numbers. Strategic recommendations include enabling DNSSEC, adding security headers, publishing a security.txt file, and providing incident response contacts to enhance security and compliance posture.

15
65
2
85
72
60
100
non-profiteconomiacircolarefondazionedonazionisostenibilit+1 more
WordPressElementorJoomla (meta tag generator)PHP+1
2025-10-22T15:08:39.717Z
aboutamazon.com favicon

Amazon.com, Inc.

aboutamazon.com

63
TechnologyUnited StatesenterpriseMEDIUM

The website www.aboutamazon.com serves as Amazon.com's official corporate news and information portal, providing breaking news, company updates, and insights into Amazon's innovations, workplace culture, sustainability efforts, and community impact. It targets a broad audience including consumers, investors, employees, and media professionals. The site reflects Amazon's position as a global leader in e-commerce, cloud computing, and technology services, showcasing key services such as AWS, retail operations, devices, and entertainment. Technically, the site is built on modern web technologies including React and Next.js, with a strong focus on performance, mobile optimization, and accessibility. It employs advanced tracking and analytics tools like Adobe Alloy and Adobe DTM, and integrates comprehensive SEO and metadata strategies to enhance discoverability. The content is rich, professionally curated, and regularly updated, supporting a high-quality user experience. From a security perspective, the site enforces HTTPS with excellent SSL configuration and implements multiple security headers to protect users. However, explicit security policies, incident response contacts, and vulnerability disclosure mechanisms are not prominently available, representing an area for improvement. Privacy compliance is well addressed with clear privacy and cookie policies, including consent mechanisms aligned with GDPR requirements. Overall, the site demonstrates a mature digital presence with strong business credibility and security posture. The absence of WHOIS data is noted but does not detract from the site's legitimacy given its official branding and content. Strategic recommendations include publishing detailed security policies, establishing a vulnerability disclosure program, and enhancing security contact transparency to further strengthen trust and compliance.

20
53
17
45
100
85
100
amazonnewscorporatetechnologye-commerce+5 more
ReactNext.jsJavaScriptAdobe Alloy+1

Partner Domains:

amazon.com
parent
press.aboutamazon.com
partner

+2 more partners

2025-10-22T15:05:44.124Z
sitejet.io favicon

Sitejet (part of WebPros International GmbH)

sitejet.io

66
TechnologyGermanymediumMEDIUM

Sitejet Studio is a professional SaaS platform focused on providing website building, project management, and client collaboration tools primarily for agencies and freelancers. The company operates under WebPros International GmbH and has been established since 2013, positioning itself as a competitive player in the web design technology sector. The platform offers a comprehensive suite of services including a no-code website builder, integrated project management, customer portals, SEO tools, and e-commerce capabilities, aiming to streamline workflows and reduce design time significantly. Technically, the website employs modern JavaScript libraries and tracking tools such as Google Tag Manager, Microsoft Clarity, and Visual Website Optimizer, alongside a consent management platform (Usercentrics) to comply with privacy regulations. The site is well-optimized for mobile devices, SEO-friendly, and demonstrates good accessibility practices. Hosting details are not explicitly disclosed, but the platform includes secure hosting features as part of its offering. From a security perspective, the site uses HTTPS and implements cookie consent mechanisms, but lacks visible security headers and published security policies or incident response information. The WHOIS data is unavailable due to privacy protection or query failure, which slightly reduces trust but is justified for this business type. No critical vulnerabilities or suspicious content were detected. Overall, Sitejet Studio presents a trustworthy and professional web presence with strong business credibility and technical maturity. Strategic improvements include publishing explicit privacy and security policies, enhancing security headers, and providing vulnerability disclosure information to further strengthen trust and compliance.

25
53
25
65
95
80
100
websitebuilderprojectmanagementclientcollaborationseoe-commerce+2 more
JavaScriptGoogle Tag ManagerMicrosoft ClarityVisual Website Optimizer (VWO)+2

Partner Domains:

partner.sitejet.io
partner
help.sitejet.io
service

+1 more partners

2025-10-22T15:04:38.676Z
fondonegri.it favicon

Plesk Obsidian 18.0.72

fondonegri.it

61
TechnologyN/aMEDIUM

The website is a login portal for Plesk Obsidian 18.0.72, a commercial web hosting control panel software widely used by hosting providers and administrators. The page is designed primarily for authenticated users to access hosting management features. The business behind the software is positioned as a technology provider in the web hosting industry, targeting hosting service providers and web administrators. The site content is minimal, focusing on login functionality with cookie consent mechanisms in place, but lacks visible privacy policies or contact information on this page. Technically, the site uses the Plesk UI library, JavaScript frameworks like Prototype.js and RequireJS, and standard web technologies. The page is moderately optimized for mobile and accessibility but lacks advanced SEO features. Security-wise, the site uses HTTPS (implied by URL), includes CSRF protection tokens, and password input controls, but no explicit security headers were detected in the HTML content. DNSSEC is not enabled for the domain, which is a recommended improvement. The domain is well-established, created in 2000, indicating legitimacy. Overall, the security posture is moderate with room for improvement in security headers and explicit privacy/security policies. The site is safe with no adult or questionable content. No WAF or blocking mechanisms were detected, allowing full content access. The lack of visible business contact details and privacy policy on this page limits privacy compliance scoring. Strategic recommendations include enabling DNSSEC, adding security headers, and providing clear privacy and security policies linked from the login page.

55
40
25
70
75
60
100
webhostingplesklogincontrolpanelcookieconsent+1 more
Plesk Obsidian 18.0.72Prototype.jsRequireJSJavaScript+2
2025-10-22T13:58:02.063Z
spassmitdaten.de favicon

Thomas Werner

spassmitdaten.de

44
TechnologyGermanysmallHIGH

Spass mit Daten is a German-language curated link directory and blog focused on data science, data visualization, and open data. The site provides categorized links to data sources, tools, background information, and guides, targeting data professionals, researchers, and hobbyists interested in open data. The business operates as a small, content-driven resource without direct commercial offerings. Technically, the site is built using the Hexo static site generator with the Icarus theme, leveraging modern web technologies such as HTML5, CSS3, JavaScript, and libraries like jQuery and Moment.js. Hosting is provided by Schlund Technologies, and the site uses HTTPS with good SSL configuration. Security posture is moderate with room for improvement, particularly in implementing security headers and cookie consent mechanisms. Privacy compliance is basic with a privacy policy present but no cookie banner. No contact information or formal security policies are published, limiting direct user engagement and incident response readiness. Overall, the website is professional, trustworthy, and safe, with minimal tracking and no advertising. The domain registration is consistent with the website's history and hosting provider, supporting legitimacy. Strategic improvements in security and privacy compliance would enhance trust and resilience.

15
28
2
60
72
60
40
opendatadatasciencedatavisualizationgermanblog+2 more
HTML5CSS3JavaScriptjQuery+3
2025-10-22T13:56:41.848Z
makler-wissen.de favicon

Deutschlands grösstes Online Trainings- und Informationsportal für Immobilienmakler

makler-wissen.de

55
Real EstateGermanymediumMEDIUM

Makler-Wissen.de is Germany's largest online training and information portal dedicated to real estate agents. It offers hundreds of professional training and educational videos with certification to support the success of real estate professionals. The platform targets aspiring and active real estate agents seeking continuous education and certification. Technically, the website is built on the Contao Open Source CMS, hosted likely by netcup, and employs modern web technologies including JavaScript, CSS, and integrates marketing and analytics tools such as Facebook Pixel, Google Analytics, and Cookiebot for consent management. The site is mobile optimized and SEO friendly, providing a good user experience. Security-wise, the site uses HTTPS and implements CSRF protection cookies, but lacks explicit security headers and published incident response or vulnerability disclosure information. Privacy compliance is well addressed with a comprehensive cookie consent mechanism and a detailed privacy policy in German, aligned with GDPR requirements. Overall, the website is professional, trustworthy, and well-positioned in its niche, though it could improve security posture by adding security headers and incident response contacts.

45
100
17
70
62
65
-
immobilienmaklerausbildungweiterbildungonlinetrainingrealestate+1 more
Contao Open Source CMSJavaScriptCSSFacebook Pixel+2
2025-10-22T13:55:21.337Z
hellcompany.eu favicon

Hell Company KG

hellcompany.eu

67
Real EstateItalysmallMEDIUM

Hell Company KG is a newly founded (2024) small enterprise specializing in strategic marketing and digital transformation services tailored for growth-oriented SMEs in the construction sector. The company leverages AI-driven marketing automation to enhance market presence, customer acquisition, and talent recruitment. Their website reflects a professional and consistent brand image, targeting primarily German-speaking construction businesses in Italy. The business positions itself as a market leader in AI marketing solutions for the construction industry, emphasizing efficiency and digital innovation. Technically, the website is built on the WebPlatform CMS, utilizing modern web technologies including JavaScript, CSS3, and Google services such as reCAPTCHA and Consent Mode. The site is mobile-optimized and demonstrates moderate performance. However, some security best practices like DNSSEC and security headers are not fully implemented, representing areas for improvement. From a security perspective, the site enforces HTTPS and integrates Google reCAPTCHA to mitigate automated abuse. Privacy compliance is basic, with cookie consent mechanisms in place but lacking comprehensive GDPR indicators or explicit security policies. No incident response or vulnerability disclosure information is provided, which could be enhanced to build trust. Overall, the website is trustworthy and professional, with clear contact information and certifications such as EU AI ACT compliance. The domain registration data aligns well with the business claims, supporting legitimacy. Strategic recommendations include enhancing security headers, enabling DNSSEC, publishing security policies, and improving privacy compliance to elevate trust and security posture.

35
83
17
70
72
80
100
marketingdigitaltransformationconstructionsmeai+2 more
JavaScriptjQueryGoogle reCAPTCHAGoogle Consent Mode+2
2025-10-22T13:54:05.646Z
sitepackagebuilder.com favicon

Kickstart your TYPO3 template development - get.typo3.org

sitepackagebuilder.com

56
TechnologyN/asmallMEDIUM

The website get.typo3.org/sitepackage serves as a resource hub for TYPO3 CMS template development, providing starter sitepackage templates and related resources primarily targeting TYPO3 developers and integrators. It operates within the open source software ecosystem, focusing on facilitating template creation for TYPO3 CMS users. The site demonstrates a moderate level of digital maturity, utilizing modern web technologies such as Web Components and integrating Usercentrics for consent management, indicating awareness of privacy requirements though lacking explicit policy pages. From a security perspective, the site is accessible without WAF or blocking mechanisms, but lacks visible security headers and explicit privacy or cookie policies, which are critical for GDPR compliance and user trust. The absence of contact information and WHOIS registrant data reduces the overall business credibility and trustworthiness. No vulnerabilities or exposed sensitive data were detected in the provided content, but improvements in security best practices and transparency are recommended. Overall, the site is functional and well-targeted for its niche audience but would benefit from enhanced privacy compliance, clearer business information, and improved security configurations to strengthen trust and compliance posture.

40
53
2
80
95
75
40
typo3cmstemplatesitepackageopensource+1 more
HTML5CSS3JavaScriptWeb Components+1
2025-10-22T13:53:00.485Z
apple.com favicon

Apple

apple.com

77
TechnologyUnited StatesenterpriseLOW

Apple Inc. is a globally recognized leader in consumer electronics, software, and digital services. The company operates a comprehensive online presence offering a wide range of products including iPhone, iPad, Mac, Apple Watch, and Apple TV, alongside accessories and entertainment services. Apple maintains a strong market position with a focus on innovation, quality, and user experience. The website reflects this with professional design, clear navigation, and extensive product information targeting both consumers and businesses worldwide. Technically, the website employs modern web technologies including HTML5, CSS, JavaScript, and SVG graphics, optimized for both desktop and mobile platforms. The site demonstrates excellent performance, accessibility, and SEO practices, ensuring a fast and user-friendly experience. The presence of multiple language and regional versions indicates a mature digital infrastructure supporting global operations. From a security perspective, Apple enforces HTTPS with strong SSL configurations and comprehensive security headers such as Content-Security-Policy and Strict-Transport-Security. The site avoids exposing sensitive data and follows best practices in secure form handling. Privacy compliance is robust, with detailed privacy and cookie policies, GDPR adherence, and a clear vulnerability disclosure program. The WHOIS data is not publicly available, likely due to privacy protection, which is justified for a large enterprise. Overall, the website presents a low-risk profile with high trustworthiness, professional content, and strong security posture. Strategic recommendations include maintaining regular security audits, enhancing incident response transparency, and continuing to evolve privacy and consent mechanisms to align with emerging regulations.

80
53
2
97
100
90
100
technologyconsumerelectronicsretailappleprivacy+2 more
JavaScriptCSSHTML5SVG+1

Partner Domains:

beatsbydre.com
subsidiary
filemaker.com
subsidiary
2025-10-22T13:52:30.407Z
s.de favicon

Sparkasse.de

s.de

72
FinanceGermanyenterpriseMEDIUM

Sparkasse.de serves as the central information portal for the Sparkassen-Finanzgruppe, a major financial institution in Germany. The website provides comprehensive information about banking products, services, and branch locations, targeting a broad general audience primarily within Germany. The business model focuses on delivering accessible financial information and facilitating customer engagement with local Sparkasse branches. The site demonstrates a strong market position as part of a well-established financial group. From a technical perspective, the website employs modern web technologies including React and Next.js, indicating a mature digital infrastructure. The site is well-structured, mobile-optimized, and exhibits good SEO practices. However, there is limited evidence of advanced security headers or explicit privacy and cookie policies, which are critical for compliance and user trust in the financial sector. Security posture analysis reveals gaps such as the absence of visible security headers and lack of published security policies or incident response contacts. While HTTPS is presumed given the domain and modern setup, explicit confirmation is not available in the provided data. The lack of privacy and cookie policies also indicates potential compliance risks with GDPR requirements. Overall, Sparkasse.de is a professionally designed and credible financial information portal with strong business credibility and technical implementation. To enhance security and compliance, it is recommended to implement comprehensive privacy and cookie policies, security headers, and vulnerability disclosure mechanisms. These improvements will strengthen user trust and regulatory adherence.

90
88
17
70
67
65
100
financebankingsparkassegermanyfinancialservices
ReactNext.jsJavaScriptCSS
2025-10-22T13:52:25.391Z
C

Centre Communal d'Action Sociale de la Ville de Nice

ccas-nice.fr

48
GovernmentFrancemediumHIGH

The Centre Communal d'Action Sociale (CCAS) of Nice is a municipal public social service organization established since 2001, providing a broad range of social support services to the residents of Nice, France. Its offerings include senior care programs, social insertion initiatives, and community development actions. The website serves as an informational portal with links to official reports, social programs, and contact resources, targeting local citizens in need of social assistance. Technically, the website employs a basic but functional technology stack centered around jQuery and a CMS likely to be CMS Made Simple. The site is hosted by DIGITAL RURAL INFORMATIQUE and uses HTTPS to secure communications. While the site is accessible and contains relevant content, it lacks advanced mobile optimization, accessibility features, and modern security headers, which limits its technical maturity. From a security perspective, the website benefits from HTTPS but does not implement key security headers or provide explicit privacy, cookie, or security policies. There is no visible incident response or vulnerability disclosure information. The absence of these elements suggests room for improvement in compliance and security posture. However, no critical vulnerabilities or suspicious indicators were detected. Overall, the website is a trustworthy and legitimate municipal service portal with good business credibility but requires enhancements in privacy compliance, security best practices, and technical modernization to improve user experience and regulatory adherence.

35
25
17
75
72
65
20
socialservicesgovernmentcommunityseniorservicesinsertion+1 more
jQueryjQuery UICSSJavaScript
2025-10-22T12:51:54.044Z
transparency.org favicon

Transparency International

transparency.org

75
Non-profitN/alargeMEDIUM

Transparency International is a globally recognized non-profit organization dedicated to combating corruption and promoting integrity and accountability worldwide. The website serves as a comprehensive platform for advocacy, research, and public engagement on anti-corruption issues. It targets a broad audience including policymakers, civil society, and the general public. The organization maintains a strong market position as a leading authority in corruption research and policy influence. Technically, the website employs modern web technologies including Google Tag Manager, Google Analytics, Plausible Analytics, and Cookiebot for consent management. The site is well-optimized for mobile devices, has good SEO practices, and uses HTTPS with strong security headers, indicating a mature digital infrastructure. Performance is moderate with room for optimization. From a security perspective, the site demonstrates good practices such as HTTPS enforcement, cookie consent, and security headers. However, it lacks publicly available security policies, incident response contacts, and vulnerability disclosure mechanisms, which are recommended for transparency and trust. No critical vulnerabilities or exposed sensitive data were detected. Overall, the website is trustworthy, professionally maintained, and compliant with privacy regulations such as GDPR. The lack of WHOIS data is due to privacy protection, which is justified for this type of organization. Strategic recommendations include publishing a security policy, incident response information, and a vulnerability disclosure policy to enhance transparency and security posture.

70
88
17
85
65
90
100
transparencyinternationalanti-corruptionnon-profitgovernanceaccountability+1 more
Google Tag ManagerGoogle AnalyticsCookiebotPlausible Analytics+3
2025-10-22T12:50:53.869Z
unglobalcompact.org favicon

United Nations Global Compact

unglobalcompact.org

71
GovernmentUnited StateslargeMEDIUM

The United Nations Global Compact website represents a well-established, globally recognized non-profit initiative focused on promoting corporate sustainability and responsible business practices aligned with the UN Sustainable Development Goals. The organization operates under the United Nations umbrella and targets businesses, governments, civil society, and young professionals worldwide. The website effectively communicates its mission, key services, and impact through professional design and comprehensive content. Technically, the site employs a modern technology stack including JavaScript frameworks, Google Tag Manager, Hotjar, and Stripe for payments, hosted on Amazon Cloudfront CDN. The site is performant, mobile-optimized, and accessible, with clear navigation and SEO best practices. Cookie consent and privacy policies are implemented with high compliance standards, reflecting GDPR adherence. From a security perspective, the site uses HTTPS with good SSL configuration and domain transfer protections. However, DNSSEC is not enabled, and no explicit security or incident response policies are published. The use of multiple third-party analytics and marketing tools introduces moderate tracking but is managed transparently with user consent. Overall, the website is trustworthy, professional, and secure with minor areas for improvement in security policy transparency and DNS security. The domain registration data aligns well with the organization's history, reinforcing legitimacy. Strategic recommendations include enabling DNSSEC, publishing security policies, and enhancing security headers to further strengthen the security posture.

60
68
2
100
72
80
100
unsustainabilitycorporateresponsibilitysdgsglobalcompact+4 more
JavaScriptGoogle Tag ManagerHotjarDemandbase+3

Partner Domains:

pardot.com
service
stripe.com
service

+1 more partners

2025-10-22T12:50:48.859Z