Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

154209
Websites
130
Industries
113
Countries
52
Avg Score
Page 1931 of 3085|Showing 96501-96550 of 154209
knack.com favicon

Knack

knack.com

75
TechnologyUnited StatesmediumMEDIUM

Knack is a well-established no-code application development platform that enables businesses to build, automate, and scale operations without coding. The company offers a unified platform combining database management, workflow automation, forms, and front-end design, targeting a broad range of industries including government, non-profit, and technology sectors. With over 6,000 users and a medium-sized company profile, Knack positions itself as a leading SaaS provider in the no-code space. The website is professionally designed, content-rich, and optimized for SEO and mobile use, reflecting a mature digital presence. Technically, the website leverages WordPress CMS with modern frameworks like Bootstrap and integrates multiple analytics and marketing tools such as Google Analytics, Microsoft Clarity, HubSpot, and various ad networks. The site uses HTTPS with good SSL configuration and includes several security best practices, although some security headers could be improved. No critical vulnerabilities or exposed sensitive data were detected. From a security and compliance perspective, Knack provides comprehensive privacy and cookie policies with GDPR compliance indicators. However, the absence of WHOIS domain registration data raises concerns about domain transparency and trustworthiness, which slightly impacts the overall risk assessment. No explicit incident response or vulnerability disclosure information is publicly available. Overall, Knack presents a strong business and technical profile with a secure and user-friendly website. The main risk lies in the lack of publicly available domain registration details, which should be addressed to enhance trust. Strategic recommendations include improving security headers, publishing incident response contacts, and ensuring WHOIS transparency to bolster credibility.

30
83
47
85
85
85
100
no-codeappbuilderonlinedatabaseworkflowautomationbusinessoperations+3 more
WordPressjQueryBootstrapGoogle Tag Manager+6
2025-07-22T06:28:10.020Z
ubytovani-aktualne.cz favicon

ArtFocus

ubytovani-aktualne.cz

56
HospitalityCzech RepublicsmallMEDIUM

The website www.ubytovani-aktualne.cz operates as a Czech-language online catalog specializing in affordable accommodation options across the Czech Republic and select neighboring countries. It targets families and individual tourists seeking budget-friendly lodging such as cottages, pensions, hotels, and campsites. The platform offers categorized listings by region and type, last-minute deals, and travel tips, positioning itself as a niche regional hospitality directory. The business appears to be a small-scale operation, with web design and SEO services provided by ArtFocus since at least 2009. Technically, the site employs traditional web technologies including jQuery, jQuery UI, Font Awesome, and Google Analytics for tracking. While the site is functional with good content quality and navigation, it shows signs of dated technology and basic mobile optimization. Security posture is moderate with HTTPS implied but lacking visible security headers and formal privacy or cookie policies. No explicit contact or incident response information is provided, which limits transparency and compliance. Overall, the security posture is adequate for a small hospitality directory but could be improved by implementing modern security headers, enforcing HTTPS, and adding privacy and cookie policies. The absence of WHOIS registrant data due to privacy protection reduces trust signals but does not necessarily indicate malicious intent. The site content is family-friendly and safe, with no adult or questionable material detected. Strategic recommendations include enhancing security best practices, improving privacy compliance, adding clear contact and incident response channels, and modernizing the technical stack to improve performance and mobile experience.

20
10
17
70
85
75
100
accommodationtravelczechrepublictourismhotels+5 more
jQueryjQuery UIGoogle AnalyticsGoogle Tag Manager+1

Partner Domains:

letuska.cz
partner
artfocus.cz
partner
2025-07-22T06:27:44.634Z
S

Scena Performance

scenaperformance.com

45
OtherUnited StatessmallHIGH

Scena Performance is a small, specialized event organization company focused on trail running, triathlon, and endurance sports events primarily in Northern California and globally. The company operates a WordPress-based website that provides event information, registration links, and blog updates to its target audience of endurance athletes and sports enthusiasts. The business model centers on organizing and promoting endurance sports events ranging from 5K to 50K races and related festivals. The website demonstrates consistent branding and a good level of content quality, supporting its niche market position. Technically, the website uses a modern WordPress CMS with Bootstrap for responsive design, jQuery, and several marketing and analytics tools including Google Analytics and Facebook Pixel. The site is hosted likely via GoDaddy, with a valid SSL certificate ensuring HTTPS security. Performance is moderate with good mobile optimization and basic accessibility features. SEO is enhanced by Yoast SEO plugin and structured data (JSON-LD) implementation. From a security perspective, the site enforces HTTPS but lacks DNSSEC and explicit security headers, which are recommended for improved security posture. There is no visible security policy or incident response information, and cookie consent mechanisms are absent, indicating partial privacy compliance. Tracking scripts are present but without clear user consent mechanisms, which may pose compliance risks under GDPR. The domain WHOIS data is consistent with the business claims, showing a long-standing registration without privacy protection, supporting legitimacy. Overall, the website is functional, professional, and trustworthy for its business purpose but would benefit from enhanced security practices and privacy compliance improvements to reduce risk and increase user trust.

15
65
2
50
72
80
-
trailrunningenduranceeventssportstriathloneventmanagement+2 more
WordPressBootstrapjQueryGoogle Analytics+3
2025-07-22T06:27:24.498Z
H

H2VX

h2vx.com

45
TechnologyN/asmallHIGH

H2VX is a small technology-focused service provider specializing in data conversion services, specifically for contacts and events. The website is minimalistic, offering two main services accessible via subdirectories. The business appears to have been established in 2009, supported by a domain registration of the same age, indicating a stable presence in its niche market. However, the website lacks detailed business information, contact details, and compliance documentation, which limits its professional presentation and trustworthiness. Technically, the website is simple, built with basic HTML and CSS, hosted on DreamHost. There is no evidence of modern frameworks, CMS, or advanced technical features. Performance and mobile optimization are basic, and SEO is minimal due to lack of meta tags and structured data. No analytics or advertising technologies are detected, suggesting a low digital maturity level. From a security perspective, the site uses HTTPS but lacks DNSSEC and security headers, which reduces its security posture. No privacy or cookie policies are published, and no incident response or vulnerability disclosure information is available. The WHOIS data is consistent and trustworthy, with no privacy protection, indicating transparency in domain ownership. Overall, the website is functional but basic, with significant room for improvement in security, compliance, and business credibility. Strategic enhancements in privacy policies, security headers, and contact information would improve trust and compliance.

15
50
2
70
72
75
20
contactseventsconversiondataservice
HTMLCSS
2025-07-22T06:27:08.703Z
A

ASIN.cc

asin.cc

44
TechnologyN/asmallHIGH

ASIN.cc is a small technology-focused website offering a specialized utility service for shortening Amazon product links using ASIN or ISBN-10 codes. The service emphasizes computed shortlinks that are programmatically determinable, providing robustness over traditional database-stored shortlinks. The site targets Amazon shoppers, affiliate marketers, and developers who require concise Amazon URLs. The business model appears to be a free tool, potentially monetized through affiliate marketing or traffic generation. Technically, the website is built with basic HTML, CSS, and JavaScript, hosted on DreamHost. It uses no detected CMS or advanced frameworks. The site performs well with fast loading times but has only basic mobile optimization and accessibility features. SEO is minimal but sufficient for its niche purpose. No analytics or advertising scripts were detected, indicating minimal user tracking. From a security perspective, the site uses HTTPS but lacks DNSSEC and important security headers such as Content-Security-Policy and Strict-Transport-Security. There are no published privacy, cookie, or security policies, nor incident response or vulnerability disclosure information. The absence of contact information limits user trust and compliance with privacy regulations. The WHOIS data is consistent and indicates a legitimate domain with a long registration period. Overall, ASIN.cc is a functional niche utility with a moderate security posture and limited compliance maturity. Strategic improvements in security headers, privacy policies, and contact transparency would enhance trust and compliance.

15
35
2
70
62
75
20
amazonasinlinkshortenere-commerceutility
JavaScriptCSSHTML5
2025-07-22T06:27:03.680Z
xoxo.zone favicon

XOXO Zone

xoxo.zone

67
TechnologyIcelandsmallMEDIUM

XOXO Zone operates as a community-run Mastodon instance primarily serving attendees and speakers of the XOXO Festival, a cultural event held in Portland, Oregon. The platform facilitates social networking within the fediverse, leveraging the open-source Mastodon software. The website presents a niche social media service with a focused target audience, maintaining a small but active user base. The business model centers on community engagement rather than commercial monetization. Technically, the website is built on Mastodon version 4.4.1, utilizing React and modern JavaScript modules, hosted on DigitalOcean infrastructure with CDN support for media assets. The site demonstrates moderate performance and good mobile optimization, though accessibility and SEO optimizations are basic. The technical stack is modern and appropriate for a social networking platform of this scale. From a security perspective, the site enforces HTTPS and uses domain transfer protection, but lacks DNSSEC and several recommended security headers. No exposed sensitive data or vulnerable libraries were detected. Privacy compliance is partial, with a privacy policy present but no cookie consent mechanism or terms of service published. Contact information is limited to Mastodon user profiles and sign-in forms, with no direct company emails or phone numbers. Overall, XOXO Zone is a trustworthy and professionally maintained community platform with a clear niche focus. Security posture is adequate but could be improved with enhanced policies and technical controls. Privacy compliance requires attention to meet GDPR standards fully. Strategic recommendations include enabling DNSSEC, publishing terms of service, implementing cookie consent, and enhancing security headers to strengthen trust and compliance.

80
58
17
60
72
70
100
mastodonsocialnetworkcommunityxoxofestivalfediverse
Mastodon 4.4.1ReactJavaScript ES ModulesDigitalOcean Spaces CDN+1
2025-07-22T06:26:53.662Z
ladyada.net favicon

limor

ladyada.net

48
TechnologyN/asmallHIGH

The website ladyada.net is a personal or portfolio site focused on technical projects, research, and creative works. It serves as a showcase for various technical and artistic endeavors, targeting technology enthusiasts and makers. The site structure is based on classic HTML and JavaScript with interactive image maps but lacks modern web technologies and responsive design. The domain is well-established, created in 2005, and registered with NameCheap without privacy protection, indicating transparency and legitimacy. From a technical perspective, the site uses basic JavaScript and HTML without modern frameworks or CMS. Hosting is inferred to be behind Cloudflare DNS, but no advanced security headers or HTTPS enforcement are evident from the provided data. The site lacks privacy and cookie policies, contact information, and analytics or tracking scripts, suggesting minimal data collection and a low digital footprint. Security posture is weak due to absence of HTTPS enforcement, security headers, and formal privacy compliance. No forms or input fields are present to assess input security. The site content is safe for general audiences with no adult or questionable content detected. Overall, the site is functional but basic, with room for improvement in security, privacy compliance, and modern web practices. Recommendations include implementing HTTPS, adding security headers, publishing privacy and cookie policies, and providing contact and incident response information to enhance trust and compliance.

15
50
2
87
72
80
20
technologyportfolioresearchtechnicalprojectspersonalsite
JavaScriptHTMLCSS (implied)
2025-07-22T06:26:13.247Z
pbworks.com favicon

PBworks, Inc.

pbworks.com

59
TechnologyN/amediumMEDIUM

PBworks, Inc. operates a SaaS-based online team collaboration platform that enables teams to capture knowledge, share files, and manage projects securely and reliably. The company targets a broad audience including businesses, agencies, legal firms, and educational institutions, offering specialized hubs tailored to these sectors. The website presents a professional image with clear navigation and comprehensive service descriptions, positioning PBworks as an established player in the collaboration software market. Technically, the website is built using Adobe Muse with jQuery and RequireJS, and integrates Google Analytics for user tracking. While the site is accessible and functional, it uses an outdated jQuery version and lacks modern security headers, indicating room for technical modernization and improved security hardening. Mobile optimization and accessibility are basic but functional. From a security perspective, the site implements cookie consent and privacy policies aligned with GDPR, but lacks publicly visible incident response or vulnerability disclosure policies. The absence of WHOIS data for the domain is a concern, as it reduces transparency and trustworthiness. No WAF or blocking mechanisms were detected, and the content is safe and business-focused. Overall, PBworks demonstrates a solid business and technical foundation but should address security best practices and domain transparency to enhance trust and compliance. Strategic improvements in security headers, updated libraries, and public security policies are recommended.

15
80
2
60
67
75
100
projectmanagementcollaborationwikiknowledgebasefilesharing+1 more
jQuery 1.8.3RequireJSGoogle AnalyticsMuse framework scripts

Partner Domains:

dokkio.com
partner
2025-07-22T06:26:08.235Z
M

Micropub Rocks!

micropub.rocks

47
TechnologyN/asmallHIGH

Micropub Rocks! is a specialized online validator tool designed to assist developers and implementers in testing their Micropub client and server implementations. The website provides various testing capabilities and publishes implementation reports, targeting a niche audience within the IndieWeb and Micropub community. The business model is based on offering an open source, freely accessible validation service, with no evident commercial monetization or advertising. The site is small in scale and founded around 2016, consistent with the domain registration date. Technically, the website uses a straightforward technology stack including HTML5, CSS with Semantic UI, and JavaScript with jQuery. Hosting is provided by Linode, a reputable VPS provider. The site is moderately optimized for mobile and performance, with basic accessibility and SEO features. The code is open source and publicly available on GitHub, enhancing transparency. From a security perspective, the site lacks several modern security best practices such as DNSSEC, security headers, and visible SSL/TLS configuration details. The domain is privacy protected, which is reasonable for a small open source project. The site uses an email-based sign-in mechanism with a simple anti-bot field to facilitate authorization testing without complex authentication flows. No privacy or cookie policies are present, which is a compliance gap. No incident response or vulnerability disclosure information is provided. Overall, the website is functional and trustworthy within its niche but would benefit from improved security hardening and privacy compliance. The risk level is low given the nature of the site and its limited data collection. Strategic improvements in security headers, DNSSEC, and privacy documentation would enhance trust and compliance.

20
50
2
70
52
70
40
micropubvalidatoropensourcetechnologydevelopertools
HTML5CSS (Semantic UI)JavaScriptjQuery
2025-07-22T06:25:58.212Z
W

Webmention Rocks!

webmention.rocks

44
TechnologyIcelandsmallHIGH

Webmention Rocks! is a niche technical website providing a validator and test suite for the Webmention protocol, primarily targeting developers and implementers within the IndieWeb and web standards communities. The site offers a variety of tests for endpoint discovery, updates, deletes, and receiver functionality, and encourages users to submit implementation reports to the W3C. It is open source and hosted on Linode, with a domain registered in 2016 and privacy protection enabled. From a technical perspective, the website uses a classic web stack including jQuery 1.11.3 and Semantic UI for styling and interactivity. The site is moderately performant, mobile optimized, and has a clear navigation structure. However, accessibility and SEO optimizations are basic. No CMS is detected, indicating a custom or static site. Security posture is moderate; the domain uses clientTransferProhibited status to prevent unauthorized transfers but lacks DNSSEC and visible security headers. No privacy or cookie policies are present, and no contact information is provided for security incidents or general inquiries. There are no signs of vulnerabilities or malicious content, and the site content is safe for general audiences. Overall, the website is a credible and useful tool within its niche but would benefit from improved security practices, privacy compliance, and contact transparency to enhance trust and compliance.

15
50
2
60
42
70
40
webmentionvalidatoropensourcewebstandardsdevelopertool
jQuery 1.11.3Semantic UIHTML5CSS3+1
2025-07-22T06:25:53.204Z
M

Micropub

micropub.net

45
TechnologyN/asmallHIGH

Micropub.net serves as an informational website dedicated to the Micropub open API standard, which enables users to create posts on their own domains using third-party clients. The site primarily targets developers and members of the IndieWeb community interested in decentralized social web publishing. It provides links to the official specification, test suites, and implementation reports, positioning itself as a niche resource within the technology standards space. The website is simple and content-focused, reflecting its role as a documentation and community resource rather than a commercial entity. From a technical perspective, the site is hosted on Linode with domain registration through NameCheap, Inc. The technology stack is minimal, consisting of static HTML and CSS without advanced frameworks or CMS platforms. Performance and mobile optimization are basic but adequate for the site's purpose. SEO and accessibility features are minimal but sufficient given the limited scope of content. Security posture is moderate but could be improved. The site lacks DNSSEC, security headers, and privacy or cookie policies, which are important for compliance and user trust. No contact or incident response information is provided, limiting transparency in security matters. The domain is well aged and registered without privacy protection, which aligns with the open and community-driven nature of the project, supporting legitimacy. Overall, micropub.net is a trustworthy and safe resource for its intended audience but would benefit from enhanced security practices and compliance documentation to improve user trust and meet modern web standards.

15
50
2
60
52
70
40
apiopenstandardindiewebw3cmicropub+1 more
HTML5CSS3
2025-07-22T06:25:37.742Z
W

Webmention

webmention.net

43
TechnologyN/asmallHIGH

Webmention.net serves as an informational hub for the Webmention protocol, a W3C Social Web Working Group specification contributed by the IndieWeb community. The site provides links to the latest published versions, drafts, and implementations of the protocol, targeting developers and web technologists interested in decentralized social web standards. The website is minimalistic, focusing on content delivery rather than commercial services or user engagement features. Technically, the site is hosted on Linode with domain registration through NameCheap, indicating a stable and reputable infrastructure. The technology stack is basic, consisting primarily of HTML and CSS, with no detected CMS or advanced frameworks. Performance and mobile optimization are moderate to basic, reflecting the simple nature of the site. From a security perspective, the site lacks advanced security headers, privacy policies, cookie consent mechanisms, and contact information for incident response. DNSSEC is not enabled, which is a recommended improvement for domain security. No analytics or tracking technologies are present, which reduces privacy concerns but also limits business intelligence capabilities. Overall, the website is safe and trustworthy for its intended audience but would benefit from enhanced security practices, privacy compliance documentation, and improved technical sophistication to better serve its community and maintain trust.

15
40
17
60
42
70
40
webmentionw3cindiewebwebprotocolsocialweb
HTML5CSS
2025-07-22T06:25:32.694Z
O

Okta, Inc.

oauth2simplified.com

51
TechnologyUnited StatessmallMEDIUM

OAuth2Simplified.com is a specialized educational website dedicated to providing comprehensive guidance on building OAuth 2.0 servers. The site offers a variety of resources including a well-regarded book authored by Aaron Parecki, online courses on OAuth and advanced security topics, and related merchandise. The business is positioned as a niche authority in the OAuth and API security space, targeting developers, architects, and technical professionals interested in secure API authorization frameworks. The site is published by Okta, Inc., a recognized leader in identity and access management, lending strong credibility to the content and offerings. Technically, the website is well-constructed with modern HTML5 and CSS, uses reputable third-party services such as MailChimp for email marketing and Fathom Analytics for privacy-focused analytics, and is hosted on Linode, a reliable cloud provider. The site is mobile optimized and demonstrates good SEO and accessibility practices. Security posture is solid with HTTPS enforced and no visible vulnerabilities, though it lacks some security headers and formal privacy and cookie policies, which are areas for improvement. No contact emails or phone numbers are explicitly provided, which may impact user trust and compliance. Overall, the website is professional, trustworthy, and serves as a valuable resource in its domain, but would benefit from enhanced privacy compliance and security policy disclosures.

15
35
2
85
72
80
40
oauthoauth20securityapiauthorization+3 more
HTML5CSSGoogle FontsMailChimp (email signup form)+1
2025-07-22T06:25:27.684Z
B

Backpedal TV

backpedal.tv

44
MediaUnited StatessmallHIGH

Backpedal TV is a small, specialized media service provider based in Portland, Oregon, offering video recording and live streaming services primarily for conferences, meetups, and events. The company has been operating since 2016 and targets event organizers and corporate clients in the local area. Their website reflects a professional and consistent brand with clear descriptions of their key services and client testimonials, positioning them as a trusted niche provider in the media services sector. Technically, the website uses a modern but simple technology stack including jQuery and Semantic UI, hosted on Linode. The site is moderately optimized for mobile and performance, with basic SEO and accessibility features. Google Analytics is used for user tracking, but there is no evidence of advanced privacy compliance mechanisms such as cookie consent banners or privacy policies. From a security perspective, the site lacks important security headers and DNSSEC is not enabled, which could be improved to enhance security posture. No critical vulnerabilities or exposed sensitive data were detected. The domain registration is consistent and legitimate, with a long registration period and matching geographic information. However, the absence of privacy and cookie policies indicates compliance gaps that should be addressed. Overall, the website is functional and professional but would benefit from enhanced security and privacy compliance measures to improve trust and reduce risk. Strategic improvements in these areas will support the company’s credibility and protect user data effectively.

15
35
2
60
52
75
40
livestreamingvideorecordingeventsconferencesmeetups+2 more
jQuery 3.1.0Semantic UI 2.2.6Google Analytics
2025-07-22T06:25:22.634Z
venmo.com favicon

Venmo

venmo.com

75
FinanceUnited StateslargeMEDIUM

Venmo is a well-established mobile payment platform founded in 2008 and currently operating as a subsidiary of PayPal Holdings, Inc. It offers peer-to-peer payment services, enabling users to manage balances, send and receive money, and split bills seamlessly. The website reflects Venmo's strong market position as a leading social payments app in the United States, targeting consumers who prefer mobile and social payment solutions. The business model focuses on facilitating easy and social financial transactions among friends and networks. Technically, the website is built using modern frameworks such as React and Gatsby, hosted on AWS infrastructure, and integrates analytics tools like Google Analytics and mParticle for data-driven insights. The site is optimized for performance, mobile responsiveness, and accessibility, providing an excellent user experience. SEO practices are well implemented with comprehensive meta tags and structured data. From a security perspective, Venmo enforces HTTPS, employs multiple security headers, and uses domain registration protections to safeguard its digital presence. However, DNSSEC is not enabled, and there is no public security.txt or explicit incident response contact information, which are areas for improvement. Privacy compliance is strong with clear policies and consent mechanisms, aligning with GDPR requirements. Overall, Venmo's website demonstrates a high level of professionalism, security, and compliance, supporting its credibility and trustworthiness in the financial technology sector. Strategic recommendations include enabling DNSSEC, publishing vulnerability disclosure information, and enhancing incident response transparency to further strengthen security posture.

50
85
30
82
82
85
100
paymentsmobilepaymentssocialpaymentsfinancepeer-to-peer+1 more
ReactGatsbyGoogle AnalyticsmParticle+1

Partner Domains:

paypal.com
parent
2025-07-22T06:25:12.580Z
A

Aaron Parecki

aaronpk.tv

46
MediaN/asmallHIGH

Aaron Parecki operates a personal brand website focused on livestreaming tutorials, gear reviews, and consulting services. The site targets livestreaming enthusiasts and professionals seeking expert advice and educational content. The business model combines content creation with paid consulting and affiliate marketing, positioning Aaron Parecki as a niche expert in the media space. The website is well-branded, content-rich, and supported by active social media channels, enhancing its market presence. Technically, the website is built using standard web technologies including HTML5, CSS3, JavaScript, and jQuery, hosted on Linode infrastructure. The design is responsive and user-friendly, with embedded video content and calendar integration. Analytics are handled via privacy-focused Fathom Analytics, indicating a moderate level of digital maturity. However, the site lacks CMS usage and some modern security headers, which could be improved. From a security perspective, the site uses HTTPS and avoids exposing sensitive data. The domain is privacy protected but consistent with a personal brand site. No security or incident response policies are published, and no cookie or privacy policies are present, representing compliance gaps. DNSSEC is not enabled, and security headers are missing, suggesting room for security posture enhancement. Overall, the website is trustworthy, professional, and safe for general audiences. Strategic improvements in privacy compliance, security headers, and formal policies would strengthen its security and regulatory posture, supporting long-term business credibility and user trust.

15
35
2
70
62
65
40
livestreamtutorialsvideoconsultingmedia+1 more
HTML5CSS3JavaScriptjQuery+1

Partner Domains:

photojoseph.com
partner
heretorecord.com
partner

+2 more partners

2025-07-22T06:24:27.451Z
O

OAuth Community Site

oauth.net

48
TechnologyN/asmallHIGH

OAuth.net is a well-established community and informational website dedicated to the OAuth open protocol, which enables secure authorization for web, mobile, and desktop applications. Founded in 2007, the site serves developers and API providers by offering specifications, code samples, articles, videos, events, and security guidance. The website positions itself as an authoritative resource in the technology sector, focusing on OAuth 2.0 and related standards. Its business model revolves around community engagement and educational content rather than direct commercial services. Technically, the site uses a straightforward stack including Bootstrap for styling, jQuery for scripting, and integrates privacy-conscious tools such as Fathom Analytics and EthicalAds for advertising. The site is mobile-optimized and provides a good user experience with clear navigation and relevant content. Hosting appears stable with NameCheap as the registrar, though no CMS or advanced hosting details are evident. From a security perspective, the site enforces HTTPS and avoids collecting sensitive user data, which reduces risk. However, it lacks important security headers and formal policies such as privacy, cookie, and incident response disclosures. No contact information or vulnerability disclosure mechanisms are provided, which could hinder trust and compliance. The domain registration is consistent and long-standing, supporting legitimacy. Overall, OAuth.net is a credible and professional resource with good content quality and technical implementation. To improve, it should implement formal privacy and cookie policies, add security headers, and provide clear contact and security incident channels to enhance compliance and trustworthiness.

15
35
2
70
72
70
40
oauthauthorizationsecurityopenprotocolapi+1 more
Bootstrap CSSjQuery 3.2.1 slimFathom AnalyticsEthicalAds+1
2025-07-22T06:24:22.430Z
husitskemuzeum.cz favicon

Husitské muzeum v Táboře

husitskemuzeum.cz

57
OtherCzech RepublicsmallMEDIUM

Husitské muzeum v Táboře is a cultural institution focused on presenting historical and educational content related to the Hussite movement and medieval history in the Czech Republic. The website serves as an information portal for museum exhibitions, educational programs, and cultural events, targeting general visitors and history enthusiasts. The site is multilingual, primarily in Czech with English support, and provides detailed event information and partner references. Technically, the website is built on WordPress with a variety of plugins for multilingual support, GDPR compliance, and user engagement. It uses standard web technologies including jQuery, Google Fonts, Google Analytics, and Facebook SDK. The site is served over HTTPS, ensuring secure communication, but uses an outdated jQuery version which may pose security risks. The site has moderate performance and basic mobile optimization. From a security perspective, the site implements GDPR-compliant cookie consent mechanisms and uses HTTPS. However, it lacks advanced security headers and uses an outdated JavaScript library version. No explicit security policies, incident response contacts, or vulnerability disclosure mechanisms are found. WHOIS data is unavailable, limiting domain legitimacy verification. Overall, the website is professionally maintained with good content quality and user experience. The main risks relate to outdated libraries and lack of visible security policies. Strategic improvements in security headers, library updates, and enhanced contact transparency would strengthen the site's security posture and trustworthiness.

20
25
2
70
85
75
100
museumhistorycultureeducationczechrepublic+4 more
jQuery 1.7.2Google Fonts (Roboto Condensed, Open Sans)Google AnalyticsFacebook SDK+7
2025-07-22T05:23:39.265Z
vsers.cz favicon

Vysoká škola evropských a regionálních studií

vsers.cz

59
EducationCzech RepublicsmallMEDIUM

Vysoká škola evropských a regionálních studií (VŠERS) is a Czech higher education institution specializing in regional and European studies, offering bachelor's degree programs primarily in Security and Legal Activities and Public Administration. The institution targets prospective students in the Czech Republic, providing educational services, lifelong learning, and research activities. The website reflects a well-established educational entity with a domain registered since 2003, consistent with its business claims. Technically, the website is built on WordPress 6.8.2, utilizing popular plugins such as Slider Revolution and SiteOrigin Panels, and employs modern web technologies including jQuery and Font Awesome. The site is hosted under a Czech registrar with appropriate DNS configurations. Performance is moderate with good mobile optimization and basic accessibility features. From a security perspective, the site enforces HTTPS, includes some security headers, and does not expose sensitive data. Privacy compliance is strong, with a clear privacy policy and cookie consent mechanism aligned with GDPR requirements. No critical vulnerabilities or security incidents were detected. Overall, the website demonstrates a solid risk posture with no blocking WAF or security challenges, making it accessible and trustworthy. Strategic recommendations include enhancing security headers and maintaining up-to-date software to mitigate emerging threats.

15
25
17
90
62
80
100
educationuniversityhighereducationczechrepublicregionalstudies+2 more
WordPress 6.8.2PHPjQuerySlider Revolution plugin+3

Partner Domains:

stredniskola.cz
partner
2025-07-22T05:23:34.226Z
vstecb.cz favicon

Vysoká škola technická a ekonomická v Českých Budějovicích

vstecb.cz

53
EducationCzech RepublicmediumMEDIUM

Vysoká škola technická a ekonomická v Českých Budějovicích (VŠTE) is a public higher education institution located in the Czech Republic, specializing in technical and economic disciplines. The university distinguishes itself by a strong emphasis on practical education, offering accredited bachelor and master degree programs. It serves students primarily from the Czech Republic and international students through exchange programs. The institution maintains a medium-sized presence with various subsidiaries including a basic and nursery school, sports clubs, and student organizations. The website reflects a professional and well-structured digital presence with comprehensive information about academic programs, admissions, and student services. Technically, the website is built on WordPress CMS with modern plugins such as Yoast SEO, WPBakery Page Builder, and Cookiebot for cookie consent management. It uses Bootstrap for responsive design and integrates Google Analytics and Facebook Pixel for analytics and marketing. The site is mobile-optimized and accessible, with clear navigation and ARIA attributes enhancing usability. Performance is moderate, with room for optimization. From a security perspective, the site enforces HTTPS and implements cookie consent mechanisms, but lacks explicit security headers and a public security policy or incident response information. No vulnerabilities or exposed sensitive data were detected in the HTML content. The absence of WHOIS data limits domain registration trust verification, but the website content and official contact details support legitimacy. Overall, VŠTE's website is a reliable and professional digital asset supporting its educational mission. Strategic improvements in security headers, incident response transparency, and WHOIS data availability would enhance trust and compliance. The site is safe for general audiences with no adult or questionable content detected.

15
25
2
70
67
60
100
educationuniversityhighereducationczechrepublictechnicalschool+5 more
WordPress 5.8.3Yoast SEO pluginWPBakery Page BuilderMasterSlider+5

Partner Domains:

is.vstecb.cz
partner
shop.vstecb.cz
partner

+2 more partners

2025-07-22T05:23:19.126Z
ref-bl.ch favicon

Evangelisch-reformierte Kirche Basel-Landschaft

ref-bl.ch

67
GovernmentSwitzerlandmediumMEDIUM

The Evangelisch-reformierte Kirche Basel-Landschaft operates a professional and well-structured website serving its community in Basel-Landschaft, Switzerland. The site provides comprehensive information about church services, community engagement, and social support, targeting members and prospective members of the regional church. The organization positions itself as a key religious and non-profit entity in the region, with clear branding and consistent messaging. Technically, the website employs modern web technologies including UIkit, jQuery, and FontAwesome, supported by a CloudTec CMS platform. It integrates privacy-conscious analytics via Matomo and implements a robust cookie consent mechanism through Cookiebot, reflecting a mature digital infrastructure. The site is mobile-optimized and SEO-friendly, though some accessibility improvements could be made. From a security perspective, the website enforces HTTPS and uses a Content-Security-Policy header, ensuring a good baseline security posture. However, additional security headers and explicit incident response information are absent. No vulnerabilities or exposed sensitive data were detected. Privacy compliance is strong, with a detailed GDPR-compliant privacy policy and user consent mechanisms. Overall, the website is trustworthy, professionally maintained, and aligned with the organization's mission. Strategic enhancements in security headers, incident response transparency, and accessibility would further strengthen its posture.

65
83
2
60
62
80
100
HTML5CSS3JavaScriptCookiebot+3
2025-07-22T05:23:14.095Z
I

Inspiring Workplaces Group Limited

inspiring-workplaces.com

64
OtherN/amediumMEDIUM

Inspiring Workplaces Group Limited operates a professional website focused on promoting PeopleFirst workplace cultures globally. The company offers awards programs, certification services, content resources, and community events to support organizations in building and celebrating positive workplace environments. The website positions itself as a global community and certification authority in this niche, targeting HR professionals and organizations committed to employee engagement and culture excellence. Technically, the website is built on WordPress with modern technologies including Laravel Livewire, Alpine.js, and integrates Google Analytics, Google Tag Manager, Stripe for payments, and Mailchimp for marketing. The site is hosted behind Cloudflare DNS and CDN services, ensuring good performance and availability. Security posture is solid with HTTPS enforced and domain protection flags set, but lacks advanced security headers and DNSSEC. Privacy compliance is partial, with a privacy policy and terms of service present but no cookie consent mechanism or explicit GDPR compliance indicators. Contact information is limited to contact forms and social media links, with no direct emails or phone numbers published. Overall, the website is professional, trustworthy, and well-maintained, serving a medium-sized business with a clear market position in workplace culture certification and community engagement.

90
53
2
55
65
65
100
peoplefirstworkplacecultureawardscertificationcommunity+4 more
Google AnalyticsGoogle Tag ManagerStripeMailchimp+3

Partner Domains:

huler.io
partner
kudos.com
partner

+3 more partners

2025-07-22T05:21:53.292Z
uniconsent.com favicon

Transfon Ltd

uniconsent.com

74
TechnologyN/amediumMEDIUM

UniConsent, operated by Transfon Ltd, is a specialized Consent Management Platform (CMP) focused on helping digital publishers, SaaS providers, marketers, and e-commerce businesses comply with global privacy regulations such as GDPR, CCPA, and LGPD. The platform is IAB TCF 2.2 certified and integrates with major advertising and analytics technologies including Google Consent Mode and Prebid.js. UniConsent positions itself as a leading CMP trusted by over 5000 global clients, offering comprehensive consent lifecycle management, cookie scanning, and customizable user interfaces. Technically, the website is built using modern web technologies including Next.js and Tailwind CSS, with integrations for Google Tag Manager and analytics. The platform supports multiple device platforms including web and mobile (iOS, Android, Flutter). The site demonstrates excellent performance, mobile optimization, and SEO practices, reflecting a mature digital infrastructure. From a security perspective, the site enforces HTTPS and implements consent management best practices. However, it lacks explicit security headers and published security policies or incident response contacts, which are areas for improvement. The absence of WHOIS data for the domain raises some concerns about domain registration transparency, although the business information and certifications support legitimacy. Overall, UniConsent presents a professional, trustworthy, and technically sound CMP solution with strong privacy compliance features. Strategic recommendations include enhancing security header implementation, publishing a formal security policy, and clarifying domain registration details to improve trust and compliance posture.

30
95
47
85
75
80
100
consentmanagementgdprccpaprivacycomplianceiabtcf+3 more
JavaScriptReact (implied by Next.js usage)Next.jsGoogle Tag Manager+6

Partner Domains:

www.transfon.com
parent
2025-07-22T05:21:23.101Z