Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157326
Websites
130
Industries
113
Countries
52
Avg Score
Page 2 of 29|Showing 51-100 of 1432
frick.org favicon

The Frick Collection

frick.org

67
Non-profitUnited StatesmediumMEDIUM

The Frick Collection is a well-established non-profit art museum located in New York City, specializing in Renaissance to 19th-century art. The website serves as a comprehensive digital portal offering information on exhibitions, collections, educational programs, and membership opportunities. It targets art enthusiasts, researchers, students, and donors, positioning itself as a reputable cultural institution with a strong online presence. Technically, the website is built on Drupal 10, leveraging modern front-end technologies such as Tailwind CSS and Swiper.js for responsive design and user experience. It integrates Google Analytics and Tag Manager for visitor tracking and marketing insights. The site demonstrates good mobile optimization, accessibility, and SEO practices, contributing to a positive user experience. From a security perspective, the site enforces HTTPS and includes standard security headers, indicating a solid baseline security posture. However, the absence of a publicly available security policy, incident response contacts, and vulnerability disclosure mechanisms suggests room for improvement in transparency and readiness. The WHOIS data is unavailable or malformed, which slightly impacts domain trust assessment but does not detract significantly from the overall credibility given the professional website content. Overall, the Frick Collection website is a professional, secure, and user-friendly platform that effectively supports the institution's mission and audience engagement. Strategic enhancements in security transparency and domain registration clarity would further strengthen trust and compliance.

55
70
17
75
62
75
100
museumartcultureeducationnon-profit+2 more
Drupal 10Tailwind CSSGoogle Tag ManagerGoogle Analytics+3

Partner Domains:

collections.frick.org
partner
shop.frick.org
partner
2025-11-01T13:35:54.827Z
fortressa.com favicon

Fortressa

fortressa.com

55
TechnologyN/asmallMEDIUM

Fortressa is a technology company providing an app store platform for open-source applications, enabling organizations to replace costly per-seat SaaS products with self-hosted, privacy-focused alternatives. The website presents a clear business model centered on cost savings, data ownership, and customization for businesses seeking control over their software stack. The company appears to be established, with a domain registered since 2004 and a consistent brand presence. Technically, the website uses modern front-end technologies such as Tailwind CSS, Alpine.js, and HTMX, delivering a responsive and user-friendly experience. The site is hosted securely with HTTPS, though some security best practices like DNSSEC and security headers are not fully implemented. Analytics are handled via Shynet, a privacy-conscious alternative, indicating a commitment to user privacy. Security posture is moderate; while HTTPS is enforced and forms include basic anti-bot challenges, the absence of DNSSEC and security headers suggests room for improvement. Privacy compliance is partial, with a privacy policy and terms of service present but lacking a cookie consent mechanism. Contact options include email forms and social media, but no phone or physical address is provided. Overall, Fortressa presents a trustworthy and professional online presence with a niche focus on open-source SaaS alternatives. Strategic improvements in security headers, DNSSEC, and privacy compliance would enhance their security posture and regulatory alignment.

15
53
2
90
72
90
40
open-sourceappstoresaasalternativeprivacyself-hosting+3 more
Tailwind CSSAlpine.jsHTMXJavaScript+2
2025-11-01T13:18:40.846Z
asf-aarau.ch favicon

Stiftung Standortförderung Aarau und Region

asf-aarau.ch

63
GovernmentSwitzerlandsmallMEDIUM

The Stiftung Standortförderung Aarau und Region operates as a regional non-profit foundation focused on promoting economic development, tourism, and city management in Aarau and its surrounding region. The website clearly communicates its mission to unite business, quality of life, culture, and leisure under one umbrella, targeting local businesses, residents, tourists, and event organizers. The foundation offers services including economic promotion, city management, tourism marketing, and event planning, positioning itself as a key regional player fostering sustainable growth and community engagement. Technically, the website employs modern web technologies such as ES modules, Tailwind CSS, and integrates privacy-focused analytics via Plausible. The site is well-optimized for mobile devices, loads quickly, and features a professional design with clear navigation. Hosting and media assets are served via reliable providers, ensuring good performance and availability. From a security perspective, the site enforces HTTPS and avoids exposing sensitive data or vulnerable libraries. However, it lacks explicit security headers and a cookie consent mechanism, which are recommended for enhanced protection and GDPR compliance. No incident response or vulnerability disclosure policies are published, indicating room for improvement in security transparency and readiness. Overall, the website presents a trustworthy and professional digital presence for the foundation, with minor gaps in privacy and security best practices. Strategic enhancements in these areas would strengthen compliance and user trust, supporting the foundation's mission and reputation.

30
53
2
80
72
85
100
economicdevelopmenttourismcitymanagementregionalpromotionnon-profit
JavaScript ES ModulesdotLottie playerPlausible AnalyticsTailwind CSS

Partner Domains:

aarau-regio.ch
partner
aarauimpact.ch
partner

+3 more partners

2025-11-01T10:00:17.597Z
skypicker.com favicon

Kiwi.com

skypicker.com

70
TransportationCzech RepubliclargeMEDIUM

Kiwi.com is a prominent online travel agency specializing in providing cheap flights, hotels, and car rental services globally. The platform offers a user-friendly interface with advanced search capabilities including flexible dates and map-based destination exploration. It is trusted by millions and provides additional services such as disruption protection and 24/7 customer support. The website demonstrates a mature digital presence with consistent branding and comprehensive content tailored for travelers seeking affordable travel options. Technically, Kiwi.com employs modern web technologies including React and Tailwind CSS, supported by Google Tag Manager and Forter for analytics and fraud prevention respectively. The site is optimized for performance and mobile responsiveness, ensuring a seamless user experience across devices. Security best practices are observed with HTTPS enforcement and presence of key security headers, although explicit incident response and vulnerability disclosure information are not publicly available. From a security and compliance perspective, Kiwi.com maintains a comprehensive privacy policy and cookie consent mechanism aligned with GDPR requirements. However, the WHOIS data for the domain is not publicly available, which slightly impacts trust but is common for commercial entities using privacy protection services. Overall, the site presents a strong security posture with room for improvement in transparency around incident response and vulnerability management. The overall risk assessment is moderate to low, with recommendations focusing on enhancing security transparency and providing clear contact channels for security incidents. Kiwi.com’s strategic position as a leading travel booking platform is supported by its technical infrastructure and user-centric design, making it a reliable choice for consumers worldwide.

60
68
17
87
57
85
100
travelflightsbookingairfarecheapflights+1 more
ReactTailwind CSSGoogle Tag ManagerForter (fraud prevention)+2

Partner Domains:

cars.kiwi.com
subsidiary
sp.booking.com
partner

+2 more partners

2025-11-01T08:17:38.200Z
R

Ralf M. Mendle - Mediendienstleistungen

streamfood.tv

64
MediaGermanysmallMEDIUM

streamfood.tv is a media streaming platform founded in 2020 and operated by Ralf M. Mendle - Mediendienstleistungen based in Germany. The platform offers a variety of cultural content including events, shows, interviews, and documentaries across genres such as comedy, music, literature, science, and politics. It targets a general audience interested in fair and transparent media consumption. The business model centers on streaming content with a focus on fair revenue sharing. Technically, the website is built using modern technologies including the Elixir Phoenix framework, Video.js for video playback, and Tailwind CSS for styling. Hosting is provided by Vautron Rechenzentrum AG, with DNS managed via Google Domains. The site is mobile optimized and provides a good user experience with clear navigation and search functionality. Security posture is adequate with HTTPS enforced and CSRF protection, but lacks important security headers and DNSSEC. Privacy compliance is weak due to the absence of privacy and cookie policies and no visible consent mechanisms. Contact and security incident response information are not provided, limiting transparency. Overall, the domain registration is consistent and legitimate, supporting the business claims. Recommendations include adding comprehensive privacy and cookie policies, implementing security headers, enabling DNSSEC, and providing clear contact information to improve trust and compliance.

60
53
17
70
72
65
100
mediastreamingeventsshowscomedy+4 more
Elixir Phoenix FrameworkVideo.jsGlider.jsTailwind CSS+1
2025-11-01T05:16:58.701Z
S

STEM Practice - Where AI Goes to Work!

stempractice.ai

61
TechnologyUnited StatessmallMEDIUM

STEM Practice is a technology company specializing in building a Private AI Reasoning Grid, enabling businesses and communities to deploy AI in a private and sovereign manner. They partner with Oracle to leverage Oracle Dedicated Region and Exadata systems, deploying AI infrastructure in distributed regional datacenters. Their business model focuses on transforming underutilized colocation facilities into AI inference nodes, emphasizing power-efficient AI software that significantly reduces energy consumption. The website is professionally designed, mobile-optimized, and provides rich content including downloadable whitepapers and datasheets, reflecting a mature digital presence. Technically, the website uses modern frontend technologies such as Tailwind CSS, Alpine.js, and Chart.js, built with the Hugo static site generator. The site demonstrates good performance, accessibility, and SEO practices. Security posture is strong with HTTPS enforced and secure form handling, though explicit security headers and vulnerability disclosure policies are absent. Privacy compliance is partial, with a privacy policy present but no cookie consent mechanism detected. Overall, the security posture is solid with no visible vulnerabilities or exposed sensitive data. The WHOIS data is privacy protected, which is common for technology companies, and does not raise immediate concerns. The site maintains credible partnerships and trust indicators, supporting its legitimacy. Strategic recommendations include enhancing privacy compliance with cookie consent, publishing security policies, and adding explicit security headers to further strengthen security. This analysis concludes that STEM Practice operates a credible, professional, and secure online presence aligned with its advanced technology business focus.

55
58
25
85
52
85
40
aireasoninggridoraclepartnerprivateaisovereignaimodulardatacenters+2 more
Tailwind CSSAlpine.jsChart.jsHugo static site generator

Partner Domains:

oracle.com
partner
centroid.com
partner
2025-11-01T04:20:26.563Z
biom.hr favicon

Udruga Biom

biom.hr

45
Non-profitCroatiasmallHIGH

Udruga Biom is a Croatian non-profit organization dedicated to nature conservation and environmental education. The website serves as a platform to communicate their projects, publications, events, and opportunities for public involvement. It targets environmentalists, researchers, volunteers, and the general public interested in ecological issues. The organization operates primarily through donations, partnerships, and project funding, positioning itself as a reputable local NGO with active community engagement. Technically, the website is built on WordPress using modern technologies such as Tailwind CSS, Google Tag Manager, and reCAPTCHA for form security. The site is mobile-optimized with good SEO and accessibility basics, though some improvements could be made in accessibility and performance tuning. Analytics are implemented via Google Analytics, with moderate user tracking and GDPR-compliant privacy and cookie policies. From a security perspective, the site enforces HTTPS with strong SSL configuration and includes standard security headers. Forms are protected with reCAPTCHA, and no obvious vulnerabilities or exposed sensitive data were detected. However, the absence of a public security policy or vulnerability disclosure page suggests room for maturity in security governance. Overall, the website is professional, trustworthy, and well-aligned with the organization's mission. It presents low risk from a security and compliance standpoint but would benefit from enhanced transparency in security policies and incident response readiness.

30
10
17
55
42
80
40
environmentnon-profitconservationeducationcroatia
WordPressTailwind CSSGoogle Tag ManagerGoogle Analytics+1

Partner Domains:

doniraj.biom.hr
partner
2025-11-01T03:48:29.229Z
S

Središnji registar osiguranika (REGOS)

mojamirovina.hr

58
GovernmentCroatiamediumMEDIUM

The website mojamirovina.hr serves as a digital platform providing individualized pension information to Croatian citizens. It is part of the MOJA MIROVINA project aimed at enhancing REGOS services in the labor market. The platform offers an anonymous pension calculator and detailed pension-related data, targeting the general public interested in retirement planning. The site is government-backed, with partnerships including the Croatian Pension Insurance Institute (HZMO) and co-financing from the European Social Fund, positioning it as a credible and authoritative source in the pension sector. Technically, the website is built using modern frontend technologies such as Nuxt.js and Vue.js, styled with Tailwind CSS and enhanced with PrimeVue components. It is hosted by a local Croatian ISP, A1 Hrvatska d.o.o., ensuring regional hosting consistency. The site is mobile-optimized and accessible, though SEO and metadata could be improved. No major performance issues were detected, indicating a moderate to good technical maturity. From a security perspective, the site enforces HTTPS and uses secure form inputs but lacks visible security headers and a cookie consent mechanism, which are recommended for enhanced security and GDPR compliance. No vulnerabilities or exposed sensitive data were found in the HTML content. The WHOIS data is transparent and consistent with the business, reinforcing trustworthiness. However, the absence of a published security policy and incident response contacts suggests room for improvement in security governance. Overall, mojamirovina.hr is a trustworthy, government-supported platform with solid technical foundations and good business credibility. Strategic enhancements in privacy compliance, security headers, and incident response transparency would further strengthen its security posture and user trust.

25
25
2
85
77
75
100
governmentpensioncalculatordigitalplatformcroatia+1 more
Nuxt.jsVue.jsPrimeVueSwiper.js+1

Partner Domains:

regos.hr
partner
hzmo.hr
partner
2025-10-31T19:25:38.513Z
H

H.WITTE Firmengruppe

witte-rhede.de

53
EnergyGermanymediumMEDIUM

H.WITTE Firmengruppe is a regional German company specializing in comprehensive building technology services including heating, ventilation, sanitary, electrical installations, photovoltaic systems, and climate solutions. The company targets residential and commercial customers primarily in the Emsland and Ostfriesland regions. Their business model focuses on providing end-to-end services from consultation to installation and maintenance, positioning themselves as trusted experts in their sector. Technically, the website is built on modern frameworks such as Nuxt.js and Vue.js, styled with Tailwind CSS, and incorporates interactive elements like Swiper.js for enhanced user experience. The site is mobile-optimized and demonstrates good SEO practices, although some accessibility features could be improved. Performance is moderate, with no major issues detected. From a security perspective, the site uses HTTPS with good SSL configuration but lacks several recommended security headers and does not provide explicit privacy or cookie policies, nor incident response or vulnerability disclosure information. No tracking or analytics scripts were detected, indicating minimal user tracking. The WHOIS data is consistent with the business claims, showing no privacy protection and legitimate domain registration. Overall, the website is professional and trustworthy with clear business information and contact details. However, improvements in privacy compliance, security headers, and incident response transparency are recommended to enhance security posture and regulatory compliance.

15
45
17
85
72
70
40
buildingtechnologyenergyphotovoltaicheatingsanitary+3 more
Nuxt.jsVue.jsTailwind CSSSwiper.js
2025-10-31T15:25:54.824Z
S

Spacebear OÜ

spacebear.ee

48
TechnologyEstoniasmallHIGH

Spacebear OÜ is a small Estonian technology company specializing in DevOps solutions, providing tools and expertise to help companies deliver reliable software faster. Their key services include container registries, CI/CD pipelines, infrastructure as code, and automated application monitoring. The company targets businesses seeking to improve their software delivery processes through modern DevOps practices. The website reflects a professional and consistent brand image with clear contact information and a focus on technology services. Technically, the website is built using modern frameworks such as Next.js and React, styled with Tailwind CSS, and hosted on bunny.net infrastructure. The site is mobile optimized and performs moderately well, though accessibility and SEO optimizations are basic. No major technical issues or vulnerabilities are evident from the HTML content. From a security perspective, the site uses HTTPS and does not expose sensitive data. However, it lacks explicit security headers, a security policy, incident response information, and a cookie consent mechanism, which are areas for improvement. The WHOIS data is consistent with the company’s location and founding date, supporting legitimacy. Overall, the website presents a trustworthy and professional front with room for enhancement in privacy compliance and security posture to better align with industry best practices.

80
28
2
85
52
55
-
devopstechnologysoftwareinfrastructureascodecicd+1 more
ReactNext.jsTailwind CSS

Partner Domains:

spacebearstatus.com
partner
2025-10-31T11:28:30.445Z
gemini.pl favicon

GEMINI APPS sp. z o. o.

gemini.pl

60
RetailPolandlargeMEDIUM

Gemini.pl is a well-established Polish e-commerce platform specializing in health and beauty products, offering nearly 27,000 items across multiple categories such as health, pregnancy, child care, cosmetics, hygiene, and medical equipment. The company, GEMINI APPS sp. z o. o., founded in 1990, operates with a strong market presence in Poland, targeting general consumers seeking health and beauty products online. The website demonstrates a professional design with consistent branding and clear navigation, supporting a positive user experience and trustworthiness. Technically, the site leverages modern frameworks like Vue.js and Nuxt.js, combined with Tailwind CSS for styling and Swiper.js for interactive elements, hosted by home.pl S.A., a reputable Polish hosting provider. Mobile optimization and SEO practices are well implemented, although accessibility features are basic. Security posture is good with HTTPS enabled and no obvious vulnerabilities, but the absence of DNSSEC and security headers suggests room for improvement. Privacy compliance is weak due to missing explicit privacy and cookie policies, and no incident response or vulnerability disclosure information is published. Overall, Gemini.pl is a credible and professional online retailer with a solid technical foundation but should enhance privacy and security transparency to improve compliance and user trust.

20
25
17
80
77
85
100
healthbeautye-commercepolandretail+1 more
Vue.jsNuxt.jsTailwind CSSSwiper.js+1
2025-10-31T09:13:21.892Z
hgk.hr favicon

Hrvatska gospodarska komora

hgk.hr

57
GovernmentCroatialargeMEDIUM

Hrvatska gospodarska komora (HGK) is a Croatian national chamber of commerce that serves as a professional and business organization representing the interests of its members before governmental and other bodies domestically and internationally. The website provides a range of services including information databases, entrepreneurial education, legal advice, business partner matchmaking, co-financing for trade fairs, and guidance on EU funding applications. HGK holds a strong market position as an authoritative institution within Croatia's business ecosystem. Technically, the website employs modern JavaScript libraries such as jQuery, Vue.js, and Summernote, along with CSS frameworks like Tailwind, indicating a moderate to good level of digital maturity. The site is mobile-optimized and includes accessibility features, though some improvements could be made in SEO and performance optimization. Security posture is generally good with HTTPS enforced and Google reCAPTCHA integration; however, the absence of security headers and explicit security policies suggests room for enhancement. Privacy compliance is limited due to missing explicit privacy and cookie policies, which could be a compliance risk. Overall, the website is professional and trustworthy, but strategic improvements in privacy disclosures and security practices are recommended.

15
10
17
75
77
80
100
governmentcommercebusinesscroatiaeducation+2 more
jQuery 3.6.0Toastr.jsVue.jsSummernote+3
2025-10-31T09:12:16.751Z
S

STŘELA Žebrák, z.s.

strelazebrak.cz

40
Non-profitCzech RepublicsmallHIGH

STŘELA Žebrák, z.s. is a Czech non-profit association founded in 2019, dedicated to educational and leisure activities for children and youth, focusing on athletics, tourism, and summer camps. The organization maintains a strong local community presence with multiple social media channels and partnerships with regional entities. The website serves as an information hub for their activities, events, and registration forms, reflecting a clear mission to engage youth in meaningful activities. Technically, the website employs modern front-end technologies including Tailwind CSS and jQuery, hosted likely by WEDOS, a Czech hosting provider. The site is mobile-optimized with good navigation and content structure, though some accessibility features could be improved. SEO practices are adequately implemented with proper meta tags and descriptive content. From a security perspective, the site uses HTTPS but lacks visible security headers and explicit security policies. No forms on the main page reduce attack surface, but cookie consent mechanisms are missing, which is a GDPR compliance gap. WHOIS data is transparent and consistent with the organization's profile, supporting legitimacy. Overall, the website is trustworthy and professionally maintained, with room for improvement in security hardening and privacy compliance. The risk level is low given the non-commercial nature and limited data collection, but enhancing security policies and cookie management would strengthen compliance and user trust.

15
10
2
60
62
75
20
non-profityouthathleticstourismsummercamp+2 more
HTML5CSS3Tailwind CSSjQuery
2025-10-31T06:58:53.275Z