Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

150477
Websites
130
Industries
113
Countries
52
Avg Score
Page 242 of 780|Showing 12051-12100 of 38955
getstream.io favicon

Stream

getstream.io

71
TechnologyN/aenterpriseMEDIUM

Stream is a technology company specializing in scalable APIs and SDKs for building in-app chat messaging, video, and activity feeds. Established in 2014, it serves a large enterprise market with over 1 billion end users and 2000+ apps relying on its platform. The company positions itself as a leader in developer experience and enterprise-grade infrastructure, offering high availability and compliance certifications such as HIPAA, GDPR, ISO 27001, and SOC 2. The website reflects a mature digital presence with modern frameworks and a strong focus on developer tools and integrations. Technically, the website is built using Next.js and React, hosted on AWS infrastructure, and leverages Prismic CMS for content management. It demonstrates fast performance, mobile optimization, and good SEO practices. The presence of Cookiebot indicates a commitment to cookie consent and privacy compliance, although explicit privacy and terms of service documents are not found in the provided content. From a security perspective, the site uses HTTPS with strong SSL configuration and displays multiple compliance certifications, indicating a robust security posture. However, there is room for improvement in publishing explicit security policies, incident response contacts, and vulnerability disclosure mechanisms. No critical vulnerabilities or suspicious patterns were detected. Overall, Stream presents a professional, trustworthy, and technically advanced platform with a strong market position in the developer tools space. Strategic recommendations include enhancing transparency around privacy and security policies and adding direct contact information to improve user trust and compliance.

65
65
17
85
77
75
100
chatvideoactivityfeedssdkapi+5 more
ReactNext.jsPrismic CMSAWS DNS+4
2025-10-11T04:21:55.869Z
B

Boston Consulting Group

bcg.com

77
OtherN/aenterpriseLOW

Boston Consulting Group (BCG) is a globally recognized management consulting firm specializing in strategic management consulting and business transformation services. The website reflects BCG's market position as a leader in consulting, targeting business leaders and organizations seeking to address complex challenges. The site content is professionally crafted, emphasizing BCG's expertise and global reach. Technically, the website employs modern web technologies including Adobe Analytics, TrustArc for consent management, and SVG-based iconography. The site is well-optimized for mobile devices and accessibility, with good SEO practices and performance. The use of advanced analytics and consent frameworks indicates a mature digital infrastructure. From a security perspective, the site enforces HTTPS and integrates consent management for privacy compliance. However, explicit security headers are not evident in the provided data, and no public security policy or incident response information is available. No vulnerabilities or exposed sensitive data were detected in the analysis. Overall, the website presents a low risk profile with strong business credibility and privacy compliance. The absence of WHOIS data limits domain trust assessment but does not detract from the site's professional presentation and operational maturity. Strategic recommendations include enhancing security headers, publishing security policies, and establishing a vulnerability disclosure program to further strengthen trust and security posture.

30
83
73
85
79
85
100
consultingmanagementbusinessstrategyprivacy+2 more
Adobe AnalyticsTrustArc Consent ManagementModernizrWeb Components+3
2025-10-11T04:21:35.834Z
nba.nl favicon

Koninklijke Nederlandse Beroepsorganisatie van Accountants

nba.nl

54
FinanceNetherlandslargeMEDIUM

The Koninklijke Nederlandse Beroepsorganisatie van Accountants (NBA) is the official professional organization for accountants in the Netherlands, providing regulatory guidance, educational resources, and member services. The website serves as a comprehensive portal for accountants to access current regulations, tools, events, and professional development materials. It holds a strong market position as the authoritative body for accounting professionals in the country. Technically, the website employs modern web technologies including Vue.js, EpiServer CMS, and integrates telemetry and analytics via Microsoft Application Insights and Google Tag Manager. The site is hosted likely on Microsoft Azure, with good mobile optimization and moderate performance. SEO and accessibility are adequately addressed, though accessibility could be improved. From a security perspective, the site enforces HTTPS and uses telemetry for monitoring but lacks explicit security headers and visible security policies such as privacy or cookie policies. No vulnerability disclosure or incident response contacts are published, which could be improved to enhance trust and compliance. No critical vulnerabilities or suspicious content were detected. Overall, the website is professional, trustworthy, and well-aligned with its business purpose. However, it would benefit from enhanced privacy compliance, explicit contact information, and improved security policy transparency to strengthen its security posture and user trust.

85
10
2
70
-
80
100
accountingfinanceprofessionalorganizationnetherlandseducation+1 more
JavaScriptGoogle Tag ManagerMicrosoft Application InsightsAzure Monitoring+2
2025-10-11T04:20:40.670Z
matrix.org favicon

Matrix.org Foundation

matrix.org

67
TechnologyN/amediumMEDIUM

Matrix.org operates as the foundation and hub for the Matrix open protocol, which enables secure, decentralized communication across chat, VoIP, and data transfer. The organization positions itself as a leading open communication protocol with a strong community and open source ecosystem, offering clients, servers, bridges, SDKs, and hosting solutions. The website reflects a mature, well-established technology entity with a medium-sized footprint and a focus on transparency and security. Technically, the website is well-constructed with modern HTML5, CSS, and JavaScript technologies, hosted behind Cloudflare DNS services. It demonstrates excellent design quality, mobile optimization, and accessibility. The use of privacy-conscious analytics (Plausible) and absence of intrusive advertising reflects a privacy-aware digital maturity. However, the lack of DNSSEC and cookie consent mechanisms are areas for improvement. From a security perspective, the site enforces HTTPS, maintains domain transfer restrictions, and publishes a security disclosure policy and hall of fame, indicating a proactive security posture. No critical vulnerabilities or exposed sensitive data were detected. The absence of security headers and a security.txt file are minor gaps. Overall, the security posture is strong but could be enhanced with additional DNS and header configurations. The overall risk assessment is low, with the website demonstrating high professionalism, trustworthiness, and compliance with GDPR principles, though cookie consent implementation is recommended. Strategic recommendations include enabling DNSSEC, adding cookie consent, publishing security.txt, and providing explicit DPO contact information to further strengthen compliance and trust.

80
35
2
85
75
70
100
opensourcedecentralizedcommunicationmatrixprotocolsecurechattechnology
HTML5CSSJavaScriptCloudflare DNS
2025-10-11T04:19:30.502Z
fontstore.com favicon

Fontstore Ltd.

fontstore.com

57
TechnologyIndiasmallMEDIUM

Fontstore.com is a specialized e-commerce platform offering premium font distribution services, primarily targeting designers and businesses requiring multilingual font solutions. The company, Fontstore Ltd., has been operating since 2003, positioning itself as a niche player in the font licensing market with a focus on quality and language diversity. The website is professionally designed with good navigation and content relevance, supporting a positive user experience for its target audience. Technically, the site employs modern JavaScript frameworks, likely Vue.js, and integrates Stripe for secure payment processing. Hosting is provided via GoDaddy, and the domain is well-established with standard domain status protections. Performance and mobile optimization are adequate, though accessibility features are basic. SEO practices appear solid with proper meta tags and Open Graph data. From a security perspective, the site uses HTTPS and Stripe for payments, which is a strong positive. However, it lacks DNSSEC, visible security headers, and formal privacy or cookie policies, which are important for compliance and trust. No incident response or vulnerability disclosure information is present, indicating room for improvement in security transparency and readiness. Overall, the website is legitimate and professionally maintained but would benefit from enhanced privacy compliance, security headers, and clearer contact information to improve trust and regulatory adherence.

15
50
2
70
77
65
100
fontstypographyfontlicensingmultilingualfontse-commerce
JavaScriptStripe payment integrationCustom fonts (woff2)SVG icons
2025-10-11T03:16:45.147Z
M

You're invited to talk on Matrix

matrix.to

59
TechnologyN/asmallMEDIUM

Matrix.to is a specialized web service that facilitates the creation of shareable links for Matrix rooms, users, and messages, enabling users to join decentralized and secure communication channels without being tied to any specific client application. It operates within the Matrix ecosystem, which is an open network for secure, decentralized communication. The website targets users and communities interested in privacy-focused chat solutions and supports the broader adoption of Matrix technology. Technically, the website employs client-side JavaScript and CSS to deliver its functionality, emphasizing privacy by processing data locally in the browser. The site is moderately optimized for performance and mobile use, though accessibility and SEO features are basic. No content management system or hosting provider details are evident from the provided data. From a security perspective, the site uses HTTPS (implied by the domain and external links) but lacks visible security headers and formal privacy or cookie policies, which limits its compliance posture. No contact information or incident response channels are provided, which could hinder user trust and security incident handling. The absence of tracking or advertising technologies aligns with the privacy-centric ethos of the Matrix ecosystem. Overall, Matrix.to presents a trustworthy and niche service with good content quality and business credibility but would benefit from enhanced privacy compliance, security best practices, and clearer user support channels to improve its security posture and user trust.

30
50
2
70
75
75
100
matrixdecentralizedcommunicationsecurechat+1 more
JavaScriptCSS
2025-10-11T03:15:58.973Z
raygun.io favicon

Raygun

raygun.io

77
TechnologyN/amediumLOW

Raygun is a well-established technology company specializing in application monitoring solutions for web and mobile applications. Their platform offers comprehensive services including crash reporting, real user monitoring, application performance monitoring, and AI-driven error resolution. The company targets developers, CTOs, product managers, and performance engineers, positioning itself as a trusted partner for businesses ranging from startups to Fortune 500 companies. The website reflects a mature SaaS business model with a strong focus on customer experience and technical excellence. Technically, the website is built on modern frameworks and technologies including Webflow CMS, JavaScript libraries, and integrates with multiple analytics and marketing platforms such as Google Tag Manager, HubSpot, and Snowplow. Hosting is provided via Amazon AWS, ensuring scalability and performance. The site is well-optimized for mobile devices and accessibility, with fast loading times and clear navigation. From a security perspective, the site enforces HTTPS, employs clientTransferProhibited domain status, and claims compliance with major regulations such as HIPAA, GDPR, CCPA, and PCI. However, DNSSEC is not enabled, and no explicit security.txt or incident response contacts were found. The privacy and cookie policies are comprehensive and include consent mechanisms, supporting GDPR compliance. Overall, Raygun's website demonstrates a high level of professionalism, technical maturity, and security awareness. The domain's long registration history and consistent WHOIS data further reinforce the company's legitimacy. Minor improvements could be made in DNS security and incident response transparency to enhance trust and security posture.

60
80
47
75
82
80
100
applicationmonitoringcrashreportingrealusermonitoringaierrorresolutionsaas+3 more
JavaScriptjQueryGoogle Tag ManagerSnowplow Analytics+2
2025-10-11T03:14:08.571Z
about.google favicon

Google

about.google

62
TechnologyUnited StatesenterpriseMEDIUM

Google LLC is a global technology leader specializing in internet-related products and services including search, cloud computing, AI, and consumer electronics. The company holds a dominant market position with a broad portfolio of innovative AI products and services, targeting a general audience worldwide. The website about.google serves as a corporate information hub showcasing Google's technology, products, research, and global impact. The site is professionally designed, mobile-optimized, and provides comprehensive information about Google's offerings and initiatives. Technically, the website leverages modern web technologies including HTML5, CSS3, JavaScript, Google Tag Manager, and Google Fonts, hosted on Google Cloud infrastructure. The use of internal frameworks like Google Glue and Webpack indicates a mature and scalable technical infrastructure. Performance is fast, with excellent SEO and accessibility features implemented. From a security perspective, the website enforces HTTPS with strong SSL configuration and includes multiple security headers. It employs cookie consent mechanisms and integrates Google Tag Manager for analytics and marketing. No vulnerabilities or exposed sensitive data were detected. Privacy policies and terms of service are comprehensive and GDPR compliant, reflecting a strong commitment to user privacy and data protection. Overall, the website demonstrates a high level of professionalism, trustworthiness, and compliance. It effectively supports Google's brand and business objectives while maintaining robust security and privacy standards.

60
68
2
60
42
70
100
technologyaigooglecorporateproducts+4 more
HTML5CSS3JavaScriptGoogle Tag Manager+2

Partner Domains:

deepmind.google
subsidiary
cloud.google.com
subsidiary

+3 more partners

2025-10-11T03:11:47.761Z
groupon.com.au favicon

Groupon International Limited

groupon.com.au

68
E-commerceAustralialargeMEDIUM

Groupon International Limited operates www.groupon.com.au as a leading e-commerce platform specializing in discounted deals, coupons, and local experiences for Australian consumers. The website offers a broad range of services including shopping deals, travel bookings, and gift options, targeting a general consumer audience seeking savings and convenience. The platform is well-positioned in the market with consistent branding and a large user base. Technically, the website employs a modern technology stack including React (Preact), Google reCAPTCHA, fraud detection services (Signifyd, Riskified), and performance monitoring tools. The site is optimized for desktop and mobile, with good accessibility and SEO practices. Security measures include HTTPS, anti-fraud scripts, and CAPTCHA integration, although explicit security headers are not visible in the HTML source. The security posture is strong with no visible vulnerabilities or exposed sensitive data. Privacy compliance is basic but includes a comprehensive privacy policy and cookie consent mechanisms. Business credibility is high due to the presence of official social media links, legal policies, and consistent professional content. WHOIS data is limited due to registrar privacy policies but aligns with legitimate domain registration practices for .au domains. Overall, the website presents a low risk profile with strong business credibility and technical maturity. Strategic recommendations include enhancing visible security headers, publishing incident response contacts, and maintaining up-to-date third-party libraries to sustain security and compliance standards.

45
70
2
100
62
75
100
e-commercedealscouponstraveldiscounts+2 more
JavaScriptReact (Preact)Google reCAPTCHAGoogle Tag Manager+6

Partner Domains:

about.groupon.com
partner
investor.groupon.com
partner

+2 more partners

2025-10-11T03:11:12.582Z
howdengroup.com favicon

Howden Finland Oy

howdengroup.com

64
Real EstateFinlandmediumMEDIUM

Howden Finland Oy operates as an independent insurance broker specializing in property and corporate insurance within Finland. It is part of the global Howden Broking Group, which is one of the largest independent insurance brokerage groups worldwide. The company offers a broad range of insurance services including property insurance, corporate insurance, personal insurance, risk assessments, and claims management. Their market position is strong within the Finnish insurance brokerage sector, leveraging global expertise and local presence to serve both property and business clients effectively. Technically, the website is built on Drupal 10, employing modern web technologies and integrations such as Google Tag Manager and Iubenda for cookie and privacy management. The site is well-optimized for performance, mobile responsiveness, and accessibility, reflecting a mature digital infrastructure. Analytics and tracking are implemented with privacy compliance in mind, including granular cookie consent mechanisms. From a security perspective, the site enforces HTTPS with strong SSL configuration and uses security headers such as Content-Security-Policy with nonce values. Anti-bot measures are in place for form submissions, and no sensitive data is exposed in the HTML. However, the absence of a publicly available security policy, incident response information, and vulnerability disclosure reduces transparency. The WHOIS data for the domain is missing, which raises concerns about domain registration legitimacy and should be further investigated. Overall, the website presents a professional, trustworthy, and compliant digital presence for Howden Finland Oy, with strong business credibility and technical maturity. The main risk lies in the lack of WHOIS transparency and limited public security governance documentation, which should be addressed to enhance trust and compliance.

35
50
17
80
65
85
100
insurancebrokervakuutusmeklarifinlandhowden+5 more
Drupal 10JavaScriptGoogle Tag ManagerIubenda Cookie Solution+1

Partner Domains:

howdengroupholdings.com
parent
howdengroup.com
partner

+1 more partners

2025-10-11T02:07:53.855Z
hover.com favicon

Hover

hover.com

69
TechnologyN/amediumMEDIUM

Hover is a professional domain registrar and email service provider offering a wide range of domain extensions, domain management tools, and custom email solutions. The company emphasizes ease of use, customer support, and privacy, including free WHOIS privacy and two-factor authentication. The website is well-designed, mobile-optimized, and provides comprehensive information about domain registration, renewal, and transfer services. Hover is a subsidiary of Tucows Inc., a reputable company in the domain registration industry. Technically, the website leverages modern JavaScript frameworks and external services such as Google Tag Manager and Sentry for analytics and error tracking. Hosting assets on Amazon AWS S3 indicates a reliable infrastructure. The site is fast, accessible, and SEO-optimized, though some security headers are not explicitly detected in the provided data. Privacy compliance is partially addressed with a comprehensive privacy policy but lacks a visible cookie consent mechanism. Security posture is solid with HTTPS enforced and privacy protections in place, but the absence of explicit security headers and a public security policy or incident response contact reduces transparency. No WHOIS data was available from the raw output, which limits domain registration trust analysis, but the professional presentation and association with Tucows support legitimacy. Overall, Hover presents a trustworthy and professional service with strong business credibility and technical maturity. Enhancements in security header implementation, cookie consent, and public security policies would further strengthen its security and compliance posture.

85
53
17
55
77
80
100
domainregistrationemailserviceswhoisprivacycustomersupportprofessionalemail+2 more
JavaScriptGoogle Tag ManagerSentryStormcaster+2

Partner Domains:

www.tucows.com
parent
2025-10-11T02:06:23.559Z
google.bt favicon

Google LLC

google.bt

73
TechnologyUnited StatesenterpriseMEDIUM

Google LLC is a global leader in internet-related services and products, primarily known for its search engine, advertising technologies, cloud computing, software, and hardware offerings. As a subsidiary of Alphabet Inc., Google maintains a dominant market position with a broad portfolio of services targeting a general audience worldwide. The website reflects Google's strong brand identity and commitment to user privacy and security, featuring comprehensive privacy and cookie policies compliant with GDPR standards. Technically, the website leverages modern web technologies including Google Sans font, advanced JavaScript, and performance optimization techniques hosted on Google Cloud Platform. The site is fast, mobile-optimized, and accessible, providing an excellent user experience. Security measures are robust, with HTTPS enforced, multiple security headers, and no detected vulnerabilities or exposed sensitive data. The security posture is strong, with best practices implemented and no critical issues detected. Privacy compliance is well addressed through clear policies and consent mechanisms. Business credibility is high, supported by consistent branding, professional content, and a well-established domain. Overall, the site demonstrates a mature digital infrastructure and a secure, trustworthy online presence. Strategic recommendations include maintaining continuous security monitoring, regular vulnerability assessments, and ongoing privacy compliance reviews to sustain trust and resilience in the evolving threat landscape.

50
73
17
83
75
90
100
searchenginetechnologyadvertisingcloudservicesprivacy+1 more
Google Sans fontJavaScriptHTML5CSS3+2

Partner Domains:

youtube.com
subsidiary
android.com
subsidiary

+3 more partners

2025-10-11T02:06:13.541Z