Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157325
Websites
130
Industries
113
Countries
52
Avg Score
Page 141 of 145|Showing 7001-7050 of 7213
cartflows.com favicon

CartFlows

cartflows.com

65
TechnologyN/amediumMEDIUM

CartFlows is a mature and well-established WordPress sales funnel builder platform, founded in 2018, with a strong market position and a large user base exceeding 223,000 users. The company offers a comprehensive suite of funnel-building tools including one-click upsells, order bumps, A/B split testing, and conversion-optimized templates, targeting WooCommerce store owners, online course creators, agencies, and consultancies. The website is professionally designed with excellent content quality and clear navigation, optimized for mobile and SEO. Technically, the site is built on WordPress with Elementor and integrates multiple marketing and analytics tools, but suffers from slow load times and lacks a valid SSL certificate, which is a critical security concern. Security posture is basic with HSTS enabled but no valid TLS protocols or OCSP stapling, and malformed CAA records. Privacy compliance is partially met with a clear privacy policy but no cookie consent mechanism detected. Business credibility is strong with testimonials and trust signals, but contact information is limited to forms without direct emails or phone numbers. Overall, the site is functional and professional but requires urgent security improvements to ensure trust and compliance.

65
43
25
75
97
80
100
wordpresswoocommercesalesfunnele-commercemarketing+2 more
WordPressWooCommerceElementorUltimate Addons for Gutenberg+6

Partner Domains:

my.cartflows.com
service
2025-06-15T05:51:24.108Z
hpp.fi favicon

HPP Asianajotoimisto

hpp.fi

40
OtherFinlandmediumHIGH

HPP Asianajotoimisto Oy is a specialized Finnish law firm focusing on business law, serving leading Finnish and international companies. The firm offers a broad range of legal services including corporate transactions, financing, taxation, dispute resolution, technology law, and environmental law, positioning itself as a key player in green transition and technology-related legal matters. The website is professionally designed using WordPress and Elementor, featuring comprehensive content, clear navigation, and multi-language support. Technical infrastructure includes modern plugins and analytics tools such as Matomo and Leadfeeder, with hosting provided by Seravo and DNS managed by Hetzner. However, the security posture is weakened by the absence of a valid SSL certificate and lack of HTTPS support despite HSTS headers, which is a critical vulnerability. Privacy compliance is well addressed with a detailed cookie consent mechanism and a comprehensive privacy policy. Contact information is clearly presented with multiple channels including email, phone, and a contact form protected by reCAPTCHA. Overall, the site demonstrates strong business credibility and content quality but requires urgent security improvements.

80
-
25
50
97
85
100
lawfirmbusinesslawlegalservicestechnologylawcompliance+2 more
WordPressElementorElementor ProUltimate Elementor+10

Partner Domains:

hppattorneys.com
partnerpending
hppopen.fi
partnerpending
2025-06-14T22:32:39.795Z
imt-bs.eu favicon

Institut Mines-Télécom Business School (IMT Business School)

imt-bs.eu

34
EducationFrancemediumHIGH

Institut Mines-Télécom Business School (IMT-BS) is a French public business school specializing in commerce, management, and digital transformation education. It holds a strong market position with multiple prestigious accreditations such as AACSB, AMBA, and CGE, and is part of the Institut Mines-Télécom group. The school offers a range of programs including Bachelor, Grande Ecole, Masters of Science, Executive Education, and doctoral partnerships, targeting students, enterprises, and international audiences. Technically, the website is built on WordPress with Elementor and several modern plugins, but suffers from slow performance and lacks a valid SSL certificate, which impacts security and user trust. Security posture is moderate with some best practices like SPF and DKIM for email, but critical issues exist due to missing HTTPS and TLS protocols. Privacy compliance is good with clear policies and consent mechanisms, and accessibility is excellently addressed with a dedicated plugin and detailed accessibility statement. Overall, the site is professional and trustworthy but requires urgent security improvements to enable HTTPS and modern TLS protocols.

25
-
25
50
50
80
-
educationbusinessschoolmanagementdigitaltransformationaccessibility+2 more
WordPressElementorPHPApache+7

Partner Domains:

isadmission.com
partnerpending
passerelle-esc.com
partnerpending

+1 more partners

2025-06-14T22:00:23.102Z
curotec.com favicon

Curotec

curotec.com

49
TechnologyUnited StatesmediumHIGH

Curotec is a medium-sized technology company specializing in software development services including SaaS, web, mobile, AI/ML, and e-commerce development. Positioned as a trusted and top-rated development agency, it serves SaaS and enterprise teams with flexible engagement models such as project delivery, staff augmentation, and support retainers. The company boasts multiple industry recognitions and partnerships, including official Laravel and Vue.js partnerships, enhancing its market credibility. Technically, the website is built on a modern tech stack featuring Laravel, React, Vue.js, Python, Node.js, and AWS, hosted on an Nginx server with Cloudflare DNS. The site uses WordPress CMS with Elementor for content management and includes advanced SEO and accessibility features. However, performance metrics are not available, though the site is mobile-optimized and well-structured. From a security perspective, the site lacks a valid SSL certificate and does not support modern TLS protocols, which is a critical vulnerability impacting user trust and data security. While SPF and DMARC records are properly configured, the absence of HTTPS and security headers like HSTS reduces the overall security posture. Privacy and cookie policies are present with consent mechanisms, indicating good compliance with GDPR and related regulations. Overall, Curotec's website is professional and content-rich, supporting its business credibility. The critical security issue of missing SSL must be addressed promptly to improve trust and protect user data. Strategic improvements in SSL configuration and security headers will enhance the site's security and compliance standing.

15
25
25
50
50
85
100
saassoftwaredevelopmentstaffaugmentationaimlwebdevelopment+2 more
LaravelPHPVue.jsNuxt+15
2025-06-14T21:49:28.468Z
altae-technopole.fr favicon

Altæ Technopole Niort Deux-Sèvres

altae-technopole.fr

32
OtherFrancesmallHIGH

Altæ Technopole Niort Deux-Sèvres is a regional innovation and entrepreneurship hub based in the Deux-Sèvres region of France. The organization focuses on catalyzing innovation and supporting startups and entrepreneurs through ecosystem animation, tailored accompaniment programs, and promoting territorial attractiveness. The website is built on WordPress using Elementor and Yoast SEO, with a modern but basic technical infrastructure hosted likely on OVH. While the site offers good content quality and SEO optimization, it lacks a valid SSL certificate, resulting in no HTTPS support, which is a critical security gap. Privacy compliance is partial, with a privacy policy present but no cookie consent mechanism detected. Contact information is limited to a contact form, with no explicit emails or phone numbers found. Social media presence includes LinkedIn and YouTube. The site integrates Piwik PRO analytics and uses WP Rocket for performance optimization, though performance data indicates slow loading. Security posture is weak due to missing HTTPS and lack of security headers. Strategic recommendations include implementing HTTPS, enabling modern TLS protocols, adding security headers, and improving privacy compliance. Overall, the site is functional and professional but requires significant security improvements to meet modern standards.

15
-
25
50
50
85
20
innovationentrepreneurshiptechnopolestartupsregionaldevelopment+1 more
WordPressElementorYoast SEOWP Rocket+3

Partner Domains:

retis-innovation.fr
partner40
niortagglo.fr
partner40

+3 more partners

2025-06-14T21:40:06.328Z
R

Really Simple Plugins

really-simple-plugins.com

65
TechnologyN/amediumMEDIUM

Really Simple Plugins is a technology company specializing in WordPress plugin development, focusing on security and privacy compliance solutions. Their key offerings include the Really Simple Security plugin, ranked as the 12th most-used WordPress plugin, and the Complianz Privacy Suite, which supports compliance with international privacy legislation and boasts over 1 million users worldwide. The company targets WordPress users and website owners seeking easy-to-use security and privacy tools. Their business model revolves around plugin development and distribution, positioning them as an important player in the WordPress ecosystem since 2016. Technically, the website is built on WordPress using Elementor and Yoast SEO, with additional plugins for cookie consent management (Complianz) and analytics (Matomo). Hosting and DNS are managed via Cloudflare, providing robust DNS infrastructure. Performance is moderate with a page load time of approximately 3.8 seconds. The site is mobile optimized and has good SEO practices, though accessibility features are basic. From a security perspective, the site lacks a valid SSL certificate and does not enable modern TLS protocols, which is a significant risk. No HTTP security headers are detected, and advanced SSL features like OCSP stapling and HSTS are not enabled. DNS records show proper SPF and DMARC configurations, reducing email spoofing risks. Cookie consent is managed properly with opt-in mechanisms, supporting GDPR compliance. However, the absence of a valid SSL certificate and security headers lowers the overall security posture. Overall, the website is functional and professional but requires urgent improvements in SSL/TLS configuration and security headers to enhance trust and protect user data. Privacy compliance is well addressed through the Complianz plugin and clear privacy and cookie policies. Business credibility is moderate due to limited direct contact information and absence of terms of service. Strategic security enhancements and better transparency would improve the site's risk profile and user confidence.

15
58
25
85
100
90
100
wordpresssecurityprivacypluginsgdpr+3 more
WordPressElementorElementor ProYoast SEO+4

Partner Domains:

really-simple-ssl.com
partner59
complianz.io
partner69

+1 more partners

2025-06-14T20:27:01.627Z
rollworks.com favicon

RollWorks

rollworks.com

58
TechnologyUnited StatesenterpriseMEDIUM

RollWorks is a B2B marketing technology company specializing in account-based marketing (ABM) and account-based advertising solutions. Positioned as a leading ABM platform, RollWorks offers AI-driven targeting and engagement tools designed to help marketers grow revenue by focusing on high-value accounts. The company operates as a division of NextRoll, Inc., serving primarily enterprise clients in the technology and business services sectors. Their platform integrates multiple marketing and analytics technologies, including Marketo, Google Tag Manager, and AdRoll, to provide comprehensive marketing automation and measurement capabilities. Technically, the website is built on WordPress with Elementor and Yoast SEO plugins, hosted behind Cloudflare CDN. The site demonstrates good SEO optimization, mobile responsiveness, and professional design quality. However, the SSL/TLS configuration is currently invalid or missing, which is a critical security vulnerability that undermines user trust and data protection. The site uses multiple third-party marketing and tracking tools, indicating extensive user tracking and data collection practices. From a security perspective, while some best practices like SPF and DMARC email policies are in place, the lack of a valid SSL certificate and disabled TLS protocols represent significant risks. The site also lacks advanced security headers and mechanisms such as OCSP stapling and session resumption. Privacy policies and terms of service are hosted on the parent company domain, and while privacy compliance is generally good, no explicit cookie consent mechanism was detected on the homepage. Overall, RollWorks presents a professional and trustworthy business front with strong market positioning and comprehensive marketing solutions. However, the critical SSL/TLS issues must be addressed immediately to ensure secure communications and maintain compliance with industry standards. Strategic improvements in security posture and privacy transparency will enhance trust and reduce risk exposure.

25
25
25
50
100
85
100
account-basedmarketingb2bmarketingabmplatformadvertisingmarketingtechnology
WordPressYoast SEOElementorjQuery+8

Partner Domains:

nextroll.com
parentpending
adroll.com
partner68

+1 more partners

2025-06-14T20:23:26.531Z
A

Asian Pacific Islander Forward Movement

apifm.org

53
Non-profitUnited StatesmediumMEDIUM

Asian Pacific Islander Forward Movement (APIFM) is a non-profit organization dedicated to cultivating healthy and vibrant Asian and Pacific Islander communities through engagement, education, and advocacy. The organization operates various community programs including food security initiatives, youth advocacy, and environmental sustainability projects. APIFM maintains an active digital presence with integrated social media feeds and regularly updated blog content, positioning itself as a community-centric entity within the non-profit sector in the United States. Technically, the website is built on WordPress with Elementor and several plugins for social media integration. Hosting is provided by DreamHost. While the site has good SEO metadata and structured data, performance metrics are lacking, and the site exhibits slow loading characteristics. Mobile optimization is good, but accessibility features are basic. From a security perspective, the site lacks a valid SSL certificate and does not support modern TLS protocols, which is a critical vulnerability exposing users to potential data interception. Security headers are minimal, and no incident response or security policies are published. Privacy compliance is limited, with no cookie consent mechanism detected and only a basic privacy policy present. Overall, APIFM's website serves its community well in content and engagement but requires urgent improvements in security infrastructure and privacy compliance to protect users and enhance trustworthiness.

15
43
25
50
100
85
75
non-profitcommunityasianpacificislanderenvironmentadvocacy+1 more
WordPress 6.8.1Elementor 3.28.4Elementor ProjQuery 3.7.1+7
2025-06-14T20:04:24.351Z
I

Investing in Place

investinginplace.org

49
GovernmentUnited StatessmallHIGH

Investing in Place is a small non-profit organization focused on leveraging public spaces in Los Angeles to improve quality of life for residents. The organization acts as an independent voice in local politics, advocating for better budgeting and planning of sidewalks, streets, and public spaces. Their key services include policy advocacy, public engagement, and research reporting. The website reflects a professional and consistent brand with clear messaging targeted at local stakeholders and community members. Technically, the website is built on WordPress using Elementor and WooCommerce plugins, hosted by DreamHost. While the site has a good design and user experience, it suffers from slow performance and lacks advanced SEO and accessibility features. The absence of a valid SSL certificate and modern TLS protocols is a significant security concern, exposing users to risks and undermining trust. Security posture is weak due to missing HTTPS, lack of security headers, and no evident privacy or cookie policies. Analytics are implemented via Google Analytics and Jetpack, but privacy compliance is poor with no GDPR indicators. Contact information is limited to an email address and a contact form, with no phone or physical address provided. Overall, the site is functional and informative but requires urgent improvements in security and privacy compliance to enhance trustworthiness and protect user data.

15
25
25
50
100
85
75
non-profitadvocacyurbanplanninglosangelespublicspace+3 more
WordPressWooCommerceElementorJetpack+4
2025-06-14T20:04:23.663Z