Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

149561
Websites
130
Industries
113
Countries
52
Avg Score
Page 151 of 238|Showing 7501-7550 of 11862
shadecoffee.org favicon

Shade Catalog

shadecoffee.org

59
OtherN/asmallMEDIUM

Shade Catalog is an informational website dedicated to providing resources about shade tree species in coffee landscapes, targeting coffee farmers and agricultural professionals. It is a collaborative effort by Conservation International, Smithsonian Migratory Bird Center, and World Coffee Research, positioning itself as a niche resource in environmental conservation and sustainable coffee farming. The website offers catalogs for Colombia, Indonesia, and Peru, including browsing, downloads, and distribution information. Technically, the site is well-implemented with modern JavaScript, responsive design, and fast performance via AWS Cloudfront CDN. However, it lacks some security headers and privacy compliance documentation. The security posture is generally good with HTTPS enforced but could be improved by adding security headers and publishing privacy and cookie policies. No contact information or incident response details are provided, which limits transparency. Overall, the site is trustworthy, professional, and safe for general audiences, with minimal user tracking and no advertising. Strategic recommendations include enhancing privacy compliance, adding security headers, and providing clear contact and incident response information.

15
35
2
80
77
80
100
coffeeshadetreescatalogconservationagriculture+1 more
JavaScript ES ModulesGoogle FontsResponsive Images

Partner Domains:

conservation.org
partner
nationalzoo.si.edu
partner

+1 more partners

2025-07-28T08:21:53.055Z
blacksmith.sh favicon

Blacksmith Software Inc

blacksmith.sh

74
TechnologyN/asmallMEDIUM

Blacksmith Software Inc operates a SaaS platform designed to accelerate GitHub Actions workflows by providing a drop-in replacement for GitHub runners that is faster and more cost-efficient. The company targets developer teams seeking to reduce CI/CD pipeline times and costs. Their platform leverages bare metal gaming CPUs, co-located caching, and persistent Docker layer caching to deliver significant performance improvements. The website is professionally designed, mobile-optimized, and rich in content including customer testimonials, case studies, and detailed product comparisons. The company is backed by reputable investors such as Y Combinator and Google Ventures and holds SOC2 certification, enhancing trustworthiness. Technically, the website uses modern web technologies including Webflow CMS, Google Fonts, YouTube IFrame API, jQuery, GSAP animations, and privacy-focused analytics tools like Plausible. The site implements cookie consent mechanisms and maintains comprehensive privacy and terms of service documentation. Security posture is strong with HTTPS enforced and SOC2 compliance, though some security headers could be improved and a security.txt file is absent. No direct contact emails or phone numbers are publicly listed, and WHOIS data is privacy protected, which is justified for this business type. Overall, Blacksmith demonstrates a mature digital presence with strong business credibility and security awareness. The lack of exposed sensitive data and the presence of trust signals suggest a low risk profile. Strategic recommendations include enhancing security headers, publishing vulnerability disclosure information, and providing clearer incident response contacts to further improve security posture and transparency.

60
83
17
85
75
85
100
cicdgithubactionsdevopssaascloudcomputing+4 more
Webflow CMSGoogle FontsYouTube IFrame APIjQuery 3.5.1+4
2025-07-28T08:20:12.833Z
americanbanker.com favicon

American Banker

americanbanker.com

67
FinanceUnited StateslargeMEDIUM

American Banker is a well-established media publication focused on delivering news, analysis, and insights related to the banking and finance industries in the United States. Owned by Arizent, the website serves banking professionals and industry stakeholders with a variety of content including articles, research, events, podcasts, and webinars. The site demonstrates a mature digital presence with subscription gating and user preference management powered by Piano, indicating a sophisticated approach to content monetization and user engagement. Technically, the site leverages modern JavaScript frameworks, Google Tag Manager, and a robust CMS (Brightspot), ensuring a responsive and accessible user experience. Security posture is strong with HTTPS enforced and secure login mechanisms, though explicit privacy and cookie policies were not detected in the provided content, representing an area for improvement. The absence of WHOIS data reduces transparency but does not detract significantly from the site's legitimacy given its professional branding and association with Arizent. Overall, American Banker presents a credible, professional, and secure platform for banking industry news and analysis.

30
58
37
75
82
75
100
bankingfinancenewsanalysissubscription+1 more
JavaScriptjQueryGoogle Tag ManagerPiano (subscription and gating platform)+4

Partner Domains:

accountingtoday.com
partner
bondbuyer.com
partner

+3 more partners

2025-07-28T07:17:06.859Z
U

U.S. Office of Government Ethics

oge.gov

74
GovernmentUnited StatesmediumMEDIUM

The U.S. Office of Government Ethics (OGE) operates as the official federal agency responsible for overseeing ethics programs within the executive branch of the U.S. government. The website serves as a comprehensive resource hub for federal employees, ethics officials, nominees to Senate-confirmed positions, and the general public. It provides access to financial disclosure reports, legal research, training resources, and public engagement opportunities, positioning OGE as a key authority in government ethics and transparency. Technically, the website leverages modern web technologies including the U.S. Web Design System, Google Fonts, and government analytics tools, hosted on an IBM Domino platform inferred from URL patterns. The site is mobile-optimized, accessible, and SEO-friendly, though performance is moderate. Security is robust with HTTPS enforced and domain transfer protections in place, but could be enhanced by enabling DNSSEC and adding advanced security headers. From a security perspective, the site demonstrates good practices with no visible vulnerabilities or exposed sensitive data. However, it lacks published security policies, incident response contacts, and a vulnerability disclosure program, which are recommended for transparency and readiness. Privacy compliance is basic, with a privacy policy present but no cookie consent mechanism detected. Overall, the website is a trustworthy, professional government resource with high business credibility and a strong security posture. Strategic improvements in security policy transparency and DNS security would further enhance its reliability and compliance.

90
53
2
85
95
85
100
governmentethicscompliancepublicservicefinancialdisclosure+1 more
JavaScriptGoogle FontsGoogle Tag ManagerDigitalGov Universal Federated Analytics+1
2025-07-28T07:14:51.517Z
indianstartupnews.com favicon

IndianStartupNews

indianstartupnews.com

63
MediaIndiasmallMEDIUM

IndianStartupNews is a specialized Indian media platform delivering comprehensive news, stories, and analysis focused on the Indian startup ecosystem. Founded in 2019, it serves entrepreneurs, investors, and business professionals interested in startup funding, government policies, and innovation trends. The platform offers a variety of content including articles, videos, and reports, positioning itself as a niche media outlet in the Indian market. Technically, the website employs modern web technologies such as Bootstrap, Google Fonts, Google Analytics, and OneSignal for push notifications, hosted behind Cloudflare DNS services. The site demonstrates good SEO practices with structured data and meta tags, and is mobile optimized with a professional design and clear navigation. Security-wise, the site uses HTTPS with a good SSL configuration and employs Cloudflare DNS and Google reCAPTCHA to mitigate threats. However, DNSSEC is not enabled, and there is a lack of published privacy and cookie policies, which are important for compliance and user trust. No security.txt or vulnerability disclosure information is present, indicating room for improvement in transparency and incident response readiness. Overall, the website is accessible without WAF blocking, and the domain registration data is consistent and legitimate, supporting the credibility of the business.

40
65
17
55
75
75
100
indianstartupsentrepreneurshipbusinessnewsfundinggovernmentpolicy+3 more
Google FontsBootstrap CSSGoogle Analytics (GA4)Google Tag Manager+6
2025-07-28T07:13:46.351Z
shethepeople.tv favicon

SheThePeople is Asia's Largest Women's Channel | Inspiring Stories of Women

shethepeople.tv

67
MediaIndiamediumMEDIUM

SheThePeople.tv is a digital media platform positioned as Asia's largest women's channel, focusing on inspiring stories of women, female leadership, career advice, entertainment, entrepreneurship, and relationships. The website targets a broad adult audience interested in women's issues, primarily in India and Asia. The business model revolves around content publishing and advertising revenue, leveraging multiple ad networks and tracking technologies. The platform demonstrates a professional design with consistent branding and good content quality, though explicit privacy and cookie policies are not detected in the provided data. Technically, the website employs modern web technologies including Google Fonts, Google Analytics GA4, Facebook Pixel, OneSignal for push notifications, Taboola for content recommendations, and Vdo.ai for video advertising. The site is served over HTTPS with strong security headers, indicating a good security posture. However, there is room for improvement in privacy compliance and accessibility features. Security-wise, the site uses HTTPS, reCAPTCHA, and push notification opt-ins, with no visible vulnerabilities or exposed sensitive data. The absence of a security.txt file and explicit security contact information limits incident response readiness. The WHOIS data is unavailable, suggesting privacy protection which is common for media websites but reduces transparency. Overall, the website is a credible and professional media platform with moderate risk. Strategic recommendations include adding clear privacy and cookie policies, providing contact information for security and abuse reporting, implementing a security.txt file, enhancing accessibility, and auditing third-party scripts regularly to maintain security and compliance.

40
65
17
75
75
85
100
womenmedianewsentertainmentcareer+3 more
Google FontsGoogle Tag ManagerGoogle Analytics GA4Facebook Pixel+4
2025-07-28T07:13:41.343Z
30stades.com favicon

30 Stades

30stades.com

61
MediaIndiasmallMEDIUM

30 Stades is a media and news website targeting an English-speaking Indian audience. The site offers news content across various categories such as Art & Culture, Enterprise, Environment, Farming, Society, Travel, Money, CSR, Interview, Newsletter, and Info Hub. The website uses modern web technologies including Bootstrap, Google Fonts, Cloudflare DNS, Google Analytics GA4, and Taboola for advertising and content recommendations. The domain was registered in 2019 and is managed through GoDaddy with Cloudflare DNS services, indicating a stable and legitimate registration. Technically, the website demonstrates moderate performance with good mobile optimization and basic SEO practices. However, it lacks advanced security headers and DNSSEC, which are recommended for enhanced security. The site uses HTTPS, ensuring encrypted communication. Privacy and cookie policies are absent, which is a compliance gap, especially for GDPR and similar regulations. No contact information or security incident response details are provided, limiting transparency and user trust. From a security perspective, the site is moderately secure with HTTPS and domain status protections but could improve by enabling DNSSEC and adding security headers. No vulnerabilities or exposed sensitive data were detected in the analysis. Advertising practices rely on Taboola and Google DoubleClick, with moderate user tracking via Google Analytics. Content is safe for general audiences with no adult or explicit material detected. Overall, 30 Stades is a legitimate small media website with good technical foundations but requires improvements in privacy compliance, security headers, and transparency to enhance trust and regulatory adherence.

40
35
17
70
75
75
100
newsmediaindiaenglishtaboola+2 more
BootstrapGoogle FontsCloudflare DNSGoogle Analytics GA4+1
2025-07-28T07:13:36.243Z
newsdrum.in favicon

NewsDrum

newsdrum.in

65
MediaIndiasmallMEDIUM

NewsDrum is an independent online news platform based in India, offering comprehensive coverage across various domains including national, business, sports, entertainment, and lifestyle news. The platform emphasizes neutral and in-depth reporting, targeting a general audience seeking reliable news content. The website demonstrates a consistent brand presence and maintains active social media channels to engage its audience. Technically, the website employs modern web technologies such as Bootstrap for responsive design, Google Fonts for typography, and integrates Google Analytics and Tag Manager for traffic analysis. Hosting appears to leverage AWS infrastructure, and the site uses HTTPS with a good SSL configuration, ensuring secure data transmission. Push notifications are managed via OneSignal, enhancing user engagement. From a security perspective, the site enforces HTTPS and uses reCAPTCHA to mitigate automated abuse. However, it lacks several recommended security headers and does not publicly disclose privacy, cookie, or terms of service policies, which are critical for compliance with regulations like GDPR. No incident response or vulnerability disclosure mechanisms are evident, indicating areas for improvement in security governance. Overall, NewsDrum presents a professional and trustworthy news platform with good technical implementation but requires enhancements in privacy compliance and security transparency to strengthen user trust and regulatory adherence.

40
65
17
70
75
75
100
newsmediabreakingnewsbusinesssports+4 more
Google FontsBootstrap CSSGoogle Analytics (GA4)Google Tag Manager+4

Partner Domains:

hindi.newsdrum.in
subsidiary
2025-07-28T07:13:31.234Z
M

MIA Milano in Azione Onlus

milanoinazione.org

62
Non-profitItalysmallMEDIUM

MIA Milano in Azione Onlus is a small Italian non-profit organization founded in 2012, dedicated to assisting homeless and marginalized individuals in Milan. Their mission focuses on social reintegration through trust-building, direct assistance, and creating employment opportunities. The website reflects a well-maintained digital presence with clear information about their activities, projects, and ways to support them, including donations and volunteering. Social media integration and event promotion further enhance their outreach. Technically, the website is built on WordPress with common plugins such as Jetpack and Mailchimp, leveraging modern web technologies like jQuery and Font Awesome. The site is mobile-optimized and provides a good user experience with clear navigation and relevant content. Performance is moderate, with room for improvement in accessibility and SEO. From a security perspective, the site uses HTTPS and implements cookie consent mechanisms, indicating compliance with GDPR. However, the absence of security headers and lack of explicit incident response or vulnerability disclosure policies suggest areas for enhancement. The WHOIS data is incomplete or malformed, limiting domain trust assessment, but the website content and social signals support legitimacy. Overall, MIA Milano in Azione Onlus presents a credible and professional online presence appropriate for its non-profit mission, with recommendations to strengthen security posture and domain transparency for improved trust and compliance.

45
73
2
55
67
75
100
non-profithomelessassistancesocialservicesvolunteeringdonations+2 more
WordPress 6.8.1jQueryJetpack pluginMailchimp for WordPress+2

Partner Domains:

lanottedeisenzadimora.org
partner
ensemblevocale.org
partner

+1 more partners

2025-07-28T07:12:56.089Z
crimilano.it favicon

Croce Rossa Milano

crimilano.it

42
HealthcareItalymediumHIGH

Croce Rossa Milano is a well-established humanitarian organization operating as the local committee of the Italian Red Cross in Milan, Italy. The organization focuses on providing emergency medical assistance, health services, social support, training, and volunteer engagement. Their website reflects a professional and comprehensive digital presence, targeting the general public, volunteers, donors, and beneficiaries. The site is well-branded, consistent, and provides clear navigation and relevant content about their mission and services. Technically, the website is built on Joomla CMS with modern frameworks such as Bootstrap 5 and Astroid Framework, incorporating smooth scrolling and user engagement tools like a chat widget. The site is mobile-optimized and uses standard SEO and accessibility practices, although accessibility could be improved further. Performance is moderate, with no critical technical issues detected. From a security perspective, the website enforces HTTPS with excellent SSL configuration and DNSSEC enabled, indicating strong domain security. Security headers are present, and forms use CSRF tokens, enhancing protection against common web attacks. However, the site lacks a dedicated security policy or incident response page, and no vulnerability disclosure mechanism is found, which are areas for improvement. Overall, the website is trustworthy, secure, and compliant with GDPR, featuring clear contact information and privacy policies. The domain's WHOIS data aligns with the organization's identity and history, reinforcing legitimacy. Strategic recommendations include publishing a security policy, adding incident response contacts, and enhancing accessibility and vulnerability disclosure practices.

20
68
2
70
32
60
-
humanitarianhealthcarenon-profitemergencyservicesvolunteering+2 more
Joomla CMSBootstrap 5jQueryFontAwesome+3

Partner Domains:

dona.crimilano.it
partner
2025-07-28T07:12:38.400Z
chuffed.org favicon

Chuffed

chuffed.org

57
Non-profitUnited StatessmallMEDIUM

Chuffed.org is a well-established crowdfunding platform specializing in socially-conscious projects, supporting individuals, not-for-profits, social enterprises, and community groups. Founded in 2005, it operates as a social enterprise with a clear mission to facilitate free crowdfunding campaigns for social justice causes. The platform targets a niche market focused on non-profit and social impact fundraising, positioning itself as a trusted and specialized service in this domain. Technically, the website employs modern frontend technologies including Tailwind CSS, Google Fonts, and uses Cloudfront CDN for hosting. It integrates multiple analytics and marketing tools such as Mixpanel, Segment Analytics, Google Tag Manager, and Facebook Pixel, indicating a mature digital infrastructure. The site is mobile-optimized with good SEO and accessibility basics, though some improvements in accessibility could be made. From a security perspective, the site enforces HTTPS and uses reCAPTCHA for bot protection. However, it lacks DNSSEC, security headers, and explicit security or incident response policies. The domain is privacy-protected but long-standing, which supports legitimacy. No critical vulnerabilities or exposed sensitive data were detected, but cookie consent mechanisms and security headers should be implemented to enhance compliance and security posture. Overall, Chuffed.org presents a professional, trustworthy, and functional platform with moderate security and privacy compliance. Strategic improvements in security headers, cookie consent, and incident response transparency would strengthen its security posture and regulatory compliance.

15
53
2
75
65
65
100
crowdfundingnon-profitsocialenterprisefundraisingsocialjustice
Tailwind CSSGoogle FontsCloudflare DNSGoogle Tag Manager+4
2025-07-28T06:09:54.742Z
mass-service.org favicon

Massachusetts Service Alliance

mass-service.org

59
Non-profitUnited StatessmallMEDIUM

Massachusetts Service Alliance is a private nonprofit organization serving as the official State Service Commission for Massachusetts. It oversees key service programs such as AmeriCorps and Commonwealth Corps, supporting hundreds of nonprofit organizations and volunteers across the state. The organization focuses on expanding volunteerism and service to improve community well-being. The website reflects a professional and consistent brand presence, targeting Massachusetts residents, nonprofits, and service members. Technically, the website is built on the Webflow platform, utilizing modern web fonts, Google Tag Manager for analytics, and Jetboost for enhanced functionality. The site is mobile-optimized with good navigation and SEO practices, though accessibility features are basic. Performance is moderate, with no blocking or WAF challenges detected. From a security perspective, HTTPS is properly implemented, and forms submit data securely to Mailchimp. However, the site lacks explicit security headers and published privacy or cookie policies, which are areas for improvement. WHOIS data is unavailable due to privacy or malformed queries, but the website's content and official status support its legitimacy. Overall, the site is trustworthy and professional but would benefit from enhanced privacy compliance and security best practices to strengthen user trust and regulatory adherence.

60
35
2
60
62
75
100
nonprofitvolunteerismamericorpsstateservicecommissionmassachusetts+1 more
WebflowGoogle FontsGoogle Tag ManagerJetboost

Partner Domains:

msaconnectsforgood.org
partner
americorps.gov
partner
2025-07-28T04:59:27.507Z
iywp.org favicon

Iowa Youth Writing Project

iywp.org

64
EducationUnited StatessmallMEDIUM

The Iowa Youth Writing Project (IYWP) is a university-affiliated non-profit organization dedicated to empowering K-12 youth in Iowa through language arts and creative writing programs. It operates under the Magid Center for Writing at The University of Iowa, offering various educational programs including summer camps, college essay courses, and community outreach. The website reflects a well-established educational outreach entity with a clear mission and target audience. Technically, the website is built on Drupal 10, leveraging modern web technologies such as Font Awesome, Google Fonts, and multiple analytics tools including Google Analytics and Snowplow Tracker. The site is hosted with Bluehost Inc. per WHOIS data but also integrates University of Iowa infrastructure and branding. The website demonstrates good mobile optimization, accessibility, and SEO practices, though performance is moderate. From a security perspective, the site enforces HTTPS and has domain transfer protections but lacks DNSSEC and security headers, which are recommended for enhanced protection. No explicit security or incident response policies are published, and cookie consent mechanisms are absent, indicating room for improvement in privacy compliance. WHOIS data confirms the domain's legitimacy and consistent ownership by The University of Iowa. Overall, the website is professional, trustworthy, and safe for general audiences, with minor gaps in privacy and security best practices. Strategic improvements in security headers, cookie consent, and published security policies would enhance the site's compliance and trustworthiness.

55
53
17
60
77
70
100
educationnon-profituniversityyouthwriting+1 more
Drupal 10Font Awesome 6Google FontsGoogle Tag Manager+3

Partner Domains:

magidcenter.uiowa.edu
partner
givetoiowa.org
partner
2025-07-28T03:51:33.477Z
tellingroom.org favicon

The Telling Room

tellingroom.org

59
EducationUnited StatessmallMEDIUM

The Telling Room is a non-profit organization dedicated to empowering youth aged 6 to 18 through creative writing programs, workshops, and publishing opportunities. The organization is well-established in Portland, Maine, with a strong community presence and a variety of educational offerings aimed at building literacy and confidence among young writers. The website reflects a professional and consistent brand image, supported by active social media channels and community engagement events, including notable visits such as from President Barack Obama. Technically, the website is built on the Squarespace platform, leveraging modern web technologies including jQuery and Vimeo for multimedia content. The site is mobile-optimized and performs moderately well, with good SEO practices and accessibility features, although some improvements could be made in accessibility and performance tuning. From a security perspective, the site uses HTTPS but lacks some advanced security headers such as HSTS and CSP. There is no visible security.txt or incident response contact information, which are recommended for transparency and vulnerability management. Privacy compliance is limited, with no explicit privacy or cookie policies found, representing a compliance gap especially relevant under GDPR and similar regulations. Overall, the website presents a low-risk profile with strong business credibility and trustworthy content. Strategic recommendations include enhancing privacy and cookie policies, implementing security headers, and adding vulnerability disclosure information to improve security posture and compliance.

35
53
2
70
62
65
100
educationnon-profityouthwritingcommunity+1 more
Squarespace CMSjQueryVimeo playerGoogle Fonts+1
2025-07-28T03:51:03.283Z
userlytics.com favicon

Userlytics

userlytics.com

68
TechnologyN/amediumMEDIUM

Userlytics operates a sophisticated SaaS platform specializing in remote user testing and UX research, targeting UX professionals, product managers, and marketers. The company positions itself as an established player offering a comprehensive suite of testing methodologies including moderated, unmoderated, and prototype testing, along with participant recruitment and UX consulting services. The website reflects a mature digital presence with professional branding and consistent messaging aligned with its business focus. Technically, the site leverages WordPress CMS enhanced with NitroPack for performance optimization, integrates Google Tag Manager and Optimize for analytics and experimentation, and uses Zendesk for customer support. The infrastructure supports fast loading times, excellent mobile responsiveness, and good accessibility standards. Security posture is strong with HTTPS enforcement, security headers, and no visible vulnerabilities, although explicit security policies and incident response information are absent. Privacy compliance is well addressed with clear privacy and cookie policies and consent mechanisms. However, the absence of WHOIS registration data raises concerns about domain legitimacy, warranting further verification. Overall, Userlytics presents a trustworthy and professional online presence with room for improvement in transparency around security and domain registration.

60
73
47
93
-
90
100
usertestinguxresearchusabilityremotetestingsaas+1 more
WordPressNitroPackGoogle Tag ManagerGoogle Optimize+7
2025-07-28T02:40:15.170Z