Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

154913
Websites
130
Industries
113
Countries
52
Avg Score
Page 1804 of 3099|Showing 90151-90200 of 154913
kitty.social favicon

Kitty Cat

kitty.social

57
OtherN/asmallMEDIUM

Kitty.social is a niche social networking platform focused on cat enthusiasts, including neko and furry communities, operating within the fediverse ecosystem. The platform offers a cozy, community-driven space for users to share content and interact, leveraging the Misskey software framework. The business model centers on providing a specialized social experience rather than commercial services, targeting a small but dedicated audience. Technically, the website employs modern JavaScript tooling with Vite and Misskey 2025.2.1, ensuring a contemporary and responsive user experience. The site uses HTTPS with reCAPTCHA integration to prevent bot registrations, and media proxying enhances user privacy. However, some standard security headers are missing, and no privacy or cookie policies are published, which limits compliance maturity. From a security perspective, the platform demonstrates good baseline practices such as HTTPS enforcement and bot mitigation but lacks comprehensive security policies and incident response contacts. No vulnerabilities or exposed sensitive data were detected. The absence of privacy and cookie policies is a notable compliance gap, especially for GDPR considerations. Overall, Kitty.social presents a well-implemented niche social platform with good technical foundations and a safe content environment. To enhance trust and compliance, the site should publish privacy and cookie policies, implement security headers, and provide incident response information. These steps will improve user confidence and regulatory adherence.

30
50
2
80
95
80
40
socialnetworkfediversecatscommunitymisskey
JavaScriptViteMisskey (basedMisskeyVersion 2025.2.1)CherryPick (version 4.15.1)+1
2025-07-27T19:49:05.747Z
unitedpharmacies-uk.md favicon

United Pharmacies (UK)

unitedpharmacies-uk.md

59
HealthcareUnited KingdomsmallMEDIUM

United Pharmacies (UK) operates as an online pharmacy specializing in pharmaceutical product sales with UK and international shipping. The website presents a broad catalog of medications and health-related products, targeting customers primarily in the UK but also internationally. The business model focuses on discount pricing and convenience through online ordering and discreet packaging. The company appears to have been established since at least 2001, indicating a longstanding presence in the online pharmacy market. The site includes customer support features such as live chat and multiple social media channels to engage users. Technically, the website employs a mix of legacy and modern web technologies including jQuery 1.6.1, Bootstrap, and Owl Carousel, alongside Google Analytics and Tag Manager for tracking. While the site is functional and moderately optimized for mobile, it shows signs of technical debt, notably the use of outdated JavaScript libraries that may pose security risks. SEO and accessibility features are basic but present. From a security perspective, the site uses HTTPS but lacks visible security headers such as Content Security Policy or HSTS. The absence of cookie consent mechanisms and the use of outdated libraries reduce the overall security posture. No explicit security policies or incident response contacts are provided, which is a gap for compliance and trust. WHOIS data is privacy protected but consistent with the business claims, and no suspicious patterns were detected. Overall, the website is a moderately professional online pharmacy with good business credibility but requires improvements in security practices, privacy compliance, and technical modernization to enhance trust and reduce risk.

50
53
2
70
72
60
100
onlinepharmacyhealthcaree-commerceukshippingdiscountpharmacy
jQuery 1.6.1jQuery UIBootstrapFont Awesome+4

Partner Domains:

www.unitedpharmacies.md
partner
www.unitedpharmacies.nl
partner
2025-07-27T19:48:15.342Z
R

ReliableRx Pharmacy

reliablerxpharmacy.com

57
HealthcareUnited StatesmediumMEDIUM

ReliableRx Pharmacy operates as an online pharmacy platform primarily serving customers in the United States. The business focuses on distributing generic and prescribed drugs through an e-commerce model, positioning itself as a competitive player in the online pharmaceutical market. The website offers features such as product search by brand or generic name, customer support via contact forms and click-to-call functionality, and order tracking services. The platform leverages Magento 2 as its e-commerce CMS, integrating modern web technologies and marketing tools including Google Analytics, Google Tag Manager, and LivePerson chat for customer engagement and analytics. From a technical perspective, the website demonstrates a moderate level of digital maturity with a well-structured Magento 2 implementation, responsive design, and integration of various third-party marketing and analytics services. Performance is moderate with good mobile optimization and basic accessibility features. Security posture is generally good with HTTPS enforced and standard security headers present, although there is a lack of publicly available security policies or incident response information. A significant concern is the absence of WHOIS domain registration data, which is unusual for an active commercial website and raises questions about domain legitimacy and business transparency. Privacy and cookie policies are present and indicate GDPR compliance, supporting user privacy rights. Overall, the website appears professional and trustworthy in its content and user experience but would benefit from improved transparency regarding domain registration and security policies. Strategic recommendations include verifying and publishing domain registration information, enhancing security and incident response disclosures, improving accessibility compliance, and maintaining up-to-date third-party libraries to mitigate potential vulnerabilities.

15
58
17
65
52
80
100
onlinepharmacyprescriptiondrugshealthcaree-commercegenericdrugs+4 more
Magento 2RequireJSjQueryGoogle Tag Manager+5
2025-07-27T19:48:00.314Z
inhousepharmacy.vu favicon

Pacific Health Ltd

inhousepharmacy.vu

77
HealthcareVanuatumediumLOW

Inhouse Pharmacy, operated by Pacific Health Ltd, is a reputable online pharmacy established since 1996, specializing in shipping authentic prescription medications worldwide from a South Pacific facility. The company emphasizes affordable pricing, authentic sourcing from government-registered and FDA-approved manufacturers, and excellent customer service supported by licensed pharmacists. Their market position is strong within the online pharmacy sector, targeting individuals seeking safe and affordable medications globally. Technically, the website is built on ASP.NET WebForms with modern JavaScript libraries such as jQuery and integrates multiple analytics and tracking tools including Microsoft Clarity, Google Tag Manager, and Facebook SDK. The site is mobile-optimized with good SEO and accessibility basics, though there is room for improvement in security headers and accessibility compliance. Security posture is solid with HTTPS enforced and use of Trustwave security seals, but lacks explicit security policies or incident response contacts. No vulnerabilities or exposed sensitive data were detected. Privacy compliance is well addressed with clear privacy and cookie policies and consent mechanisms. Overall, the website presents a professional, trustworthy, and user-friendly platform with moderate technical sophistication and a good security baseline. The absence of WHOIS data reduces transparency but is common in this sector. Strategic recommendations include enhancing HTTP security headers, publishing security policies, and improving accessibility standards.

90
83
47
60
75
80
100
onlinepharmacyprescriptionmedicationshealthcaree-commercetrustedpharmacy+1 more
jQuery 3.7.1jQuery UI 1.13.2jQuery Validate 1.19.5ScrollReveal+2
2025-07-27T19:47:35.147Z
F

favskinhouse.com

favskinhouse.com

60
HealthcareN/asmallMEDIUM

favskinhouse.com is a small e-commerce website specializing in the sale of vitamins, supplements, haircare, whitening products, and hormone replacement therapy (HRT) products. The site targets consumers interested in health and beauty products, operating primarily as an online retail platform. The business appears to be relatively new, with the domain registered in 2020, and no parent or subsidiary companies identified. The website content is basic but functional, with product listings and a cookie consent mechanism in place. However, critical business contact information and privacy policies are missing, which may affect user trust and regulatory compliance. Technically, the website is built on the ShopUp e-commerce platform, utilizing older versions of jQuery and Bootstrap frameworks. The site shows moderate performance and basic mobile optimization but lacks advanced SEO and accessibility features. Security posture is weak, with no DNSSEC, security headers, or visible HTTPS enforcement in the provided data. The WHOIS data is consistent and shows no privacy protection, indicating transparency in domain registration. Security-wise, the absence of privacy policies, terms of service, and contact information for incident response reduces the site's compliance and trustworthiness. The lack of security headers and DNSSEC exposes the site to potential risks. No analytics or tracking services were detected, suggesting minimal user tracking. Overall, the site is functional but requires significant improvements in security, privacy compliance, and business transparency to enhance trust and regulatory adherence. The overall risk assessment indicates a moderate risk profile primarily due to missing compliance documentation and weak security configurations. Strategic recommendations include implementing privacy and terms policies, enhancing security headers and DNSSEC, enforcing HTTPS, and providing clear business contact information to improve credibility and compliance.

55
50
2
60
85
75
100
vitaminskincaresupplementhealthbeauty+3 more
jQuery 1.12.4jQuery UI 1.13.2Bootstrap 3.2.0Font Awesome 4.7.0+1
2025-07-27T19:47:25.048Z
aipctshop.com favicon

Aipctshop

aipctshop.com

60
HealthcareN/asmallMEDIUM

Aipctshop.com is an established online pharmacy specializing in Post Cycle Therapy (PcT) and anti estrogen inhibitors (AI), operating since 2015. The website offers a range of pharmaceutical products with a focus on health-related supplies, targeting individuals seeking convenient online access to these medicines. The business model is e-commerce based, leveraging WooCommerce on WordPress, with a clear emphasis on credit card payment acceptance including modern options like Google Pay and Apple Pay. The site positions itself as a niche player with competitive pricing and customer trust signals such as testimonials and reviews. Technically, the site uses a modern WordPress stack with Elementor and several plugins for SEO, marketing, and customer engagement. Hosting details are not explicit but DNS is managed via Cloudflare, and the domain is registered with Tucows, indicating a stable infrastructure. Security posture is adequate with HTTPS and domain transfer locks, but lacks DNSSEC and published security policies. Privacy compliance is basic, missing cookie consent mechanisms and explicit GDPR indicators. Overall, the site is functional, professional, and trustworthy but could improve in privacy and security transparency.

80
58
17
70
-
80
100
onlinepharmacye-commercehealthcarepostcycletherapyantiestrogeninhibitors+3 more
WordPressWooCommerceYoast SEOSlider Revolution+5

Partner Domains:

bodybuilderspharmacy.com
sister
2025-07-27T19:46:49.634Z
diyhrt.info favicon

The DIY HRT Directory 2.0 | The DIY HRT Directory 2.0

diyhrt.info

57
HealthcareUnited StatessmallMEDIUM

The DIY HRT Directory 2.0 is a niche informational website dedicated to providing transgender individuals with comprehensive guidance on safely performing DIY hormone replacement therapy. It offers specialized resources including transfeminine and transmasculine guides, telehealth and informed consent information, blood testing advice, and safe injection supply locations. The website operates as a non-commercial directory without selling products or services, targeting a sensitive and underserved community. The domain is relatively new, registered in 2022, and uses privacy protection likely justified by the nature of its content and audience. Technically, the site is built using modern static site generation technology (Astro) and leverages Cloudflare for DNS and CDN services, resulting in fast performance and good mobile optimization. The site includes accessibility and SEO best practices, with clear navigation and a professional design. However, it lacks some security headers and does not have DNSSEC enabled, which could be improved. The site uses minimal analytics via Cloudflare Insights, with no intrusive tracking detected. From a security perspective, the site enforces HTTPS and has domain transfer protections in place. No forms collect sensitive data, reducing risk exposure. However, the absence of privacy and cookie policies, as well as incident response contacts, indicates gaps in compliance and security transparency. The WHOIS data shows privacy protection but no suspicious patterns, supporting legitimacy. Overall, the website is a trustworthy, well-constructed resource with good content quality and technical implementation but would benefit from enhanced privacy compliance and security policies to improve user trust and regulatory adherence.

30
50
2
70
75
55
100
transgenderhrtdiyhealthcaretransmasc+4 more
Astro v5.11.0Starlight v0.34.4Cloudflare DNS and CDNPagefind search+1
2025-07-27T19:46:12.853Z
unseen.ninja favicon

Private by Design, LLC

unseen.ninja

57
TechnologyUnited StatessmallMEDIUM

The website unseen.ninja is a personal portfolio site representing an individual or small entity focused on design and coding services. The site presents a modern, clean design with SVG-based branding and uses Vue.js framework for frontend interactivity. The content is minimal but relevant, targeting a general audience interested in design and code. The domain is newly registered in early 2024, consistent with the site's apparent purpose as a personal portfolio. Technically, the site employs modern web technologies including ES modules, web fonts, and SVG graphics. It is hosted under a reputable registrar Porkbun LLC, though the hosting provider is not explicitly identified. The site is mobile optimized and has basic accessibility features. SEO is basic but includes proper meta tags and Open Graph data. From a security perspective, the site uses HTTPS but lacks DNSSEC and visible security headers, which are recommended for enhanced security. No forms or data collection mechanisms are present, reducing attack surface but also limiting user interaction. No privacy or cookie policies are provided, which is a compliance gap. The WHOIS data is consistent and transparent, with no privacy protection, appropriate for this type of site. Overall, the site is low risk with moderate trustworthiness but would benefit from improved security headers, privacy compliance, and contact transparency to enhance credibility and user trust.

15
50
2
65
72
85
100
personalportfoliodesigncodetechnologyvuejs+1 more
JavaScript ES ModulesSVG graphicsCSSWeb fonts (woff2)
2025-07-27T19:45:57.757Z
I

isabel roses

isabelroses.com

64
TechnologyN/asmallMEDIUM

The website is a personal portfolio and blog of a computer science student and open source contributor named Isabel Roses. It documents her development journey, contributions to open source projects such as Nixpkgs and Catppuccin themes, and showcases her projects. The site targets developers and tech enthusiasts interested in programming and open source software. The business model is personal branding and community engagement through blogging and project maintenance. The site is small scale and founded recently in 2023. Technically, the site is built using the Astro static site generator (version 5.8.0) with client-side JavaScript for theme switching. It uses Cloudflare DNS servers but does not have DNSSEC enabled. The site loads quickly, is mobile optimized, and has good SEO metadata. Analytics are self-hosted, indicating some privacy consideration. However, no CMS or hosting provider is explicitly identified. From a security perspective, the site uses HTTPS and domain registration includes protective statuses against unauthorized deletion or transfer. However, DNSSEC is not enabled, and no security headers are detected in the HTML content. There are no privacy or cookie policies, no contact information, and no vulnerability disclosure or security.txt files. These gaps reduce compliance and security posture scores. Overall, the site is trustworthy and legitimate as a personal project with good technical quality but lacks formal privacy and security documentation. Strategic improvements include adding privacy and cookie policies, enabling DNSSEC, implementing security headers, and providing contact information for incident response.

40
50
2
80
75
85
100
personalblogtechnologyopensourcesoftwaredevelopment+4 more
Astro v5.8.0JavaScript (ES Modules)Cloudflare DNSCustom CSS+1
2025-07-27T19:45:26.353Z
P

Pontus Henriksson

pontushenriksson.com

55
TechnologyN/asmallMEDIUM

The website pontushenriksson.com represents a personal portfolio for an individual web developer and programmer named Pontus Henriksson. The site is currently under development with a legacy site linked for reference. The business model is focused on showcasing skills and previous work to attract freelance or contract opportunities. The target audience includes potential clients or employers seeking web development and design services. The website is hosted on Cloudflare Pages and uses basic modern web technologies such as HTML5, CSS3, and JavaScript. The design is responsive and user-friendly, though content is minimal and lacks comprehensive business or contact information. From a security perspective, the site benefits from HTTPS and domain transfer protection but lacks DNSSEC and security headers, which are recommended to enhance protection. No privacy, cookie, or terms of service policies are present, indicating limited compliance with GDPR or other privacy regulations. No contact emails, phone numbers, or social media links are provided, reducing business credibility and user trust. Analytics are implemented via Cloudflare Pages Analytics with minimal user tracking. Overall, the website is safe with no adult or questionable content detected. The domain registration is consistent with the website's new status and shows no suspicious patterns. The security posture is moderate but can be improved by adding security headers and privacy policies. The site’s technical implementation is adequate for a personal portfolio but lacks advanced SEO and accessibility features. Strategic recommendations include implementing privacy and cookie policies, adding security headers, providing clear contact information, enabling DNSSEC, and enhancing SEO and accessibility to improve user trust and compliance.

40
50
2
40
75
70
100
portfoliowebdeveloperprogrammerpersonalwebsitecloudflare
HTML5CSS3JavaScript
2025-07-27T19:45:11.043Z
D

duanin2.top

duanin2.top

44
OtherUnited StatessmallHIGH

The website duanin2.top currently presents no accessible content beyond an empty HTML skeleton. There is no metadata, no visible text, no forms, no contact information, and no business-related content. The domain is registered with HOSTINGER operations, UAB, with privacy protection enabled, and uses Cloudflare DNS servers. The domain age is approximately one year, consistent with a newly created or placeholder site. Due to the lack of content and contact details, the website does not provide any meaningful business information or user engagement opportunities. From a technical perspective, the site lacks any detectable technologies, scripts, or frameworks. There is no evidence of HTTPS or security headers, which are critical for secure web operations. The absence of privacy, cookie, or terms of service policies indicates non-compliance with common data protection regulations such as GDPR. No analytics or tracking mechanisms are present, suggesting minimal or no user data collection. Security posture is weak due to the absence of HTTPS and security headers, and no incident response or vulnerability disclosure information is available. The domain registration is privacy protected, which is common for small or new sites but reduces transparency. No suspicious patterns were detected, but the overall trustworthiness is low given the lack of content and business information. Overall, the website appears to be inactive or a placeholder with no substantive content or business presence. Strategic recommendations include implementing HTTPS, adding essential security headers, publishing privacy and cookie policies, providing clear contact information, and developing meaningful website content to improve trust, compliance, and user engagement.

15
40
17
85
52
85
40
2025-07-27T19:44:50.938Z
is-a.dev favicon

is-a.dev - Free subdomains for developers

is-a.dev

61
TechnologyN/asmallMEDIUM

The website is-a.dev offers a free subdomain registration service targeted primarily at developers. It enables users to obtain free `.is-a.dev` subdomains by following instructions hosted on a GitHub repository. The service is positioned as a niche developer tool with a small-scale operation founded in 2020. The website content is clear, relevant, and professionally presented with consistent branding and a focus on developer engagement through GitHub and Discord communities. From a technical perspective, the site uses modern web technologies including HTML5, CSS3, JavaScript, and is hosted behind Cloudflare, ensuring fast performance and good mobile optimization. The presence of Carbon Ads and Cloudflare Insights indicates minimal advertising and analytics usage, with a low level of user tracking. SEO and accessibility are adequately addressed, though accessibility is basic. Security posture is solid with HTTPS enforced and no visible vulnerabilities or exposed sensitive data. However, the site lacks explicit security headers and formal privacy or cookie policies, which are important for compliance and trust. Incident response is partially addressed via a GitHub abuse reporting mechanism, but no dedicated security contact or vulnerability disclosure policy is present. Overall, the website is trustworthy and functional with a good balance of usability and security for its scope. The main risks relate to privacy compliance and formal security governance, which could be improved to enhance user trust and regulatory adherence.

25
50
2
70
75
85
100
developersubdomainfreegithubcloudflare+1 more
HTML5CSS3JavaScriptCloudflare+1
2025-07-27T19:44:35.831Z
dunkirk.sh favicon

Private by Design, LLC

dunkirk.sh

58
TechnologyUnited StatessmallMEDIUM

The website dunkirk.sh is a personal portfolio and blog site for Kieran Klukas, a 17-year-old homeschooled coder and content creator based in the United States. The site showcases personal interests such as filmmaking, FPV, and TypeScript programming, and provides contact information primarily via email. The domain is newly registered in 2024 under Private by Design, LLC, with transparent WHOIS data and appropriate domain security statuses. The site uses modern web technologies including TypeScript, Cloudflare DNS and CDN, and JavaScript, delivering a fast and mobile-optimized user experience with good SEO practices. From a security perspective, the site enforces HTTPS and benefits from Cloudflare's infrastructure, but lacks explicit security headers and formal privacy or cookie policies, indicating room for compliance improvement. No forms or sensitive data collection mechanisms are present, reducing attack surface. Analytics usage is minimal and privacy-conscious, relying on anonymous HTTP request counters. No vulnerabilities or suspicious content were detected. Overall, the site presents a moderate to good security posture with a strong technical foundation and clear business credibility as a personal portfolio. However, the absence of privacy and cookie policies and explicit security headers are notable gaps. Strategic improvements in these areas would enhance compliance and trustworthiness.

30
35
2
60
75
80
100
personalportfolioblogtypescriptfpv+2 more
TypeScriptCloudflare DNSCloudflare CDNJavaScript+1
2025-07-27T19:44:20.794Z
refact0r.dev favicon

refact0r

refact0r.dev

58
TechnologyN/asmallMEDIUM

The website refact0r.dev is a personal portfolio and blog belonging to a student interested in computer science, web development, and design. It serves as a platform to showcase projects, share blog content, and present personal interests. The site is built using modern web technologies including SvelteKit, and it demonstrates good design quality, mobile optimization, and user experience. However, it lacks formal business information, contact details, and compliance documentation such as privacy or cookie policies. From a technical perspective, the site uses a modern JavaScript framework (SvelteKit) and includes minimal analytics via umami, indicating a lightweight and privacy-conscious approach. The performance appears fast, and the site is mobile responsive. However, no security headers were detected in the provided data, and there is no evidence of HTTPS enforcement or advanced security practices. Security posture is moderate but could be improved by implementing standard security headers, privacy policies, and incident response information. The absence of contact information and compliance documents reduces trust and business credibility. No vulnerabilities or suspicious content were detected, and the domain registration uses privacy protection, which is appropriate for a personal site. Overall, the site is a well-designed personal portfolio with room for improvement in security, privacy compliance, and business transparency. Strategic recommendations include adding privacy and cookie policies, implementing security headers, providing contact information, and considering a vulnerability disclosure policy to enhance trust and compliance.

30
50
2
60
75
75
100
portfolioblogpersonaltechnologystudent
HTML5CSS3JavaScriptSvelteKit
2025-07-27T19:44:15.778Z