Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157327
Websites
130
Industries
113
Countries
52
Avg Score
Page 16 of 22|Showing 751-800 of 1098
givegreen.com favicon

GiveGreen

givegreen.com

69
Non-profitN/amediumMEDIUM

GiveGreen is a non-profit platform dedicated to mobilizing climate-conscious donors to support pro-environment political candidates across the United States. The website offers a candidate directory, donation processing, and impact reporting to facilitate climate-focused political fundraising. The platform targets environmentally aware individuals seeking to influence elections and climate policy through financial contributions. Technically, the website employs modern JavaScript frameworks such as Alpine.js, integrates with Google Analytics and Tag Manager for tracking, and uses Algolia for search functionality. The site is built on Craft CMS and demonstrates good mobile optimization, accessibility, and SEO practices. Security-wise, the site enforces HTTPS, uses CSRF tokens in forms, and includes standard security headers, reflecting a solid security posture. However, the absence of visible privacy, cookie, and terms of service policies, as well as missing contact information and WHOIS data, reduces overall trust and compliance scores. The domain's registration status is unclear due to lack of WHOIS data, which warrants further verification. Overall, GiveGreen presents as a professional and trustworthy platform with room for improvement in privacy compliance and transparency.

60
70
22
75
72
80
100
climatedonationpoliticalfundraisingnon-profitenvironment
JavaScript ES ModulesAlpine.jsGoogle Tag ManagerGoogle Analytics+1
2025-07-29T06:54:29.725Z
mijnfeelingz.nl favicon

Feelingz

mijnfeelingz.nl

47
E-commerceNetherlandssmallHIGH

MijnFeelingz.nl is an e-commerce platform based in the Netherlands specializing in personalized gift selection accessible via a personal order code. The website presents a clean, modern login interface with a focus on privacy and compliance with GDPR, as evidenced by the cookie consent banner and privacy policy. The business holds the Thuiswinkel Waarborg certification, a recognized trust mark in Dutch e-commerce, enhancing its credibility. The domain has been active since 2013, indicating a stable online presence. Technically, the site uses modern JavaScript modules and CSS with some React-like structure implied. Hosting appears to be managed by Novulo, a known hosting provider. The site is mobile-optimized with good design quality and basic accessibility features. However, no advanced SEO or structured data markup was detected, which could be improved for better search visibility. From a security perspective, HTTPS is used, and cookie policies are transparent with no third-party tracking cookies detected. However, the absence of explicit security headers such as CSP and HSTS is a gap. No incident response or vulnerability disclosure information is provided, which could be a concern for security maturity. The site does not expose sensitive data or show signs of vulnerabilities in the analyzed content. Overall, the website scores well in content quality, privacy compliance, and business credibility but has room for improvement in security posture and technical SEO. Strategic recommendations include implementing security headers, publishing incident response contacts, enhancing SEO with structured data, and maintaining transparency in data protection practices.

30
28
2
5
72
65
100
e-commerceloginprivacycookie-consentpersonalized-gifts+1 more
JavaScript ES ModulesCSSSweetAlert2 (swal2)React (implied by root div and JSX-like structure)
2025-07-28T21:40:38.230Z
mave.io favicon

mave.io B.V.

mave.io

65
TechnologyNetherlandssmallMEDIUM

mave.io B.V. operates a European-focused video platform emphasizing privacy, user experience, and developer-friendly integration. The company offers a cookieless video streaming solution with features such as adaptive streaming, accessibility enhancements, API access, and open-source components. Positioned as a European alternative to major video platforms, mave.io targets developers and businesses seeking GDPR-compliant, customizable video solutions. The website reflects a modern, professional SaaS business with strong branding and customer testimonials from reputable clients like Sketch and Freedom Internet. Technically, the site is built using Hugo CMS, Alpine.js, Chart.js, and custom web components, delivering fast performance, excellent mobile optimization, and good accessibility. The platform uses HTTPS exclusively and avoids exposing sensitive data. However, explicit security headers and a published security policy are absent, representing areas for improvement. Privacy compliance is well addressed with a clear privacy policy, cookie consent banner, and GDPR adherence. Security posture is solid but could be enhanced by publishing incident response contacts and vulnerability disclosure programs. The WHOIS data is unavailable due to privacy protection, which is justified for this business type. Overall, the site demonstrates high trustworthiness, professional content, and a strong commitment to privacy and user experience.

30
65
2
75
75
85
100
videocookielessgdprsaaseuropean+4 more
HugoChart.jsAlpine.jsLottie-player+2
2025-07-28T20:32:56.983Z
thejoinery.com favicon

The Joinery

thejoinery.com

71
RetailUnited StatesmediumMEDIUM

The Joinery is a well-established handcrafted solid wood furniture manufacturer and retailer based in Portland, Oregon. With a domain age dating back to 1997 and a strong emphasis on sustainability and craftsmanship, the company operates a professional e-commerce website powered by Shopify. The site offers a comprehensive product catalog, online ordering, and showroom information, targeting consumers seeking high-quality, sustainable furniture. The presence of a Certified B Corporation badge and multiple press features further solidify its market position. Technically, the website leverages modern web technologies including Shopify's Dawn theme, JavaScript ES modules, and integrates multiple marketing and analytics tools such as Google Analytics, Facebook Pixel, and Mailchimp. The site is well-optimized for performance, mobile responsiveness, and accessibility, with a clear navigation structure and comprehensive metadata for SEO. From a security perspective, the site enforces HTTPS, uses domain transfer locks, and implements cookie consent mechanisms compliant with GDPR. No critical vulnerabilities or exposed sensitive data were detected. However, DNSSEC is not enabled, and there is no explicit security policy or incident response contact information published, which could be improved. Overall, The Joinery's website demonstrates a mature digital presence with strong business credibility and good security hygiene. Strategic recommendations include enabling DNSSEC, publishing a security policy, and adding vulnerability disclosure information to enhance trust and compliance further.

75
85
2
85
57
80
100
furniturehandcraftedsustainableecommerceshopify+2 more
ShopifyJavaScript ES modulesCloudflare DNSAvada Cookie Consent+5

Partner Domains:

the-joinery-pdx.myshopify.com
service
issuu.com
partner
2025-07-28T11:46:20.299Z
changelog.social favicon

Changelog

changelog.social

64
TechnologyCanadasmallMEDIUM

Changelog.social operates as an independent Mastodon server focused on delivering news and podcasts tailored for developers. It positions itself within the fediverse as a niche community platform, leveraging the Mastodon open-source social networking software. The site provides a curated experience for technology enthusiasts and developers, emphasizing content relevance and community engagement. The business model centers on community participation without evident monetization or advertising, reflecting a small-scale, focused service launched in 2022. Technically, the website employs Mastodon version 4.4.1 with a React-based frontend, utilizing modern JavaScript modules and a CDN for asset delivery. The domain is registered through Tucows with privacy protection, and DNS is managed via DNSimple. Performance and mobile optimization are moderate to good, though SEO and accessibility features are basic. The site lacks a CMS and appears self-hosted or hosted by an unknown provider. From a security perspective, the site enforces HTTPS and has domain transfer protections enabled. However, it lacks DNSSEC, security headers, and explicit security policies or incident response contacts. No vulnerabilities or exposed sensitive data were detected, but improvements in security headers and compliance documentation are recommended. Privacy compliance is partial, with a basic privacy policy present but no cookie consent or terms of service. Overall, changelog.social presents a trustworthy, niche community platform with good technical foundations but room for improvement in privacy compliance and security best practices. Strategic enhancements in security policies, consent mechanisms, and transparency would strengthen its risk posture and user trust.

75
58
17
40
75
70
100
mastodonfediversedevelopernewspodcastssocialnetwork
Mastodon 4.4.1ReactJavaScript ES modulesDNSimple DNS+1
2025-07-28T09:28:25.465Z
shadecoffee.org favicon

Shade Catalog

shadecoffee.org

59
OtherN/asmallMEDIUM

Shade Catalog is an informational website dedicated to providing resources about shade tree species in coffee landscapes, targeting coffee farmers and agricultural professionals. It is a collaborative effort by Conservation International, Smithsonian Migratory Bird Center, and World Coffee Research, positioning itself as a niche resource in environmental conservation and sustainable coffee farming. The website offers catalogs for Colombia, Indonesia, and Peru, including browsing, downloads, and distribution information. Technically, the site is well-implemented with modern JavaScript, responsive design, and fast performance via AWS Cloudfront CDN. However, it lacks some security headers and privacy compliance documentation. The security posture is generally good with HTTPS enforced but could be improved by adding security headers and publishing privacy and cookie policies. No contact information or incident response details are provided, which limits transparency. Overall, the site is trustworthy, professional, and safe for general audiences, with minimal user tracking and no advertising. Strategic recommendations include enhancing privacy compliance, adding security headers, and providing clear contact and incident response information.

15
35
2
80
77
80
100
coffeeshadetreescatalogconservationagriculture+1 more
JavaScript ES ModulesGoogle FontsResponsive Images

Partner Domains:

conservation.org
partner
nationalzoo.si.edu
partner

+1 more partners

2025-07-28T08:21:53.055Z
c.im favicon

C.IM

c.im

74
TechnologyEusmallMEDIUM

C.IM operates as an independent Mastodon server hosted in the EU, targeting open-minded English-speaking users interested in federated social networking. The platform offers trending posts, profile directories, and live feeds, positioning itself as a niche social network within the broader Mastodon ecosystem. The website is well-branded and consistent, with clear business focus and active user engagement indicators. Technically, the site leverages modern web technologies including React and ES modules, with Cloudflare DNS and hosting infrastructure. The site is mobile-optimized and performs moderately well, with good SEO and accessibility basics. Security is robust with HTTPS enforced and script integrity checks, though explicit security headers and cookie consent mechanisms are absent. From a security perspective, the site shows good practices but lacks published security policies or incident response contacts. No vulnerabilities or exposed sensitive data were detected. Privacy compliance is adequate with privacy and terms pages present, but cookie consent is missing despite EU hosting. Overall, C.IM presents a trustworthy and professional social networking platform with solid technical foundations and a clear business model. Strategic improvements in security policy transparency and privacy mechanisms would enhance compliance and user trust.

80
58
27
85
75
85
100
mastodonsocialnetworkfediversetrendingeuhosted+1 more
Mastodon 4.4.2ReactJavaScript ES ModulesCloudflare DNS
2025-07-28T01:27:25.884Z
corygibbons.com favicon

Cory Gibbons

corygibbons.com

59
TechnologyN/asmallMEDIUM

Cory Gibbons is an individual freelance developer and designer focused on creating fast, scalable, and enjoyable digital experiences. The website serves as a personal portfolio and contact point for limited freelance opportunities. The business model is straightforward, targeting clients seeking development and design services. The market position is that of a small-scale independent professional without broader corporate affiliations. Technically, the website is built using modern JavaScript frameworks, specifically React with React Router, and is hosted on Vercel, ensuring fast performance and good mobile optimization. The site uses module preloading and modern ES modules, indicating a contemporary tech stack. However, accessibility and SEO optimizations are basic, and no CMS or analytics tools are detected. From a security perspective, the site benefits from HTTPS and domain registrar protections but lacks DNSSEC and security headers, which are recommended for enhanced security. There are no privacy or cookie policies, which limits compliance with GDPR and related regulations. No incident response or vulnerability disclosure mechanisms are present, which could be improved to enhance trust and security posture. Overall, the website is professional and functional for its purpose but could benefit from improved privacy compliance and security best practices to increase trustworthiness and reduce risk.

30
50
2
50
72
90
100
portfoliofreelancedeveloperdesignertechnology
React RouterJavaScript ES ModulesCSSVercel DNS
2025-07-27T20:56:09.106Z
unseen.ninja favicon

Private by Design, LLC

unseen.ninja

57
TechnologyUnited StatessmallMEDIUM

The website unseen.ninja is a personal portfolio site representing an individual or small entity focused on design and coding services. The site presents a modern, clean design with SVG-based branding and uses Vue.js framework for frontend interactivity. The content is minimal but relevant, targeting a general audience interested in design and code. The domain is newly registered in early 2024, consistent with the site's apparent purpose as a personal portfolio. Technically, the site employs modern web technologies including ES modules, web fonts, and SVG graphics. It is hosted under a reputable registrar Porkbun LLC, though the hosting provider is not explicitly identified. The site is mobile optimized and has basic accessibility features. SEO is basic but includes proper meta tags and Open Graph data. From a security perspective, the site uses HTTPS but lacks DNSSEC and visible security headers, which are recommended for enhanced security. No forms or data collection mechanisms are present, reducing attack surface but also limiting user interaction. No privacy or cookie policies are provided, which is a compliance gap. The WHOIS data is consistent and transparent, with no privacy protection, appropriate for this type of site. Overall, the site is low risk with moderate trustworthiness but would benefit from improved security headers, privacy compliance, and contact transparency to enhance credibility and user trust.

15
50
2
65
72
85
100
personalportfoliodesigncodetechnologyvuejs+1 more
JavaScript ES ModulesSVG graphicsCSSWeb fonts (woff2)
2025-07-27T19:45:57.757Z
is-quite.gay favicon

Private by Design, LLC

is-quite.gay

58
TechnologyUnited StatessmallMEDIUM

The website is a niche, invite-only social platform branded as 'is-quite.gay', targeting individuals who identify as quite gay. It operates as a federated social media instance powered by the Misskey software, which supports ActivityPub federation. The platform is small with limited users and notes, emphasizing community exclusivity through invite codes. The business behind the domain is registered as Private by Design, LLC, a US-based entity, with the domain newly created in June 2024. The site content is consistent with its stated purpose and audience, with no adult or explicit content detected. Technically, the website uses modern web technologies including JavaScript ES modules, Vite bundler, and icon fonts. It leverages Cloudflare for DNS services but does not enable DNSSEC, which is a minor security gap. The site is served over HTTPS with domain status protections to prevent unauthorized changes. However, no security headers were detected in the HTML content, and no privacy or cookie policies are published, indicating room for compliance improvements. The site does not use advertising or tracking services, reflecting a privacy-conscious approach. From a security perspective, the platform shows a moderate security posture with HTTPS and domain protections but lacks published policies and security headers that would enhance trust and compliance. No vulnerabilities or exposed sensitive data were found. The absence of a privacy policy and cookie consent mechanism lowers the privacy compliance score. The domain registration details align well with the website content, supporting legitimacy. No WAF or blocking mechanisms were detected, allowing full content access. Overall, the website is a professionally presented, small-scale social platform with a clear niche audience and a solid technical foundation. Strategic recommendations include publishing privacy and cookie policies, enabling DNSSEC, adding security headers, and providing incident response contacts to improve security and compliance posture.

55
50
2
80
75
85
40
socialfederationlgbtqmisskeyinvite-only
Misskey (ActivityPub software)Cloudflare DNSJavaScript ES modulesPhosphor Icons+1

Partner Domains:

activitypub.software
partner
2025-07-27T17:27:18.979Z