Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

149092
Websites
130
Industries
113
Countries
52
Avg Score
Page 146 of 2982|Showing 7251-7300 of 149092
sjomaq.org favicon

Sjómaq

sjomaq.org

64
Non-profitDenmarksmallMEDIUM

Sjómaq is a non-profit youth project aimed at fostering connections and mutual understanding among young people across Denmark, the Faroe Islands, and Greenland. The initiative is a collaboration among youth organizations in these regions, emphasizing values such as respect, curiosity, equality, and openness to build friendships and cultural understanding. The website serves as an informational and engagement platform for this community-building effort. Technically, the website is built on the TYPO3 CMS platform, utilizing modern JavaScript libraries such as jQuery and Fancybox, and is hosted via AWS Cloudfront CDN, ensuring moderate performance and good mobile optimization. The site includes minimal tracking via Simple Analytics, with no visible cookie consent mechanism, which is a minor privacy compliance gap. From a security perspective, the site enforces HTTPS and has domain transfer protections but lacks DNSSEC and security headers, which are recommended improvements. No incident response or vulnerability disclosure information is publicly available. The WHOIS data is transparent and consistent with the organization's profile, supporting the site's legitimacy. Overall, the website is professional, trustworthy, and well-aligned with its non-profit mission, though it could benefit from enhanced security practices and privacy compliance measures.

80
50
2
60
67
70
100
youthnon-profitdenmarkfaroeislandsgreenland+2 more
TYPO3 CMSjQueryFancyboxSimple Analytics

Partner Domains:

duf.dk
partner
afs.fo
partner

+3 more partners

2025-10-31T03:18:12.462Z
bkk-arztfinder.de favicon

BKK Dachverband

bkk-arztfinder.de

70
HealthcareGermanymediumMEDIUM

The BKK ArztFinder website is a professional service platform operated by the BKK Dachverband, aimed at assisting statutory health insurance members in Germany to find doctors, dentists, and other healthcare providers. The site offers a user-friendly search interface with multiple filtering options and links to related healthcare services such as hospital, care, and midwife finders. The platform is well-branded and consistent with the parent organization's identity. Technically, the website uses a modern frontend stack including jQuery, Bootstrap, and FontAwesome, with responsive design and accessibility features. The site implements a cookie consent mechanism compliant with GDPR, using Matomo analytics in a privacy-conscious manner (disabled by default until consent). No major technical or security flaws are evident, though security headers and explicit security policies are absent. From a security perspective, the site uses HTTPS and does not expose sensitive data or vulnerable libraries. However, it lacks a published security policy, incident response contacts, and vulnerability disclosure mechanisms. The WHOIS data is consistent with a legitimate organization, with no privacy protection or suspicious patterns, supporting the site's trustworthiness. Overall, the site is a trustworthy, well-maintained healthcare service platform with good privacy compliance and moderate security posture. Strategic improvements in security headers, incident response transparency, and vulnerability disclosure would enhance its security maturity and user trust.

85
88
2
70
72
60
100
healthcarearztsuchebkkarztfindermedizin+1 more
jQuery 3.7.1Popper 2.11.8Bootstrap 5.3.7FontAwesome 6.7.2+2

Partner Domains:

klinikfinder.bkk-dachverband.de
partner
pflegefinder.bkk-dachverband.de
partner

+2 more partners

2025-10-31T03:17:52.407Z
bkk-meindv.de favicon

BKK Dachverband e.V.

bkk-meindv.de

61
HealthcareGermanymediumMEDIUM

BKK Dachverband e.V. operates the BKK MeinDV portal, a centralized web platform for members to manage their profiles and access various information portals related to the BKK healthcare association. The website is professionally designed, primarily targeting German-speaking members of the BKK Dachverband. It provides essential services such as login authentication, user registration, and feedback submission, positioning itself as a key digital touchpoint for the organization’s members. Technically, the website employs a modern tech stack including jQuery, Bootstrap 5, and Popper.js, ensuring responsive design and moderate performance. The site uses HTTPS with CSRF protection on forms, indicating a good baseline security posture. However, some security headers are missing, and no explicit cookie consent mechanism is present, suggesting room for improvement in compliance and security hardening. From a security perspective, the site demonstrates good practices such as encrypted connections and secure form handling but lacks published security policies, incident response contacts, and vulnerability disclosure mechanisms. No suspicious or malicious content was detected, and the site is free from adult or questionable content, making it safe for general audiences. Overall, the website is a credible and professional portal for the BKK Dachverband community, with a solid technical foundation and good privacy compliance. Strategic enhancements in security headers, cookie consent, and transparency around security policies would further strengthen its trustworthiness and compliance posture.

85
28
2
55
77
65
100
healthcareloginbkkdachverbandmemberportalgerman
jQuery 3.6.0jQuery UI 1.13.2Bootstrap 5.1.0Popper.js 2.9.3
2025-10-31T03:17:47.395Z
golang.org favicon

Google LLC

golang.org

63
TechnologyUnited StatesenterpriseMEDIUM

The website go.dev is the official site for the Go programming language, an open source project supported and maintained by Google LLC. It serves as a comprehensive resource hub for developers, offering documentation, learning materials, downloads, and community engagement. The site targets software developers and engineering teams seeking to build secure, scalable systems using Go. The business model revolves around providing an open source programming language ecosystem backed by a major technology company, positioning Go as a leading language in cloud and network services, web development, and DevOps. Technically, the site is well-implemented with modern web technologies including HTML5, CSS3, JavaScript, and Google’s own analytics and tag management tools. It is hosted on Google Cloud Platform, ensuring fast performance and excellent mobile optimization. The site demonstrates good SEO and accessibility practices, with clear navigation and professional design. No CMS is detected, indicating a custom-built platform tailored for the Go project. From a security perspective, the website enforces HTTPS with strong SSL configuration and includes standard security headers. It uses Google Analytics and Tag Manager scripts loaded asynchronously, and a cookie consent banner is present to comply with privacy regulations. However, there is no explicit security policy or vulnerability disclosure page, nor contact information for incident response, which are areas for improvement. No vulnerabilities or exposed sensitive data were detected. Overall, go.dev is a high-quality, trustworthy, and professional website that effectively supports the Go programming language community. It reflects the credibility of Google LLC and provides valuable resources for developers. Strategic recommendations include publishing a dedicated security policy, adding vulnerability disclosure information, and providing clear security incident contacts to enhance trust and compliance.

45
88
2
40
62
80
100
programminggolangopensourcetechnologydeveloper+4 more
HTML5CSS3JavaScriptGoogle Tag Manager+3
2025-10-31T03:12:11.285Z
L

Limecast

limecast.net

44
TechnologyN/asmallHIGH

Limecast is an emerging privacy-first, open-source podcasting platform aimed at podcasters and privacy-conscious users. The website serves as a coming soon landing page highlighting the platform's focus on privacy and distributed podcasting technology. The business is positioned as a startup founded in 2020, with a small team and a technology sector focus. The platform emphasizes open-source development and community involvement, as evidenced by links to their Codeberg repository and social media presence on Mastodon and Bluesky. Technically, the website is built with modern HTML5 and CSS3 standards, uses Google Fonts, and integrates an EmailOctopus subscription form for user engagement. Hosting appears to be managed via NameCheap, with domain registration consistent with the startup's timeline. Security posture is moderate with HTTPS enabled and domain transfer protection, but lacks DNSSEC and security headers, which are recommended for improvement. Privacy compliance is currently poor due to the absence of privacy and cookie policies and consent mechanisms. No contact emails or phone numbers are provided, limiting direct communication channels. Overall, the website is professional and well-branded but requires enhancements in privacy compliance and security best practices to improve trust and user confidence.

15
35
2
60
52
70
40
podcastingprivacyopen-sourcetechnologystartup
HTML5CSS3Google FontsEmailOctopus form integration
2025-10-31T03:12:04.302Z
apply.coop favicon

Limeleaf Worker Collective

apply.coop

52
Non-profitUnited StatessmallMEDIUM

apply.coop is a specialized job board operated by Limeleaf Worker Collective, LLC, focusing on connecting job seekers with values-driven organizations such as cooperatives, nonprofits, and public benefit corporations. The platform offers curated job listings with detailed workplace profiles, targeting individuals seeking meaningful careers with social impact. The website is relatively new, founded in 2025, and positions itself as a niche player in the job board market with a clear mission and consistent branding. Technically, the website employs modern web standards including HTML5 and CSS3 with Flexbox Grid for layout, and uses GoatCounter for privacy-conscious analytics. Hosting is provided by EnCirca, Inc., and the domain is secured with HTTPS and clientTransferProhibited status, though DNSSEC is not enabled. The site is mobile-optimized and SEO-friendly, though accessibility features are basic. No major CMS or frameworks are detected, suggesting a custom or lightweight platform. From a security perspective, the site benefits from HTTPS and domain transfer protection but lacks DNSSEC and security headers such as Content-Security-Policy or X-Frame-Options. No explicit security policies or incident response contacts are published, and no cookie consent mechanism is present despite analytics usage. The overall security posture is moderate with room for improvement in headers and transparency. Overall, apply.coop presents a professional, trustworthy, and focused platform with good content quality and business credibility. The main risks relate to security best practices and privacy compliance enhancements. Strategic improvements in security headers, cookie consent, and published policies would strengthen trust and compliance.

15
53
47
55
52
75
40
jobscooperativenonprofitpublicbenefitcareer+1 more
HTML5CSS3Flexbox GridGoatCounter analytics

Partner Domains:

limeleaf.coop
parent
social.coop
partner
2025-10-31T03:08:59.186Z
comp.coop favicon

COMP COOPERATIVE, INCORPORATED

comp.coop

53
TechnologyUnited StatessmallMEDIUM

COMP COOPERATIVE, INCORPORATED is a newly established technology cooperative based in the United States, founded in early 2024. The company focuses on providing world-class technology solutions with an emphasis on accessibility and collaborative development. Their website, comp.coop, reflects a modern and professional design using the Astro framework and Cloudflare DNS services, targeting businesses or organizations seeking advanced tech solutions. The cooperative business model positions them as an emerging player in the technology sector, aiming to build custom solutions collaboratively. From a technical perspective, the website leverages modern web technologies such as Astro v5.9.2 and the Inter font, hosted behind Cloudflare DNS. The site demonstrates good mobile optimization and a clean user experience, although SEO and accessibility features are basic. Performance is moderate, with no detected analytics or tracking scripts, indicating a privacy-conscious approach but also limited marketing insights. Security posture is moderate but could be improved. HTTPS is enabled, and the domain status includes clientTransferProhibited, which protects against unauthorized transfers. However, DNSSEC is not enabled, and no security headers were detected in the HTML content, which are important for mitigating common web vulnerabilities. The absence of privacy and cookie policies, as well as lack of incident response or vulnerability disclosure information, indicates gaps in compliance and security transparency. Overall, the website and domain registration data are consistent and legitimate, reflecting a startup cooperative technology business. The lack of direct contact emails or phone numbers and absence of privacy-related policies reduce trust and compliance scores. Strategic improvements in security headers, DNSSEC, privacy documentation, and contact transparency would enhance the security posture and business credibility.

15
50
2
60
57
70
100
technologycooperativetechsolutionsastrocloudflare
Astro v5.9.2Inter font (rsms.me)Cloudflare DNS
2025-10-31T03:08:44.545Z
J

JWP

jwp.com

43
OtherN/asmallHIGH

JWP.com is a minimalistic website primarily serving as a login portal for users with credentials. The site lacks public-facing business descriptions or detailed service information, indicating it is likely an internal or restricted access platform. The domain is long-established, dating back to 1996, which suggests a mature presence, although no registrant organization details are publicly available. The hosting is provided by DreamHost, and the domain is registered through Epik LLC without DNSSEC enabled. Technically, the website uses basic HTML, CSS, and JavaScript with a PHP backend for form submission. There is no evidence of modern frameworks or CMS usage. The site shows basic design and accessibility but lacks mobile optimization and advanced SEO features. Security posture is weak, with no HTTPS enforcement visible in the provided data, no security headers, and no anti-CSRF or CAPTCHA protections on the login form. Privacy and cookie policies are absent, and no analytics or marketing tools are detected. Overall, the security posture is below average, with critical recommendations including enabling HTTPS, adding security headers, and implementing protections against automated login attacks. The site content is safe for general audiences, with no adult or questionable content detected. Contact information is limited to an obfuscated email address ([email protected]) and a login form, with no phone numbers or physical addresses provided. The overall risk assessment indicates a low trustworthiness level due to minimal content, lack of security best practices, and absence of compliance documentation. Strategic improvements in security, privacy compliance, and content transparency are recommended to enhance business credibility and user trust.

15
50
2
70
72
70
20
loginportalsecuritycontactbasic
HTMLCSSJavaScriptPHP (form action index.php)
2025-10-31T03:07:59.721Z
bensbites.co favicon

Ben's Bites Ltd

bensbites.co

61
TechnologyN/asmallMEDIUM

Ben's Bites is a technology-focused newsletter authored by Ben Tossell, targeting AI builders, startup enthusiasts, and investors. The business operates on a subscription model hosted on the Substack platform, offering high-quality content including mini-tutorials, tool reviews, and insights into startups and investing. The website demonstrates excellent content quality, professional design, and clear navigation, appealing to a specialized audience interested in AI and startups. Technically, the site leverages modern web technologies such as React, Tailwind CSS, and integrates third-party services like Sentry for error tracking and Stripe for payments, ensuring a robust and performant user experience. Security posture is good with HTTPS enforced and cookie consent mechanisms in place, though explicit security headers and a public security policy are absent. The lack of WHOIS data for the bensbites.com domain introduces some uncertainty regarding domain registration legitimacy; however, the use of the reputable Substack platform and quality content mitigates this risk. Overall, the website is trustworthy, well-maintained, and compliant with privacy regulations, making it a credible source for its target audience.

45
58
2
60
57
80
100
newsletterstartupsinvestingaitechnology+1 more
SubstackReact (implied by JSX-like classes)Sentry (error tracking)Calendly (embedded widget)+1

Partner Domains:

substack.com
partner
grizzlyads.com
partner
2025-10-31T03:07:54.525Z
iworkedon.com favicon

I Worked On

iworkedon.com

45
TechnologyN/asmallHIGH

I Worked On is a small technology-focused platform founded in 2006 that enables individuals, makers, and developers to create and share portfolios showcasing their projects. The website emphasizes a modern approach to professional experience by focusing on tangible work and outcomes rather than traditional resumes. The platform targets users who want an easy and visually appealing way to present their work to the world. Technically, the website uses modern web technologies including HTML5, CSS3, JavaScript, and Alpine.js for interactivity. It integrates Google Analytics and Google Tag Manager for user tracking and marketing insights. The site is mobile optimized with good SEO practices but lacks some accessibility features and security headers. Hosting details are not explicitly stated but the domain is registered with eNom, LLC and uses name-services.com for DNS. From a security perspective, the site uses HTTPS and has domain transfer protections but lacks DNSSEC and important security headers such as Content-Security-Policy and Strict-Transport-Security. No privacy or cookie policies are published, which is a compliance gap. No incident response or vulnerability disclosure information is available. The domain is stable and legitimate with a long registration history, supporting trustworthiness. Overall, the website is professional and functional with moderate security posture and limited privacy compliance. Strategic improvements in security headers, privacy policies, and contact transparency would enhance trust and compliance.

50
35
2
70
42
40
40
portfolioworktechnologydeveloperprojects
HTML5CSS3JavaScriptAlpine.js+2
2025-10-31T03:07:49.511Z
B

BKV - Interessengemeinschaft Betriebliche Krankenversicherung e. V.

bkk-kampagne.de

38
HealthcareGermanysmallHIGH

The website 'Zeit für Mich' is a German health promotion initiative operated by BKV - Interessengemeinschaft Betriebliche Krankenversicherung e. V., focusing on strengthening personal resources and promoting a healthy work-life balance. It offers information, online self-assessment tests, and access to quality-approved prevention courses such as relaxation techniques and yoga. The target audience primarily includes working adults interested in health and stress management. The business model is non-profit, supported by statutory health insurance entities in Germany, aiming to provide accessible health resources and course subsidies. Technically, the site is built on WordPress using the Understrap child theme, incorporating jQuery and Google Fonts. The infrastructure appears standard for a small non-profit website, with moderate performance and good mobile optimization. SEO and accessibility are basic but functional. No advanced analytics or tracking tools are detected, indicating a privacy-conscious approach. From a security perspective, the site uses HTTPS as indicated by resource URLs, but no explicit security headers were detected in the provided data. There is no evidence of vulnerability disclosure mechanisms or security policies. Contact information is clearly provided, but privacy and cookie policies are absent, which is a compliance gap. No forms or data collection points were found on the homepage, reducing immediate risk exposure. Overall, the website is professional, trustworthy, and safe for general audiences. However, improvements in privacy compliance and security hardening are recommended to enhance trust and regulatory adherence.

15
10
2
60
62
60
20
healthwork-lifebalancepreventionrelaxationnon-profit+1 more
WordPressjQueryGoogle Fonts
2025-10-31T03:06:18.226Z
B

BKV – Interessengemeinschaft Betriebliche Krankenversicherung e. V.

bkk-kampagne-2018.de

38
HealthcareGermanysmallHIGH

The website 'Ich hab's gecheckt!' is a German health awareness campaign focused on educating the public about metabolic syndrome and promoting a healthy lifestyle to prevent cardiovascular diseases. It is operated by the BKV – Interessengemeinschaft Betriebliche Krankenversicherung e. V., a non-profit health insurance interest group based in Berlin. The site provides educational content and an online health check tool to engage users in monitoring their health. The target audience is the general German-speaking public interested in health and wellness. Technically, the website is built on WordPress using the Understrap theme framework with a child theme. It employs common web technologies such as jQuery and Popper.js. The site is served over HTTPS with a moderate performance profile and good mobile optimization. However, it lacks advanced security headers and structured data markup, which could improve SEO and security posture. From a security perspective, the site uses HTTPS and a cookie consent mechanism, but it does not provide a privacy policy or incident response information. No security.txt file or vulnerability disclosure policy is present. The absence of security headers like CSP and HSTS reduces the overall security score. No tracking or advertising scripts were detected, indicating minimal user tracking. Overall, the website is trustworthy and professional with clear contact information and a consistent brand presence. The main risks relate to incomplete privacy compliance and security best practices. Strategic recommendations include publishing a privacy policy, implementing security headers, and providing incident response contacts to enhance user trust and regulatory compliance.

15
10
2
60
62
60
20
healthmetabolicsyndromehealthawarenessnon-profitwordpress+1 more
WordPressjQueryPopper.js

Partner Domains:

bkv-verein.de
partner
2025-10-31T03:06:11.217Z
bkv-verein.de favicon

Interessengemeinschaft Betriebliche Krankenversicherung e.V. (BKV)

bkv-verein.de

53
HealthcareGermanymediumMEDIUM

The Interessengemeinschaft Betriebliche Krankenversicherung e.V. (BKV) operates as a coalition of company-related health insurance funds in Germany, representing approximately one million insured individuals. The organization engages with political, administrative, and association stakeholders to advocate for its members' interests. The website serves as an information hub, providing news, campaigns, and resources related to corporate health insurance and prevention initiatives. The target audience includes companies with company health insurance funds, insured persons, and relevant policy makers. Technically, the website is built on TYPO3 CMS, a robust open-source content management system, and employs modern web technologies including jQuery and Matomo for analytics. The site is hosted on DomainControl nameservers and demonstrates good mobile optimization and SEO practices. Cookie consent is implemented with clear user options and detailed cookie information, reflecting compliance with GDPR requirements. From a security perspective, the site enforces HTTPS and uses a cookie consent mechanism to manage user privacy preferences. However, explicit security headers and published security policies or incident response contacts are absent, representing areas for improvement. No critical vulnerabilities or exposed sensitive data were detected in the analyzed content. Overall, the website presents a professional and trustworthy digital presence aligned with its business purpose. Strategic recommendations include enhancing security headers, publishing security and incident response policies, and adding a vulnerability disclosure mechanism to strengthen the security posture and user trust.

25
68
2
85
72
70
20
healthcareinsurancetypo3matomocookieconsent
TYPO3 CMSjQueryMatomo Analyticssgalinski Cookie Consent
2025-10-31T03:05:58.156Z
A

Amt für Gesundheit des Fürstentums Liechtenstein

alleswurscht.li

44
GovernmentLiechtensteinsmallHIGH

The website alleswurscht.li is a government health promotion project operated by the Amt für Gesundheit des Fürstentums Liechtenstein. It provides a rich collection of healthy recipes emphasizing fresh, regional, and seasonal products, curated by a certified nutritionist. The site targets the general population of Liechtenstein, promoting balanced nutrition and healthy lifestyles through accessible content and community engagement via newsletters and a forum. The website is professionally designed with consistent branding and clear navigation, supporting a positive user experience. Technically, the site is built on the Contao Open Source CMS platform, utilizing common web technologies such as jQuery, Google Analytics, Google Tag Manager, and Google Maps API. The site is mobile-optimized and performs moderately well, though there is room for improvement in accessibility and SEO. Security posture is adequate with HTTPS enabled and no visible vulnerabilities, but lacks important security headers and published security policies. Privacy compliance is partial, with a privacy policy present but no cookie consent mechanism. Overall, the security posture is solid but could be enhanced by implementing security headers, publishing incident response information, and adding cookie consent to improve GDPR compliance. The domain WHOIS data confirms official government ownership, reinforcing the site's legitimacy and trustworthiness. No adult or explicit content is present, making the site safe for general audiences. Strategic recommendations include improving security headers, adding cookie consent, publishing security and incident response policies, and enhancing privacy compliance to strengthen trust and regulatory adherence.

20
53
2
60
62
75
-
healthrecipesgovernmentnutritionliechtenstein+1 more
jQueryGoogle AnalyticsGoogle Tag ManagerGoogle Maps API
2025-10-31T03:05:52.224Z
S

Suffolk Software

mubs.me

9
TechnologyUnited StatessmallCRITICAL

Mubs.me is a personal and professional portfolio website for Mubashar Iqbal, a solo software developer and content creator based in Upstate New York. The site showcases his product studio, side projects, and blog articles, positioning him as a niche solo developer with a strong personal brand. The business model revolves around software development and content creation, targeting tech enthusiasts and potential clients. The website is well designed with good content quality and consistent branding, reflecting a small but professional operation. Technically, the site uses modern web technologies including Alpine.js and Splide.js for interactivity, along with web fonts from Google Fonts and Fontshare. The site is mobile optimized and performs moderately well, though no CMS or hosting provider details are evident. SEO and accessibility are basic but adequate for the site's scope. From a security perspective, the domain is registered with a reputable registrar and has clientTransferProhibited status, indicating some protection against unauthorized transfers. However, DNSSEC is not enabled, and no security headers or privacy policies are present on the site, representing compliance and security gaps. No forms or sensitive data collection points are detected, reducing immediate risk exposure. Cloudflare Web Analytics is used for traffic monitoring with minimal user tracking. Overall, the website is safe, professional, and trustworthy with moderate security posture. Key recommendations include implementing privacy and cookie policies, enabling DNSSEC, adding security headers, and providing clear contact information to enhance compliance and trust.

-
-
-
-
-
-
-
softwaredevelopmentportfoliopersonalbrandingtechnologycontentcreation
HTML5CSS3Alpine.jsSplide.js+2

Partner Domains:

mubs.inc
partner
iworkedon.com
partner

+2 more partners

2025-10-31T03:05:26.141Z