Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

154699
Websites
130
Industries
113
Countries
52
Avg Score
Page 1829 of 3094|Showing 91401-91450 of 154699
sourcehut.org favicon

Registrant of sourcehut.org

sourcehut.org

49
TechnologyUnited KingdomsmallHIGH

SourceHut is an open source software development platform offering a comprehensive suite of tools including git and Mercurial hosting, continuous integration, mailing lists, code review, ticket tracking, real-time chat, and wikis. It targets software project maintainers and collaborators, emphasizing privacy, minimalism, and no tracking or advertising. The platform is positioned as a niche alternative to larger commercial services, focusing on open source principles and community trust. Technically, the website is built using the Hugo static site generator, with a modern and performant infrastructure supporting Linux and BSD platforms. The site is well optimized for mobile and accessibility, with clear navigation and professional design. Security posture is strong in terms of privacy and user control, offering PGP encrypted emails, two-factor authentication, and detailed audit logs, though some standard security headers and DNSSEC are not enabled. Overall, the domain registration data is consistent and legitimate, supporting the trustworthiness of the platform. There are no signs of tracking, advertising, or analytics, aligning with the privacy-first philosophy. The website content is safe for general audiences with no adult or questionable content detected.

30
53
2
55
52
75
40
opensourcesoftwaredevelopmentgithostingcontinuousintegrationprivacyfocused+2 more
Hugo static site generatorGitMercurialSSH+2

Partner Domains:

www.hellotux.com
partner
2025-07-26T21:25:39.472Z
ruptly.agency favicon

Ruptly

ruptly.agency

55
MediaRussiamediumMEDIUM

Ruptly is a media agency specializing in video content distribution, targeting registered users who require access to their services. The website functions primarily as a login portal restricting access to authorized users, with contact provided via email for further inquiries. The business operates in the media sector and appears to be a medium-sized entity based in Russia, although the domain WHOIS data shows privacy protection and an anomalous future creation date, which raises some concerns about registration transparency. Technically, the website employs modern frontend technologies including React, service workers, and Cloudflare DNS hosting. It uses Yandex Metrika for analytics and tracking, indicating moderate user tracking practices. The site is mobile optimized and includes accessibility features, but SEO optimization and content richness are basic. The cookie consent mechanism is present and functional, though no privacy policy or terms of service are visible, which impacts compliance. From a security perspective, HTTPS is enforced and the domain status includes clientTransferProhibited, which are positive indicators. However, no DNSSEC is enabled, no security headers are detected, and there is no published security policy or incident response information. The domain's privacy protection and unusual creation date reduce trustworthiness somewhat. Overall, the security posture is moderate but could be improved with better transparency and security controls. The overall risk assessment suggests a functional but basic media content platform with moderate security and privacy compliance. Strategic recommendations include enabling DNSSEC, publishing privacy and security policies, adding security headers, and clarifying domain registration details to enhance trust and compliance.

15
50
2
60
75
70
100
medialoginvideocontentprivacy+2 more
ReactCloudflare DNSYandex MetrikaService Worker+1
2025-07-26T21:24:39.203Z
x-mol.com favicon

北京衮雪科技有限公司

x-mol.com

57
EducationChinamediumMEDIUM

X-MOL is a Chinese academic platform focused on chemistry and related scientific disciplines, providing a comprehensive suite of services including paper search, industry news, global mentor listings, and research group tools. The platform targets researchers, academics, and students, positioning itself as a leading resource in the Chinese scientific community. The business operates under Beijing Gunxue Technology Co., Ltd., established in 2014, and maintains a medium-sized presence with consistent branding and professional content. Technically, the website employs modern front-end technologies such as Bootstrap, RequireJS, and Font Awesome, ensuring a responsive and user-friendly experience. SEO practices are well implemented, and the site is mobile-optimized. However, accessibility features are basic and could be improved. The site uses HTTPS with good SSL configuration but lacks important security headers, which could be enhanced to improve security posture. From a security perspective, the site shows no signs of vulnerabilities or exposed sensitive data. However, the absence of privacy and cookie policies indicates compliance gaps, especially regarding GDPR and data protection regulations. WHOIS data for the domain is unavailable, which raises some concerns about domain registration transparency, although the website content and business information appear legitimate. Overall, the site is professional, content-rich, and trustworthy for its target audience but would benefit from improved privacy compliance, enhanced security headers, and clearer domain registration transparency to strengthen its security and trustworthiness.

40
50
2
60
67
65
100
academicchemistryresearcheducationscience+2 more
BootstrapFont AwesomeFlat-UIRequireJS+4

Partner Domains:

www.x-mol.net
related
2025-07-26T20:23:31.202Z
pixelfed.ca favicon

Fedecan non-profit organization

pixelfed.ca

59
TechnologyCanadasmallMEDIUM

Pixelfed.ca is a Canadian-hosted, non-profit managed instance of the Pixelfed federated image sharing platform. It offers an ethical alternative to centralized social media platforms by enabling decentralized photo sharing with features such as photo posts, albums, filters, collections, and federation support. The platform targets a general audience and is managed by the Fedecan non-profit organization, emphasizing privacy and community standards. Technically, the website uses modern web technologies including JavaScript frameworks (Vue.js implied), Plyr media player, and Cloudflare DNS services. The site is well-structured with good mobile optimization and SEO practices, though some security headers and DNSSEC are not enabled. The platform supports federation and mobile app integration but does not currently support stories or video content. From a security perspective, the site enforces HTTPS and has no visible vulnerabilities or exposed sensitive data. However, it lacks explicit security policies, incident response contacts, and vulnerability disclosure mechanisms. Privacy compliance is basic with privacy and terms pages present but no cookie consent mechanism. The domain registration is privacy protected but consistent with the business claims and is registered with a reputable Canadian registrar. Overall, Pixelfed.ca presents a trustworthy, well-maintained platform with a clear ethical stance and community guidelines. Strategic improvements in security headers, privacy compliance, and incident response transparency would enhance its security posture and user trust.

40
53
2
70
75
50
100
imagesharingfederationnon-profitcanadianethicalsocialmedia
Pixelfed platformCloudflare DNSJavaScriptVue.js (implied by VueCarousel styles)+1
2025-07-26T20:22:35.956Z
E

envs.net

envs.net

61
TechnologyN/asmallMEDIUM

envs.net is a small, community-driven platform offering a shared Linux environment and a suite of self-hosted open source services tailored for Linux enthusiasts, programmers, and sysadmins. The platform emphasizes minimalism, non-commercial use, and collaboration, providing services such as shell accounts, file hosting, collaborative editing, microblogging, and federated social networking. The website and domain have been active since 2018, reflecting a stable and consistent presence in the niche Linux community space. Technically, envs.net runs on Debian GNU/Linux 11 and integrates multiple open source platforms like Gitea, Matrix, Pleroma, and Cryptpad. The website is well-structured with good SEO practices and basic mobile optimization. No advanced CMS or commercial hosting provider is evident, suggesting a self-managed infrastructure. Performance is moderate, suitable for the community's needs. From a security perspective, the site uses HTTPS and has domain transfer protections but lacks DNSSEC and security headers, which are recommended improvements. No cookie consent mechanism is present despite having a privacy policy, indicating partial privacy compliance. No incident response or vulnerability disclosure policies are published, which could be enhanced to improve trust and security posture. Overall, envs.net presents a trustworthy, privacy-respecting community platform with a solid technical foundation but could benefit from enhanced security practices and compliance measures to strengthen its position and user confidence.

65
53
2
70
95
85
40
linuxopensourcecommunityshellprogramming+3 more
Debian GNU/Linux 11HTML5CSSFork Awesome icons+7
2025-07-26T20:22:05.347Z
feddit.rocks favicon

kavin

feddit.rocks

45
TechnologyN/asmallHIGH

Feddit.rocks is a small, community-driven Lemmy instance within the Fediverse ecosystem, powered by the kavin.rocks verse. It offers a platform for open and respectful discussions on a wide range of topics including technology, privacy, programming humor, and European buying initiatives. The platform emphasizes moderation, community rules, and supports federation with captcha-enabled registration to prevent abuse. The business model relies on donations via cryptocurrency and Liberapay, targeting users interested in decentralized social networking and privacy-conscious communities. Technically, the website is built on the Lemmy open-source platform, hosted and registered through Cloudflare, Inc. It uses HTTPS with a valid SSL certificate, ensuring secure communications. The site is mobile optimized and includes basic SEO metadata, but lacks advanced security headers and privacy policies. The technical infrastructure is modern and adequate for its community-focused purpose, though there is room for improvement in security hardening and privacy compliance. From a security perspective, the site enforces HTTPS and uses captcha with hard difficulty for registrations, which helps mitigate automated abuse. However, the absence of DNSSEC and security headers like Content-Security-Policy or X-Frame-Options represents potential vulnerabilities. No direct contact or incident response information is published, limiting transparency in security management. The domain registration is transparent and consistent with the website's claims, supporting legitimacy. Overall, Feddit.rocks presents a trustworthy and functional community platform with good content quality and technical implementation. To enhance trust and compliance, it should publish privacy and cookie policies, implement security headers, and provide clear contact information. These improvements would strengthen its security posture and user confidence.

-
58
57
60
-
70
40
fediversecommunitysociallemmyprivacy+4 more
Lemmy (open source federated platform)Cloudflare DNS and registrarJavaScriptBootstrap (data-bs-theme attribute)
2025-07-26T20:22:00.327Z
T

trocador.app | Checking Your Browser

trocador.app

42
TechnologyN/asmallHIGH

The website trocador.app currently serves as a security gateway page, implementing a browser check likely for DDoS protection or bot mitigation purposes. The page content is minimal, featuring a loading spinner and a message indicating an automatic browser check. This suggests the site is protected by a Web Application Firewall or similar security mechanism, limiting direct access to the underlying content. Due to this, no substantive business or service information is available from the page itself. From a technical perspective, the site uses basic HTML, CSS, and JavaScript to perform the browser check. There is no evidence of advanced frameworks, CMS, or analytics tools in the visible content. Mobile optimization and accessibility are basic, and SEO features are minimal or absent. The presence of a Telegram link for support indicates some customer interaction channel but no formal contact or policy pages are accessible. Security posture is partially demonstrated by the presence of a DDoS protection mechanism, but no security headers or detailed policies are visible. The lack of privacy, cookie, or terms of service policies, as well as absence of contact information, reduces compliance and trustworthiness. The domain's WHOIS data was not provided, limiting the ability to assess registration legitimacy or business credibility. Overall, the site is currently in a protective mode, restricting content access and limiting analysis. This results in a low AI score and limited business insights. Strategic recommendations include publishing clear privacy and cookie policies, improving transparency with contact and incident response information, enhancing SEO and accessibility, and implementing comprehensive security headers to improve trust and compliance.

-
50
17
65
52
85
40
securityddosprotectionwafbotmitigationchallengepage
JavaScriptHTML5CSS3
2025-07-26T20:21:15.070Z
thefarside.com favicon

FarWorks, Inc.

thefarside.com

67
MediaN/amediumMEDIUM

The Far Side official website serves as the digital home for Gary Larson's iconic comic strip, offering daily classic comics, collections, and an online shop. The site is professionally designed, mobile-optimized, and hosted by Andrews McMeel Universal, a reputable media publisher. The business model focuses on content publishing and merchandising within the media sector, targeting a general audience with family-friendly content. The site demonstrates a mature digital infrastructure leveraging modern JavaScript frameworks, third-party analytics, and advertising networks to monetize and engage users. From a technical perspective, the website employs a modern React-based stack with lazy loading, CDN delivery, and integration of multiple ad and tracking services. Performance and SEO are well addressed, with good accessibility features. Privacy compliance is robust, featuring a comprehensive privacy policy, cookie consent mechanisms, and GDPR adherence. However, no direct contact information or explicit security policies are published, which could be improved. Security posture is solid with HTTPS enforced and no obvious vulnerabilities detected. The site uses multiple ad networks and tracking pixels but maintains transparency through consent banners. The absence of WHOIS data is a notable anomaly, possibly due to privacy protection or query limitations, but the overall trustworthiness remains high given the official branding and hosting. Overall, the website is a professional, secure, and privacy-conscious platform for The Far Side brand, though it would benefit from publishing clearer security and incident response policies and providing direct contact channels for enhanced trust and compliance.

70
65
17
55
72
75
100
comicsentertainmentmediaprivacyadvertising+1 more
JavaScriptReact (implied by chunked JS files and babel)Google AnalyticsGoogle Tag Manager+4

Partner Domains:

andrewsmcmeel.com
partner
2025-07-26T20:20:48.964Z
D

ʕ •ᴥ•ʔ

diethex.net

51
TechnologyN/asmallMEDIUM

The website diethex.net operates as a niche community discussion platform branded as 'diet hexbear', targeting users interested in a lightweight, accessible forum experience for older or slower computers. It hosts a variety of user-generated posts and discussions across diverse topics such as anime, movies, news, technology, and social issues. The platform appears to be small and relatively new, founded around 2023, with no evident commercial or enterprise backing. Technically, the site uses standard HTML, CSS, and JavaScript with a minimalist design approach. The infrastructure is likely hosted or registered via Porkbun LLC, with no advanced frameworks or CMS detected. The site is moderately optimized for mobile and accessibility but lacks advanced SEO and performance optimizations. From a security perspective, the site lacks critical security headers, privacy and cookie policies, and contact information for incident response. DNSSEC is not enabled, and no HTTPS or SSL configuration details were found in the provided data. No analytics or advertising scripts are present, indicating minimal tracking. The domain registration is transparent and consistent with the site's purpose, but the absence of formal policies and security measures lowers the overall security posture. Overall, the site is functional and safe for general audiences but requires significant improvements in privacy compliance, security best practices, and business transparency to enhance trust and reduce risk.

80
35
2
60
52
75
40
communitydiscussionforumtechnologynews+1 more
HTML5CSS3JavaScript
2025-07-26T20:19:48.599Z
klingon.wiki favicon

Private by Design, LLC

klingon.wiki

56
OtherUnited StatessmallMEDIUM

The Klingon Language Wiki is a niche online resource dedicated to the Klingon language, offering a multilingual wiki platform with over 1,800 articles in English and additional content in German, French, and Dutch. The website is operated by Private by Design, LLC, a US-based entity, and serves language learners and enthusiasts interested in Klingon. The business model centers on providing free, open-access language resources through a wiki format, positioning itself as a specialized educational platform within the constructed language community. Technically, the website is built on the Foswiki content management system and uses older versions of jQuery, indicating some technical debt. The site is moderately optimized for mobile devices and SEO, with a clean and consistent design. Hosting details are not explicitly disclosed, but DNS servers suggest a third-party hosting arrangement. Performance is moderate, with no major errors or broken elements detected. From a security perspective, the site uses HTTPS but lacks DNSSEC and security headers, and it employs an outdated jQuery version with known vulnerabilities. No advanced security policies or incident response contacts are published. Privacy compliance is limited, with no cookie policy or consent mechanism found, and no explicit privacy policy addressing GDPR. Contact information is minimal, with no emails or phone numbers provided on the main page. Overall, the website is a credible and useful resource for its target audience but would benefit from technical and security improvements, enhanced privacy compliance, and clearer contact information to strengthen trust and resilience against potential threats.

30
35
2
60
72
80
100
languagewikiklingoneducationmultilingual
jQuery 1.7.1FoswikiCSSHTML5
2025-07-26T20:19:38.519Z