Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157327
Websites
130
Industries
113
Countries
52
Avg Score
Page 143 of 261|Showing 7101-7150 of 13036
as206628.net favicon

BNS Services LLC

as206628.net

66
TechnologyN/asmallMEDIUM

EzriCloud is a small, non-profit IT and networking project operated by BNS Services LLC, focused on providing free hosting and BGP upstream services primarily to students and open-source projects. The website clearly communicates its mission and key services, positioning itself as a niche provider in the technology sector with a strong community and educational focus. The business model is centered on open peering and free transit, supported by partnerships with established colocation and transit providers. Technically, the website is built with clean HTML and CSS, leveraging the Pure CSS framework for responsive design, resulting in good performance and user experience across devices. However, the site lacks advanced technical frameworks or CMS platforms, reflecting a lightweight and straightforward infrastructure. Security posture is moderate; while the domain is protected against unauthorized deletion and transfer, DNSSEC is not enabled and security headers are absent, which could be improved to enhance resilience. Privacy and cookie policies are missing, indicating compliance gaps, and no incident response or vulnerability disclosure mechanisms are present. Overall, the website is trustworthy and professional but would benefit from enhanced security and privacy compliance measures to align with best practices. Strategic recommendations include enabling DNSSEC, publishing privacy and cookie policies, adding security headers, and establishing incident response contacts to improve trust and compliance.

65
50
2
65
75
90
100
itnetworkingnon-profitbgphosting+3 more
HTML5CSS3Pure CSS framework

Partner Domains:

inferno.co.uk
partner
he.net
partner

+2 more partners

2025-07-27T04:26:27.579Z
D

dimden

nekoweb.org

72
TechnologyUkrainesmallMEDIUM

Nekoweb.org is a niche technology platform offering free static website hosting with a strong emphasis on user freedom, ad-free experience, and community engagement. Founded in 2023 by a group of coders and artists, it targets individuals and small creators who prefer personal websites over social media. The platform supports advanced features such as FTP and Git for donators, custom domains, and API automation, positioning itself as a flexible and user-centric hosting service. The business model relies on donations and optional paid upgrades, fostering a community-driven ecosystem. Technically, Nekoweb.org utilizes modern web standards including HTML5, CSS3, and JavaScript, with Cloudflare providing DNS and registrar services. The site is mobile-optimized with good navigation and basic accessibility features. Security measures include HTTPS enforcement and Cloudflare Turnstile CAPTCHA to mitigate bot traffic, though DNSSEC is not enabled and security headers are minimal. The platform blocks generative AI crawlers to protect user content, reflecting a proactive approach to content security. From a security perspective, the site demonstrates a moderate security posture with room for improvement in DNS security and explicit security policies. Privacy compliance is basic, with a privacy policy and terms of service present but lacking cookie consent mechanisms. Contact information is clearly provided, enhancing business credibility. No adult or questionable content is detected, making the site safe for general audiences. Overall, Nekoweb.org presents a trustworthy and well-maintained service with a clear community focus. Strategic recommendations include enabling DNSSEC, enhancing security headers, publishing a security policy, and implementing cookie consent to improve compliance and security posture. These steps will strengthen user trust and align the platform with best practices in web security and privacy.

55
53
47
85
75
85
100
statichostingcommunityad-freetechnologypersonalwebsites+2 more
HTML5CSS3JavaScriptCloudflare DNS and registrar+1
2025-07-27T03:25:14.120Z
S

selic.re

selic.re

42
TechnologyN/asmallHIGH

The website selic.re is a personal portfolio and project showcase for an individual developer and artist known as Selicre. The site highlights the owner's skills in software development, particularly in Rust, as well as graphic design and generative art. The target audience includes developers, learners, and art enthusiasts. The business model is primarily personal branding and sharing of projects and contact via social media. The domain is registered since 2019 and hosted on Hetzner infrastructure, indicating a stable and consistent technical setup. Technically, the website uses standard web technologies including HTML5, CSS3, JavaScript, and SVG for visual effects. There is no evidence of a CMS or third-party frameworks. The site is moderately optimized for performance and mobile devices, with basic accessibility and SEO features. No analytics or advertising scripts are present, indicating minimal user tracking. From a security perspective, the site lacks published privacy, cookie, or security policies, and no security headers were detected. There are no forms or data collection points, reducing attack surface but also limiting user interaction. The WHOIS data is consistent and transparent, with no privacy protection or suspicious patterns. Overall, the security posture is basic but without critical vulnerabilities detected. The overall risk is low given the personal nature of the site and lack of sensitive data handling. Strategic recommendations include adding privacy and cookie policies, implementing security headers, and providing direct contact information for security or business inquiries to enhance trust and compliance.

15
35
2
60
42
75
40
personalportfoliosoftwaredevelopmentgraphicdesignrustprogramminggenerativeart
HTML5CSS3JavaScriptSVG
2025-07-27T03:24:48.832Z
deerz.one favicon

Privacy service provided by Withheld for Privacy ehf

deerz.one

45
TechnologyIcelandsmallHIGH

The website deerz.one is a personal site operated by an individual known as ida deerz, focusing on creative outputs such as music, blog posts, and technical resources. The site serves a niche audience interested in music production, web development, and personal insights. The business model is primarily content sharing and community engagement without commercial sales directly on the site. The domain is relatively new, registered in April 2024, and uses privacy protection services, which aligns with the personal nature of the site. Technically, the site is built on a custom content management system called Deer Text Format, utilizing standard web technologies including HTML, CSS, JavaScript, and PHP. Hosting is provided by DreamHost, and the site is served over HTTPS with a moderate performance profile. Mobile optimization and accessibility are basic but functional. SEO practices are minimal but present. From a security perspective, the site benefits from HTTPS and domain transfer protection but lacks DNSSEC and security headers such as Content-Security-Policy. There are no visible vulnerabilities or exposed sensitive data. However, the absence of privacy and cookie policies, as well as incident response information, indicates room for improvement in compliance and security posture. Overall, the site is safe, trustworthy, and well-maintained for a personal project, but it lacks formal privacy and security documentation. Strategic recommendations include implementing privacy and cookie policies, enabling DNSSEC, adding security headers, and providing incident response contacts to enhance trust and compliance.

15
35
17
70
62
70
20
personalblogmusictechnologycreative+2 more
HTML5CSS3JavaScriptPHP+4
2025-07-27T03:24:23.686Z
typeof.net favicon

Belleve Invis

typeof.net

55
TechnologyN/asmallMEDIUM

Typeof.net is a personal website operated by Renzhi Li (aka be5invis), focusing on typography, type theory, and digital typeface design, notably the Iosevka programming font. The site serves a niche audience of typography enthusiasts and programmers interested in font design and text processing. The business model is that of an individual content creator and font designer, with a long-standing domain registration since 2009, indicating sustained activity and credibility in the niche. Technically, the website is built using the Hexo static site generator and hosted on GitHub Pages, leveraging modern web fonts and CSS libraries such as Font Awesome and Iosevka fonts. The site is performant and mobile-optimized with a clean, consistent design, though accessibility and SEO optimizations are basic. No advanced analytics or tracking technologies are detected, reflecting a privacy-conscious approach. From a security perspective, the site lacks several best practices: no DNSSEC, no security headers, and no published privacy or cookie policies. The domain is registered without privacy protection, consistent with the personal nature of the site. No contact or incident response information is provided, limiting transparency. Overall, the security posture is moderate but could be improved with standard web security enhancements. The overall risk is low given the non-commercial, informational nature of the site, but improvements in privacy compliance and security hardening are recommended to enhance trust and protect visitors. Strategic recommendations include enabling DNSSEC, adding security headers, publishing privacy and cookie policies, and providing contact information for security incidents.

15
50
2
55
72
80
100
typographytypefaceiosevkaprogrammingfontsdigitaltypography+1 more
HTML5CSS3Font AwesomeIosevka font+2
2025-07-27T03:23:38.467Z
openpgp.org favicon

OpenPGP

openpgp.org

66
TechnologyN/asmallMEDIUM

OpenPGP.org is the official website for the OpenPGP standard, the most widely used email encryption protocol. The site provides information about the standard, its history, and software implementations across all major operating systems. It positions itself as a trusted, community-driven resource with a long-standing presence in the encryption technology space since 1997. The website is professionally designed with clear navigation and good mobile optimization, reflecting a mature digital presence. However, it lacks explicit privacy, cookie, and terms of service policies, which are important for compliance and user trust. Technically, the site uses modern web technologies including HTML5, CSS3, JavaScript, and the Jekyll static site generator with the Minimal Mistakes theme. It employs HTTPS for secure communication but does not implement advanced security headers or disclose security policies. No tracking or advertising technologies are detected, indicating a privacy-respecting approach. The absence of WHOIS data transparency limits the ability to fully verify domain legitimacy, though the open source presence on GitHub and RFC standard references support authenticity. From a security perspective, the site demonstrates good baseline practices such as HTTPS and no exposed sensitive data. However, it lacks published security policies, incident response contacts, and vulnerability disclosure mechanisms, which are recommended for improving security posture and user confidence. Overall, the website is safe, professional, and trustworthy but could benefit from enhanced transparency and compliance documentation. Strategically, the site should prioritize publishing privacy and cookie policies, adding security headers, and providing clear contact information for security incidents. These steps will strengthen compliance with regulations like GDPR and improve overall trustworthiness in the security community.

85
50
2
70
75
70
100
encryptionemailsecurityopenpgpprivacy+1 more
HTML5CSS3JavaScriptFontAwesome
2025-07-27T03:23:28.386Z
C

Chaos Computer Club Darmstadt e.V.

hackint.org

51
TechnologyGermanysmallMEDIUM

hackint.org operates as a specialized communication network primarily serving the hacker community, offering IRC-based services compliant with IRCv3 standards, along with modern communication transports such as Matrix, Tor, and DN42. The network is managed by Chaos Computer Club Darmstadt e.V., a German non-profit organization, reflecting a community-driven, non-commercial model. The website provides detailed documentation, news updates, and support resources, positioning itself as a niche but trusted platform within the hacker and technology enthusiast ecosystem. From a technical perspective, the site employs standard web technologies including HTML5 and CSS3, and supports modern communication protocols. Hosting is provided by http.net Internet GmbH, a reputable German hosting provider. The site demonstrates good mobile optimization and clear navigation, though accessibility and SEO optimizations are basic. Security-wise, the domain benefits from a long registration history and transfer protection, and TLS 1.3 support is implemented. However, DNSSEC is not enabled, and no security headers or explicit security policies are published, indicating room for improvement in hardening the web presence. Security posture is moderate; while no critical vulnerabilities or malware indicators are present, the absence of privacy and cookie policies, security headers, and incident response information limits compliance and transparency. No contact emails or phone numbers are publicly listed, which may hinder user support and trust. Overall, the site is safe, professional, and trustworthy but would benefit from enhanced security and privacy disclosures to align with best practices and regulatory expectations.

30
35
2
70
85
75
40
hackerircmatrixtorcommunication+2 more
HTML5CSS3IRCv3.1IRCv3.2 (partial)+4
2025-07-27T03:23:23.346Z
M

majava.org

majava.org

61
TechnologyN/asmallMEDIUM

The website majava.org serves as a technical infrastructure hub offering a variety of IT services such as git hosting, mail, DNS, Kubernetes, VM hosting, and monitoring tools. It appears to be a small-scale, possibly community or privately maintained infrastructure platform targeting technical users and infrastructure administrators. The site content is minimalistic but functional, focusing on providing access to various internal and external services rather than marketing or commercial activities. From a technical perspective, the site uses modern web standards including WOFF2 fonts and CSS3, but lacks advanced frameworks or CMS platforms. The infrastructure services mentioned indicate a mature technical environment with Kubernetes, Ganeti, and Proxmox usage. Performance and mobile optimization are basic but adequate for the site's purpose. Security posture is moderate; no forms or inputs reduce attack surface, but the absence of security headers and lack of published security or privacy policies are notable gaps. WHOIS data is unavailable due to malformed queries, which limits domain trust verification and reduces overall legitimacy score. No evidence of HTTPS or SSL configuration was found in the provided data, which is a critical area for improvement. Overall, the site is safe with no adult or questionable content, but it lacks formal privacy, security, and compliance documentation. Strategic improvements in security headers, HTTPS enforcement, and policy publication would enhance trust and compliance.

50
50
2
60
75
85
100
technologyinfrastructuregitkubernetesvmhosting+2 more
woff2 fontsCSS3HTML5Phorge (issue tracking)+3
2025-07-27T03:23:13.294Z
diyhrt.wiki favicon

Private by Design, LLC

diyhrt.wiki

60
HealthcareUnited StatessmallMEDIUM

The website diyhrt.wiki serves as an informational resource dedicated to providing guidance on DIY Hormone Replacement Therapy (HRT) primarily for transgender individuals. It offers various guides including Transfem and Transmasc hormone therapy, blood testing information, injection supplies, and telehealth resources. The site positions itself as a niche community resource addressing accessibility challenges faced by transgender people in obtaining HRT. The business model is non-commercial, focusing solely on education and support without selling products or services. Technically, the site is built with standard HTML5 and CSS3, leveraging Google Fonts and Cloudflare DNS services. The website demonstrates moderate performance and good mobile optimization with clear navigation and consistent branding. However, it lacks advanced frameworks or CMS platforms and does not implement DNSSEC or visible security headers, which are areas for improvement. From a security perspective, the site uses HTTPS and has domain registration protections in place, but it lacks privacy and cookie policies, security headers, and incident response information. No analytics or tracking scripts were detected, indicating minimal user tracking. The WHOIS data is consistent and transparent, with no privacy protection, aligning with the site's small-scale informational nature. Overall, the security posture is moderate but could be enhanced by implementing DNSSEC, security headers, and compliance documentation. The content is adult-oriented, with an age verification banner restricting access to users 18 or older, but it does not contain explicit or NSFW material. The site is trustworthy for its intended audience but would benefit from improved privacy compliance and security best practices to enhance user trust and regulatory adherence.

25
35
2
85
75
85
100
diyhrttransgenderhormonereplacementtherapyhealthcare+1 more
HTML5CSS3Google Fonts (Comfortaa, Poppins)Cloudflare DNS
2025-07-27T03:21:57.803Z
xxiivv.com favicon

Echorridoors

xxiivv.com

53
OtherN/asmallMEDIUM

The website 'Echorridoors' hosted at xxiivv.com is an artistic and experimental project with a focus on ambient and creative content. It references artists and collaborators but does not present itself as a commercial business. The site is minimalistic, with a black background, SVG logo, ambient audio, and links to a wiki and a webring, indicating a niche community or collective. The domain is well established, created in 2008, and hosted on Media Temple servers, suggesting stable infrastructure. Technically, the site uses basic HTML5, CSS3, and SVG graphics with audio autoplay. There is no evidence of modern frameworks or CMS platforms. The site has basic mobile optimization and accessibility but lacks advanced SEO and security headers. No analytics or tracking scripts were detected, indicating minimal user tracking. From a security perspective, the site uses HTTPS (implied by domain and hosting but not explicitly confirmed), but DNSSEC is not enabled. No privacy or cookie policies are present, and no contact or incident response information is provided. The absence of security headers and policies reduces the overall security posture. However, no vulnerabilities or malicious content were detected. Overall, the site is low risk but lacks many standard compliance and security features expected for commercial or data-sensitive websites. Strategic improvements include adding privacy and cookie policies, enabling DNSSEC, implementing security headers, and providing contact information to enhance trust and compliance.

15
50
2
65
62
70
100
artcreativemusicambientexperimental
HTML5SVGCSS3Audio autoplay
2025-07-27T03:20:47.406Z
git.gay favicon

Private by Design, LLC

git.gay

50
TechnologyUnited StatessmallMEDIUM

git.gay is a niche collaboration platform designed to empower queer developers by providing Git hosting, continuous integration, and static site hosting services. Operated by the collective 'besties', it emphasizes community values, open source software, and privacy by avoiding ads and third-party trackers. The platform leverages a fork of Forgejo, ensuring open source transparency and configurability. The website presents a professional and consistent brand image targeting queer and neurodiverse developers, positioning itself as a community-centric alternative to corporate platforms. Technically, git.gay uses modern web technologies including Forgejo, Cloudflare DNS, and custom JavaScript for enhanced user experience and error handling. The site is mobile optimized with good SEO practices and minimal user tracking, reflecting a mature digital infrastructure. However, DNSSEC is not enabled, and security headers are not visibly implemented, indicating areas for improvement in security hardening. From a security perspective, the site enforces HTTPS and employs CSRF tokens, with no detected vulnerabilities or exposed sensitive data. Privacy policies and terms of service are present but basic, and no explicit incident response or vulnerability disclosure policies are published. The absence of cookie consent mechanisms despite script usage suggests a potential compliance gap. Overall, the security posture is solid but could benefit from enhanced transparency and technical controls. The domain registration is transparent and consistent with the business profile, registered to Private by Design, LLC in the US, matching the website's operational claims. The domain age aligns with the platform's founding date, supporting legitimacy. No suspicious WHOIS patterns or privacy protections obscure ownership, enhancing trustworthiness. The platform's focus on community and open source principles further supports a positive risk profile. Strategic recommendations include enabling DNSSEC, implementing comprehensive security headers, publishing detailed security and incident response policies, adding cookie consent mechanisms, and establishing a vulnerability disclosure process. These steps will strengthen security, compliance, and user trust, supporting git.gay's mission as a safe and empowering platform for queer developers.

45
53
2
70
75
75
-
gitforgeforgejoqueeropensource+2 more
Forgejo (fork of Gitea)Cloudflare DNSJavaScriptHTML5+1

Partner Domains:

besties.house
partner
2025-07-27T03:20:27.350Z
dimden.dev favicon

dimden

dimden.dev

57
TechnologyUkrainesmallMEDIUM

The website dimden.dev is a personal portfolio and blog of a Ukrainian programmer known as dimden. It serves as a platform to showcase open source projects, share blog posts, and engage with a community primarily through Discord and Patreon. The site targets programmers, tech enthusiasts, and followers of the author's work. The business model is centered around personal branding, community engagement, and open source contributions, with no direct commercial sales evident. The market position is niche, focusing on a dedicated audience interested in programming and retro-inspired web culture. Technically, the website employs a modern JavaScript-based stack with custom scripts and uses HTTPS with Google Analytics and Tag Manager for tracking. The site is hosted on platforms like Neocities and Nekoweb, with some projects leveraging µWebSockets. Performance is moderate, with basic mobile optimization and accessibility features. SEO is basic but functional, with proper meta tags and Open Graph images. From a security perspective, the site benefits from HTTPS and lacks exposed sensitive data or vulnerable libraries. However, it lacks important security headers such as Content-Security-Policy and Strict-Transport-Security, and does not provide privacy or cookie policies, which impacts compliance. No vulnerability disclosure or incident response information is available. Overall, the security posture is moderate but could be improved with standard best practices. The overall risk is low given the personal nature of the site and absence of sensitive transactions or user data collection. Strategic recommendations include implementing security headers, adding privacy and cookie policies, and establishing a vulnerability disclosure process to enhance trust and compliance.

15
35
2
85
65
75
100
personalblogprogrammingjavascriptopensource+2 more
JavaScriptHTML5CSS3Google Analytics+2

Partner Domains:

ourworldofpixels.com
partner
discord.gg
partner

+3 more partners

2025-07-27T03:18:24.648Z
F

Lea's Game Archive • /

futacockinside.me

55
OtherGermanysmallMEDIUM

The website futacockinside.me operates as a personal game archive titled "Lea's Game Archive". It hosts various directories of game files across multiple platforms, accessible only after password authentication. The site is clearly intended for personal use rather than commercial purposes, with no evident business or contact information provided. The domain is relatively new, registered in 2022, and the hosting setup includes suspicious nameservers that may pose security concerns. The site uses a custom analytics script but lacks standard privacy and cookie policies, which impacts its compliance posture. Technically, the site is built with basic HTML, CSS, and JavaScript, including Google Fonts for styling. It is moderately optimized for mobile devices but lacks advanced SEO and accessibility features. No CMS or major frameworks are detected. The hosting provider is not clearly identified beyond the registrar and suspicious DNS configuration. Performance appears moderate with no major errors or broken elements. From a security perspective, the site lacks DNSSEC, security headers, and visible HTTPS enforcement details, which lowers its security posture. The use of suspicious nameservers and absence of privacy or security policies further reduce trustworthiness. However, no WAF or blocking mechanisms are detected, and the content is safe with no adult or explicit material. Overall, the site is functional but has significant gaps in security and compliance best practices. The overall risk assessment suggests caution due to DNS and security configuration concerns. Strategic recommendations include improving DNS security, implementing HTTPS and security headers, adding privacy and cookie policies, and providing clear contact information to enhance trust and compliance.

45
35
2
70
52
85
100
gamearchivepersonalusepasswordprotectedgamefilesanalytics
HTML5CSS3JavaScriptGoogle Fonts (Fira Mono)
2025-07-27T03:18:19.638Z
T

Lexi's Archive • /

transgendersurgeri.es

43
OtherN/asmallHIGH

The website transgendersurgeri.es serves as a personal archive platform titled "Lexi's Archive" that hosts various directories and files intended for private use. It employs a password-protected mechanism to restrict downloads, indicating a focus on controlled access rather than public business operations. The site lacks any business branding, contact information, or commercial content, positioning it as a personal or small group resource rather than a commercial entity. Technically, the site is built with basic HTML, CSS, and JavaScript, utilizing the Fira Mono font and a third-party analytics script from lea.pet. The design is minimalistic with basic mobile responsiveness and limited SEO optimization. No CMS or advanced frameworks are detected. The site does not display any privacy or cookie policies, nor does it provide contact or legal information, which limits its compliance posture. From a security perspective, the site uses a numeric key-based password protection for downloads and sets cookies with SameSite=Strict attributes, which is a positive practice. However, there is no visible enforcement of HTTPS or security headers, and no privacy or cookie consent mechanisms are present. The WHOIS data is inaccessible due to Red.es restrictions, preventing verification of domain registration details and reducing trustworthiness. No WAF or blocking mechanisms are detected, and the content is accessible without challenge. Overall, the site scores low on business credibility and privacy compliance, with moderate technical implementation and security posture. It is safe in terms of content, containing no adult or explicit material. Strategic recommendations include implementing HTTPS, publishing privacy and cookie policies, adding contact information, and enhancing security headers to improve trust and compliance.

15
25
2
40
52
75
100
personalarchivepassword-protectedfile-hostingminimal
HTML5CSS3JavaScriptFira Mono font+1
2025-07-27T03:17:59.562Z
akselmo.dev favicon

Akseli Lahtinen

akselmo.dev

48
TechnologyN/asmallHIGH

The website akselmo.dev is a personal blog authored by Akseli Lahtinen, focusing on topics such as gaming, game development, free and open source software (FOSS), and programming. It serves a niche audience of gamers, developers, and open source enthusiasts. The blog has a consistent and professional presentation with a rich archive of posts dating back to 2016, indicating a well-established presence in its domain. The business model is primarily content sharing without commercial transactions or services. Technically, the site is built with standard web technologies (HTML, CSS, JavaScript) and uses Goat Counter for privacy-respecting analytics. The site appears to be hosted on Hetzner, inferred from blog content, and is likely a static or custom-built blog without a CMS. The site is performant, mobile-optimized, and SEO-friendly, though accessibility features are basic. From a security perspective, the site uses HTTPS and does not expose sensitive data or forms. However, no explicit security headers were detected, and no privacy or cookie policies are present, which are areas for improvement. The domain registration data is consistent with the website content and author identity, supporting high legitimacy and trustworthiness. Overall, the site is low risk with good content quality and technical implementation but would benefit from enhanced privacy compliance and security best practices to improve user trust and regulatory adherence.

15
50
2
70
52
75
40
gaminggamedevfossprogrammingpersonalblog+1 more
HTML5CSS3JavaScript
2025-07-27T02:17:02.313Z
brr.fyi favicon

brr

brr.fyi

9
OtherUnited KingdomsmallCRITICAL

The website brr.fyi is a personal blog focused on observations and anecdotes related to US Antarctic infrastructure, specifically McMurdo Station and Amundsen-Scott South Pole Station. It targets USAP support staff and enthusiasts interested in Antarctic life. The business model is content sharing through blog posts with subscription options, positioning itself as a niche informational resource. The site is small in scale, founded in 2022, and maintains consistent branding and good content quality. Technically, the site uses standard web technologies including HTML5, CSS3, and JavaScript with Ionicons for icons. It features a responsive design with a dark mode toggle and basic accessibility features. Hosting details are limited but the domain is registered via Amazon Registrar with privacy protection. Performance is moderate with good SEO practices including meta tags and structured data. From a security perspective, the site uses HTTPS and has domain status protections but lacks DNSSEC and security headers such as CSP or HSTS. No privacy, cookie, or terms policies are present, indicating compliance gaps. No analytics or advertising scripts are detected, suggesting minimal user tracking. The domain registration is privacy protected, which is appropriate for a personal blog, and no suspicious patterns are found. Overall, the site is safe, professional, and trustworthy for its niche audience but would benefit from improved privacy and security policies to enhance compliance and user trust.

-
-
-
-
-
-
-
antarcticablogusapmcmurdostationsouthpolestation+2 more
HTML5CSS3JavaScriptIonicons
2025-07-27T02:15:21.926Z
M

Miifox's

miifox.net

6
OtherN/asmallCRITICAL

Miifox.net is a personal and hobbyist website primarily focused on language projects, game development, and miscellaneous personal content. The site features informal language and a variety of technical and creative topics, targeting a general audience interested in conlangs and retro game development. The website is small-scale with limited professional business information or commercial intent. Technically, the site is built with basic HTML and CSS without advanced frameworks or CMS. It is hosted under a domain registered with Metaregistrar BV, but the WHOIS data is inconsistent, showing a future creation date, which raises concerns about domain legitimacy. No advanced security features, analytics, or marketing tools are detected, and the site lacks privacy, cookie, or terms of service policies. From a security perspective, the site does not implement DNSSEC, security headers, or visible HTTPS enforcement, which lowers its security posture. No contact or incident response information is provided, and no vulnerabilities or malware indicators are found. Overall, the site is safe for general audiences but lacks professional security and compliance measures. The overall risk is low due to the non-commercial nature of the site, but the inconsistent WHOIS data and lack of security best practices suggest improvements are needed to enhance trust and compliance.

-
-
-
-
-
-
-
personalhobbyconlanggamedevelopmenttechnical+1 more
HTML5CSS3
2025-07-27T02:15:01.861Z
N

natalieee.net

natalieee.net

9
OtherN/asmallCRITICAL

The website natalieee.net is a personal site owned by natalie[ee] (roentgen connolly), serving as a platform for personal blogging, technical content, and site information. It is a small-scale, niche personal website with a consistent branding approach and a focus on technical and personal expression. The site is actively maintained with a custom static site generator and HTTP server built using Python and Hy, demonstrating a high level of technical maturity for a personal project. From a technical perspective, the site employs modern technologies such as asyncio and a custom static site generator, indicating a strong technical infrastructure. The site performance is fast, with basic mobile optimization and accessibility features. However, SEO and accessibility could be improved further. The hosting provider is not explicitly stated, but the domain registrar is Spaceship, Inc. Security posture shows some strengths such as domain transfer protection and anti-bot measures in the comment form, but lacks critical elements like DNSSEC, HTTPS confirmation, security headers, and published privacy or cookie policies. No vulnerability disclosure or incident response information is provided, which limits transparency and security readiness. Overall, the security score is moderate but could be significantly improved. The overall risk is moderate with no critical vulnerabilities detected in the content or domain registration. Strategic recommendations include enabling HTTPS and DNSSEC, publishing privacy and cookie policies, adding security headers, and improving spam and bot protections. These steps would enhance trust, compliance, and security posture, aligning the site with best practices for personal websites.

-
-
-
-
-
-
-
personalblogstaticsitetechnicalopensource+5 more
HTML5CSS3Asyncio (Python)Hy (Lisp dialect for Python)+2
2025-07-27T02:14:51.837Z
nia.dog favicon

Privacy service provided by Withheld for Privacy ehf

nia.dog

57
OtherIcelandsmallMEDIUM

The website nia.dog is a personal site belonging to an individual named Nia, who identifies as a transfeminine nerd based in Pittsburgh. The site focuses on personal interests such as retro games, niche content, music, and writing. It is a small-scale, non-commercial personal blog hosted likely on Neocities with domain registration through NameCheap. The site content is basic but relevant to its niche audience, with moderate branding consistency and no commercial business model or professional business information provided. Technically, the site uses basic HTML and CSS without advanced frameworks or CMS. Hosting appears to be on a simple platform with moderate performance and basic mobile optimization. There is no evidence of analytics, tracking, or advertising technologies. Security posture is minimal with no DNSSEC, no security headers, and no visible HTTPS enforcement confirmation. Privacy and cookie policies are absent, and no contact or incident response information is provided. Overall, the security posture is weak but typical for a personal site. The domain is privacy protected, which is justified given the personal nature of the site. No suspicious or malicious indicators were found. The site is safe for general audiences with no adult or explicit content. The overall AI score reflects a basic but functional personal website with room for improvement in security and compliance. Strategic recommendations include enabling DNSSEC, adding security headers, enforcing HTTPS, publishing privacy and cookie policies, and providing contact information to improve trust and compliance.

40
50
2
70
95
40
100
personalblogretrogameswritingnichecontent+1 more
HTML5CSS3
2025-07-27T02:14:11.642Z
flufftech.net favicon

rail (that fox)

flufftech.net

50
OtherN/asmallMEDIUM

The website flufftech.net is a personal blog and online presence of an individual known as 'rail' who identifies as a fox on the internet. The site focuses on sharing personal interests, blog posts, and community engagement through links to social and code repositories. It is a small-scale, niche personal site with a consistent branding theme and a friendly, informal tone. The business model is primarily content sharing with voluntary support via Ko-Fi. Technically, the site is built using the Zola static site generator, hosted with Cloudflare DNS and registrar services, and demonstrates good performance and mobile optimization. Security posture is adequate with HTTPS enforced and no visible vulnerabilities, though improvements such as enabling DNSSEC and adding security headers are recommended. Privacy compliance is lacking as no privacy or cookie policies are present, and no contact information or incident response details are provided. Overall, the site is safe, trustworthy for general audiences, and free from adult or questionable content. The domain registration is consistent with the website's nature and age, supporting legitimacy. Strategic recommendations include enhancing privacy compliance, adding security policies, and improving trust signals through contact information and vulnerability disclosure mechanisms.

15
50
2
70
75
70
40
personalblogtechnologyfediverseopensourcecreativecommons+2 more
HTML5CSS3Zola static site generator
2025-07-27T02:12:45.069Z
softkittypa.ws favicon

meow!

softkittypa.ws

57
OtherN/asmallMEDIUM

The website softkittypa.ws is a personal portfolio and creative hub for Lexi, a self-taught programmer and math enthusiast. It showcases personal interests such as indie art, open source projects, Linux, programming, cats, and astrophotography. The site includes interactive elements like a Linux emulator and links to social and federated platforms, reflecting a community-oriented and privacy-conscious individual. The business model is non-commercial, focusing on personal expression and community engagement. Technically, the site uses modern web technologies including HTML5, CSS3, JavaScript with dynamic imports, WebAssembly for emulation, and canvas-based graphics. The performance is moderate with basic mobile optimization and accessibility features. SEO is basic but present through meta tags and Open Graph data. Hosting and CMS details are not explicitly provided. From a security perspective, the site uses HTTPS and avoids collecting sensitive data via forms, which reduces risk. However, no security headers such as CSP or HSTS are detected, and there is no privacy or cookie policy, which limits compliance with GDPR and other regulations. The site uses minimal tracking via a third-party stats service and includes a donation link. No vulnerabilities or malware indicators are found, but security posture could be improved with standard headers and policies. Overall, the site is safe and trustworthy for general audiences, with no adult or questionable content. The domain uses privacy protection, consistent with the personal nature of the site. Recommendations include adding privacy and cookie policies, implementing security headers, and enhancing mobile and accessibility features to improve compliance and security posture.

15
35
2
70
75
85
100
personalprogrammingopensourcelinuxcreative+4 more
HTML5CSS3JavaScript (ES modules, dynamic import)WebAssembly (via v86 emulator)+2
2025-07-27T02:11:53.176Z
A

aurora

auri.gay

55
Non-profitAustriasmallMEDIUM

The website auri.gay represents a personal and community-focused presence for an individual known as ␇-707570 or aurora, a robot-dog entity who actively volunteers at the German non-profit Queer Lexikon and engages with various social platforms. The site serves primarily as a contact and social hub rather than a commercial or corporate business, targeting a general audience interested in queer community and personal expression. Technically, the website is built with basic HTML and CSS, hosted by OVH sas, and shows moderate performance and basic mobile optimization. There is no evidence of advanced frameworks or CMS usage. The site lacks HTTPS status information and security headers, which limits its security posture. No forms or data collection mechanisms are present, reducing privacy risks but also limiting interactivity. From a security perspective, the domain is registered with OVH and protected against unauthorized deletion or transfer, indicating a reasonable level of domain security. However, the absence of HTTPS confirmation and security headers, as well as missing privacy and cookie policies, represent compliance and security gaps. No vulnerabilities or malicious content were detected, and the content is safe for general audiences. Overall, the site is a well-maintained personal presence with good content quality and moderate technical implementation but requires improvements in security and privacy compliance to enhance trust and protection for visitors.

15
50
17
40
75
75
100
personalcommunityqueerrobot-dogvolunteering+1 more
HTML5CSS3
2025-07-27T01:07:50.625Z
S

Sammy Fox

theresnotime.co.uk

60
TechnologyUnited KingdomsmallMEDIUM

The website 'theresnotime.co.uk' serves as a personal professional portfolio and blog for Sammy Fox, a software engineer affiliated with the Wikimedia Foundation. The site targets a general audience interested in technology, open source, and community engagement, showcasing professional projects, social profiles, and personal interests. The business model is individual-centric, focusing on personal branding and community contributions rather than commercial services. Technically, the site employs modern web standards including HTML5, CSS3, JavaScript, and JSON-LD structured data. It references technologies such as Python, Node.js, and PHP through linked projects and packages. Hosting appears to be provided by Mythic Beasts, and the site uses HTTPS with strong SSL configuration. Performance and mobile optimization are good, though accessibility features are basic. SEO is well addressed through meta tags and structured data. From a security perspective, the site benefits from HTTPS and publishes a public PGP key, indicating a commitment to secure communications. However, no explicit security headers were detected, and there is no cookie consent mechanism despite the use of tracking pixels. The WHOIS data is unavailable due to domain naming rules violations, which raises questions about domain registration legitimacy but does not directly impact the website's content quality or security posture. Overall, the website is professional, trustworthy, and safe for general audiences. The main risks relate to privacy compliance and domain registration transparency. Strategic recommendations include implementing security headers, adding a cookie consent mechanism, publishing security and incident response policies, and clarifying domain registration status to enhance trust.

30
50
2
75
65
85
100
softwareengineerpersonalwebsiteportfolioopensourcetechnology+2 more
HTML5CSS3JavaScriptFontAwesome+4
2025-07-27T01:07:40.576Z