Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157327
Websites
130
Industries
113
Countries
52
Avg Score
Page 14 of 40|Showing 651-700 of 1960
G

Attention Required! | Cloudflare

gustavbekereja.lv

3
OtherN/asmallCRITICAL

The website gustavbekereja.lv is currently inaccessible due to a Cloudflare security block, which prevents any meaningful content or business information from being retrieved or analyzed. The Cloudflare block page indicates that the site is protected by a Web Application Firewall (WAF) that has triggered a security rule, likely due to suspicious or automated access attempts. Consequently, no metadata, forms, contact details, or business descriptions are available for review. The WHOIS lookup failed due to query limits, leaving domain registration details unknown. This lack of accessible data severely limits the ability to assess the website's business operations, technical infrastructure, or security posture. From a technical perspective, the site is hosted behind Cloudflare, which provides performance and security services, but the block prevents evaluation of SSL configuration, security headers, or technology stack beyond Cloudflare's presence. No privacy, cookie, or terms of service policies are detectable, and no contact or incident response information is available. The absence of accessible content and metadata results in a very low trust and credibility score. Security-wise, the Cloudflare block itself is a positive indicator that the site employs protective measures against attacks, but the inability to access the site prevents verification of security best practices or vulnerabilities. The WHOIS data unavailability further complicates legitimacy assessment. Overall, the site currently presents a high risk for analysis due to lack of transparency and accessibility. Strategically, it is recommended to resolve the Cloudflare block to allow legitimate access for proper evaluation. Once accessible, the site should implement clear privacy and cookie policies, provide contact and incident response information, and ensure security headers and HTTPS are properly configured to improve trust and compliance.

-
-
-
-
-
-
-
Cloudflare
2025-07-30T15:59:58.520Z
skriverugotina.lv favicon

Skrīveru Pārtikas Kombināts

skriverugotina.lv

61
E-commerceLatviasmallMEDIUM

Skrīveru Pārtikas Kombināts operates the website skriverugotina.lv, an e-commerce platform specializing in traditional confectionery products, notably the original Skrīveru Gotiņa candies, a brand with historical roots dating back to 1956 in Latvia. The company positions itself as a heritage confectionery producer with a focus on quality and craftsmanship, targeting general consumers interested in authentic Latvian sweets. The website is built on the Shopify platform, leveraging a modern tech stack including various marketing and analytics tools such as Facebook Pixel, Google Analytics, Omnisend, and Judge.me for customer reviews. The site demonstrates good digital maturity with fast performance, mobile optimization, and compliance with GDPR through the Pandectes cookie consent framework. Security posture is strong with HTTPS enforced and appropriate security headers, though some areas like explicit Terms of Service and incident response policies could be improved. Overall, the domain appears legitimate despite the lack of WHOIS data due to query limits, supported by consistent branding and trust signals. Strategic recommendations include enhancing transparency with additional policy pages and improving accessibility features to further strengthen user trust and compliance.

75
25
17
40
75
75
100
e-commerceconfectioneryshopifygdprcookie-consent+3 more
ShopifyGoogle FontsFacebook PixelGoogle Analytics+7
2025-07-30T15:59:58.108Z
low.gallery favicon

LOW Gallery

low.gallery

68
OtherLatviasmallMEDIUM

LOW Gallery is a Riga-based independent art platform that connects artists and audiences primarily within the Baltic region and internationally. The platform organizes and curates exhibitions, projects, talks, and cultural happenings, positioning itself as a niche regional art hub. The website presents a professional and consistent brand image with good content quality and clear navigation, targeting artists and cultural communities. Founded in 2018, the platform maintains a small business size with a focused cultural mission. Technically, the website is built on WordPress using modern themes and plugins such as Bricks Theme and Rank Math SEO. It leverages Cloudflare for DNS and hosting services, employs lazy loading for images, and integrates structured data for SEO enhancement. The site performs well with good mobile optimization and fast loading times, although accessibility features are basic. From a security perspective, the site uses HTTPS and has domain transfer protections in place. However, it lacks several important security headers and DNSSEC is not enabled, representing areas for improvement. Privacy compliance is weak, with no visible privacy or cookie policies and no GDPR compliance indicators. Incident response and vulnerability disclosure policies are absent, which could be a risk factor. Overall, LOW Gallery presents a trustworthy and professional online presence with moderate security posture and technical maturity. Strategic improvements in privacy compliance and security hardening would enhance its risk profile and user trust.

90
50
17
60
75
75
100
artgallerybalticexhibitionsculture+1 more
WordPressPHPCloudflareAutomatic CSS+3
2025-07-30T15:59:57.104Z
P

PuzzleWebs

puzzlewebs.cz

54
OtherCzech RepublicsmallMEDIUM

PuzzleWebs is a small-scale web presence currently under development, as indicated by the placeholder message on the homepage. The company appears to be based in the Czech Republic with domain registration dating back to 2018, suggesting a relatively recent establishment. The website currently offers minimal information about its business model, services, or market positioning, limiting insights into its commercial operations or target audience. The only contact information available is a company email address. From a technical perspective, the website uses Cloudflare for DNS and hosting services and integrates Tawk.to for live chat functionality. However, the site lacks comprehensive metadata, SEO optimization, and accessibility features. The performance is likely moderate given the minimal content, but no explicit mobile optimization or accessibility features are evident. The absence of a CMS or frameworks suggests a simple static or minimal site setup. Security posture is weak due to the lack of visible security headers, absence of privacy and cookie policies, and no incident response or vulnerability disclosure information. While HTTPS is presumably enabled (given Cloudflare usage), no explicit SSL configuration details are provided. The site does not expose sensitive data or forms, which reduces immediate risk but also indicates limited functionality. Overall, the security maturity is low, and compliance with GDPR or other privacy regulations is not demonstrated. The overall risk assessment is moderate to low due to the minimal attack surface but is impacted by the lack of transparency and security best practices. Strategic recommendations include implementing comprehensive privacy and cookie policies, adding security headers, enhancing website content and structure, and establishing incident response contacts to improve trust and compliance.

50
25
17
55
75
75
100
underconstructionplaceholderlivechatcloudflare
CloudflareTawk.to
2025-07-29T06:48:03.518Z
R

raleighrealtorstore.com | 521: Web server is down

raleighrealtorstore.com

44
OtherN/asmallHIGH

The website raleighrealtorstore.com is currently inaccessible due to a Cloudflare error 521 indicating the web server is down. As a result, no business content, contact information, or policies are available for analysis. The site appears to be protected by Cloudflare, but the origin server is not responding, preventing content delivery. This severely limits the ability to assess the company's market position, services, or technical infrastructure. The lack of accessible content also means no privacy, cookie, or security policies can be evaluated, and no contact or trust indicators are present. From a technical perspective, the site relies on Cloudflare as a CDN and security layer, but the origin server failure is a critical issue impacting availability and user experience. No CMS, analytics, or marketing technologies are detectable due to the blocked content. Security posture is weak given the server downtime and absence of security headers or SSL configuration details. Overall, the website's risk profile is high due to unavailability and lack of transparency. Immediate remediation to restore server availability and implement robust monitoring is essential. Without access to actual content or policies, compliance and business credibility cannot be verified, representing a significant operational and reputational risk.

-
35
2
60
75
70
100
errorcloudflareserverdownblocked
Cloudflare
2025-07-29T03:21:06.706Z
A

American Bar Association

americanbar.org

54
GovernmentUnited StateslargeMEDIUM

The American Bar Association is a well-established professional organization serving legal professionals in the United States. It provides education, advocacy, and networking services to its members. The domain americanbar.org is long-standing and registered through a reputable registrar with privacy protection enabled, which is typical for large organizations. However, the website content is currently inaccessible due to a Cloudflare Web Application Firewall (WAF) block, preventing detailed content and technical analysis. The visible page is a Cloudflare block message indicating triggered security rules, which limits the ability to assess the website's design, content, and compliance features. From a technical perspective, the site is protected by Cloudflare, indicating a focus on security and performance. However, DNSSEC is not enabled, which is a recommended security enhancement. No metadata, structured data, or contact information is visible in the blocked content. The lack of accessible privacy, cookie, and terms of service policies limits the ability to evaluate compliance with GDPR or other regulations. Security posture is difficult to fully assess due to the block, but the use of Cloudflare WAF is a positive indicator. The WHOIS data shows privacy protection but is consistent with a legitimate entity given the domain age and registrar. No suspicious patterns or vulnerabilities are evident from the provided data. Overall, the site appears to be a legitimate, large professional organization with strong security controls, but the current WAF block restricts comprehensive analysis. Strategic recommendations include enabling DNSSEC, publishing clear privacy and security policies, and ensuring legitimate users can access the site without triggering security blocks. These steps will improve transparency, compliance, and user experience.

35
35
2
85
75
80
100
legalprofessionalassociationlawcloudflarewaf+1 more
Cloudflare
2025-07-29T01:06:45.378Z
M

Martin's Point Health Care

martinspoint.org

58
HealthcareUnited StateslargeMEDIUM

The website martinspoint.org represents Martin's Point Health Care, a US-based healthcare organization established in 1999. The domain registration data aligns well with the organization's identity and history, indicating legitimacy. However, the website content is currently inaccessible due to a Cloudflare Web Application Firewall (WAF) security challenge page employing Turnstile captcha, which blocks direct access to the site's content. This limits the ability to analyze the website's content, policies, and user interface comprehensively. From the technical perspective, the site is protected by Cloudflare services, indicating a focus on security and performance. No CMS or additional frameworks could be identified due to the blocked content. The lack of visible privacy, cookie, or terms of service policies in the accessible content suggests these may be located behind the WAF or on other pages not accessible at this time. Security posture is partially observable through the use of Cloudflare's WAF and captcha mechanisms, which provide a strong defense against automated threats. However, the absence of visible security headers or detailed security policies in the accessible content limits a full security evaluation. No vulnerabilities or exposed sensitive data were detected, but this is due to the content being blocked. Overall, the risk assessment is constrained by the lack of accessible content. The domain and WHOIS data support a trustworthy and established healthcare entity, but the website's current inaccessibility and lack of visible compliance documentation reduce confidence in privacy and user transparency. Strategic recommendations include ensuring public access to key compliance documents, improving transparency, and maintaining robust security practices.

55
35
2
88
75
80
100
CloudflareCloudflare Turnstile
2025-07-28T14:09:30.520Z
bit.cloud favicon

cocycles ltd

bit.cloud

72
TechnologyIsraelmediumMEDIUM

Bit Cloud, operated by cocycles ltd, is a modern AI-driven software composition platform designed to accelerate the development of professional software applications. The platform offers a suite of services including Hope AI, Components, Cloud Workspaces, Change Requests, Ripple CI, and Analytics, targeting software developers and enterprise teams. Positioned as a SaaS solution, Bit Cloud emphasizes simplicity, speed, and control in software composition, enabling teams to build production-grade software rapidly and maintain it efficiently over time. The company, founded in 2021 and based in Israel, leverages modern web technologies and cloud infrastructure to deliver a scalable and flexible development environment. Technically, the website is built using React and Node.js frameworks, with support for Angular, Vue, and Lit components, hosted on Cloudflare for performance and security. The site demonstrates excellent design quality, mobile optimization, and accessibility, with clear navigation and professional content. Analytics are implemented via Google Tag Manager, reflecting moderate user tracking balanced with privacy compliance. The platform integrates collaborative and CI/CD features to enhance developer velocity and product quality. From a security perspective, the website enforces HTTPS with a strong SSL configuration and domain transfer protections. However, DNSSEC is not enabled, and security headers are not explicitly detected, suggesting room for improvement. Privacy and cookie policies are comprehensive and GDPR compliant, with consent mechanisms in place. No direct contact emails or phone numbers are published, but contact forms and enterprise demo requests are available. WHOIS data aligns with the business claims, indicating a legitimate and consistent registration. Overall, Bit Cloud presents a low-risk profile with a strong business and technical foundation. Strategic recommendations include enabling DNSSEC, publishing a vulnerability disclosure policy, enhancing security headers, and providing explicit incident response contacts to further strengthen trust and security posture.

75
68
2
85
75
85
100
aisoftwarecompositiondevelopertoolsenterprisesaas+3 more
ReactNode.jsAngularVue+2
2025-07-28T10:42:59.519Z
oomol.com favicon

OOMOL Contributors

oomol.com

61
TechnologyN/asmallMEDIUM

OOMOL is a technology company offering an AI programmable workflow platform designed to simplify the connection of code snippets and API services through visual workflows. The platform targets developers, data scientists, and content creators, providing tools for both structured and unstructured data processing, including AI-enhanced analytics and media processing. Founded in 2020, OOMOL positions itself as a niche player in the AI workflow automation space with a focus on developer-friendly features and community sharing. Technically, the website is built using modern frameworks such as Docusaurus and React, hosted on Alibaba Cloud with Cloudflare DNS and analytics integration. The site demonstrates good performance, mobile optimization, and SEO practices. However, accessibility features are basic and could be improved. From a security perspective, the site enforces HTTPS, uses security headers, and avoids exposing sensitive data. The absence of DNSSEC and lack of published security or incident response policies are areas for improvement. Privacy compliance is partial, with privacy and terms pages present but no cookie consent mechanism or GDPR explicit indicators. Overall, the website is professional and trustworthy with moderate risk. Strategic improvements in privacy compliance, security transparency, and contact availability would enhance trust and compliance posture.

30
53
2
70
75
75
100
workflowaiplatformautomationdevelopertoolsserviceintegration
JavaScriptReactDocusaurus v3.8.1Cloudflare+2
2025-07-28T09:30:26.026Z
feed-image-editor.com favicon

Feed Image Editor technologies, s.r.o.

feed-image-editor.com

66
TechnologyCzech RepublicsmallMEDIUM

Feed Image Editor technologies, s.r.o. operates the Feed Image Editor website, providing a SaaS application focused on bulk editing and improving product images for e-commerce stores. The service enhances online store image advertising by offering features such as background removal, watermark removal, image upscaling, and graphic template creation, integrated with advertising platforms. The company positions itself as a niche technology provider within the e-commerce sector, leveraging partnerships such as with Mergado Store for activation and distribution. Technically, the website is built on Drupal 7 with a modern front-end stack including Bootstrap and jQuery. It uses Cloudflare for security and performance, Google Analytics and Google Tag Manager for analytics, and CookieHub for cookie consent management. The site is mobile optimized and demonstrates good SEO and accessibility practices, though some security headers are not explicitly visible. Security posture is solid with HTTPS enforced and bot management via Cloudflare, but the absence of explicit security headers and lack of published security policies or incident response contacts indicate room for improvement. Privacy compliance is supported by a detailed cookie consent mechanism, but no explicit privacy policy or terms of service pages were found, which is a compliance gap. Overall, the website is professional and trustworthy with good business information and contact details. However, the WHOIS data is missing or unavailable, which raises questions about domain registration legitimacy. Strategic recommendations include publishing comprehensive privacy and security policies, enhancing security headers, and verifying domain registration details to improve trust and compliance.

60
80
2
65
62
80
100
ecommerceproductimagesimageeditingbulkeditingmarketing+2 more
Drupal 7jQuery 2.2BootstrapGoogle Analytics+3

Partner Domains:

store.mergado.com
partner
apek.cz
partner
2025-07-28T05:00:02.916Z
feedimageeditor.com favicon

Feed Image Editor technologies, s.r.o.

feedimageeditor.com

66
E-commerceCzech RepublicsmallMEDIUM

Feed Image Editor technologies, s.r.o. operates a specialized SaaS platform focused on bulk editing and enhancement of product images for e-commerce stores. Their service improves product image quality through features like background removal, watermark removal, and image upscaling, targeting online retailers seeking to increase sales and ad performance. The company positions itself as a niche player with a subscription-based business model and partnerships with platforms like Mergado Store. Technically, the website is built on Drupal 7 with modern integrations such as Google Analytics, CookieHub for consent management, and Cloudflare for security and performance. The site is well-structured, mobile-optimized, and includes multiple trust signals such as industry badges and social media presence. Security posture is solid with HTTPS and bot management, though some security headers and policies could be improved. The absence of WHOIS data for the domain is a notable anomaly that slightly reduces trust but does not negate the professional presentation and business legitimacy evident on the site. Overall, the company demonstrates a mature digital presence with room for enhanced transparency and security documentation.

60
80
2
65
62
80
100
ecommerceproductimagesimageeditingbulkeditingmarketing+2 more
Drupal 7jQuery 2.2BootstrapGoogle Analytics+4

Partner Domains:

store.mergado.com
partner
www.apek.cz
partner
2025-07-28T03:49:12.683Z
is-a.dev favicon

is-a.dev - Free subdomains for developers

is-a.dev

61
TechnologyN/asmallMEDIUM

The website is-a.dev offers a free subdomain registration service targeted primarily at developers. It enables users to obtain free `.is-a.dev` subdomains by following instructions hosted on a GitHub repository. The service is positioned as a niche developer tool with a small-scale operation founded in 2020. The website content is clear, relevant, and professionally presented with consistent branding and a focus on developer engagement through GitHub and Discord communities. From a technical perspective, the site uses modern web technologies including HTML5, CSS3, JavaScript, and is hosted behind Cloudflare, ensuring fast performance and good mobile optimization. The presence of Carbon Ads and Cloudflare Insights indicates minimal advertising and analytics usage, with a low level of user tracking. SEO and accessibility are adequately addressed, though accessibility is basic. Security posture is solid with HTTPS enforced and no visible vulnerabilities or exposed sensitive data. However, the site lacks explicit security headers and formal privacy or cookie policies, which are important for compliance and trust. Incident response is partially addressed via a GitHub abuse reporting mechanism, but no dedicated security contact or vulnerability disclosure policy is present. Overall, the website is trustworthy and functional with a good balance of usability and security for its scope. The main risks relate to privacy compliance and formal security governance, which could be improved to enhance user trust and regulatory adherence.

25
50
2
70
75
85
100
developersubdomainfreegithubcloudflare+1 more
HTML5CSS3JavaScriptCloudflare+1
2025-07-27T19:44:35.831Z
nordicsemi.com favicon

Nordic Semiconductor

nordicsemi.com

74
TechnologyN/alargeMEDIUM

Nordic Semiconductor is a fabless semiconductor company specializing in wireless technology for the Internet of Things (IoT). The company positions itself as a specialist in low power wireless solutions, targeting developers and businesses in IoT, smart home, industrial, and metering sectors. Their website reflects a mature digital presence with multiple subdomains dedicated to documentation, training, webinars, and developer resources. The business model focuses on providing wireless connectivity solutions and microcontrollers optimized for IoT applications. Technically, the website employs modern technologies including Google Tag Manager, Google Analytics, Cloudflare CDN and security services, and Sitecore CMS. The site is mobile optimized, accessible, and performs moderately well. A comprehensive cookie consent mechanism is implemented, demonstrating attention to privacy compliance and GDPR requirements. However, explicit contact information and detailed security policies are not readily visible. From a security perspective, the site uses HTTPS with strong SSL configuration and benefits from Cloudflare's protection. The cookie consent banner and privacy policy indicate good privacy practices. However, the absence of explicit security headers and incident response information suggests room for improvement. No vulnerabilities or exposed sensitive data were detected in the provided content. Overall, the website is professional, trustworthy, and compliant with privacy regulations. The lack of WHOIS data limits domain registration trust analysis, but the site's content and infrastructure indicate a legitimate and well-managed business presence.

55
83
17
85
90
80
100
iotwirelesssemiconductortechnologyprivacy+2 more
Google Tag ManagerGoogle AnalyticsCloudflareYouTube Widget API+1
2025-07-27T16:23:39.736Z
G

General Programming LLC

owo.me

59
OtherUnited StatessmallMEDIUM

The website owo.me is a personal site titled 'erin on the interwebs' owned by General Programming LLC, a US-based entity. The site serves as a personal blog or informal community hub with links to social media profiles and a webring of related sites. It does not represent a commercial business or provide professional services. The content is informal, with humorous and casual language, targeting a general audience. The domain is well-established since 2013, indicating a stable presence. Technically, the site is built using the Hugo static site generator and hosted via Cloudflare, ensuring good performance and HTTPS security. The site uses JavaScript for some interactive elements and includes Cloudflare Insights for minimal analytics. The design and navigation are basic but functional and mobile-optimized. However, the site lacks advanced SEO and accessibility features. From a security perspective, HTTPS is enabled and domain transfer is protected, but no DNSSEC or security headers are present. There are no privacy, cookie, or terms of service policies published, and no contact or incident response information is provided. The site does not collect user data via forms. Tracking is minimal and limited to Cloudflare's beacon. No vulnerabilities or suspicious patterns were detected. Overall, the site is low risk with moderate trustworthiness but lacks formal privacy and security documentation. Strategic recommendations include adding privacy and cookie policies, implementing security headers, and providing contact and incident response details to improve compliance and trust.

30
50
2
60
75
85
100
personalblogcommunitystaticsitehugo+1 more
HugoCloudflareJavaScript
2025-07-27T08:00:25.148Z