Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157327
Websites
130
Industries
113
Countries
52
Avg Score
Page 140 of 261|Showing 6951-7000 of 13036
puffyan.us favicon

Puffyan - We Donut Track You

puffyan.us

71
TechnologyUnited StatessmallMEDIUM

Puffyan is a small, individual-operated website offering privacy-respecting online services such as XMPP chat, a SearX metasearch engine, and an Invidious YouTube front-end. The site emphasizes user privacy by not tracking or selling user data and provides these services free of charge, supported by donations and referral programs. The website's market position is niche, targeting privacy-conscious users seeking alternatives to mainstream services. Technically, the site uses standard web technologies (HTML5, CSS3) and hosts privacy-focused open-source services. The site is mobile-optimized with good navigation and content quality. However, there is no evidence of advanced frameworks or CMS usage. Hosting details are not explicitly disclosed, but the domain is registered via NameCheap with no privacy protection. From a security perspective, the site uses HTTPS (implied by the URL), but no DNSSEC is enabled, and no security headers are detected in the provided content. There is no published privacy or cookie policy, which is a compliance gap, especially under GDPR. Incident response contact is provided via an abuse email. No vulnerability disclosure or security.txt file is present. Overall, the security posture is moderate but could be improved with better header implementation and formal policies. The overall risk is low given the nature of the services and the absence of sensitive transactions or personal data collection. Strategic recommendations include publishing privacy and cookie policies, enabling DNSSEC, adding security headers, and establishing a vulnerability disclosure process to enhance trust and compliance.

80
50
2
85
95
85
100
privacychatsearchinvidiousxmpp+3 more
HTML5CSS3XMPPSearX+1

Partner Domains:

liberapay.com
partner
vultr.com
partner
2025-07-27T17:26:38.020Z
E

Erista Group

erista.me

50
TechnologySaint Kitts and NevissmallMEDIUM

Erista Group operates a niche technology business focused on video game preservation by providing high-bandwidth solutions and a high-performance content delivery network tailored for video game enthusiasts and archivists worldwide. The company offers specialized services such as the hShop 3DS content archive and Myrient, which preserves video game history. Founded in 2020 and registered under 1337 Services LLC in Saint Kitts and Nevis, the business maintains a small but focused market presence. Technically, the website is built with standard HTML, CSS, and JavaScript, hosted behind Cloudflare DNS and CDN services. The site demonstrates moderate performance and basic mobile optimization but lacks advanced frameworks or CMS platforms. SEO practices are adequately implemented with proper meta tags and Open Graph data, though accessibility features are basic. From a security perspective, the domain benefits from clientTransferProhibited status to prevent unauthorized transfers but lacks DNSSEC and visible security headers, which are recommended for enhanced protection. No HTTPS or SSL configuration details were explicitly found in the provided data, and no incident response or vulnerability disclosure policies are published. Privacy and cookie policies are absent, indicating gaps in compliance and user data protection. Overall, the website is functional and professional with good content relevance and navigation clarity but requires improvements in privacy compliance, security best practices, and transparency to enhance trustworthiness and reduce risk.

15
50
2
65
75
80
40
videogamepreservationcontentdeliverynetworkarchivingtechnologygaming
HTML5CSS3JavaScript
2025-07-27T17:26:32.985Z
witchfuneral.quest favicon

Private by Design, LLC

witchfuneral.quest

51
TechnologyUnited StatessmallMEDIUM

The website witchfuneral.quest is a personal portfolio and blog site operated by an individual named Ada, who identifies as a nonbinary lesbian and technology enthusiast. The site serves as a personal corner of the internet to share interests in Linux, coding, art, and music, with a small audience likely composed of like-minded individuals. The business model is informal, relying on voluntary support via coff.ee, and does not represent a commercial enterprise or large-scale operation. Technically, the site is a simple static HTML page with basic CSS and JavaScript, including a last.fm integration for music display. The hosting is provided by Porkbun, a domain registrar, with no detected CMS or advanced frameworks. Performance and mobile optimization are basic, with minimal SEO and accessibility features. No security headers or HTTPS status were detected from the data provided, indicating potential security improvements. From a security perspective, the site lacks formal privacy, cookie, or terms of service policies, and no contact information for incident response or data protection officers is provided. The domain WHOIS data is privacy protected by Private by Design, LLC, which is reasonable for a personal site, but the domain creation date is suspiciously set in the future, which may be a data error. No WAF or blocking mechanisms are detected, and no adult or unsafe content is present. Overall, the site scores low to moderate on content quality, technical implementation, security posture, privacy compliance, and business credibility. Strategic improvements in HTTPS deployment, security headers, privacy policies, and contact information would enhance trust and compliance.

15
40
2
65
52
85
100
personalportfoliotechnologylinuxnonbinary+1 more
HTML5CSS3JavaScriptlast.fm API
2025-07-27T17:25:27.367Z
nextpcb.com favicon

Shenzhen Huaqiu Electronics Co., Ltd.

nextpcb.com

68
ManufacturingChinalargeMEDIUM

NextPCB, a subsidiary of Shenzhen Huaqiu Electronics Co., Ltd., is a large-scale manufacturer specializing in PCB prototype, fabrication, and assembly services. The company offers a broad range of PCB types including multilayer, HDI, rigid-flex, and metal core PCBs, supported by certifications such as ISO9001, IATF16949, and UL. Their online platform facilitates instant quoting, order tracking, and management, targeting electronics manufacturers and hardware developers globally. The website is professionally designed with comprehensive service descriptions and customer testimonials, reflecting a strong market position in the manufacturing sector. Technically, the website employs modern web technologies including jQuery, Swiper.js, and multiple analytics and marketing tools such as Google Tag Manager, Microsoft Clarity, and Yandex Metrika. It is mobile-optimized and accessible, with good SEO practices. Security posture is solid with HTTPS enforced and secure forms, though explicit security headers are not visibly configured. Privacy compliance is well addressed with clear privacy and cookie policies and consent mechanisms. The WHOIS data is unavailable, indicating privacy protection or unregistered status, which slightly reduces trust but is common for commercial entities. Overall, the site demonstrates a mature digital presence with strong business credibility and moderate to high security standards.

20
83
17
75
100
65
100
pcbmanufacturingassemblyelectronicstechnology+2 more
HTML5CSS3JavaScriptjQuery+7

Partner Domains:

www.hqonline.com
subsidiary
nextpcb.zohodesk.com.cn
service

+1 more partners

2025-07-27T16:23:54.826Z
getterms.io favicon

GetTerms

getterms.io

70
TechnologyN/amediumMEDIUM

GetTerms is a technology company specializing in providing data privacy compliance solutions for businesses worldwide. Established in 2015, it offers a suite of SaaS products including privacy policy generators, cookie policy generators, terms and conditions generators, and consent management platforms. The company targets businesses needing to comply with global privacy regulations such as GDPR, CCPA, CalOPPA, and others. With over 500,000 customers and strong trust indicators like high Trustpilot ratings, GetTerms holds a solid market position as a reliable compliance partner. Technically, the website is built on WordPress with modern technologies including Google Tag Manager for analytics and Cloudflare for DNS management. The site is well optimized for performance, mobile responsiveness, and accessibility. SEO practices are implemented effectively using Yoast SEO plugin. Security posture is strong with HTTPS enforced and privacy-by-design principles applied in consent management, although some security headers could be improved. From a security perspective, the site demonstrates good practices such as default denied consent in Google Consent Mode and embedding a cookie consent widget. However, there is no publicly available security policy or incident response information, and no security.txt file for vulnerability disclosures. The domain registration is privacy protected but consistent with the business profile and age, indicating legitimacy. Overall, GetTerms presents a professional, trustworthy, and technically sound online presence with a strong focus on privacy compliance. The risk level is low, but improvements in security transparency and header implementation are recommended to further enhance trust and security posture.

35
95
17
85
75
65
100
privacycookieconsentgdprccpatermsandconditions+3 more
Google Tag ManagerCloudflare DNSWordPress 6.7.2Yoast SEO plugin+3
2025-07-27T16:19:47.342Z
arsys.net favicon

Arsys Internet S.L.U.

arsys.net

73
TechnologySpainlargeMEDIUM

Arsys Internet S.L.U. is a well-established European technology company specializing in domain registration, web hosting, cloud computing, and managed IT services. Founded in 1996 and headquartered in Logroño, Spain, Arsys positions itself as a trusted provider with 25 years of experience, offering a broad portfolio of services including email hosting, SSL certificates, and ecommerce solutions. The company targets businesses and individuals seeking reliable internet presence solutions, emphasizing European data sovereignty and comprehensive cloud infrastructure. Technically, the website employs modern web technologies including JavaScript, CSS3, and HTML5, with integrations of error tracking (Sentry) and marketing analytics (Tune.js). Hosting appears to be managed by IONOS, indicating a robust infrastructure. The site is well-optimized for mobile devices and SEO, with structured data enhancing search engine understanding. Performance is moderate, with room for improvement in accessibility features. From a security perspective, the site enforces HTTPS and uses SSL certificates, but lacks explicit security headers and published security policies or incident response information. No vulnerabilities or exposed sensitive data were detected in the analyzed content. Privacy compliance is strong, with clear privacy and cookie policies and consent mechanisms in place. Overall, the domain WHOIS data is unavailable or protected, which slightly reduces transparency and trustworthiness. However, the professional presentation, consistent branding, and comprehensive service offerings support a positive risk assessment. Strategic recommendations include enhancing security headers, publishing detailed security policies, and improving accessibility to further strengthen the security posture and user trust.

80
50
25
85
77
80
100
hostingdomaincloudemailssl+4 more
JavaScriptCSS3HTML5Sentry (error tracking)+2

Partner Domains:

www.arsys.es
partner
www.arsys.pt
partner

+1 more partners

2025-07-27T16:19:12.154Z
proot.party favicon

Private by Design, LLC

proot.party

48
OtherUnited StatessmallHIGH

The website proot.party is a personal site belonging to an individual known as strongsand, a high school student interested in cybersecurity, furry art, and gaming. The site is currently incomplete and serves primarily as a personal expression platform with links to related community sites. The domain is newly registered in late 2024, consistent with the site's early development stage. The technical infrastructure is basic, relying on static HTML and CSS, hosted likely via Porkbun's DNS services. There is no evidence of advanced CMS or frameworks, and no analytics or tracking technologies are present. From a security perspective, the site lacks HTTPS confirmation in the provided data, security headers, privacy policies, and contact information for incident response. The domain registration is consistent and legitimate, with no privacy protection that would obscure ownership, which is appropriate for a personal site. No WAF or blocking mechanisms were detected, and the content is accessible without restrictions. The site does not contain adult or explicit content and is safe for general audiences. Overall, the site scores moderately on content and business credibility but scores low on privacy compliance and security posture due to missing policies and security controls. The site would benefit from implementing HTTPS, security headers, privacy and cookie policies, and providing contact information to improve trust and compliance.

15
40
47
70
52
60
40
personalfurryprotogencybersecurityhighschool+2 more
HTML5CSS3
2025-07-27T16:18:16.754Z
potatoe.ca favicon

Potatoe

potatoe.ca

61
OtherN/asmallMEDIUM

Potatoe.ca is a personal website operated by an individual named Spike, serving as a small corner of the Internet with personal content and links to other community and personal sites. The site is simple, static, and handcrafted without JavaScript, emphasizing privacy and minimalism. The domain was registered in early 2023 and is protected by WHOIS privacy, consistent with a personal project rather than a commercial enterprise. The hosting is self-managed on a personal HP ProDesk machine, indicating a small-scale operation. Technically, the website uses basic HTML and CSS with no advanced frameworks or CMS detected. It is mobile responsive and accessible, but lacks modern security features such as DNSSEC, HTTPS confirmation, and security headers. No analytics or tracking scripts are present, which aligns with the privacy-conscious approach. The site does not provide privacy, cookie, or terms of service policies, nor does it offer contact information or incident response details. From a security perspective, the absence of HTTPS information and security headers reduces the security posture. The domain is locked against unauthorized transfers and updates, which is a positive indicator. However, the lack of formal policies and contact channels limits compliance and incident response readiness. No vulnerabilities or malicious content were detected, and the content is safe for general audiences. Overall, Potatoe.ca is a low-risk personal website with basic technical implementation and minimal security features. Strategic improvements include enabling HTTPS, adding security headers, publishing privacy and cookie policies, and providing contact information to enhance trust and compliance.

80
50
2
65
42
80
100
personalblogstaticprivacyopensource
HTML5CSS3Apache2
2025-07-27T16:18:01.699Z
G

Ginkoid LLC

beepi.ng

54
OtherUnited StatessmallMEDIUM

The website beepi.ng is a personal homepage operated by an individual known as 'unnick', hosted under a domain registered to Ginkoid LLC in the US. The site serves as a portfolio and hub for personal projects, creative content, and links to various social media and technical platforms. It is not a commercial business site and targets a general audience interested in programming, shaders, and creative web tools. The domain is newly registered in late 2024, consistent with the site's content and purpose. Technically, the site uses standard HTML5, CSS3, and JavaScript with Cloudflare DNS services. The site is moderately optimized for mobile and accessibility but lacks advanced frameworks or CMS. Performance is moderate with no heavy scripts or analytics detected. The site does not implement common security headers or privacy policies, indicating a basic security posture. Security-wise, the site uses HTTPS (implied by domain and external links), but no DNSSEC or security headers are enabled. There are no visible vulnerabilities or exposed sensitive data, but the absence of privacy and cookie policies and security incident contacts reduces compliance and trust. No WAF or blocking mechanisms are detected, and the site content is fully accessible. Overall, the site is a safe, personal, and creative web presence with moderate technical quality but limited security and privacy compliance. Strategic improvements in security headers, privacy policies, and contact information would enhance trust and compliance.

15
50
17
60
52
70
100
personalcreativetechnicalopensourceportfolio
HTML5CSS3JavaScriptCloudflare DNS
2025-07-27T16:17:51.650Z
cyrneko.eu favicon

Alexia's Webplace

cyrneko.eu

49
OtherN/asmallHIGH

The website 'Alexia's Webplace' serves as a personal online presence for an individual named Alexia, who is active in various online communities such as the Fediverse, Bluesky, and open source projects. The site provides contact information primarily through modern decentralized communication platforms like Signal, XMPP, and Matrix, and offers links to code repositories and a blog. The business model is personal and community-focused, relying on donations via Ko-Fi, GitHub Sponsors, and Monero wallet contributions. The website targets a general audience interested in social and open-source communities. Technically, the site is built with standard HTML5, CSS3, and JavaScript, using modern web fonts and CSS variables for styling. The site appears to be hosted under a domain registered with Porkbun LLC, a reputable registrar. The site is moderately optimized for mobile and accessibility, though no advanced frameworks or CMS are detected. Performance is moderate with no evident analytics or tracking scripts, indicating a privacy-conscious approach. From a security perspective, the site lacks explicit security headers and does not provide privacy or cookie policies, which limits compliance with GDPR and other privacy regulations. No forms collect sensitive data, reducing risk exposure. There is no vulnerability disclosure or incident response information, which could be improved to enhance transparency and trust. The domain registration data is consistent with the website content, and no suspicious patterns are detected. Overall, the website is safe, well-structured, and serves its purpose as a personal web presence. However, it would benefit from adding privacy and cookie policies, security headers, and incident response information to improve compliance and security posture.

20
10
2
40
75
75
100
personalblogfediverseopensourcecommunity+3 more
HTML5CSS3JavaScriptInter font (rsms.me/inter)+3
2025-07-27T16:17:46.634Z
niko.lgbt favicon

Private by Design, LLC

niko.lgbt

59
TechnologyCanadasmallMEDIUM

The website niko.lgbt is a personal portfolio site belonging to a 19-year-old trans and enby developer from Canada. It serves as a platform to share personal information, coding and non-coding projects, and contact options. The site is simple and straightforward, targeting a general audience interested in the developer's work and identity. The domain is registered under Private by Design, LLC, a US-based privacy-focused organization, which aligns with the personal and privacy-conscious nature of the site. Technically, the website uses standard web technologies including HTML5, CSS3, and JavaScript, with privacy-friendly GoatCounter analytics integrated. The site is lightweight, fast-loading, and mobile-optimized with basic accessibility and SEO features. DNS is managed via Desec.io, but DNSSEC is not enabled, representing a minor security gap. No CMS or advanced frameworks are detected, indicating a custom or static site. From a security perspective, the site benefits from domain status protections preventing unauthorized transfers or deletions. However, no security headers are detected, and there is no evidence of privacy or cookie policies, which limits compliance with GDPR and other privacy regulations. The absence of contact emails or phone numbers reduces direct communication options, though a contact page is linked. No vulnerabilities or suspicious content are identified, and the site does not contain adult or questionable material. Overall, niko.lgbt is a legitimate, small-scale personal website with a moderate security posture and limited privacy compliance. Strategic improvements in security headers, privacy documentation, and contact transparency would enhance trust and compliance.

80
50
2
70
75
85
40
personaldeveloperportfoliolgbtqtrans+2 more
HTML5CSS3JavaScriptGoatCounter analytics
2025-07-27T16:17:41.625Z
duckwithsunglasses.com favicon

Liam's Portfolio

duckwithsunglasses.com

56
OtherUnited KingdomsmallMEDIUM

The website duckwithsunglasses.com is a personal portfolio for Liam, a multimedia designer from the UK specializing in graphic design, brand identity, and motion graphics. The site showcases his skills and work samples and includes a link to resources sold via Gumroad. The business model is freelance and resource sales, targeting potential clients and employers interested in multimedia design. The site is small scale and recently established in 2022. Technically, the website uses modern web technologies including HTML5, CSS3, JavaScript, WebGL shaders, and Google Fonts. It is hosted behind Cloudflare DNS and CDN services, ensuring good SSL configuration and moderate performance. The site is mobile optimized with good design and navigation but lacks advanced accessibility features and SEO optimization. From a security perspective, the site enforces HTTPS and has domain transfer protection but lacks visible security headers and privacy or cookie policies. No contact information or incident response policies are disclosed, and no vulnerability disclosure mechanisms are present. Tracking is minimal, limited to Cloudflare Insights. Overall, the security posture is moderate but could be improved with standard security headers and compliance documentation. The overall risk is low given the nature of the site as a personal portfolio with no sensitive data collection or e-commerce. Strategic recommendations include adding privacy and cookie policies, security headers, and contact information to improve trust and compliance. Enhancing accessibility and SEO would also benefit the site's reach and professionalism.

15
35
17
60
75
75
100
portfoliographicdesignmultimediafreelancemotiongraphics+2 more
HTML5CSS3JavaScriptWebGL+2
2025-07-27T16:17:16.440Z
arsys.fr favicon

Arsys Internet S.L.U.

arsys.fr

66
TechnologyFrancelargeMEDIUM

Arsys Internet S.L.U. is a well-established European technology company specializing in domain registration, web hosting, cloud services, and managed IT solutions. With over 25 years of experience, Arsys targets businesses and individuals primarily in France, Spain, Portugal, and English-speaking markets. Their offerings include domain sales, professional email, WordPress and ecommerce hosting, VPS and dedicated servers, and comprehensive cloud solutions with a focus on European data sovereignty. Technically, the website demonstrates a mature digital infrastructure with modern web technologies, responsive design, and integration of advanced analytics and error monitoring tools such as Sentry and Tune. The presence of structured data enhances SEO and business transparency. The hosting environment appears robust, likely leveraging their own or Ionos infrastructure, ensuring fast performance and good accessibility. From a security perspective, the site enforces HTTPS and uses secure cookie settings, with no visible vulnerabilities or exposed sensitive data. However, explicit security headers and a published security policy or incident response contacts are absent, representing areas for improvement. Privacy compliance is well addressed with clear privacy and cookie policies, including consent mechanisms aligned with GDPR. Overall, Arsys presents a trustworthy and professional online presence with strong business credibility and technical maturity. The lack of WHOIS data due to privacy protection slightly reduces domain trust but is justified for this business type. Strategic recommendations include enhancing security header implementation, publishing a security policy, and adding vulnerability disclosure mechanisms to further strengthen security posture and customer trust.

75
25
25
70
77
70
100
arsyshbergementdomaineemailcloud+5 more
HTML5CSS3JavaScriptSentry (error tracking)+2

Partner Domains:

www.arsys.es
partner
www.arsys.pt
partner

+1 more partners

2025-07-27T15:14:27.128Z
arsys.es favicon

Arsys Internet S.L.U.

arsys.es

68
TechnologySpainlargeMEDIUM

Arsys Internet S.L.U. is a well-established Spanish technology company founded in 1996, specializing in domain registration, web hosting, cloud services, and managed IT solutions. The company targets businesses and individuals seeking reliable internet presence solutions, offering a comprehensive portfolio including email hosting, SSL certificates, and online store hosting. Their market position is strong within Spain and they maintain sister sites for other language markets. Technically, the website employs modern web standards with good mobile optimization and SEO practices, hosted likely by Ionos, and uses structured data for enhanced search engine visibility. Security posture is solid with HTTPS enforced and secure cookie practices, though explicit security headers and policies are not evident in the provided data. Privacy compliance is limited by the absence of visible privacy and cookie policies in the analyzed content. Overall, the website is professional, trustworthy, and content-rich, with clear contact information and social media presence. Recommendations include publishing explicit privacy and cookie policies, adding security headers, and establishing a vulnerability disclosure process to enhance compliance and security transparency.

80
25
25
72
72
85
100
hostingdomaincloudemailssl+2 more
JavaScriptCSS3HTML5Web fonts (OpenSans, FSBlakeWeb)+1

Partner Domains:

arsys.pt
sister
arsys.net
sister

+1 more partners

2025-07-27T15:14:17.045Z
servidoresdns.net favicon

Arsys Internet S.L.U.

servidoresdns.net

73
TechnologySpainlargeMEDIUM

Arsys Internet S.L.U. is a well-established Spanish technology company founded in 1996, specializing in domain registration, web hosting, cloud computing, email services, and managed IT solutions. The company positions itself as a leading European provider with a strong focus on data sovereignty and comprehensive cloud infrastructure. Their website reflects a mature digital presence with professional design, clear navigation, and extensive service offerings targeting businesses and individuals seeking reliable internet presence solutions. Technically, the site employs modern web technologies, asynchronous loading of analytics and error tracking scripts, and is hosted likely by IONOS, indicating robust infrastructure. Security posture is strong with HTTPS enforced and secure cookie settings, though explicit security headers and incident response contacts are not publicly evident. The WHOIS data for the domain www.arsys.net is incomplete or missing, which raises some concerns about domain registration transparency but does not detract significantly from the overall legitimacy given the company's established brand and presence. Overall, Arsys demonstrates a solid business and technical foundation with room for improvement in security transparency and WHOIS data clarity.

80
50
25
85
77
80
100
hostingdomaincloudemailwordpress+2 more
HTML5CSS3JavaScriptSentry (error tracking)+3

Partner Domains:

www.arsys.es
partner
www.arsys.pt
partner

+2 more partners

2025-07-27T14:04:37.060Z
fsky.io favicon

FSKY

fsky.io

57
TechnologyIcelandsmallMEDIUM

FSKY is a small technology collective founded in 2023, dedicated to hosting public online services and supporting open source development. Their market position is niche, focusing on privacy-conscious users and developers who value anonymity and decentralized communication. Key services include chat and VoIP platforms, collaborative coding, and private frontends for popular services like Reddit and Imgur, with strong integration into privacy networks such as Tor and Yggdrasil. The business model relies on community funding and voluntary donations, reflecting a grassroots approach rather than commercial scale operations. Technically, the website is built with standard HTML5 and CSS3, featuring a clean and consistent design optimized for mobile devices. The infrastructure leverages reputable registrars and DNS providers but lacks advanced security features such as DNSSEC and security headers. Performance is moderate with no detected analytics or advertising, aligning with the privacy-focused ethos. The absence of CMS or complex frameworks suggests a lightweight and maintainable platform. From a security perspective, the site benefits from HTTPS and domain transfer protections but misses critical enhancements like DNSSEC and published security policies. No forms or data collection mechanisms are present, reducing attack surface, but the lack of privacy and cookie policies indicates compliance gaps, especially under GDPR. The use of privacy-protected WHOIS registration is consistent with the business's privacy orientation and justified. Overall, the security posture is moderate but could be improved with better header configurations and transparency. The overall risk is low given the nature of the services and limited data collection, but strategic improvements in privacy compliance and security best practices are recommended to enhance trust and resilience. The website is professional and trustworthy within its niche but should address policy disclosures and technical security enhancements to meet broader compliance standards.

15
50
2
65
65
85
100
fskytechcollectiveopensourcehostingprivacy+4 more
HTML5CSS3SVG
2025-07-27T14:02:44.785Z
derg.rest favicon

Private by Design, LLC

derg.rest

43
EnergyUnited StatessmallHIGH

The website derg.rest is a personal site representing an aspiring master electrician named Tom Darsonian based in Michigan, USA. The site serves primarily as a personal portfolio or presence with minimal content focused on personal interests and updates. The business is small-scale and newly established, as indicated by the domain registration date in early 2024. The site lacks formal business contact information, privacy policies, and terms of service, which limits its professional and compliance posture. Technically, the site is simple, built with basic HTML and CSS, and uses Cloudflare for DNS services. There is no evidence of a CMS or advanced frameworks. Mobile optimization and accessibility are basic but functional. Performance is moderate with no visible errors or broken elements. However, security measures are minimal; no security headers or DNSSEC are enabled, and HTTPS enforcement is not confirmed from the data provided. From a security perspective, the domain registration is consistent and legitimate with appropriate domain status protections. The absence of privacy and cookie policies, contact information, and security headers reduces the overall security and privacy compliance score. No vulnerabilities or malicious content were detected. The site content is safe for general audiences with no adult or explicit material. Overall, the site scores moderately on AI evaluation, with strengths in business credibility due to consistent WHOIS data and weaknesses in privacy compliance and security posture. Strategic improvements in security headers, privacy policies, and contact information would enhance trust and compliance.

15
35
2
60
52
80
40
personalelectricianmichiganportfoliosmallbusiness
HTML5CSS3Cloudflare DNS
2025-07-27T14:01:54.136Z
eurotrucksimulator2.com favicon

SCS Software s.r.o.

eurotrucksimulator2.com

69
TransportationCzech RepublicmediumMEDIUM

Euro Truck Simulator 2 is a well-established truck driving simulation game developed and published by SCS Software s.r.o., a medium-sized company based in the Czech Republic. The website serves as a comprehensive portal for the game, offering information about the game features, expansions, and community engagement. The company holds a strong market position in the niche of truck simulation games, supported by licensed truck brands and a dedicated fan base. The business model revolves around game sales, expansions, and community-driven modding support. Technically, the website is built on a custom stack using standard web technologies such as HTML5, CSS3, and JavaScript, with integrations for Google Analytics, YouTube embeds, and Steam widgets. The site is hosted via GoDaddy.com, LLC, and employs HTTPS with a good SSL configuration. The site is mobile optimized and accessible, with a well-implemented cookie consent mechanism that complies with GDPR requirements. From a security perspective, the website demonstrates good practices including HTTPS enforcement and cookie consent management. However, there is room for improvement by enabling DNSSEC, adding security headers, and publishing formal security policies and incident response contacts. No critical vulnerabilities or exposed sensitive data were detected. Overall, the website is professional, trustworthy, and compliant with privacy regulations. It effectively supports the business goals of SCS Software and provides a positive user experience for its target audience.

65
83
17
40
85
75
100
simulationgamingtrucktransportationscssoftware+1 more
HTML5CSS3JavaScriptjQuery+4

Partner Domains:

www.scssoft.com
partner
www.worldoftrucks.com
partner
2025-07-27T14:00:43.091Z
A

Awoo Systems

lain.faith

47
TechnologyIcelandsmallHIGH

Awoo Systems is a small technology company focused on delivering extremely high uptime services, emphasizing zero 9s of uptime since 2017. The website is minimalistic, providing basic information about the company and a blog subdomain. The business targets customers requiring highly reliable system availability. The domain is registered through NameCheap with privacy protection, which is common for small tech firms. Technically, the website uses basic HTML and CSS without advanced frameworks or CMS. The site lacks modern SEO and accessibility features but is functional with moderate performance. No advanced hosting or platform details are evident. Security posture is weak due to missing security headers, lack of DNSSEC, and no visible HTTPS confirmation in the data provided. Security-wise, the site does not publish privacy, cookie, or terms policies, nor does it provide incident response or vulnerability disclosure information. The domain registration is privacy protected but legitimate with no suspicious patterns. No WAF or blocking mechanisms are detected, and the content is safe for general audiences. Overall, the website scores average in content quality and technical implementation but scores low on privacy compliance and security posture. Strategic improvements in security headers, policy publication, and transparency would enhance trust and compliance.

15
50
2
70
72
75
40
technologyuptimesystemsminimalistic
HTML5CSS3
2025-07-27T13:59:52.848Z
P

Private by Design, LLC

isekai.rocks

48
TechnologyUnited StatessmallHIGH

isekai.rocks is a small niche website dedicated to fans of isekai, providing free gemini capsule hosting and a public XMPP service. The site targets a specialized audience interested in alternative internet protocols and community interaction. The business model is community-focused with manual account registration, indicating a small-scale operation without automated commercial services. The domain is newly registered in June 2024 and is managed by Private by Design, LLC, a US-based organization consistent with the website's hosting and service location. Technically, the website uses basic HTML and CSS with no detected CMS or advanced frameworks. It supports Gemini protocol content proxied via kineto and offers XMPP services. The site is hosted by Porkbun LLC and shows moderate performance and good mobile optimization. However, there is no evidence of advanced SEO or accessibility features beyond basic standards. From a security perspective, the domain has protective status flags but lacks DNSSEC and security headers. There is no published security policy or incident response contact, and no HTTPS enforcement details are visible in the HTML content. Privacy compliance is minimal, with no privacy or cookie policies found. The site does not use tracking or analytics services, which reduces privacy risks but also limits business intelligence. Overall, the website is legitimate and consistent with its stated purpose but would benefit from improved security practices, privacy compliance, and transparency to enhance trust and protect users. Strategic recommendations include enabling DNSSEC, implementing HTTPS with strong TLS, adding security headers, and publishing privacy and security policies.

15
50
2
60
75
75
40
isekaigeminixmppnichecommunityfreehosting
HTML5CSS3Gemini protocol (proxied)XMPP
2025-07-27T12:54:50.716Z
P

Purelymail

purelymail.com

62
TechnologyN/asmallMEDIUM

Purelymail is a small technology company founded in 2018 that provides affordable, no-frills email hosting services. Their offerings include IMAP and POP3 compatible email hosting, webmail access via Roundcube, and support for multiple domains without additional charges. Positioned as a cost-effective alternative to established providers like Protonmail and Google Workspace, Purelymail targets individuals and small to medium businesses seeking simple and inexpensive email solutions. The website content is clear, professional, and focused on the core service without extraneous features or marketing distractions. Technically, the website is hosted on Amazon AWS and uses standard web technologies including HTML5, CSS3, and JavaScript. The webmail service is powered by Roundcube. The site demonstrates moderate performance and basic mobile optimization. SEO and accessibility features are present but could be enhanced. Security practices include HTTPS and domain status protections, but lack DNSSEC and security headers, which are recommended for improved security posture. From a security perspective, Purelymail maintains a basic but functional security stance. The absence of DNSSEC and security headers, as well as no visible vulnerability disclosure or incident response contacts, indicate areas for improvement. Privacy compliance is partial, with a privacy policy present but no cookie consent mechanism. No contact emails or phone numbers are provided, which may impact user trust and support accessibility. Overall, Purelymail presents a legitimate and focused business with a clear value proposition in the email hosting market. Strategic improvements in security practices, privacy compliance, and contact transparency would enhance trust and resilience. The website quality and business credibility are good, supporting a moderate risk profile with opportunities for growth and maturity.

30
53
2
83
72
85
100
emailhostingimappop3webmail+2 more
HTML5CSS3JavaScriptRoundcube (webmail)+1
2025-07-27T12:54:07.028Z
code.golf favicon

Cloudflare, Inc

code.golf

54
TechnologyUnited KingdomsmallMEDIUM

Code Golf is an online platform dedicated to coding challenges focused on minimizing code length, appealing primarily to programmers and coding enthusiasts. The website offers a variety of coding problems categorized by themes such as sequences, mathematics, gaming, and art, fostering a niche community of developers interested in code golfing. The platform integrates community features such as Discord for advice and GitHub for source code transparency, positioning itself as a specialized educational and recreational coding site. Technically, the website employs modern web standards including HTML5, CSS3 with light and dark themes, and JavaScript ES modules. Hosting and domain registration are managed by Cloudflare, ensuring reliable performance and security infrastructure. The site is mobile-optimized and demonstrates good SEO practices with appropriate meta tags and Open Graph data. However, no CMS or major frameworks are detected, indicating a custom or lightweight implementation. From a security perspective, the site enforces HTTPS and has domain transfer protections in place. However, it lacks visible security headers and does not provide privacy, cookie, or terms of service policies, which are important for compliance and user trust. No contact information or incident response channels are provided, limiting transparency. The absence of a security.txt or vulnerability disclosure policy suggests room for improvement in security communication. Overall, Code Golf presents a well-structured, content-rich platform with a strong technical foundation but requires enhancements in privacy compliance, security best practices, and user trust mechanisms to improve its security posture and regulatory adherence.

60
50
17
40
75
75
40
code-golfprogrammingcodingchallengesdevelopertechnology+2 more
HTML5CSS3JavaScript ES Modules
2025-07-27T11:46:03.100Z
process-one.net favicon

ProcessOne

process-one.net

55
TechnologyN/asmallMEDIUM

ProcessOne operates as a technology company specializing in scalable, powerful, and versatile multiprotocol messaging platforms. Their offerings include advanced messaging solutions and the ejabberd XMPP server, targeting businesses and developers requiring robust messaging infrastructure. The company positions itself as a proven provider powering messaging platforms supporting billions of users globally. The website content is professional and well-structured, reflecting a focused business model in software development for messaging technologies. Technically, the website is built on the Ghost CMS platform, utilizing modern web technologies such as JavaScript, Alpine.js, and CSS3. The site demonstrates good mobile optimization and SEO practices, with moderate performance. Analytics are implemented via privacy-conscious Fathom Analytics, indicating a moderate level of digital maturity and privacy awareness. However, the absence of explicit privacy and cookie policies, as well as security headers, suggests room for improvement in compliance and security hardening. From a security perspective, the site enforces HTTPS and shows no signs of exposed sensitive data or vulnerable libraries. Nonetheless, the lack of security headers, vulnerability disclosure information, and incident response contacts limits the overall security posture. Critically, the WHOIS data is unavailable or indicates the domain may not be registered, which raises significant legitimacy concerns despite the professional appearance of the website. Overall, the website presents a credible business front with solid technical implementation but suffers from critical gaps in domain registration transparency and privacy compliance. Strategic recommendations include establishing clear privacy and cookie policies, publishing security and incident response information, implementing security headers, and resolving domain registration issues to enhance trust and compliance.

15
50
17
60
52
75
100
messagingtechnologysoftwarescalablemultiprotocol+2 more
Ghost CMSJavaScriptAlpine.jsCSS3+3
2025-07-27T11:41:22.548Z
moonbase.lgbt favicon

Luna Sorcery

moonbase.lgbt

45
TechnologyUnited StatessmallHIGH

The website moonbase.lgbt is a personal site belonging to Luna, a software developer and reverse engineer who shares blog posts, artwork, and personal interests. The site serves as a portfolio and blog platform targeting a general audience interested in technology, demoscene art, and personal projects. The market position is niche, focusing on personal branding rather than commercial business operations. Technically, the site is hosted on DigitalOcean and uses a simple tech stack of HTML, CSS, JavaScript, and GoatCounter analytics. The site is well-structured, mobile-optimized, and performs well with fast loading times. However, it lacks advanced SEO and accessibility features and does not use a CMS or frameworks. From a security perspective, the site uses HTTPS but lacks DNSSEC and important security headers, which reduces its security posture. No privacy or cookie policies are present, and no contact information for security incidents is provided. The use of privacy protection in WHOIS is justified given the personal nature of the site. Overall, the site is safe, trustworthy, and suitable for general audiences but could improve compliance and security practices. The overall risk is low given the non-commercial nature, but strategic improvements in security headers, privacy policies, and contact transparency are recommended to enhance trust and compliance.

15
35
2
70
65
60
40
personalsoftwaredevelopmentreverseengineeringblogart+2 more
HTML5CSS3JavaScriptGoatCounter analytics
2025-07-27T10:40:40.659Z
sylvie.lol favicon

home - sylvie.lol

sylvie.lol

57
TechnologyN/asmallMEDIUM

Sylvie.lol is a personal portfolio and blog website belonging to Sylvia (aka sylvxa), a full-stack software developer and programming enthusiast. The site serves as a platform to share programming knowledge, open source projects, and personal interests such as speedrunning and cats. It targets a niche audience of developers and tech hobbyists. The website is newly created in 2024 and reflects a small-scale personal brand rather than a corporate entity. Technically, the website uses standard modern web technologies including HTML5, CSS3, and JavaScript, with Cloudflare providing DNS and likely CDN services. The site is well-structured with good mobile optimization and SEO meta tags. However, it lacks advanced frameworks or CMS platforms, indicating a lightweight and custom-built approach. From a security perspective, the site benefits from HTTPS and domain transfer protection but lacks DNSSEC and security headers such as Content-Security-Policy. There are no visible forms or data collection mechanisms, reducing attack surface but also limiting user interaction. Privacy and cookie policies are absent, which is a compliance gap. No incident response or vulnerability disclosure information is provided. Overall, sylvie.lol is a safe, well-maintained personal website with moderate trustworthiness. To improve, the owner should consider adding privacy and cookie policies, security headers, and contact information to enhance compliance and user trust.

15
50
2
70
75
70
100
personalportfoliosoftwaredevelopmentblogopensource
HTML5CSS3JavaScriptCloudflare DNS
2025-07-27T10:39:20.453Z
lona.moe favicon

Lonaasan

lona.moe

53
TechnologyGermanysmallMEDIUM

Lona.moe is a personal website belonging to Lonaasan, a 22-year-old software engineer from Germany. The site serves as a portfolio and community hub featuring programming projects, blog content, photography, and social links. It targets a general audience interested in cats, blahaj, and programming. The website is small scale, with a niche market position focused on personal branding and community engagement. Technically, the site uses standard web technologies including HTML5, CSS3, and JavaScript, with Cloudflare DNS hosting. The site is mobile optimized and accessible, with good SEO practices. However, DNSSEC is not enabled, and no advanced security headers are detected. The site uses a minimal tracking script (umami) for analytics, indicating a low level of user tracking. From a security perspective, the site benefits from HTTPS and domain transfer protection but lacks DNSSEC and security headers. There is a potential XSS vulnerability in the citation block due to unsanitized HTML content. No privacy or cookie policies are present, which impacts compliance. The domain registration is privacy protected but consistent with the personal nature of the site. Overall, the security posture is moderate but could be improved with standard best practices. The overall risk is low given the personal and non-commercial nature of the site, but improvements in security headers, privacy policies, and content sanitization are recommended to enhance trust and compliance.

20
50
2
85
72
80
40
personalprogrammingblogcommunitycats+1 more
HTML5CSS3JavaScriptCloudflare DNS
2025-07-27T10:39:15.444Z
P

Paddy's Webbed Site

paddy.li

55
TechnologyGermanysmallMEDIUM

This website represents a personal portfolio and contact hub for Patrick, known as Paddyk45, a young developer from Hamburg, Germany. The site serves primarily as a showcase of his interests, projects, and social presence, targeting fellow developers and tech enthusiasts. It includes links to various social platforms and partner sites, emphasizing community and open-source engagement. The business model is personal branding and networking rather than commercial enterprise. Technically, the site is built with modern HTML and CSS, using the new.css framework and custom fonts. It includes minimal JavaScript, notably a script from rybbit.io for analytics. The site is lightweight, fast, and mobile-optimized with good accessibility. Hosting is sponsored by Brutecat, indicating a reliable infrastructure. SEO is basic but sufficient for a personal site. From a security perspective, the site lacks formal security policies, cookie consent, and privacy statements, which are common for personal sites but represent compliance gaps. The presence of a PGP key is a positive trust indicator for secure communication. No forms collect sensitive data, reducing attack surface. However, security headers are missing, and HTTPS status is unknown, suggesting room for improvement. Overall, the site is low risk, safe for general audiences, and professionally presented for its scope. Strategic recommendations include adding privacy and cookie policies, implementing security headers, and publishing a vulnerability disclosure or security policy to enhance trust and compliance.

15
50
2
73
52
75
100
personaldeveloperportfoliotechnologyrust+1 more
HTML5CSS3JavaScriptAtkinson Hyperlegible font+1
2025-07-27T10:38:45.377Z