Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

149091
Websites
130
Industries
113
Countries
52
Avg Score
Page 14 of 153|Showing 651-700 of 7624
geoproapp.com favicon

Geo:Pro for Shopify

geoproapp.com

54
E-commerceN/asmallMEDIUM

GeoProApp.com is a recently established SaaS business launched in 2023, providing geolocation-based access management tools specifically designed for Shopify store owners. The website offers features such as geolocation redirects, country blocking, and market redirects to help merchants control customer access and tailor shopping experiences based on location. The business targets e-commerce merchants using Shopify, positioning itself as a niche provider in this space. The website is professionally designed with good mobile optimization and clear navigation, though it lacks comprehensive privacy and cookie policies, which are critical for compliance and trust. Technically, the site uses modern frontend technologies including Tailwind CSS and JavaScript ES modules, with hosting and DNS services provided by Cloudflare. Google Analytics and Google Tag Manager are employed for user tracking, indicating moderate data collection practices. However, the absence of DNSSEC and security headers suggests room for improvement in security hardening. The domain registration is consistent with the business launch timeline, registered via a reputable registrar without privacy protection, which aligns with the business type. From a security perspective, the site uses HTTPS (implied by Cloudflare DNS and standard Shopify app practices), but lacks visible security headers and formal security or incident response policies. No forms or direct data collection points were detected on the main page, reducing immediate attack surface but also limiting user engagement options. The lack of privacy and cookie policies represents a compliance gap, especially under GDPR. Overall, the security posture is moderate but could be enhanced with standard best practices. The overall risk assessment is moderate with no critical vulnerabilities detected. Strategic recommendations include implementing DNSSEC, adding privacy and cookie policies, publishing contact and incident response information, and deploying security headers. These improvements will enhance compliance, trust, and security posture, supporting sustainable growth in the competitive Shopify app market.

15
35
2
60
75
75
100
shopifye-commercegeolocationaccessmanagementsaas
Tailwind CSSCloudflare DNSGoogle Analytics (gtag.js)JavaScript ES Modules
2025-10-25T10:09:09.964Z
myaskai.com favicon

My AskAI

myaskai.com

62
TechnologyN/asmallMEDIUM

My AskAI is a technology startup founded in 2023 that provides AI-powered customer service agents designed to automate and deflect over 75% of support tickets. The company targets businesses that use live chat providers such as Intercom, Zendesk, and Freshdesk, offering seamless integration to improve customer support efficiency. The website reflects a focused business model centered on AI SaaS solutions for customer support automation. Technically, the website is built on the Bubble.io no-code platform, hosted via Cloudflare DNS and Amazon CloudFront CDN, and incorporates a modern tech stack including Google Tag Manager, Amplitude Analytics, Microsoft Clarity, and various marketing and tracking tools. The site demonstrates good design quality, mobile optimization, and SEO practices, though accessibility features are basic. From a security perspective, the site enforces HTTPS and uses Cloudflare DNS with domain transfer protection. However, it lacks DNSSEC, security headers, and published security or privacy policies, which are areas for improvement. Extensive third-party tracking scripts indicate a high level of user data collection, but no explicit privacy or cookie consent mechanisms are present, raising compliance concerns. Overall, the website is professional and trustworthy with moderate security posture and good business credibility. The absence of privacy and cookie policies and security headers lowers the privacy compliance and security scores. Strategic improvements in these areas would enhance trust and regulatory compliance.

30
35
17
85
75
80
100
aicustomerservicesaastechnologyanalytics+2 more
JavaScriptGoogle Tag ManagerAmplitude AnalyticsCloudflare DNS+9
2025-10-25T09:31:50.660Z
heyflow.id favicon

Heyflow

heyflow.id

59
TechnologyIndonesiamediumMEDIUM

Heyflow is a technology company providing a SaaS platform for building interactive, no-code forms designed to increase user engagement and conversion rates. The platform offers drag & drop design, conditional logic, and seamless integrations with popular CRMs and analytics tools, positioning itself as a flexible and user-friendly solution for marketers and businesses. The website is professionally designed with consistent branding and clear messaging targeting business users seeking enhanced lead generation tools. Technically, the site leverages modern JavaScript frameworks, asynchronous script loading, and integrates with major analytics and marketing platforms such as Google Analytics, Google Tag Manager, and Facebook Pixel. Hosting and DNS are managed via Cloudflare, ensuring good performance and security. Security posture is solid with HTTPS enforced and domain transfer protections, though additional security headers and a formal security policy could enhance trust. Privacy compliance is addressed with a cookie consent mechanism and links to privacy and imprint pages, indicating GDPR awareness. No direct contact emails or phone numbers are provided on the site, which may impact user trust slightly. Overall, the site is secure, performant, and business credible with room for improvement in explicit security disclosures and contact transparency.

15
73
2
60
72
70
100
interactiveformsformbuilderno-codemarketingleadgeneration+3 more
JavaScriptGoogle AnalyticsGoogle Tag ManagerFacebook Pixel+3
2025-10-25T09:07:21.969Z
drblitz-weblab.com favicon

Drblitz-weblab

drblitz-weblab.com

62
TechnologyPolandsmallMEDIUM

Drblitz-weblab is a specialized TYPO3 CMS web development agency based in Poland, established in 2017. The company positions itself as a leader in the TYPO3 ecosystem, offering comprehensive services including website creation, implementation, updates, custom module development, and training. Their target audience primarily consists of businesses and organizations seeking professional TYPO3 solutions. The website is professionally designed, mobile-optimized, and provides a clear navigation structure, supporting their market positioning. Technically, the website is built on TYPO3 CMS, leveraging modern web technologies including JavaScript and CSS, with Google Tag Manager and Analytics integrated for marketing and analytics purposes. The domain is registered with OVH sas and uses Cloudflare for DNS services, ensuring reliable hosting infrastructure. Performance is moderate with good SEO and basic accessibility features. From a security perspective, the site uses HTTPS and has domain status protections to prevent unauthorized changes. However, it lacks DNSSEC, security headers, and explicit security or incident response policies on the site. Privacy compliance is partially addressed through a cookie consent mechanism, but no dedicated privacy policy or terms of service pages were found. No contact emails or phone numbers were explicitly identified in the provided content. Overall, the website demonstrates a solid business and technical foundation with room for improvement in security best practices and privacy compliance. Strategic recommendations include enabling DNSSEC, publishing comprehensive privacy and security policies, implementing security headers, and enhancing contact transparency to improve trust and compliance.

25
50
2
80
75
85
100
typo3webdevelopmentcmspolandtechnology+3 more
TYPO3 CMSJavaScriptCSSGoogle Tag Manager+1

Partner Domains:

drblitz-weblab.de
partner
2025-10-25T08:50:26.539Z
charicomm.de favicon

charicomm.de is available for purchase - Sedo.com

charicomm.de

71
TechnologyN/alargeMEDIUM

The website is a domain sales landing page hosted by Sedo.com, a well-established domain marketplace with over 26 years of experience. The page offers the domain charicomm.de for sale at 699 EUR, highlighting services such as free transfer, personal assistance, and multiple payment options. The target audience is domain buyers and investors. The business model is domain brokerage and marketplace services, with a strong market position supported by high monthly domain transfer volumes. Technically, the site uses modern web technologies including JavaScript ES modules and Cloudflare DNS/CDN services. The site is mobile optimized with good design and basic accessibility features. Performance is moderate, and SEO is basic but functional. The SSL configuration is good with HTTPS enforced, but DNSSEC is not enabled, representing a minor security gap. Security posture is solid with no visible vulnerabilities or exposed sensitive data. However, the site lacks published privacy policies, terms of service, security policies, and incident response contacts, which are important for compliance and trust. Contact information is clearly provided with a verified company email and phone number. No suspicious or malicious content was detected, and the content is safe for general audiences. Overall, the domain and website appear legitimate and trustworthy, with room for improvement in privacy compliance and security policy transparency. The AI overall score is 77, reflecting a good but not perfect security and compliance posture.

50
65
2
85
100
85
100
domainsalesmarketplacedomaintransfersedodomainbrokerage
JavaScript ES ModulesCloudflare DNSCSSHTML5
2025-10-25T08:37:01.121Z
fptsoftware.com favicon

FPT Software

fptsoftware.com

79
TechnologyVietnamenterpriseLOW

FPT Software is a well-established global technology solutions provider headquartered in Vietnam, specializing in AI-powered digital transformation and IT consulting services. The company offers a broad portfolio of services including smart factories, cloud, RPA, AI, IoT, and product engineering, targeting enterprises seeking next-level digital transformation. The website reflects a mature digital presence with excellent design, mobile optimization, and clear navigation, supporting its enterprise market positioning. Technically, the site leverages modern frameworks such as Bootstrap 5 and integrates multiple analytics and marketing tools including Google Analytics, Hotjar, Microsoft Clarity, and LinkedIn Insight Tag. Hosting and DNS services are managed via Cloudflare, ensuring good performance and security. However, the absence of DNSSEC and security headers indicates room for improvement in technical security hardening. From a security perspective, the website uses HTTPS and has domain transfer protections in place, but lacks visible privacy and cookie policies, consent mechanisms, and incident response contacts. No vulnerability disclosure or security.txt files were found, which are recommended for enterprise-grade security transparency. The WHOIS data confirms domain legitimacy with consistent registration details and appropriate domain age. Overall, the website demonstrates strong business credibility and technical maturity but requires enhancements in privacy compliance and security best practices to align with modern enterprise security standards.

95
53
65
85
75
80
100
digitaltransformationaiitconsultingcloudrpa+3 more
Bootstrap 5jQuery UIFont AwesomeFullCalendar+9

Partner Domains:

career.fpt-software.com
partner
fptsoftware.fr
partner

+3 more partners

2025-10-25T08:27:37.342Z
truelightdesigns.com favicon

True Light, LLC

truelightdesigns.com

10
TechnologyN/asmallCRITICAL

True Light, LLC operates the website truelightdesigns.com, providing customized web development services primarily focused on e-commerce platforms such as Shopify, Turbify, BigCommerce, Magento, WooCommerce, and others. Established since 2007, the company positions itself as a specialized service provider for businesses seeking tailored web solutions and API integrations. The website content is professional and well-structured, targeting business clients in need of web development expertise. Technically, the website employs modern web technologies including Google Tag Manager and Font Awesome icons, with hosting infrastructure leveraging Cloudflare DNS services. The site is mobile-optimized and demonstrates good SEO practices, although no CMS is explicitly detected. Performance is moderate with room for improvement in accessibility features. From a security perspective, the site uses HTTPS with a valid SSL certificate and has domain transfer protections in place. However, it lacks DNSSEC and important security headers, which are recommended to enhance security posture. Privacy compliance is partial; while a privacy policy and terms of service are present, there is no cookie consent mechanism despite the use of tracking scripts. Contact information is limited to a contact form without explicit emails or phone numbers, which may impact user trust. Overall, the website is trustworthy and professionally maintained with a solid business foundation. Strategic improvements in security headers, privacy compliance, and contact transparency would further strengthen its security posture and user confidence.

-
-
-
-
-
-
-
webdevelopmente-commerceshopifybigcommercemagento+2 more
Google Tag ManagerFont AwesomeCloudflare DNSCSS+1
2025-10-25T08:23:01.511Z
J

James Greenhalgh on digital strategy, marine conservation, and adventures.

jamesgreenblue.com

58
OtherN/asmallMEDIUM

JamesGreenBlue.com is a personal blog operated by James Greenhalgh focusing on digital strategy, marine conservation, and personal adventures. The site features a collection of blog posts dating from 2020 through 2025, reflecting a niche content approach aimed at environmentally conscious and technology-interested audiences. The business model is primarily content-driven with no evident commercial transactions or services offered. The website is small in scale and founded in 2022, consistent with the domain registration data. Technically, the website is built using the Hugo static site generator, hosted behind Cloudflare DNS services, and leverages Google Fonts for typography. The site is performant, mobile-optimized, and accessible with good SEO practices. No CMS beyond Hugo is detected, and no analytics or tracking scripts are present, indicating a privacy-conscious approach. From a security perspective, the site enforces HTTPS and has domain-level protections such as clientDeleteProhibited and clientTransferProhibited statuses. However, DNSSEC is not enabled, and no security headers are detected in the provided data. There is no published privacy policy, cookie policy, or terms of service, which presents compliance gaps especially regarding GDPR. No contact information or incident response channels are provided, limiting transparency and user trust. Overall, the website is safe, professional, and trustworthy as a personal blog but would benefit from enhanced privacy compliance, security header implementation, and clearer contact information to improve user trust and regulatory adherence.

60
70
35
100
17
15
85
digitalstrategymarineconservationblogenvironmenttechnology+1 more
Hugo static site generatorCloudflare DNSGoogle FontsJavaScript
2025-10-25T06:56:39.975Z
actionaid.org favicon

ActionAid International

actionaid.org

65
Non-profitN/alargeMEDIUM

ActionAid International is a well-established global non-profit federation dedicated to eradicating poverty and injustice through humanitarian aid, advocacy, and development programs. The organization operates in multiple countries worldwide, focusing on key themes such as women's rights, climate justice, emergencies, and economic and political issues. Their website reflects a professional and consistent brand image, providing comprehensive information about their mission, activities, and resources. The presence of multiple country-specific domains underscores their global footprint and operational scale. Technically, the website is built on Drupal 10, leveraging modern analytics tools like Google Analytics, Google Tag Manager, and Hotjar for user behavior insights. The site is mobile-optimized, accessible, and SEO-friendly, with a moderate performance profile. Hosting and DNS services utilize Cloudflare, enhancing availability and resilience. Privacy and cookie compliance are well implemented, including user consent mechanisms aligned with GDPR requirements. From a security perspective, the site enforces HTTPS and employs domain transfer protection. However, DNSSEC is not enabled, and no explicit security headers were detected in the HTML content, representing areas for improvement. No vulnerability disclosure or incident response contacts are publicly available, which could be enhanced to improve transparency and trust. Overall, the security posture is solid but could benefit from additional hardening and disclosure practices. The overall risk assessment is low, with no indications of malicious content or suspicious activity. The site is trustworthy, professionally maintained, and compliant with privacy regulations. Strategic recommendations include enabling DNSSEC, publishing a vulnerability disclosure policy, adding security headers, and providing clear incident response contacts to further strengthen security and compliance posture.

75
100
75
62
68
40
17
non-profithumanitarianngowomensrightsclimate+5 more
Drupal 10Google AnalyticsGoogle Tag ManagerHotjar+1
2025-10-25T05:47:08.487Z
greenfins.net favicon

Green Fins

greenfins.net

53
Non-profitN/amediumMEDIUM

Green Fins is a well-established non-profit initiative dedicated to protecting coral reefs through sustainable marine tourism. Supported by the United Nations Environment Programme and partnered with Reef-World, it offers certified and digital memberships to dive centers, snorkelling centers, and liveaboard businesses globally. The website provides educational e-courses for recreational divers and professional guides, promoting responsible tourism practices. The organization targets eco-conscious tourists and marine operators, positioning itself as a trusted global leader in marine conservation education and certification. Technically, the website is built on WordPress with a modern tech stack including Yoast SEO, Google Analytics, and Google Maps API integration. The site is mobile-optimized, accessible, and SEO-friendly, reflecting a mature digital infrastructure. Hosting and DNS services leverage Cloudflare and NameCheap, ensuring reliable performance and domain security. From a security perspective, the site enforces HTTPS and has domain transfer protections in place. However, DNSSEC is not enabled, and some security headers are missing. There is no public vulnerability disclosure or incident response policy, and cookie consent mechanisms are absent, which may impact GDPR compliance. No exposed sensitive data or vulnerabilities were detected. Overall, Green Fins presents a professional, trustworthy, and content-rich platform with a strong business credibility score. Strategic improvements in privacy compliance and enhanced security practices are recommended to further strengthen its security posture and regulatory adherence.

-
-
-
85
75
80
100
marineconservationsustainabletourismcoralreefsdivingsnorkelling+3 more
WordPressYoast SEO pluginGoogle AnalyticsGoogle Maps API+5

Partner Domains:

reef-world.org
partner
www.unep.org
partner
2025-10-25T05:31:51.092Z