Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157327
Websites
130
Industries
113
Countries
52
Avg Score
Page 14 of 31|Showing 651-700 of 1503
restyloh.hr favicon

ReStyloh

restyloh.hr

47
E-commerceCroatiasmallHIGH

ReStyloh is a Croatian e-commerce platform focused on the buying and selling of second-hand clothing and footwear. The website targets general consumers interested in sustainable fashion and offers a marketplace model where users can list and purchase used apparel. The platform is positioned as a niche player in the local market, emphasizing unique fashion finds and environmental consciousness. The website features clear navigation with categorized product listings and search capabilities for both products and users. Technically, the site employs common web technologies including jQuery, Bootstrap, Owl Carousel, and Select2 for UI components, along with Google Fonts for typography. Analytics are implemented via Google Analytics and Clicky, indicating a moderate level of digital maturity. The site uses HTTPS, ensuring encrypted communication, but lacks visible advanced security headers and formal privacy or cookie policies. From a security perspective, the site demonstrates basic good practices such as HTTPS usage and no visible exposure of sensitive data. However, the absence of security headers, privacy policies, and incident response information suggests room for improvement in compliance and security posture. No WAF or blocking mechanisms were detected, and the site content is fully accessible. Overall, ReStyloh presents a functional and professional e-commerce platform with a focus on second-hand fashion in Croatia. To enhance trust and compliance, the site should implement comprehensive privacy and cookie policies, security headers, and clear contact information. These improvements would strengthen the site's security posture and user confidence.

20
10
2
75
72
80
40
secondhandclothingfootweare-commercemarketplace+1 more
jQuery 3.3.1Bootstrap CSSOwl CarouselSelect2+3
2025-10-08T22:51:20.360Z
servsafe.com favicon

ServSafe

servsafe.com

72
EducationUnited StateslargeMEDIUM

ServSafe is a prominent provider of food safety training and certification programs targeting food service professionals, instructors, and administrators. Their offerings include Food Manager, Food Handler, Alcohol, Allergens, Academic, and Workplace training, positioning them as a leader in the food safety education sector in the United States. The website is professionally designed with clear navigation and consistent branding, supporting a large-scale educational business model focused on online certification and training services. Technically, the site leverages a mix of modern front-end frameworks like Bootstrap and jQuery, integrated with ASP.NET WebForms on the backend, and employs various marketing and analytics tools such as Google Analytics, Microsoft Clarity, Marketo, and OneTrust for cookie consent management. The site demonstrates good mobile optimization and accessibility compliance, although performance is moderate due to the complexity of scripts and integrations. From a security perspective, the website enforces HTTPS and includes CSRF protections in forms, but lacks explicit security headers like Content-Security-Policy and X-Frame-Options. No vulnerabilities or exposed sensitive data were detected in the HTML content. Privacy compliance is well addressed with comprehensive privacy and cookie policies, including GDPR considerations. However, no explicit incident response or vulnerability disclosure policies were found. Overall, the website presents a trustworthy and professional front for ServSafe's business operations. The absence of WHOIS registration data slightly reduces trust but is likely due to privacy protection. Strategic recommendations include enhancing security headers, publishing vulnerability disclosure information, and improving contact information visibility to further strengthen trust and compliance.

80
88
17
70
67
75
100
foodsafetytrainingcertificationeducationfoodhandler+3 more
Bootstrap CSSjQueryMarketo MunchkinMicrosoft ASP.NET WebForms+7
2025-10-08T21:45:11.802Z
iasc.info favicon

International Arctic Science Committee

iasc.info

56
GovernmentIcelandsmallMEDIUM

The International Arctic Science Committee (IASC) is a non-governmental organization dedicated to fostering international cooperation in Arctic research. The website serves as a hub for Arctic scientists, policymakers, and stakeholders, providing information on working groups, capacity building programs, events, and news related to Arctic science. The organization positions itself as a key facilitator in Arctic research collaboration, with a focus on scientific advancement and community engagement. Technically, the website is built on Joomla CMS with modern front-end technologies including Bootstrap and jQuery. It employs HTTPS with good SSL configuration and uses Google Analytics for visitor tracking. The site is mobile-optimized and features a professional design with clear navigation, although accessibility features could be improved. The presence of CSRF tokens in forms indicates attention to security in user input handling. From a security perspective, the site enforces HTTPS and avoids exposing sensitive data. However, it lacks several security headers and does not provide publicly accessible security policies or incident response information. Privacy compliance is limited due to the absence of explicit privacy and cookie policies, which is a notable gap given GDPR requirements. The WHOIS data is privacy protected, which is typical for NGOs, and does not raise immediate concerns. Overall, the website is trustworthy and professional, serving its niche audience effectively. Strategic improvements in privacy compliance, security headers, and incident response transparency would enhance its security posture and regulatory adherence.

60
35
2
98
67
85
20
arcticscienceresearchnon-profitinternational+3 more
Bootstrap CSSjQueryCamera Slideshow pluginFont Awesome+2

Partner Domains:

assw.info
partner
icarp.iasc.info
partner

+3 more partners

2025-10-08T21:44:41.680Z
atom.com favicon

Atom

atom.com

75
TechnologyUnited StatesmediumMEDIUM

Atom operates as a leading domain marketplace offering a wide range of domain names for sale, including premium, curated, and country-specific domains. The platform also provides complementary services such as domain brokerage, auctions, AI-powered domain name generation, domain appraisal, and branding services including naming contests and trademark assistance. The website is professionally designed, mobile-optimized, and features clear navigation, targeting businesses and individuals seeking domain names. The market position is strong with a focus on quality domain offerings and comprehensive branding solutions. Technically, the website employs modern web technologies including JavaScript, Bootstrap CSS framework, and integrates third-party services such as New Relic for performance monitoring, Google Tag Manager for analytics, and Intercom for customer support chat. The site demonstrates good performance, accessibility, and SEO optimization, reflecting a mature digital infrastructure. From a security perspective, the site enforces HTTPS and includes standard security headers, indicating a solid baseline security posture. However, it lacks publicly accessible security policies, incident response contacts, and vulnerability disclosure mechanisms, which are recommended for enhanced transparency and trust. No critical vulnerabilities or exposed sensitive data were detected in the analysis. Overall, Atom presents a professional and trustworthy online presence with strong business credibility and technical implementation. The absence of WHOIS data slightly reduces domain trustworthiness but does not significantly impact the overall risk profile. Strategic recommendations include publishing explicit security and incident response policies and enhancing transparency around data protection practices.

70
68
17
98
75
85
100
domainmarketplacebrandingdomainservicesaidomaingeneratordomainappraisal+1 more
JavaScriptNew Relic monitoringBootstrap CSSGoogle Tag Manager+1

Partner Domains:

trademark.io
partner
helpdesk.atom.com
service
2025-10-08T06:12:04.884Z
nic.at favicon

nic.at GmbH

nic.at

70
TechnologyAustriamediumMEDIUM

nic.at GmbH operates as the official registry authority for Austrian top-level domains including .at, .co.at, and .or.at. The company provides domain registration, administration, and security services, positioning itself as a critical infrastructure provider in Austria's internet ecosystem. Their website reflects a professional and authoritative presence with comprehensive information and services tailored to domain holders, registrars, and internet users in Austria. The business model centers on registry services with additional offerings such as domain security and partner finder tools. Technically, the website employs modern web technologies including Laravel framework, Bootstrap CSS, and Matomo analytics for privacy-respecting user tracking. The site is mobile-optimized, accessible, and demonstrates good SEO practices. Security measures include HTTPS enforcement, secure session management, and a robust cookie consent mechanism compliant with GDPR. However, some security headers are not explicitly detected, and no public security policy or incident response contacts are found. The security posture is strong with no evident vulnerabilities or exposed sensitive data. The cookie consent banner provides granular control over cookie categories, enhancing privacy compliance. The absence of WHOIS data is likely due to privacy protection policies, which is justified for this type of entity. Overall, the website is trustworthy, professional, and secure, serving its role as a domain registry effectively. Strategically, nic.at should consider publishing explicit security policies and incident response contacts to enhance transparency and trust. Implementing additional security headers and a security.txt file would further strengthen their security posture. Continuous monitoring of third-party scripts and enhancing login security with multi-factor authentication are recommended to mitigate risks. These steps will support nic.at's position as a reliable and secure domain registry in Austria.

50
95
17
85
42
85
100
domainregistryaustriaprivacysecuritycookieconsent+2 more
Matomo AnalyticsBootstrap CSSjQuery (implied by bootstrap usage)Laravel (implied by laravel_session cookie)

Partner Domains:

nic.versicherung
partner
www.rcodezero.at
partner

+1 more partners

2025-10-08T02:44:35.867Z
seasons.agency favicon

Image Professionals GmbH

seasons.agency

59
MediaGermanymediumMEDIUM

seasons.agency is a German-based premium image agency specializing in exclusive European photographic content for media, advertising, and publishing industries. The company offers a curated portfolio focusing on lifestyle themes such as Beauty, Cover, Food, Home, and Travel. Originating from the syndication of JAHRESZEITEN VERLAG, it licenses high-quality content from leading photographers and publishers across Europe. The website reflects a professional brand presence with clear navigation, multilingual support, and a strong network of partner brands. Technically, the website employs a combination of Bootstrap, jQuery, and React technologies, with Matomo analytics configured for privacy-conscious tracking. The site is served over HTTPS with good SSL configuration, though some improvements are recommended in security headers and updating legacy libraries. The site is moderately optimized for performance and mobile use, with good SEO practices. From a security perspective, the site demonstrates a solid posture with secure forms and no visible vulnerabilities or exposed sensitive data. However, the absence of cookie consent mechanisms and security policy disclosures indicates areas for compliance enhancement, especially under GDPR. The WHOIS data is unavailable due to privacy or query failure, but the website's content and certifications support its legitimacy. Overall, seasons.agency presents a trustworthy, professional digital presence with room for technical and compliance improvements to enhance security and privacy posture further.

25
53
2
70
62
75
100
photographyimageagencymedialicensingeuropeancontent+2 more
Bootstrap CSSjQuery 1.7.2React 15.4.0Matomo Analytics

Partner Domains:

imageprofessionals.com
partner
stockfood.de
partner

+3 more partners

2025-10-08T01:40:13.854Z
cookieyes.com favicon

CookieYes Limited

cookieyes.com

73
TechnologyUnited KingdommediumMEDIUM

CookieYes Limited operates a Google-certified Consent Management Platform (CMP) designed to help businesses comply with global privacy regulations such as GDPR and CCPA. The company targets businesses of all sizes, offering a SaaS model with free trials and paid plans. With over 1.5 million users worldwide and trusted by major brands, CookieYes holds a strong market position in the privacy compliance technology sector. The website provides comprehensive information about their services, including cookie consent banners, automated consent management, and integrations with industry standards like Google Tag Manager and IAB TCF v2.2. Technically, the website is built on WordPress with modern frameworks such as Bootstrap and integrates multiple analytics and marketing tools including Google Analytics, Microsoft Clarity, Hotjar, and Mixpanel. The site is well-optimized for performance, mobile responsiveness, SEO, and accessibility. Security practices include HTTPS enforcement, use of Google reCAPTCHA, and cookie consent mechanisms, although explicit security headers and policies are not evident. The security posture is solid with no visible vulnerabilities or exposed sensitive data, but the absence of a published security policy and incident response contacts is a gap. The WHOIS data for the domain is missing, which raises concerns about domain registration transparency, although the website content and business information are credible. Overall, CookieYes presents a professional, trustworthy, and technically mature platform with minor areas for improvement in security transparency. Strategic recommendations include implementing security headers, publishing a security policy and incident response information, and adding a security.txt file to facilitate vulnerability disclosures. These steps will enhance trust and compliance posture, supporting CookieYes's leadership in the privacy compliance market.

75
95
2
85
75
70
100
cookieconsentgdprccpaprivacycompliancecookiemanagement+3 more
WordPressYoast SEO pluginGoogle Tag ManagerGoogle Analytics+7

Partner Domains:

app.cookieyes.com
service
tapfiliate.com
partner
2025-10-07T23:18:56.609Z
provenworks.com favicon

ProvenWorks

provenworks.com

62
TechnologyUnited KingdommediumMEDIUM

ProvenWorks is a UK-based technology company specializing in Salesforce CRM data management solutions. Established in 2008, the company offers award-winning applications such as AddressTools, PhoneTools, IndustryComplete, and the cloud-based Impowr data loader. With over 3,000 teams trusting their products and 16+ years of experience, ProvenWorks positions itself as a Salesforce expert and trusted partner within the Salesforce AppExchange ecosystem. Their business model focuses on SaaS applications tailored to optimize Salesforce orgs across various industries including Higher Education, Financial Services, and Nonprofits. Technically, the website is built on WordPress with modern frameworks like Bootstrap and integrates multiple third-party analytics and marketing tools including Google Analytics, LinkedIn Insight, and Clearbit. The site employs HTTPS with a strong SSL configuration and uses Salesforce's embedded live chat for customer engagement. Performance and mobile optimization are good, though accessibility could be improved. SEO practices are well implemented with comprehensive metadata and structured data. From a security perspective, the site demonstrates good practices such as HTTPS enforcement and domain transfer protection. However, DNSSEC is not enabled, and there is no publicly available security policy or incident response information. No vulnerabilities or exposed sensitive data were detected. Privacy compliance is strong with clear privacy and cookie policies and consent mechanisms in place. Overall, ProvenWorks presents a professional, trustworthy, and technically sound online presence with a strong focus on Salesforce solutions. Strategic improvements in security policy transparency and DNS security could further enhance their security posture and trustworthiness.

30
58
17
75
49
80
100
salesforcecrmdatamanagementappexchangetechnology+3 more
WordPressBootstrap CSSFont AwesomeGoogle Fonts (Work Sans)+9

Partner Domains:

impowr.io
partner
salesforce.com
partner
2025-10-07T20:58:24.965Z
fdroidstatus.org favicon

The F-Droid Team

fdroidstatus.org

63
TechnologyN/asmallMEDIUM

F-Droid Monitor is a specialized web service operated by The F-Droid Team that provides real-time monitoring and status updates for the F-Droid app repository build processes. The website targets developers and users interested in the health and status of F-Droid builds, offering detailed insights into build server cycles, app build statuses, and website build statuses. The service operates within the open source software ecosystem, focusing on transparency and community trust. Technically, the website employs a simple and clean design using Bootstrap CSS for layout and styling. The infrastructure appears modest, hosted likely via NameCheap as indicated by WHOIS data. The site is accessible without any WAF or blocking mechanisms, but lacks advanced security headers and DNSSEC, which are recommended for improved security posture. Mobile optimization and accessibility are basic but functional. From a security perspective, the site does not expose sensitive data or use vulnerable libraries, but it lacks formal privacy, cookie, and security policies, which limits compliance with GDPR and other regulations. No contact or incident response information is provided, which could hinder transparency and trust. The domain registration is consistent and appropriate for the service, with no privacy protection enabled, enhancing legitimacy. Overall, the website is functional and serves its niche purpose well but would benefit from enhanced security practices, formal privacy and cookie policies, and improved contact transparency to increase trust and compliance.

95
50
2
60
52
75
100
f-droidbuildstatusopensourcemonitoringsoftwarebuilds
HTML5Bootstrap CSS
2025-10-07T16:16:20.642Z
shortpixel.ai favicon

ShortPixel

shortpixel.ai

67
TechnologyN/amediumMEDIUM

ShortPixel is a well-established technology company specializing in image optimization services primarily targeting WordPress users and website owners seeking to improve site speed and SEO through advanced image compression and format conversion technologies. The company offers SaaS products including WordPress plugins and CDN-based adaptive image delivery, positioning itself as a leader in the web performance optimization niche. The website demonstrates a mature digital presence with comprehensive content, customer testimonials, and clear product offerings. Technically, the website employs modern frameworks such as Bootstrap and JavaScript libraries like Tippy.js and Popper.js, leveraging Cloudflare for DNS and CDN services to ensure fast performance and global reach. Analytics and marketing tools like Google Analytics, Google Tag Manager, and ProfitWell are integrated for user tracking and subscription management. The site is mobile-optimized and SEO-friendly, with proper meta tags and structured content. From a security perspective, the site uses HTTPS with a valid SSL configuration and domain transfer protection. However, DNSSEC is not enabled, and no explicit security policies or incident response contacts are publicly disclosed. No vulnerabilities or exposed sensitive data were detected in the content. Privacy and cookie policies are present and include consent mechanisms, indicating good compliance with GDPR requirements. Overall, ShortPixel presents a low-risk profile with strong business credibility and technical maturity. Strategic recommendations include enabling DNSSEC, publishing a security policy, and enhancing security headers to further strengthen the security posture.

50
95
10
60
52
85
100
imageoptimizationwordpresspluginwebpavifcdn+3 more
Bootstrap CSSBootstrap IconsTippy.js (tooltip library)Popper.js+5
2025-10-07T12:49:10.212Z
eliza.swiss favicon

ELIZA AG

eliza.swiss

66
TechnologySwitzerlandsmallMEDIUM

ELIZA AG is a Swiss-based technology company specializing in cloud software solutions for quality management, process management, corporate leadership, and human resources management, primarily targeting small and medium enterprises (KMU). Founded in 2019, ELIZA has established a strong market presence in Switzerland and Germany, serving over 120 customers across 15 industries. Their SaaS business model offers modular solutions with trial options, emphasizing compliance with ISO 9001 standards and GDPR regulations. Technically, the website is built using the Hugo static site generator, leveraging modern frameworks like Bootstrap and FontAwesome, and integrates multiple analytics and marketing tools such as Google Tag Manager, Plausible Analytics, and LinkedIn Insight Tag. Hosting and DNS services utilize Cloudflare, with private cloud hosting in Switzerland and Germany, ensuring data sovereignty and security. The site is well-optimized for performance, mobile responsiveness, and SEO. From a security perspective, ELIZA AG demonstrates good practices including HTTPS enforcement, domain security flags, and cookie consent mechanisms. However, DNSSEC is not enabled, and explicit security headers are not visible, representing minor areas for improvement. No critical vulnerabilities or exposed sensitive data were detected. Privacy policies and terms of service are comprehensive and GDPR compliant, though incident response contact details and vulnerability disclosure mechanisms are absent. Overall, ELIZA AG presents a professional, trustworthy, and secure online presence aligned with its business objectives. Strategic recommendations include enabling DNSSEC, publishing a security.txt file, and enhancing security header implementation to further strengthen their security posture and compliance.

55
65
2
80
52
85
100
qualitymanagementcloudsoftwareprocessmanagementhrmanagementkmu+3 more
Hugo static site generatorBootstrap CSSFontAwesome iconsCloudflare DNS and nameservers+5

Partner Domains:

myeliza.de
subsidiary
artiset.ch
partner
2025-10-04T04:41:51.026Z
glazok.org favicon

Danesco Trading Ltd.

glazok.org

63
FinanceN/amediumMEDIUM

Glazok.org is a Russian-language online platform specializing in monitoring currency exchange points, providing users with comprehensive exchange rate comparisons, user reviews, and alerts for favorable rates. Established in 2015 and operated by Danesco Trading Ltd., the site serves a medium-sized audience interested in electronic currency and cryptocurrency exchanges. The platform leverages WordPress CMS with a variety of plugins and popular JavaScript libraries to deliver a user-friendly and content-rich experience. The website is well-branded and consistent, offering a broad range of currency pairs and exchange services, including cryptocurrencies like Bitcoin and Ethereum. Technically, the site is hosted behind Cloudflare DNS, uses HTTPS with a good SSL configuration, and integrates analytics services such as Yandex Metrika and Mail.ru. However, it lacks advanced security headers and cookie consent mechanisms, which are areas for improvement. No explicit privacy or security policies beyond basic terms of service are found, and contact is primarily via web forms without direct email or phone contacts. Overall, the site demonstrates a moderate security posture and good business credibility but should enhance privacy compliance and security best practices to improve trust and regulatory adherence.

55
35
17
85
75
65
100
currencyexchangefinancecryptocurrencymonitoringexchangerates+3 more
jQuery 1.12.4Bootstrap CSSFontAwesomeSelect2+4

Partner Domains:

premiumexchanger.com
partner
2025-10-04T00:21:20.090Z
D

DMCA.com

dmca.com

70
TechnologyCanadamediumMEDIUM

DMCA.com is a specialized service provider focused on protecting online content and brands through DMCA takedown services, compliance solutions, and content protection tools. Positioned as a leading provider in the DMCA takedown market, the company targets website owners, content creators, and brand owners seeking to enforce copyright and protect intellectual property online. Their offerings include managed takedown services, DIY tools, monitoring, and trademark and defamation takedown services. The website demonstrates a professional and consistent brand presence with clear navigation and comprehensive service descriptions. Technically, the website is built on ASP.NET technology, leveraging modern web technologies such as Google Tag Manager, Google Analytics, Facebook Pixel, and reCAPTCHA for security and analytics. Hosting assets on Microsoft Azure Blob Storage indicates a reliable infrastructure. The site is mobile-optimized with good SEO practices and uses structured data to enhance search engine visibility. From a security perspective, the site enforces HTTPS, uses reCAPTCHA to prevent abuse, and avoids exposing sensitive data. However, it lacks explicit security policies, incident response information, and a security.txt file, which are recommended for transparency and vulnerability management. The WHOIS data is unavailable or privacy protected, which raises some concerns about domain registration transparency but does not negate the site's legitimacy given its professional presentation and service offerings. Overall, DMCA.com presents a trustworthy and professional front for its niche market, with room for improvement in security transparency and WHOIS data clarity. Strategic recommendations include publishing detailed security policies, implementing CSP headers, and enhancing incident response disclosures to strengthen trust and compliance.

15
83
17
82
100
85
100
dmcatakedowncopyrightcontentprotectioncompliance+2 more
Google Tag ManagerGoogle Analytics (gtag.js)Facebook PixelreCAPTCHA+4
2025-10-03T21:57:12.750Z
squadup.com favicon

SquadUP

squadup.com

66
TechnologyN/amediumMEDIUM

SquadUP is a technology company specializing in white label event ticketing solutions, offering a comprehensive platform that includes a mobile app for event organizers and attendees. The company targets enterprises, venues, and event organizers seeking customizable ticketing and event management tools. Their platform supports features such as reserved seating, shopping cart integration, dashboard analytics, and extensive customization options, positioning them as a competitive player in the event technology market. Technically, SquadUP employs a modern web stack with JavaScript, Bootstrap, and various third-party analytics and marketing tools including New Relic, Google Analytics 4, Facebook Pixel, and Hotjar. The site is hosted behind Cloudflare, ensuring performance and security benefits. The website is well-optimized for mobile devices, accessible, and SEO-friendly, reflecting a mature digital infrastructure. From a security perspective, the site enforces HTTPS, uses CSRF tokens in forms, and implements cookie consent mechanisms. However, explicit security policies and incident response contacts are not publicly available, and the WHOIS domain registration data is missing, which slightly reduces trustworthiness. No critical vulnerabilities or exposed sensitive data were detected. Overall, SquadUP presents a professional and trustworthy online presence with strong business credibility and technical maturity. The main risk area is the lack of transparent domain registration data and formal security disclosures, which should be addressed to enhance trust and compliance.

65
65
2
70
65
80
100
eventticketingwhitelabelmobileappeventmanagementecommerce+3 more
JavaScriptNew Relic monitoringCloudflare (CDN and security)jQuery (implied by bootstrap tabs)+9

Partner Domains:

payment-processing.squadup.com
partner
venue.squadup.com
partner

+2 more partners

2025-09-07T10:20:01.171Z