Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157327
Websites
130
Industries
113
Countries
52
Avg Score
Page 198 of 800|Showing 9851-9900 of 39982
crop.guide favicon

CropGuide B.V.

crop.guide

59
TechnologyN/asmallMEDIUM

CropGuide B.V. operates a specialized SaaS platform providing image cropping and editing tools that integrate seamlessly with popular NoCode platforms and JavaScript libraries. The service targets website owners and developers seeking to improve user-uploaded photo quality by enabling client-side cropping, resizing, and orientation correction. The website is professionally designed, mobile-optimized, and offers clear navigation with demos and detailed documentation, positioning CropGuide as a niche but trusted player in the image editing technology market. Technically, the website employs modern web technologies including JavaScript, CSS3, and HTML5, with integrations for Crisp chat and Simple Analytics for user engagement and minimal tracking. The platform emphasizes privacy by performing all image processing client-side, ensuring no image data is transmitted to CropGuide servers. Performance is fast, and the site is accessible across modern browsers and devices. From a security perspective, the site enforces HTTPS and avoids exposing sensitive data. However, it lacks explicit security headers and a published security policy or incident response plan. No vulnerability disclosure or security.txt file is present, and cookie consent mechanisms are absent, which may impact compliance. The WHOIS data is unavailable due to TLD restrictions, but the website's professional presentation and trust signals mitigate concerns about legitimacy. Overall, CropGuide demonstrates a strong business and technical foundation with room for improvement in formal security policies and privacy compliance mechanisms. Strategic enhancements in these areas would further strengthen trust and regulatory adherence.

25
53
2
65
57
85
100
imagecroppingsaasphotoeditingnocodeintegrationjavascriptlibrary+1 more
JavaScriptHTML5CSS3Crisp chat widget+1
2025-10-18T10:34:24.484Z
alpa.cz favicon

ALPA, a.s.

alpa.cz

49
RetailCzech RepublicmediumHIGH

ALPA, a.s. is a Czech company specializing in natural cosmetic products with a heritage spanning over 100 years. Their product portfolio includes massage products, embrocations, preparations for athletes, children's cosmetics, and other personal care items. The company targets general consumers, families, and athletes seeking traditional and natural health and cosmetic solutions. The website reflects a well-established brand with consistent messaging and a good level of professionalism. Technically, the website is built on the xartCMS platform, utilizing JavaScript libraries such as MooTools and jQuery for interactive features. Google Tag Manager is implemented for analytics and marketing purposes. The site is mobile-optimized with good SEO practices, though some accessibility features could be improved. Performance is moderate, with room for optimization. From a security perspective, the site enforces HTTPS and includes a GDPR-compliant cookie consent mechanism. However, it lacks important security headers and does not provide visible incident response or vulnerability disclosure information. The absence of WHOIS data reduces transparency but does not necessarily indicate malicious intent given the brand's established presence. Overall, the website presents a trustworthy and professional front for ALPA, a.s., with minor technical and security improvements recommended to enhance compliance and user trust.

15
25
17
70
85
80
20
cosmeticsnaturalproductsmassagehealthchildren+3 more
JavaScriptMooToolsjQuery (Magnific Popup)Google Tag Manager
2025-10-18T10:33:24.330Z
peckadesign.cz favicon

PeckaDesign

peckadesign.cz

57
E-commerceCzech RepublicmediumMEDIUM

PeckaDesign is a well-established Czech company specializing in custom e-commerce solutions for large market players, boasting 25 years of experience. Their services encompass bespoke e-shop development, omnichannel strategies, UX research, frontend coding, mobile applications, and consulting. The company targets leading e-commerce businesses in the Czech and Slovak markets, positioning itself as a trusted partner with a strong portfolio of references and awards. Technically, the website employs modern JavaScript technologies, including New Relic for performance monitoring and Google Tag Manager for analytics, reflecting a mature digital infrastructure. The site is mobile-optimized, accessible, and professionally designed, providing a positive user experience. Security-wise, the site uses HTTPS and cookie consent mechanisms but lacks explicit security headers and published privacy or terms policies, which are areas for improvement. The absence of WHOIS data for the domain raises concerns about domain registration transparency, although the website content and branding are professional and trustworthy. Overall, the site demonstrates solid business credibility and technical implementation but would benefit from enhanced security and compliance documentation.

85
40
2
85
72
75
20
e-commercecustomdevelopmentuxdesignconsultingtechnology+3 more
JavaScriptNew Relic Browser monitoringGoogle Tag ManagerGoogle Analytics (gtag)+1
2025-10-18T09:32:02.198Z
german-brand-award.com favicon

Rat für Formgebung – German Design Council

german-brand-award.com

58
MediaGermanymediumMEDIUM

The German Brand Award website represents a well-established branding award platform operated by the Rat für Formgebung – German Design Council. It targets marketing professionals and companies seeking recognition for brand excellence. The site offers comprehensive information about the award, jury, events, and participation benefits, positioning itself as a reputable and professional entity in the branding and marketing sector. The business model revolves around organizing award competitions, hosting award shows, and facilitating networking events to promote brand success. Technically, the website is built on the TYPO3 CMS platform, leveraging modern JavaScript libraries such as Swiper.js and integrating analytics and marketing tools including Google Tag Manager, Google Analytics, Hotjar, and Criteo. The site is mobile-optimized, accessible, and SEO-friendly, with a professional design and clear navigation. Hosting appears to be supported by Cloudflare as a CDN, enhancing performance and security. From a security perspective, the website enforces HTTPS and employs a cookie consent mechanism compliant with GDPR. However, explicit security headers like Content-Security-Policy and X-Frame-Options are not visibly implemented, and no dedicated security policy or incident response contact information is provided. The absence of WHOIS registration data for the domain is a notable concern, potentially indicating privacy protection or registration issues, which slightly reduces the overall trustworthiness. Overall, the website demonstrates a strong digital presence and business credibility, with room for improvement in security transparency and domain registration clarity. Strategic recommendations include implementing explicit security headers, publishing a security policy, and verifying domain registration details to enhance trust and compliance.

40
80
2
40
52
70
100
marketingawardbrandawardgermandesigncouncilbrandingevent+1 more
TYPO3 CMSJavaScriptCSSGoogle Tag Manager+2

Partner Domains:

www.german-design-council.de
partner
2025-10-18T09:31:12.045Z
kifdom.com favicon

Ranxplorer

kifdom.com

52
TechnologyFrancesmallMEDIUM

KifDom is a French niche marketplace specializing in the acquisition and resale of expired .fr domain names, targeting SEO professionals and domain investors. The website is professionally designed, mobile-optimized, and provides clear navigation with comprehensive domain listings, auctions, and immediate purchase options. The business is operated by Ranxplorer, a company accredited by AFNIC since 2014, indicating a stable market presence. Technically, the site uses modern frontend technologies including Bootstrap, Tailwind CSS, and Google Tag Manager, with HTTPS enforced for secure communications. Security measures include CSRF protection and session management, though some standard security headers are not explicitly detected. Privacy compliance is addressed with a cookie consent mechanism and a privacy policy in French, consistent with GDPR requirements. Contact is primarily via a web form, with no direct emails or phone numbers publicly listed. WHOIS data for the domain is unavailable or shows no match, which raises minor concerns about domain registration transparency but does not detract significantly from the site's legitimacy. Overall, KifDom presents a trustworthy and functional platform for expired domain transactions in the French market.

50
65
2
55
52
80
40
expireddomainsseodomainauctionsfrenchdomainsdomainmarketplace
JavaScriptApexChartsGoogle Tag ManagerSweetAlert2+4

Partner Domains:

ranxplorer.com
partner
xn--russir-en-b4a.fr
partner

+1 more partners

2025-10-18T09:30:36.968Z
E

European Space Agency

esa.int

65
GovernmentEuropelargeMEDIUM

The European Space Agency (ESA) is a well-established intergovernmental organization dedicated to space exploration, science, and technology development in Europe. The website www.esa.int serves as the official portal providing comprehensive information about ESA's missions, news, educational resources, and multimedia content. It targets a broad audience including the general public, researchers, students, and media professionals. The site demonstrates a high level of professionalism, with consistent branding and rich, relevant content that is regularly updated. Technically, the website employs modern web technologies including jQuery, FontAwesome, and Matomo analytics for user tracking. It uses HTTPS with strong SSL configuration and includes cookie consent mechanisms, indicating good privacy practices. The site is mobile-optimized and performs well with fast loading times and clear navigation. From a security perspective, the site follows best practices such as HTTPS enforcement and cookie consent but lacks explicit published security policies, incident response information, or vulnerability disclosure mechanisms. No critical vulnerabilities or exposed sensitive data were detected. The domain WHOIS data confirms the legitimacy and long-standing presence of ESA, enhancing trustworthiness. Overall, the website is a reliable and authoritative source for space-related information from ESA, with strong business credibility and good technical and privacy compliance. Strategic improvements could include publishing detailed security policies and incident response contacts to further enhance transparency and trust.

25
68
25
70
67
80
100
spacescienceexplorationesaeuropeanspaceagency+5 more
jQuery 2.2.4Matomo AnalyticsFontAwesomeCSS stylesheets+1
2025-10-18T09:25:23.664Z
iocbtech.cz favicon

IOCB Tech s.r.o.

iocbtech.cz

44
HealthcareCzech RepublicsmallHIGH

IOCB Tech s.r.o. is a Czech-based technology transfer company specializing in transforming scientific research from the Institute of Organic Chemistry and Biochemistry (IOCB) into commercially viable products, primarily in the healthcare and pharmaceutical sectors. The company has a strong market position supported by partnerships with major pharmaceutical firms such as Gilead Sciences, Merck, and Novo Nordisk. Their business model focuses on licensing, intellectual property management, and project development to bring innovations to market. The website reflects a professional and credible presence with clear descriptions of their services and success stories. Technically, the website employs modern frontend technologies including Bootstrap and jQuery, with responsive design and moderate performance. The site is hosted likely via the registrar Active24, with no CMS detected, indicating a custom-built platform. SEO and accessibility are adequately addressed, though some improvements could be made. From a security perspective, the site uses HTTPS and avoids exposing sensitive data. However, it lacks visible security headers, privacy and cookie policies, and a vulnerability disclosure mechanism. Google Analytics is used without an explicit cookie consent banner, indicating partial privacy compliance. No forms or input fields are present on the main pages, reducing attack surface but also limiting user interaction. Overall, the website is trustworthy and professional but would benefit from enhanced privacy compliance and security best practices to align with GDPR and modern security standards. Strategic improvements in these areas would strengthen user trust and regulatory adherence.

35
10
2
65
75
70
20
technologyhealthcareresearchpharmaceuticalbiotech+2 more
JavaScriptBootstrap 5.3.3jQuery 3.7.1Dotdotdot.js
2025-10-18T09:24:17.335Z
igeco.mx favicon

Italian German Exhibition Company Mexico

igeco.mx

47
EnergyMexicomediumHIGH

IGECO Mexico is a medium-sized event organization company specializing in industrial transformation, environmental technology, and energy sector trade fairs primarily in Mexico and Latin America. The company organizes key events such as Industrial Transformation Mexico, Americas’ Mobility of the Future, and RE+ Mexico, positioning itself as a leading promoter of industrial and environmental innovation events with strong international partnerships. The website reflects a professional and consistent brand image with good content quality and clear navigation, targeting industrial and energy sector professionals. Technically, the website is built using the Astro framework, leveraging modern web technologies with good performance and mobile optimization. The site is well-structured with valid HTML and CSS, though it lacks some advanced accessibility features. Security posture is strong with HTTPS enforced and standard security headers present, and no visible vulnerabilities or exposed sensitive data were detected. However, the site lacks a cookie policy and consent mechanism, terms of service, and published security or incident response policies, which are important for compliance and trust. Contact information is limited to an email and physical address, with no phone numbers or social media links explicitly provided. WHOIS data confirms the legitimacy and consistency of the domain registration with the business claims. Overall, the website is professional and trustworthy but would benefit from enhanced privacy compliance and security transparency to improve user trust and regulatory adherence.

15
35
17
75
72
85
-
industrialeventstradefairsenergyenvironment+3 more
Astro v5.8.0JavaScriptCSSHTML5

Partner Domains:

industrialtransformation.mx
partner
amofexpo.igeco.mx
partner

+3 more partners

2025-10-18T08:18:39.010Z
strap-bjj.com favicon

STRAP BJJ

strap-bjj.com

56
OtherN/asmallMEDIUM

Strap BJJ is a small business focused on providing a Brazilian Jiu-Jitsu mobile application available on both iOS and Android platforms. The website serves primarily as a landing page to promote app downloads and partnership opportunities. The business targets BJJ practitioners and enthusiasts, positioning itself in a niche sports app market. The website content is minimal but functional, with basic branding and contact information limited to an email address. Technically, the website is built using modern web technologies including Next.js and React, indicating a contemporary development approach. The site is mobile-optimized and loads with moderate performance, though SEO and accessibility features are basic. There is no detected CMS or hosting provider information. The absence of security headers and lack of HTTPS configuration details suggest room for improvement in security hardening. From a security perspective, the site lacks visible security policies, incident response information, and cookie consent mechanisms. The WHOIS data is missing or unavailable, which raises concerns about domain legitimacy and trustworthiness. No forms or data collection mechanisms are present, reducing immediate data exposure risks. Overall, the security posture is basic with recommendations to implement HTTPS, security headers, and privacy compliance measures. The overall risk is moderate due to the lack of domain registration transparency and minimal security controls. Strategic improvements in domain registration verification, security best practices, and privacy compliance would enhance trust and reduce risk.

30
53
2
60
72
80
100
sportsbjjmobileappmartialarts
Next.jsReactJavaScriptCSS+1
2025-10-18T08:17:48.829Z
stredohori.cz favicon

Destinační agentura České středohoří, o.p.s.

stredohori.cz

48
OtherCzech RepublicsmallHIGH

The website stredohori.cz serves as a comprehensive regional tourism portal for the České středohoří area in the Czech Republic. It provides detailed information about local attractions, events, accommodations, and services, targeting tourists and visitors interested in cultural, outdoor, and recreational activities. The site is operated by Destinační agentura České středohoří, o.p.s., a small regional destination management organization established in 2011. The business model focuses on promoting regional tourism and supporting local service providers through information dissemination and event promotion. From a technical perspective, the website employs modern web technologies including Google Fonts, Google Analytics, and Google Tag Manager, with a responsive design optimized for mobile devices. The site is hosted likely by Wedos, consistent with the domain registrar information. Performance is moderate with good SEO and basic accessibility features. The site uses HTTPS with a valid SSL certificate, ensuring secure communications. Security posture is solid with HTTPS enforced and a cookie consent mechanism that complies with GDPR requirements. However, the site lacks explicit privacy policy and terms of service pages, as well as published security policies or incident response contacts. No security headers were detected in the HTML content, which could be improved to enhance security. No vulnerabilities or exposed sensitive data were found in the analysis. Overall, the website is trustworthy and professional, with a clear focus on regional tourism promotion. Strategic recommendations include publishing comprehensive privacy and security policies, implementing security headers, and providing explicit incident response contacts to improve compliance and security maturity.

30
25
17
75
52
80
20
tourismregionalczechrepublicoutdoorculture+3 more
Google FontsGoogle AnalyticsGoogle Tag ManagerJavaScript+2

Partner Domains:

kontakty.stredohori.cz
partner
labskastezka.stredohori.cz
partner

+1 more partners

2025-10-18T07:12:13.755Z
vojujezd-brezina.cz favicon

Újezdní úřad Březina

vojujezd-brezina.cz

47
GovernmentCzech RepublicsmallHIGH

The website vojujezd-brezina.cz serves as the official online presence for the Military Training Area Březina, a government-operated military district in the Czech Republic. It provides authoritative information regarding the military district's administration, access restrictions, safety protocols, and official announcements. The site targets a broad audience including the general public, visitors, government officials, and military personnel. Its business model is focused on public information dissemination and regulatory communication within a government context. Technically, the website employs a traditional HTML/CSS/JavaScript stack with the vismo CMS platform. It integrates Google Translate for multilingual support and maintains a moderate performance profile with basic mobile optimization and accessibility features. SEO and modern web practices are implemented at a basic level, with room for enhancement. From a security perspective, the site uses HTTPS and avoids exposing sensitive data. However, it lacks explicit security headers and a formal security or incident response policy. Cookie policies exist but lack active consent mechanisms. No vulnerabilities or malicious content were detected, indicating a generally secure posture appropriate for a government informational site. Overall, the website is trustworthy and professional, though improvements in security headers, privacy compliance mechanisms, and mobile accessibility would enhance its digital maturity and user experience. The domain's WHOIS data confirms legitimacy and long-standing registration consistent with the site's official status.

15
25
17
70
75
80
20
governmentmilitaryczechrepublicofficialinformation+1 more
HTML5CSSJavaScriptGoogle Translate widget
2025-10-18T07:10:13.427Z
unabridgedsoftware.com favicon

Unabridged Software

unabridgedsoftware.com

55
TechnologyUnited StatessmallMEDIUM

Unabridged Software is a US-based software consultancy specializing in custom software development primarily using Ruby on Rails and JavaScript. The company positions itself as a small but experienced consultancy with nearly a decade of client relationships and expertise across diverse industries. Their key services include blueprint sessions, full stack web development, technical consulting, and engineering management consulting. The website is professionally designed, mobile optimized, and provides clear navigation and contact information, reflecting a mature digital presence. Technically, the website leverages modern technologies including Google Fonts, Google Analytics, and Netlify Identity for authentication, hosted likely on Netlify. The site performs moderately well with good SEO and accessibility basics but lacks advanced security headers and explicit privacy or cookie policies, which are compliance gaps. The use of Google Analytics indicates moderate user tracking without clear privacy disclosures. From a security perspective, the website uses HTTPS and does not expose sensitive data or vulnerable libraries. However, the absence of security headers and lack of incident response or vulnerability disclosure information reduce its security posture. The WHOIS data is missing or unavailable, which is inconsistent with the active website and reduces trustworthiness. Overall, the site is professional and trustworthy but would benefit from improved privacy compliance and security transparency. Strategically, the company should prioritize implementing privacy and cookie policies with consent mechanisms, add security headers, publish incident response contacts, and clarify domain registration details to enhance trust and compliance.

30
35
2
55
75
70
100
softwareconsultancyrubyonrailsjavascriptcustomsoftwaretechnicalconsulting+1 more
Ruby on RailsJavaScriptGoogle AnalyticsNetlify Identity Widget
2025-10-18T07:08:13.046Z
pqina.nl favicon

PQINA

pqina.nl

60
TechnologyNetherlandssmallMEDIUM

PQINA is a small technology company based in the Netherlands, specializing in designing and building high-performance, responsive web components primarily for image and video editing and file uploading. Their product suite includes JavaScript libraries such as Pintura Image Editor, FilePond uploader, and Flip counter plugin, alongside online services like CropGuide and Edit • Photo/Video editors. The company maintains an active blog with technical articles, indicating ongoing development and engagement with the developer community. The website is professionally designed with excellent content quality and clear navigation, targeting web developers and businesses needing advanced web components and editing tools. Technically, the website employs modern web standards including JavaScript, CSS, and HTML5, with good mobile optimization and accessibility. The site uses HTTPS and includes SEO-friendly meta tags and social media integration. Analytics are handled via Simple Analytics, reflecting a privacy-conscious approach with minimal user tracking. However, some security best practices such as DNSSEC and security headers are not implemented, and there is no cookie consent mechanism, which may impact compliance with privacy regulations. From a security perspective, the site shows a basic but solid posture with no detected vulnerabilities or exposed sensitive data. The WHOIS data confirms a consistent and legitimate domain registration dating back to 2015, aligning with the business maturity. No security policies or incident response contacts are published, which could be improved to enhance trust and readiness. Overall, the site is trustworthy, professional, and technically sound, with room for improvement in privacy compliance and security hardening. The overall risk is low, but strategic recommendations include enabling DNSSEC, adding security headers, implementing cookie consent, publishing security policies, and enhancing GDPR compliance to strengthen the security and privacy posture further.

40
28
2
85
75
70
100
javascriptwebcomponentsimageeditorfileuploadwebdevelopment+2 more
JavaScriptCSSHTML5Web Components+2

Partner Domains:

crop.guide
partner
edit.photo
partner

+1 more partners

2025-10-18T07:07:58.014Z
antithesis.com favicon

Antithesis Operations LLC

antithesis.com

74
TechnologyUnited StatessmallMEDIUM

Antithesis Operations LLC operates a sophisticated autonomous software testing platform designed to identify and reproduce bugs in complex distributed systems, with a focus on fintech, blockchain, databases, and cloud infrastructure sectors. The company positions itself as an innovative leader in autonomous testing, providing deterministic simulation testing that enhances software reliability and reduces time-to-resolution for critical bugs. Their website reflects a mature, professional business with strong trust signals including customer testimonials and SOC 2 Type 2 certification. Technically, the website employs modern JavaScript frameworks, analytics tools such as PostHog and HubSpot, and is hosted with Amazon Registrar, indicating a robust digital infrastructure. The site is well-optimized for mobile devices, has good SEO practices, and offers a seamless user experience. However, there is room for improvement in DNS security and cookie consent mechanisms. From a security perspective, the company demonstrates good practices with HTTPS enforcement, domain status protections, and a dedicated security manifesto page. The absence of DNSSEC and explicit security headers, as well as lack of a vulnerability disclosure policy, represent minor gaps. The contact form is well-validated and includes anti-bot measures, enhancing security posture. Overall, Antithesis presents a low-risk profile with a strong business and technical foundation. Strategic improvements in DNS security, privacy compliance, and vulnerability disclosure would further enhance their security maturity and trustworthiness.

65
68
17
85
90
85
100
softwaretestingautonomoustestingdistributedsystemsfintechblockchain+3 more
JavaScriptPostHog analyticsHubSpotGoogle Tag Manager+3
2025-10-18T07:07:53.005Z
tc39.es favicon

Ecma International's TC39

tc39.es

55
TechnologyN/asmallMEDIUM

Ecma International's TC39 is a specialized standards organization focused on the development and maintenance of the JavaScript (ECMAScript) language specification. The website serves as a hub for developers, implementers, and academics to access meeting agendas, proposals, and specification documents. The organization holds a strong market position as the authoritative body for JavaScript standards, with a clear focus on community collaboration and open development. Technically, the website is well-constructed using modern web standards including HTML5, CSS3, and JavaScript, with Google Fonts enhancing typography. The site is mobile-optimized, fast-loading, and accessible, providing a professional user experience. However, there is room for improvement in security headers and explicit privacy and cookie policies. From a security perspective, the site uses HTTPS and does not expose sensitive data or vulnerable libraries. The absence of explicit security headers and vulnerability disclosure mechanisms suggests an opportunity to strengthen the security posture. No signs of blocking or WAF interference were detected, indicating full accessibility. Overall, the website is trustworthy and professional, with strong business credibility linked to Ecma International. The lack of contact information and privacy policies slightly reduces privacy compliance scores but does not significantly impact overall trust. Strategic recommendations include enhancing security headers, publishing clear privacy and cookie policies, and providing contact channels for security incidents.

15
10
2
85
72
75
100
javascriptecmascriptstandardsprogrammingtechnology+1 more
HTML5CSS3JavaScriptGoogle Fonts (Open Sans, Source Sans Pro)
2025-10-18T07:07:42.981Z
G

Getty

getty.edu

70
EducationUnited StateslargeMEDIUM

Getty.edu is the official website for the Getty museums and library located in Los Angeles, providing rich resources for visual art and cultural heritage. The site targets a broad audience including art enthusiasts, researchers, and the general public interested in cultural education. It offers access to museum exhibitions, library resources, and free research tools, positioning itself as a leading non-profit educational institution in the arts sector. The website branding and content quality are excellent, reflecting a mature and professional digital presence. Technically, the site utilizes modern JavaScript frameworks such as Vue.js and Nuxt.js, along with multiple third-party analytics and marketing tools including Google Analytics, Facebook Pixel, LinkedIn Insight Tag, and Twitter Universal Website Tag. The site is mobile optimized and performs moderately well, though accessibility features could be enhanced. The SSL configuration is excellent, ensuring secure HTTPS connections. From a security perspective, the site lacks visible security headers and explicit privacy or cookie policies, which are critical for compliance and user trust. No vulnerability disclosure or incident response information is published, and no contact information is readily available in the scanned content. The absence of WHOIS data is unusual for an established .edu domain, raising some transparency concerns, though the overall trustworthiness remains high due to the site's content and institutional nature. Overall, Getty.edu is a high-quality, trustworthy educational resource with strong content and branding but would benefit from improved privacy compliance, security headers, and transparency in domain registration details.

30
85
17
85
82
85
100
artmuseumeducationculturalheritageresearch+2 more
JavaScriptGoogle AnalyticsFacebook PixelLinkedIn Insight Tag+3
2025-10-18T07:07:37.970Z
orsymphony.org favicon

Oregon Symphony

orsymphony.org

74
OtherUnited StatesmediumMEDIUM

Oregon Symphony is a well-established regional symphony orchestra with a long history dating back to 1896. The organization offers world-class concerts primarily serving the Portland and Salem, Oregon areas. Their website serves as the official source for ticket sales and information about their performances, targeting music enthusiasts and the general public interested in cultural events. The business model is typical of non-profit performing arts organizations, focusing on community engagement and ticketed events. Technically, the website employs modern JavaScript libraries and tracking tools such as Google Tag Manager, Cookiebot for consent management, and Braze for marketing automation. Hosting and DNS are managed via Cloudflare, providing performance and security benefits. The site is mobile-optimized with good SEO practices, though no explicit CMS was detected, suggesting a custom or proprietary platform. From a security perspective, the site uses HTTPS with a good SSL configuration but lacks DNSSEC and security headers, which are recommended for enhanced protection. Cookie consent is implemented, indicating awareness of privacy regulations, but no explicit privacy policy or terms of service were found in the provided content. No vulnerability disclosure or incident response information is published, which could be improved to enhance trust and compliance. Overall, the website is professional, trustworthy, and serves its audience well. Strategic improvements in security headers, DNSSEC, and publishing privacy and security policies would strengthen its security posture and compliance readiness.

80
100
2
70
100
65
100
symphonymusicconcertsoregonarts+1 more
JavaScriptGoogle Tag ManagerCookiebotCloudflare DNS+2
2025-10-18T07:07:32.956Z