Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157327
Websites
130
Industries
113
Countries
52
Avg Score
Page 18 of 22|Showing 851-900 of 1098
amsp.link favicon

Huan Qiu Guo Ji Shi Pin Tong Xun She You Xian Gong Si

amsp.link

49
MediaChinamediumHIGH

The website amsp.link represents a media service platform operated by Huan Qiu Guo Ji Shi Pin Tong Xun She You Xian Gong Si, a Chinese organization. The platform focuses on providing global international video agency services including news exchange, special features, cooperation zones, and related multimedia services. The site targets media professionals and international audiences interested in multimedia content. The business is relatively new, founded in 2022, and operates primarily in Chinese with some English elements. The domain registration and website content are consistent, indicating legitimacy. Technically, the website uses modern JavaScript modules and likely the Vue.js framework, with CSS styling and Swiper.js for interactive elements. Hosting is provided by DNSPod, a Chinese registrar and hosting provider. The site shows moderate performance and basic mobile optimization. SEO and accessibility features are basic but present. However, there is room for improvement in technical implementation and user experience. From a security perspective, the website lacks visible security headers, published security policies, and incident response information. DNSSEC is not enabled, and no cookie consent mechanism is present, which impacts privacy compliance. The SSL configuration details are not fully available, but HTTPS is implied. The site does not expose sensitive data or show signs of vulnerabilities in the provided content. Overall security posture is moderate but could be enhanced with standard best practices. The overall risk assessment suggests a legitimate media service platform with moderate technical maturity and some gaps in security and privacy compliance. Strategic recommendations include enabling DNSSEC, implementing security headers, publishing security and incident response policies, and adding cookie consent mechanisms to improve compliance and trust.

15
50
2
30
100
35
100
mediavideonewsinternationalmultimedia
JavaScript ES modulesCSSSwiper.js
2025-07-23T20:10:42.449Z
a11y.info favicon

a11y.info

a11y.info

67
TechnologyUnited StatessmallMEDIUM

a11y.info operates as a niche Mastodon social networking server dedicated to the accessibility and inclusion community. Founded in 2018 and hosted under a US-based domain, it provides an open platform for users interested in digital accessibility topics. The website serves as a community hub with Mastodon integration, offering trending posts and user engagement features. The platform is small in scale with approximately 20 active users, reflecting a focused and specialized audience. Technically, the site leverages Mastodon version 4.4.1 with modern JavaScript frameworks and is hosted with reputable DNS and registrar services. The site demonstrates good mobile optimization and accessibility features, aligning well with its mission. Security posture is solid with HTTPS enforced and domain transfer protections in place, though DNSSEC is not enabled and security headers are absent, indicating room for improvement. Privacy compliance is partial; a privacy policy exists but cookie consent and terms of service are missing. No direct contact information or incident response details are provided, which may limit user trust and compliance readiness. Overall, the site is professionally presented with consistent branding and trustworthy domain registration, but could enhance security and privacy practices to better serve its community and regulatory requirements.

75
58
17
70
75
60
100
accessibilitymastodoncommunitysocialnetworkinclusion
Mastodon 4.4.1JavaScript ES modulesReactSVG icons+2
2025-07-23T09:50:58.939Z
kde.social favicon

Privacy service provided by Withheld for Privacy ehf

kde.social

64
TechnologyIcelandsmallMEDIUM

kde.social is an independent Mastodon server instance launched in 2023, providing a decentralized social networking platform focused on privacy, ethical design, and user data ownership. It operates within the Mastodon fediverse, targeting users who seek an ad-free and surveillance-free social media experience. The platform currently has a small user base and offers standard Mastodon features such as timelines and trending posts, although the explore page currently shows no trending content. Technically, the website is built on Mastodon version 4.4.1 using modern web technologies including React and ES modules. The site is moderately optimized for mobile devices and provides basic accessibility features. Hosting details are not explicit, but the domain uses HTTPS with a good SSL configuration. However, DNSSEC is not enabled, and no security headers are present in the HTML, indicating room for improvement in security hardening. From a security perspective, the site enforces HTTPS and has domain transfer protections but lacks advanced DNS security and HTTP security headers. There is no visible security policy, incident response contact, or vulnerability disclosure information. Privacy compliance is limited; a basic privacy policy exists but no cookie consent mechanism or terms of service are found. No contact information such as emails or phone numbers is provided, which may impact user trust and support. Overall, kde.social presents as a legitimate, privacy-focused Mastodon instance with a small but niche user base. The site is functional and uses modern technologies but would benefit from enhanced security practices, improved privacy compliance, and clearer business contact information to increase trust and compliance with regulations.

75
58
17
70
52
70
100
mastodonsocialnetworkdecentralizedfediverseprivacy
Mastodon 4.4.1ReactJavaScript ES ModulesCSS+1
2025-07-22T12:09:51.933Z
xoxo.zone favicon

XOXO Zone

xoxo.zone

67
TechnologyIcelandsmallMEDIUM

XOXO Zone operates as a community-run Mastodon instance primarily serving attendees and speakers of the XOXO Festival, a cultural event held in Portland, Oregon. The platform facilitates social networking within the fediverse, leveraging the open-source Mastodon software. The website presents a niche social media service with a focused target audience, maintaining a small but active user base. The business model centers on community engagement rather than commercial monetization. Technically, the website is built on Mastodon version 4.4.1, utilizing React and modern JavaScript modules, hosted on DigitalOcean infrastructure with CDN support for media assets. The site demonstrates moderate performance and good mobile optimization, though accessibility and SEO optimizations are basic. The technical stack is modern and appropriate for a social networking platform of this scale. From a security perspective, the site enforces HTTPS and uses domain transfer protection, but lacks DNSSEC and several recommended security headers. No exposed sensitive data or vulnerable libraries were detected. Privacy compliance is partial, with a privacy policy present but no cookie consent mechanism or terms of service published. Contact information is limited to Mastodon user profiles and sign-in forms, with no direct company emails or phone numbers. Overall, XOXO Zone is a trustworthy and professionally maintained community platform with a clear niche focus. Security posture is adequate but could be improved with enhanced policies and technical controls. Privacy compliance requires attention to meet GDPR standards fully. Strategic recommendations include enabling DNSSEC, publishing terms of service, implementing cookie consent, and enhancing security headers to strengthen trust and compliance.

80
58
17
60
72
70
100
mastodonsocialnetworkcommunityxoxofestivalfediverse
Mastodon 4.4.1ReactJavaScript ES ModulesDigitalOcean Spaces CDN+1
2025-07-22T06:26:53.662Z
headliner.cz favicon

Headliner

headliner.cz

53
MediaCzech RepublicsmallMEDIUM

Headliner is a Czech music magazine and media platform providing news, interviews, podcasts, and cultural content primarily targeting Czech-speaking music enthusiasts. The website offers a digital magazine, podcasts, newsletters, and music news articles, positioning itself as a niche media outlet in the Czech Republic. The presence of official logos such as the Ministry of Culture and OSA indicates recognized legitimacy within the cultural sector. Technically, the website employs modern web technologies including responsive images, JavaScript ES modules, and analytics tools like Matomo and Google Analytics. The site is mobile-optimized with good SEO and basic accessibility features. However, some security headers are missing, and no explicit security or incident response policies are published. Security posture is generally good with HTTPS enforced and cookie consent implemented, but improvements are recommended in security headers and vulnerability disclosure mechanisms. The absence of WHOIS data limits domain registration trust verification, though the website content and external trust signals support its legitimacy. Overall, the website is professionally designed, content-rich, and compliant with privacy regulations, making it a trustworthy source for music and cultural content in its market segment.

45
25
17
60
95
65
40
musicmagazinepodcastculturenews+1 more
Matomo analyticsGoogle Analytics (gtag.js)JavaScript ES modulesResponsive images with WebP and JPEG+2
2025-07-22T01:57:14.616Z
gastia.ch favicon

Gastia

gastia.ch

66
HospitalitySwitzerlandmediumMEDIUM

Gastia is a specialized trade fair and experiential event organizer focused on the hospitality industry in Switzerland, particularly targeting hoteliers, restaurateurs, and catering professionals. The website promotes the upcoming event scheduled for March 2026, highlighting its role as a regional leader in hospitality trade fairs with a strong emphasis on quality, regionality, and knowledge transfer. The business operates under the parent company OLMA Messen St. Gallen, which lends credibility and stability to its operations. The site provides rich multimedia content, including videos, photo galleries, and news articles, to engage its professional audience. Technically, the website employs modern web technologies such as ES modules, Bootstrap for UI components, Splide.js for carousels, and Usercentrics for GDPR-compliant cookie consent management. Google Analytics is used for visitor tracking, and the site is served over HTTPS with good SSL configuration. The site is mobile-optimized with a clear navigation structure and good SEO practices, although accessibility features are basic. From a security perspective, the site enforces HTTPS and uses a reputable cookie consent platform, but lacks explicit security policy pages, incident response contacts, and vulnerability disclosure mechanisms. No security headers were detected in the HTML content, suggesting room for improvement. No vulnerabilities or exposed sensitive data were found. WHOIS data confirms the domain's legitimacy with consistent registrant information matching the business profile. Overall, Gastia's website is professional, trustworthy, and well-suited for its target audience. It demonstrates a solid digital presence with moderate tracking and compliance measures. Strategic improvements in security transparency and accessibility could further enhance its posture and user trust.

50
53
17
65
72
85
100
hospitalitytradefaireventgastronomyhotel+2 more
JavaScript ES ModulesBootstrap (offcanvas, dropdowns)Splide.js (carousel)Usercentrics (cookie consent)+2

Partner Domains:

www.olma-messen.ch
parent
2025-07-22T00:46:40.564Z
kalas.cz favicon

Kalas

kalas.cz

58
RetailCzech RepublicmediumMEDIUM

Kalas.cz is a Czech-based e-commerce website specializing in cycling apparel and sportswear for men, women, and children. The company boasts over 30 years of experience in manufacturing quality cycling clothing, positioning itself as a reputable brand within the Czech and Slovak markets. The website offers a broad range of products including jerseys, shorts, vests, and accessories, along with options for custom designs. The business model focuses on direct online sales supported by a professional and user-friendly website. Technically, the website employs modern web technologies such as JavaScript ES modules, Google Tag Manager, and SmartEmailing for marketing and analytics. The site is mobile-optimized with good SEO practices and a responsive design. However, some security best practices like explicit security headers and a published security policy are missing, which could be improved. From a security perspective, the site uses HTTPS and has cookie consent mechanisms in place, indicating a baseline compliance with privacy regulations such as GDPR. The absence of WHOIS data for the domain is a concern, as it limits the ability to verify domain legitimacy and ownership, slightly reducing trustworthiness. No critical vulnerabilities or exposed sensitive data were detected in the HTML content. Overall, Kalas.cz presents as a professional and trustworthy e-commerce platform with room for improvement in transparency around security policies and domain registration details. Strategic recommendations include enhancing security headers, publishing incident response contacts, and verifying domain registration information to bolster trust and compliance.

70
25
2
55
52
80
100
cyclingsportsweare-commerceczechrepubliccyclingapparel+1 more
JavaScript ES ModulesGoogle Tag ManagerSmartEmailing trackingSwiper.js carousel+1
2025-07-22T00:41:30.986Z
fontdue.com favicon

Fontdue

fontdue.com

59
E-commerceN/asmallMEDIUM

Fontdue operates as a specialized ecommerce platform tailored for independent type foundries, enabling font designers and publishers to build branded websites and sell fonts directly to customers. The platform emphasizes flexible licensing, white-label operations, and developer-friendly tools such as a GraphQL API and React components. Serving over 100 foundries since 2018, Fontdue occupies a niche market with a focused business model supported by subscription and enterprise service offerings. Technically, the website leverages modern frameworks including Phoenix LiveView and integrates Stripe for secure payment processing. The site is well-optimized for performance, mobile responsiveness, and accessibility, with a professional and consistent brand presentation. Security posture is moderate; HTTPS is used and Stripe integration ensures payment security, but the absence of security headers, cookie consent, and published security policies indicates room for improvement. The lack of WHOIS data for the domain is a notable concern, impacting trust and legitimacy assessments. Overall, Fontdue presents a credible and professional service with a strong technical foundation but should address compliance and transparency gaps to enhance security and trust.

45
53
2
90
65
35
100
ecommercefontstypefoundrydevelopertoolsfontlicensing+1 more
Stripe.jsPhoenix LiveViewJavaScript ES ModulesReact (implied by React components)+1

Partner Domains:

js.stripe.com
service
2025-07-17T02:02:24.196Z
radvolution.de favicon

Allgemeiner Deutscher Fahrrad-Club e. V.

radvolution.de

61
TransportationGermanylargeMEDIUM

The Allgemeiner Deutscher Fahrrad-Club e. V. (ADFC) operates the Radvolution campaign website to advocate for bicycle-friendly transportation policies in Germany. As the largest bicycle interest association globally with over 240,000 members, the organization focuses on promoting sustainable mobility, safer cycling infrastructure, and environmental awareness. The website serves as an informational and engagement platform targeting cyclists, environmental advocates, municipalities, and policymakers. It offers newsletter subscriptions, campaign information, and links to social media channels. Technically, the website is built using modern JavaScript frameworks (Svelte) and integrates privacy-conscious analytics (Matomo) hosted on German servers. The newsletter service is provided by CleverReach, a reputable German marketing platform. The site is mobile-optimized with good SEO and accessibility basics, though some improvements in cookie consent and security headers are recommended. From a security perspective, the site enforces HTTPS and anonymizes user IPs in analytics, demonstrating good privacy practices aligned with GDPR. However, it lacks visible security headers and published incident response or vulnerability disclosure policies, which could be enhanced to improve trust and resilience. Overall, the website is professional, trustworthy, and compliant with privacy regulations, supporting the organization's mission effectively. Strategic improvements in cookie consent and security transparency would further strengthen its security posture and user trust.

40
45
17
70
72
60
100
bicycleadvocacyenvironmenttransportationnon-profit+3 more
JavaScript ES ModulesMatomo AnalyticsCleverReach (newsletter service)

Partner Domains:

www.adfc.de
parent
seu2.cleverreach.com
service

+2 more partners

2025-07-16T08:20:34.277Z
seroundtable.com favicon

RustyBrick ®, Inc.

seroundtable.com

58
MediaN/asmallMEDIUM

Search Engine Roundtable is a specialized media outlet operated by RustyBrick ®, Inc., providing news, updates, and community insights focused on search engine marketing and SEO. The website targets professionals and enthusiasts in the search marketing community, offering articles, video recaps, and subscription services. The business model is primarily advertising-supported content publication, with a strong presence in the niche market of search marketing news. Technically, the website employs modern analytics and tracking technologies including Google Analytics, Microsoft Clarity, and Snowplow Analytics, alongside Google reCAPTCHA for form security. The site is mobile-optimized with good SEO practices and uses a custom or proprietary CMS. Performance is moderate with room for improvement in accessibility and security headers. Security posture is solid with HTTPS enforced and use of CAPTCHA on forms, but lacks some security headers and a comprehensive privacy/cookie consent mechanism. No exposed sensitive data or vulnerabilities were detected in the HTML content. WHOIS data is unavailable, which slightly impacts trust assessment but the website's content and branding indicate an established and professional entity. Overall, the website is a reliable source for search marketing news with good technical and security practices, though improvements in privacy compliance and security headers are recommended to enhance trust and compliance.

15
35
2
85
65
80
100
seosearchmarketinggoogleupdatessearchenginenewsdigitalmarketing
Google AnalyticsMicrosoft ClarityGoogle reCAPTCHA v2Google Publisher Tags (GPT)+4
2025-07-16T03:38:56.090Z
bahnundhotel.com favicon

DB Fernverkehr AG

bahnundhotel.com

48
TransportationGermanymediumHIGH

Bahn und Hotel is a German travel comparison portal specializing in train and hotel package deals, primarily targeting travelers interested in 1st class train travel within Germany and select European cities. The website is affiliated with DB Fernverkehr AG, a major player in the German transportation sector, and leverages official Deutsche Bahn branding and social media channels. The platform offers users an interactive search experience with date pickers, traveler selectors, and destination teasers, supporting a user-friendly booking process. Technically, the website employs modern web technologies including Laravel Livewire for reactive components, Alpine.js for frontend interactivity, and ES modules for JavaScript. Hosting and DNS are managed via Amazon Registrar, Inc., indicating a reliable infrastructure. The site is mobile optimized and accessible, with good SEO practices evident in meta tags and structured content. From a security perspective, the site enforces HTTPS and uses CSRF tokens in forms, but lacks DNSSEC and visible security headers, which are recommended for enhanced protection. No explicit security or incident response policies are publicly available, and no vulnerability disclosure or security.txt files were found. Privacy compliance is supported by a comprehensive privacy policy, though no cookie consent mechanism was detected. Overall, Bahn und Hotel presents a professional and trustworthy online presence with a solid technical foundation and good business credibility. Security posture is adequate but could be improved by implementing DNSSEC, security headers, and explicit incident response information. Privacy compliance is good but would benefit from a visible cookie consent mechanism.

20
53
2
60
95
75
-
traveltrainhotelbookingcomparison+2 more
JavaScript ES modulesAlpine.jsLivewire (Laravel)CSS modules+1
2025-07-15T10:50:14.081Z
getyourguide.co.uk favicon

GetYourGuide

getyourguide.co.uk

77
HospitalityN/aenterpriseLOW

GetYourGuide operates as a leading global online marketplace specializing in booking tours, attractions, and travel activities worldwide. The platform targets travelers and tourists seeking convenient access to local experiences, offering a broad range of services including sightseeing tours, excursions, and entry tickets. The website demonstrates a strong market position with consistent branding and a professional digital presence. Technically, the website employs modern web technologies such as Vue.js, Google Tag Manager, and integrates advanced fraud prevention and consent management tools. The infrastructure is hosted on Cloudflare CDN, ensuring fast performance and robust security. The site is mobile-optimized and accessible, with good SEO practices implemented. From a security perspective, the site uses HTTPS, Content Security Policy nonces, and integrates third-party security and monitoring services like Forter and Sentry. However, explicit privacy, cookie, and terms of service pages were not detected in the provided content, indicating potential gaps in privacy compliance visibility. The WHOIS data is missing, which limits domain legitimacy verification but the overall site quality and trust signals suggest a legitimate enterprise. Overall, the risk profile is moderate with recommendations to enhance privacy disclosures, publish security policies, and improve WHOIS transparency to strengthen trust and compliance.

50
100
17
98
75
90
100
traveltoursactivitiesbookingattractions+2 more
JavaScript ES ModulesVue.js (vue3)Google Tag ManagerGoogle Analytics+5

Partner Domains:

supplier.getyourguide.com
partner
2025-07-15T08:37:57.099Z
eurobaustoff-forum.de favicon

EUROBAUSTOFF Handelsgesellschaft mbH & Co. KG

eurobaustoff-forum.de

51
RetailGermanylargeMEDIUM

EUROBAUSTOFF Handelsgesellschaft mbH & Co. KG operates a professional industry forum and networking platform focused on the construction retail sector in Germany. The website EUROBAUSTOFF FORUM serves as a hub for shareholders, suppliers, service providers, and representatives of the EUROBAUSTOFF central office to connect and stay informed about industry innovations and exclusive forum conditions. The business model centers on cooperation and service provision within the building materials trade, offering exhibitions, digital communication platforms, and educational opportunities to its members. Technically, the website is built on TYPO3 CMS with modern front-end frameworks like Bootstrap 5, enhanced by Usercentrics for consent management and Matomo for privacy-conscious analytics. The site is mobile-optimized, accessible, and SEO-friendly, reflecting a mature digital infrastructure. No blocking or WAF mechanisms were detected, indicating open accessibility. From a security perspective, the site uses HTTPS and consent management but lacks explicit security headers and published security policies or incident response contacts. No vulnerabilities or exposed sensitive data were found in the analyzed content. Privacy compliance is well addressed with a clear privacy policy and cookie consent mechanism. Overall, the website presents a professional, trustworthy, and well-maintained digital presence aligned with the company's business objectives. Strategic improvements in security policy transparency and technical security headers would enhance the security posture further.

100
28
2
40
77
60
20
constructionretailforumindustrynetworking+2 more
TYPO3 CMSBootstrap 5Usercentrics CMPMatomo Analytics+1
2025-07-15T08:36:21.750Z
s-communication.de favicon

S-Communication Services GmbH

s-communication.de

61
FinanceGermanylargeMEDIUM

S-Communication Services GmbH (S-Com) is a well-established creative agency affiliated with the Sparkassen-Finanzgruppe and parent company DSV-Gruppe. The company specializes in brand communication, digitalization, and enhancing customer experiences for Sparkassen financial institutions. With over 25 years of market experience and a large team of experts, S-Com positions itself as a key player in the financial services marketing and digital transformation sector. The website reflects a professional and consistent brand image, targeting Sparkassen and related stakeholders. Technically, the site is built on Adobe Experience Manager, uses modern JavaScript modules, and integrates various marketing and analytics tools, including Google Tag Manager and TrustCommander for cookie consent. Security is well addressed with HTTPS and a Content-Security-Policy header, although additional security headers could enhance protection. Privacy compliance is strong, with clear policies and consent mechanisms in place. However, explicit contact information and security incident response details are not publicly available on the homepage. Overall, the site is trustworthy, well-designed, and compliant with GDPR requirements.

55
43
2
80
77
50
100
financedigitalizationmarketingsparkassencreativeagency+3 more
JavaScript ES ModulesCSSGoogle Tag ManagerTrustCommander (cookie consent)+1

Partner Domains:

dsv-gruppe.de
parent
portal.dsv-gruppe.de
service
2025-07-14T22:11:05.789Z